公开记录
软件健康报告模式 0.27.0 · 指标 1.13.0 · 2026-07-30 12:07 UTC

bassprofressor-lab / openwolf-enhanced

Enhanced fork of OpenWolf — a token-conscious second brain for Claude Code, with bounded storage, self-maintenance (openwolf doctor), .wolfignore scoping, and tunable retention. AGPL-3.0.

TypeScript · JavaScriptAGPL-3.0★ 6 星标⑂ 0 复刻始于 2026年7月在 GitHub 上查看 ↗

bassprofressor-lab/openwolf-enhanced 的健康指数为 100 分中的 51 分,处于「中等」区间。 其得分最高的类别是Engineering Quality(72/100),最低的是Sustainability & Governance(29/100)。 最近一次更新在 8 天前。 近期的大部分工作由 1 位贡献者完成。

51
总分 / 100
中等

软件健康指数

指标归入加权类别,统一采用 1–100 量表。总体分先取类别加权平均;当公开证据触发高风险司法辖区政策时,评级会按政策调整,并设置 49(有风险)的上限。AI 就绪度不计入总体分。

51
优秀85-100堪称典范;基本满足所有检验标准
良好70-84健康;仅有轻微不足
中等50-69可接受,但存在明显不足;建议进行审查
存在风险30-49存在重大薄弱环节;采用时应保持审慎
危急1-29问题严重(项目被弃置、仅有单一维护者、缺乏基本工程规范)
活力社区与采用可持续性与治理工程质量安全AI 就绪度

评分画像

每条轴代表一个类别。形状比平均值更重要——健康的对象会填满整个图形,而“一峰一谷”式画像意味着某一维度的优势正掩盖另一维度的风险。

所有权

Krynex Labs个人账户
0 关注者4 个公开仓库始于 2026年3月Krynex Labs

该仓库由个人账户拥有。相较于组织支持的项目,单一所有者项目的延续性风险更高。

软件包生态系统

按类别列示的指标

活力

项目是否仍有生命——是否仍在编写代码,是否仍在发布版本?

66中等 · 占总体的 22%
评分方式
28.8/36推送新近度 — 最近一次推送于 8 天前
2.8/36提交节奏 — 52 周中有 4 周有提交
18/18提交量 — 最近一年 103 次提交
0/10OpenSSF Scorecard:Maintained — project was created within the last 90 days. Please review its contents carefully
所用输入
commits_last_year103
human_commit_share1
days_since_last_push8
active_weeks_last_year4

发布纪律

90优秀
评分方式
27/27有发布版本 — 已发布 43 个发布版本
36/36发布时效 — 最近一次发布版本于 8 天前
27/27发布节奏 — 约每 0.6 天发布一次
0/10OpenSSF Scorecard:Signed-Releases — Project has not signed or included provenance with any releases.
所用输入
releases_count43
latest_release_tagv1.20.4
releases_from_tags
days_since_latest_release8
mean_days_between_releases0.6

社区与采用

项目是否拥有用户、下载量与关注度,并具备欢迎贡献者参与的配置?

50中等 · 占总体的 18%
评分方式
11.3/60星标 — 6 个星标
0/25复刻 — 0 个复刻
0/15关注者 — 0 位关注者
所用输入
forks0
stars6
watchers0
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history

社区健康

85优秀
评分方式
22.5/22.5README
22.5/22.5许可证 — 可识别的许可证(AGPL-3.0)
18/18CONTRIBUTING 指南
13.5/13.5行为准则
0/7.2议题模板
0/6.3PR 模板
所用输入
has_readme
has_license
has_contributing
has_issue_template
has_code_of_conduct
has_pull_request_template
评分方式
49.6/80月度下载量 — npm 合计每月 5,230 次下载
0/20注册表被依赖数 — 该生态系统不报告此项
所用输入
packagesopenwolf-enhanced
dependents
ecosystemsnpm
total_downloads
monthly_downloads5,230
已排除计分(无数据或不适用):注册表被依赖数。 其余权重已重新归一化。

可持续性与治理

项目能否在其成员之外延续——巴士系数、响应能力、由谁支持,以及软件包的维护状况?

29危急 · 占总体的 24%
评分方式
9/54巴士系数 — 1 位贡献者贡献了半数提交
0/22.5提交分布 — 头号贡献者编写了 100% 的提交
1.4/13.5贡献者广度 — 1 位贡献者
3/10OpenSSF Scorecard:Contributors — project has 1 contributing companies or organizations -- score normalized to 3
所用输入
bus_factor1
contributors_sampled1
top_contributor_share1
评分方式
0/46.8议题解决 — 没有议题或无数据
0/38.3PR 接受 — 没有已裁定的拉取请求或无数据
0/15OpenSSF Scorecard:Code-Review — Found 0/30 approved changesets -- score normalized to 0
所用输入
merged_prs0
open_issues0
closed_issues0
issue_closed_ratio
closed_unmerged_prs0
已排除计分(无数据或不适用):议题解决, PR 接受。 其余权重已重新归一化。
评分方式
10/30所有权背书 — 个人(用户)账户
0/20已验证域名 — 不适用于个人账户
0/25所有者影响力 — bassprofressor-lab 有 0 位关注者
5.9/25既往记录 — 4 个公开仓库,账户约 0 年
所用输入
followers0
owner_typeUser
is_verified
owner_loginbassprofressor-lab
public_repos4
account_age_days147
已排除计分(无数据或不适用):已验证域名。 其余权重已重新归一化。
评分方式
25/25已发布且可解析 — npm 上有 1 个软件包
35/35发布时效 — 最近一次发布于 8 天前
20/20版本历史 — 29 个已发布版本
20/20未被弃用 — 活跃,未被弃用或撤回
所用输入
packagesopenwolf-enhanced
ecosystemsnpm
any_deprecated
min_days_since_publish8

工程质量

基础的工程与文档实践是否到位?

72良好 · 占总体的 20%

工程实践

60中等
评分方式
24/24CI 工作流 — 4 个工作流
24/24存在测试
0/16Linter 配置
0/9.6Pre-commit 钩子
0/6.4.editorconfig
0/20OpenSSF Scorecard:CI-Tests — 无数据
所用输入
has_ci
has_tests
has_editorconfig
has_linter_config
has_precommit_config
已排除计分(无数据或不适用):OpenSSF Scorecard:CI-Tests。 其余权重已重新归一化。

文档

90优秀
评分方式
30/30README
25/25文档目录
15/15文档 / 主页站点 — https://www.krynexlabs.de/en/openwolf-enhanced
10/10仓库描述
10/10主题标签 — 8 个主题标签
0/10Wiki
所用输入
topicsagpl, ai, claude, claude-code, context-management, developer-tools, fork, token-optimization
has_wiki
homepagehttps://www.krynexlabs.de/en/openwolf-enhanced
has_readme
has_docs_dir
has_description

安全

可见的安全与供应链实践是否稳固,且不存在未解决的高风险司法辖区暴露?

38存在风险 · 占总体的 16%

安全态势

23危急
评分方式
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — branch protection not enabled on development/release branches
0/2.5CI-Tests — 无数据
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 0/30 approved changesets -- score normalized to 0
0.8/2.5Contributors — project has 1 contributing companies or organizations -- score normalized to 3
10/10Dangerous-Workflow — no dangerous workflow patterns detected
0/7.5Dependency-Update-Tool — no update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5许可证 — license file detected
0/7.5Maintained — project was created within the last 90 days. Please review its contents carefully
0/5Packaging — 无数据
0/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
0/5SAST — no SAST tool detected
0/5Security-Policy — security policy file not detected
0/7.5Signed-Releases — Project has not signed or included provenance with any releases.
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
1.5/7.5Vulnerabilities — 8 existing vulnerabilities detected
所用输入
sourceopenssf_scorecard
checks_evaluated16
scorecard_versionv5.5.0
checks_inconclusive2
scorecard_aggregate2.3
已排除计分(无数据或不适用):ci_tests, packaging。 其余权重已重新归一化。
评分方式
35/35直接依赖不含已知公告 — 没有直接依赖携带已知公告
25/25间接依赖不含已知公告 — 没有间接依赖携带已知公告
0/40没有长期未处理的公告 — 没有公告带有发布日期
所用输入
sourceosv
advisories0
affected_packages0
assessed_packages109
unassessed_packages0
affected_by_severitynone
direct_affected_packages0
已排除计分(无数据或不适用):没有长期未处理的公告。 其余权重已重新归一化。 比对的是 npm:openwolf-enhanced@1.20.4 的运行时依赖闭包——安装已发布的软件包时真正被拉取进来的内容——共 109 个软件包。 未对可达性进行分析。

AI 就绪度

该仓库在多大程度上具备与 AI 编码代理协同开发与维护的条件?这是一枚独立的实验性徽章——权重为 0.0,因此单独呈现,不影响总体健康评分。

56中等 · 占总体的 0%
评分方式
0/45代理指令 — 没有 CLAUDE.md / AGENTS.md / 编辑器规则
0/15机器可读文档(llms.txt)
37.9/40可读的提交历史 — 100 次人类提交中有 71 次说明了意图(结构化标题或解释性正文)
所用输入
has_llms_txt
legible_history_share0.71
agent_instruction_files
agent_instruction_max_bytes
评分方式
0/18一条命令的引导启动
22/22自动化测试
0/11Lint / 格式化配置
11/11静态类型检查 — tsconfig.json
10/10可复现环境 — lockfile
10/10已体现的代理实践 — 最近 100 次提交中有 39 次由代理编写或署名代理
0/8自动化维护 — 未观察到自动依赖更新
0/10OpenSSF Scorecard:Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
所用输入
has_nix
has_tests
lockfilespackage-lock.json, pnpm-lock.yaml
has_dockerfile
typed_language
bootstrap_files
has_devcontainer
has_linter_config
typecheck_configstsconfig.json
agent_commit_share0.39
toolchain_manifests
dependency_bot_commit_share0
评分方式
45/45可类型检查的代码 — TypeScript(静态类型)
53.9/55可控的文件大小 — 采样的 100 个源文件中有 2 个超过 60KB
所用输入
primary_languageTypeScript
largest_source_bytes77,006
source_files_sampled100
oversized_source_files2

关键数据

6GitHub 星标
1贡献者
103最近 12 个月提交数
8距最近推送天数
43发布版本数
1巴士系数(bus factor)
0开放议题
npm软件包生态系统数

数据采集警告

  • Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token
  • GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

更多细节

OpenSSF Scorecard 2.3 / 10
2.3综合

来自开源项目 OpenSSF Scorecard 的独立、工具无关的安全评估。每项检查奖励的是安全实践本身,而非特定供应商的工具。Scorecard 无法判定的检查项标记为 不适用,并从安全评分中剔除(绝不按零分计)。Scorecard v5.5.0 · 2026-07-30 12:07 UTC

10Binary-Artifactsno binaries found in the repo
0Branch-Protectionbranch protection not enabled on development/release branches
不适用CI-Testsno pull request found
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 0/30 approved changesets -- score normalized to 0
3Contributorsproject has 1 contributing companies or organizations -- score normalized to 3
10Dangerous-Workflowno dangerous workflow patterns detected
0Dependency-Update-Toolno update tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
0Maintainedproject was created within the last 90 days. Please review its contents carefully
不适用Packagingpackaging workflow not detected
0Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 0
0SASTno SAST tool detected
0Security-Policysecurity policy file not detected
0Signed-ReleasesProject has not signed or included provenance with any releases.
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
2Vulnerabilities8 existing vulnerabilities detected
直接依赖 6
注册表软件包版本约束清单文件
npmchokidar^5.0.0package.json
npmcommander^15.0.0package.json
npmexpress^5.2.1package.json
npmnode-cron^4.0.0package.json
npmopen^11.0.0package.json
npmws^8.21.0package.json
全部依赖 未采集

本报告未能采集到解析后的依赖集合:GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

依赖安全公告 0

安装 npm:openwolf-enhanced@1.20.4 会引入 109 个包(直接与传递):其中 0 个存在已知公告,0 个为直接依赖。

没有已知公告影响已评估的依赖。

公告表示依赖图中记录的版本落入某条公告的受影响范围。可达性未经分析,且依赖图包含开发与测试的版本固定——某项发现可能只涉及工具链而非交付的软件。

原始 JSON 报告 机器可读
{
  "data": {
    "repo": {
      "topics": [
        "agpl",
        "ai",
        "claude",
        "claude-code",
        "context-management",
        "developer-tools",
        "fork",
        "token-optimization"
      ],
      "is_fork": false,
      "size_kb": 11281,
      "has_wiki": false,
      "homepage": "https://www.krynexlabs.de/en/openwolf-enhanced",
      "languages": {
        "CSS": 2698,
        "HTML": 595,
        "JavaScript": 85825,
        "TypeScript": 631931
      },
      "pushed_at": "2026-07-21T18:22:13Z",
      "created_at": "2026-07-09T15:58:46Z",
      "owner_type": "User",
      "updated_at": "2026-07-21T18:22:59Z",
      "description": "Enhanced fork of OpenWolf — a token-conscious second brain for Claude Code, with bounded storage, self-maintenance (openwolf doctor), .wolfignore scoping, and tunable retention. AGPL-3.0.",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "AGPL-3.0",
      "default_branch": "main",
      "license_spdx_raw": "AGPL-3.0",
      "primary_language": "TypeScript",
      "significant_languages": [
        "TypeScript",
        "JavaScript"
      ]
    },
    "owner": {
      "blog": "https://www.krynexlabs.de",
      "name": "Krynex Labs",
      "type": "User",
      "login": "bassprofressor-lab",
      "company": "Krynex Labs",
      "location": "Germany",
      "followers": 0,
      "avatar_url": "https://avatars.githubusercontent.com/u/265652297?v=4",
      "created_at": "2026-03-04T21:52:58Z",
      "is_verified": null,
      "public_repos": 4,
      "account_age_days": 147
    },
    "license": {
      "state": "standard",
      "spdx_id": "AGPL-3.0",
      "raw_spdx": "AGPL-3.0",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v1.20.4",
          "kind": "patch",
          "published_at": "2026-07-21T18:22:55Z"
        },
        {
          "tag": "v1.20.3",
          "kind": "patch",
          "published_at": "2026-07-21T18:11:29Z"
        },
        {
          "tag": "v1.20.2",
          "kind": "patch",
          "published_at": "2026-07-21T17:27:11Z"
        },
        {
          "tag": "v1.20.1",
          "kind": "patch",
          "published_at": "2026-07-21T16:46:46Z"
        },
        {
          "tag": "v1.20.0",
          "kind": "minor",
          "published_at": "2026-07-21T16:22:12Z"
        },
        {
          "tag": "v1.19.3",
          "kind": "patch",
          "published_at": "2026-07-20T20:05:48Z"
        },
        {
          "tag": "v1.19.2",
          "kind": "patch",
          "published_at": "2026-07-20T08:30:05Z"
        },
        {
          "tag": "v1.19.1",
          "kind": "patch",
          "published_at": "2026-07-20T08:20:46Z"
        },
        {
          "tag": "v1.19.0",
          "kind": "minor",
          "published_at": "2026-07-19T08:29:46Z"
        },
        {
          "tag": "v1.18.2",
          "kind": "patch",
          "published_at": "2026-07-16T18:25:41Z"
        },
        {
          "tag": "v1.18.1",
          "kind": "patch",
          "published_at": "2026-07-16T17:49:57Z"
        },
        {
          "tag": "v1.18.0",
          "kind": "minor",
          "published_at": "2026-07-16T06:04:09Z"
        },
        {
          "tag": "v1.17.0",
          "kind": "minor",
          "published_at": "2026-07-16T05:19:18Z"
        },
        {
          "tag": "v1.16.5",
          "kind": "patch",
          "published_at": "2026-07-13T16:31:35Z"
        },
        {
          "tag": "v1.16.4",
          "kind": "patch",
          "published_at": "2026-07-13T16:28:10Z"
        },
        {
          "tag": "v1.16.3",
          "kind": "patch",
          "published_at": "2026-07-13T07:56:13Z"
        },
        {
          "tag": "v1.16.2",
          "kind": "patch",
          "published_at": "2026-07-13T06:25:24Z"
        },
        {
          "tag": "v1.16.1",
          "kind": "patch",
          "published_at": "2026-07-12T19:55:26Z"
        },
        {
          "tag": "v1.16.0",
          "kind": "minor",
          "published_at": "2026-07-11T18:16:47Z"
        },
        {
          "tag": "v1.15.1",
          "kind": "patch",
          "published_at": "2026-07-11T13:57:08Z"
        },
        {
          "tag": "v1.15.0",
          "kind": "minor",
          "published_at": "2026-07-11T13:34:06Z"
        },
        {
          "tag": "v1.14.0",
          "kind": "minor",
          "published_at": "2026-07-11T07:08:43Z"
        },
        {
          "tag": "v1.13.0",
          "kind": "minor",
          "published_at": "2026-07-10T21:23:27Z"
        },
        {
          "tag": "v1.12.1",
          "kind": "patch",
          "published_at": "2026-07-10T20:48:31Z"
        },
        {
          "tag": "v1.12.0",
          "kind": "minor",
          "published_at": "2026-07-10T20:28:07Z"
        },
        {
          "tag": "v1.11.0",
          "kind": "minor",
          "published_at": "2026-07-10T17:46:22Z"
        },
        {
          "tag": "v1.10.0",
          "kind": "minor",
          "published_at": "2026-07-10T17:12:01Z"
        },
        {
          "tag": "v1.9.4",
          "kind": "patch",
          "published_at": "2026-07-10T16:43:16Z"
        },
        {
          "tag": "v1.9.3",
          "kind": "patch",
          "published_at": "2026-07-10T16:43:15Z"
        },
        {
          "tag": "v1.9.2",
          "kind": "patch",
          "published_at": "2026-07-10T16:43:14Z"
        },
        {
          "tag": "v1.9.1",
          "kind": "patch",
          "published_at": "2026-07-10T16:43:13Z"
        },
        {
          "tag": "v1.9.0",
          "kind": "minor",
          "published_at": "2026-07-10T16:43:12Z"
        },
        {
          "tag": "v1.8.0",
          "kind": "minor",
          "published_at": "2026-07-10T16:43:11Z"
        },
        {
          "tag": "v1.7.0",
          "kind": "minor",
          "published_at": "2026-07-10T16:43:10Z"
        },
        {
          "tag": "v1.6.1",
          "kind": "patch",
          "published_at": "2026-07-10T16:43:10Z"
        },
        {
          "tag": "v1.6.0",
          "kind": "minor",
          "published_at": "2026-07-10T16:43:09Z"
        },
        {
          "tag": "v1.5.0",
          "kind": "minor",
          "published_at": "2026-07-10T16:43:08Z"
        },
        {
          "tag": "v1.4.0",
          "kind": "minor",
          "published_at": "2026-07-10T16:43:07Z"
        },
        {
          "tag": "v1.3.1",
          "kind": "patch",
          "published_at": "2026-07-10T16:43:06Z"
        },
        {
          "tag": "v1.3.0",
          "kind": "minor",
          "published_at": "2026-07-10T16:43:05Z"
        },
        {
          "tag": "v1.2.1",
          "kind": "patch",
          "published_at": "2026-07-10T16:43:04Z"
        },
        {
          "tag": "v1.2.0",
          "kind": "minor",
          "published_at": "2026-07-10T16:43:03Z"
        },
        {
          "tag": "v1.1.0",
          "kind": "minor",
          "published_at": "2026-07-10T16:43:02Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "0796037af7785dc92a734d518c8d1a861f365840",
          "body": "- post-bash: drop the stderr-only=failure heuristic (git checkout, curl -v\n  and friends write only to stderr and were counted as failed)\n- post-write: \"type-fix\" auto-bug only on an added `as`-assertion - the\n  `\": \"` branch fired on every new object property\n- post-write: operator detector tokeniz\n[…]\ned: nativeMemoryDir falls back to canonicalized slug matching, so\n  project paths with dots still find Claude's native Auto Memory\n\nSuite at 71.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "1.20.4: the six low-severity review leftovers",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-21T18:22:11Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "6204e76f18770b2b411c9e65a26306e1c00ad09f",
          "body": "Release commit for 36a1e9f (cron consolidation), e5fedea (watcher vs\nembedding index), fc80802 (buglog similarity + dead ledger writers),\nfffe9d3 (hook layer + gitignore-lite matcher).\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "1.20.3: eleven fixes from the full bug/performance/logic review",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-21T18:10:52Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "fffe9d316dd02ba4334567c53ff86d5de0693c22",
          "body": "…d counters; gitignore-lite matcher\n\nSeven review findings across the hook layer:\n\n- countSemanticEntries counted lines starting \"| YYYY-MM-DD\" - a format no\n  writer produces (rows start \"| HH:MM |\"), so it always returned 0 and the\n  \"no meaningful summary\" reminder fired in every session with 3+ \n[…]\nst\" previously matched nothing at all). doctor's footprint also\n  lists the recall-embeddings index files.\n\n4 new regression tests; suite at 70.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "hooks: fix the always-firing summary reminder, secret-path leak, blin…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-21T18:02:30Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "fc80802502ac1952148f7aa2fa190c2767443bbc",
          "body": "…riters\n\nfindSimilarBugs granted score 1.0 whenever one normalized message contained\nthe other - normalize() reduces a short or punctuation-only error_message\nto almost nothing, and \"\".includes matches everything, so logBug folded\nunrelated new bugs into such an entry as \"duplicates\". The contained \n[…]\noks/stop.ts\n(no lock, hardcoded caps instead of config retention, missing\nanatomy_misses/real_usage). The stop hook is the single ledger writer.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "buglog similarity: length-gate the substring rule; drop dead ledger w…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-21T17:59:42Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "e5fedeab58b4ab54587d138f7a72fe01ef1f9fe3",
          "body": "The watcher reads a changed .wolf file as UTF-8 and broadcasts the full\ncontent to every dashboard WebSocket client. recall-embeddings.vec (raw\nFloat32, ~70 MB on a large knowledge base) and recall-embeddings.json\n(~6.5 MB) were not in the ignore list, so every index build checkpoint -\none per 20 embedding batches - triggered a 70 MB read plus broadcast in\nthe daemon. Both are machine-local caches the dashboard has no use for.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "file-watcher: never read/broadcast the semantic recall index",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-21T17:59:42Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "36a1e9fca1ce4e06d6597b6b535490c4f72fca5d",
          "body": "… implementation\n\nThe engine carried its own copy of consolidateMemory that MISSED the\nidempotency guard the utils/maintenance version has: every daily run\nre-consolidated already-consolidated session blocks and, finding no table\nrows inside them, rewrote every count to \"(0 actions)\". In one live\nme\n[…]\n.\nSame build root, so the duplicate had no reason to exist - the action now\ncalls maintenance.consolidateMemory (guarded, locked, byte-checked).\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "cron-engine: delegate memory consolidation to the guarded maintenance…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-21T17:59:42Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "b7e2c3e590e7967351cd563a163e22f9015bf8d5",
          "body": "…e visibility, blind detector\n\nRelease commit for e0ea988 (cron-state locking), 6f6f9fc (readJSON\nmissing-vs-corrupt) and 2ce27b8 (no_read_tracking diagnostic).\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "1.20.2: the three deferred 2026-07-20 findings — locking, corrupt-fil…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-21T17:26:27Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "2ce27b8f1fb47a960614f1de456c9d3d6f5f4b6a",
          "body": "Every waste pattern feeds on read data recorded by the pre-read hook. If\nthat hook is not deployed or not firing, the detector goes silently blind:\n\"no waste found\" and \"no data at all\" were indistinguishable (the 1.19.1\nreport showed both patterns can sit unreachable for months without anyone\nnotic\n[…]\nd no reads anywhere in it)\nnow produce a no_read_tracking diagnostic flag pointing at\n`openwolf status` / `openwolf update`, instead of silence.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "waste detector: report when read tracking itself is dead",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-21T17:16:13Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "6f6f9fc81b9938105911d9dad965d2ef7e2d9175",
          "body": "…silent\n\nBoth copies (fs-safe and hooks/shared) folded \"file does not exist\" and\n\"file exists but does not parse\" into the same silent fallback. The first\nis a normal first-run condition; the second means real data is about to be\ntreated as empty - and every read-modify-write caller (cron-state, ses\n[…]\nefaults. Parse\nfailures on an existing file now print one [openwolf] line to stderr\nbefore returning the fallback. Return contract is unchanged.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "readJSON: a corrupt existing file is reported, only a missing one is …",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-21T17:13:44Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "e0ea98822e17d1b759400a7aff91b33c144c054e",
          "body": "The cron engine locked its execution_log appends, but five RMW sites in\nwolf-daemon (heartbeat, boot/switch/shutdown status, the retry_dead_letter\nWS handler) and the CLI's `cron retry` wrote the same file unlocked - a\nstale snapshot from any of them could clobber a freshly appended log\nentry, and t\n[…]\nState(patch) helper\n(lock, re-read, merge, write - always against the live wolfDir); the\nCLI wraps its dead-letter removal in the same withLock.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "cron-state: every read-modify-write goes under the shared lock",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-21T17:13:06Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "4083b619c62b0a0f41d2c6fc80d5341a0fe6a7cf",
          "body": "…hot, hot-switch state\n\nRelease commit for the 2026-07-20 review leftovers, each fixed in its own\npreceding commit: fs-safe error reporting (a921b02), cron-engine cerebrum\nguard (868f72b), PreCompact snapshot consumption (2e7bb2f), daemon\nswitchProject config + shutdown state (9254b3e).\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "1.20.1: four review fixes — silent writes, cerebrum guard, dead snaps…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-21T16:44:29Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "9254b3e1ef994cd9f9fc07af8b4f7fbf830f8756",
          "body": "…ive project\n\nTwo leftovers from the hot-switch feature (#4, bug 7):\n\n- switchProject swapped projectRoot/wolfDir but kept the BOOT project's\n  config, so the new project's cron.enabled was ignored - a project with\n  cron disabled got an engine anyway (and vice versa). The config is now\n  re-read on\n[…]\neft the\n  actually-stopping project \"running\" forever. The path is now derived\n  from the live wolfDir, matching what the heartbeat already did.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "daemon: switchProject reloads config; shutdown writes status to the l…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-21T16:42:12Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "2e7bb2f6725c19c5b96d5d2733c29143ed3dcd82",
          "body": "…a dead write\n\nprecompact.ts wrote _precompact-snapshot.json on every compaction and\nnothing anywhere read it - the post-compaction digest already pulls the\nfile list from the live _session.json. The snapshot's one piece of unique\ninformation is the compaction trigger, so the digest note now says wh\n[…]\nected: stale\nPreCompact entries in already-deployed settings would spawn a failing node\nprocess on every compaction (the bug-181 failure class).\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "session-start: consume the PreCompact snapshot instead of leaving it …",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-21T16:41:36Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "868f72b4584e418c3e3f0cac6c868150a911efb8",
          "body": "…ly split\n\nThe truncation guard passed new Set([\"cerebrum.md\"]) whenever ANY context\nfile produced more than one chunk - so a large memory.md alongside a small\ncerebrum.md blocked the (opt-in) cerebrum overwrite with a misleading\n\"cerebrum.md is larger than the context cap\" error. Fail-closed, so ne\n[…]\ng. The guard now receives the basenames of the files\nthat were genuinely split; cerebrum.md is only refused when cerebrum.md\nitself did not fit.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "cron-engine: cerebrum overwrite guard checks the file that was actual…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-21T16:41:14Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "a921b02b6520740afbe42c94f87c47e7a737a4a4",
          "body": "…ws rename\n\nwriteJSON/writeText (and the hooks/shared duplicate) caught every error on\nboth write paths and discarded it. That silence is how bug-183 stayed\ninvisible: the semantic-recall index failed to serialize on every run\n(JSON.stringify past V8's max string length) and the feature simply\nre-em\n[…]\net a boolean and users get a\ntrace. The inline tmp+rename in consolidateOldSessions (which did not\neven have a fallback) now uses the same core.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fs-safe: report failed writes instead of swallowing them; retry Windo…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-21T16:40:59Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "4be9c9044132ba439326d56145e817084a27ba12",
          "body": "…r index, RRF retuned\n\nThe --semantic/--hybrid feature path (endpoint, index, fusion, fallback) had\nnever run end-to-end; validating it against a real 22,795-unit knowledge base\nsurfaced two release blockers:\n\n1. The index never persisted. Vectors lived inside the pretty-printed index\n   JSON; at 22\n[…]\n\nWarm queries ~1.2 s. 3 new tests: index round-trip + cache + model-change\ninvalidation, partial-build resume, semantic ranking + hybrid fusion.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "1.20.0: semantic + hybrid recall, validated end-to-end — binary vecto…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-21T16:21:20Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "250bc842fe0a45419eccd47e4d2756c01970caf0",
          "body": "…file\n\nOwn regression from 1.19.1. That release made both of detectWaste's main\npatterns reachable for the first time (they were dead code before — see\n1.19.1's changelog entry) but didn't make them mutually exclusive. A file\nread multiple times AND described in anatomy.md got charged twice: Pattern\n[…]\nhat asserted the old (wrong) behavior is\ncorrected; a new test locks in the fix and was verified to fail against the\npre-fix code.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "1.19.3: waste detector no longer double-counts a repeated, described …",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-20T20:05:04Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "d72e2591c88267a64ac0ee2bf829cfc88b8c697a",
          "body": "Publishing is tokenless via Trusted Publishing (OIDC), so no npm credential\nexists on any machine — which meant `npm deprecate` was impossible without\nsomeone minting a personal token. That surfaced when 1.19.1 shipped broken\nand could not be flagged.\n\nThe job tries OIDC first and falls back to an N\n[…]\nchange is documented for publish; whether it\ncovers deprecate is not, so the first run settles it either way rather than\nguessing.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "ci: workflow to deprecate a published version without a local npm token",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-20T09:26:57Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "f0a37340a5aacf05d51c35a922c2213d8a0f3e2a",
          "body": "1.19.1 broke every hook in every project. shared.js gained an import of\ntoken-estimator.js, but copyHookScripts deploys from an enumerated\nHOOK_FILES list that never included it, so after `openwolf update` each\nhook died with ERR_MODULE_NOT_FOUND. Every hook imports shared.js, so\nnothing survived — \n[…]\nVerified by\nrestoring the old copy logic: the test goes red.\n\nAlso reorders CHANGELOG — 1.19.0 had been placed above [Unreleased].\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "1.19.2: deploy every compiled hook module, not a hardcoded list",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-20T08:29:26Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "f0a29eab229ec00fa03d38bf23039bfedd00ae34",
          "body": "…le waste detector\n\nSeven fixes, all from verifying an external code review against the actual\ncode and runtime data (of its 20 claims, 9 held, 6 partly, 5 did not).\n\nThe central one: three copies of the extension -> content-type table had\ndrifted apart, so the same file was estimated at up to three\n[…]\n semantic recall feature it belongs to stays unreleased until\nit has been validated end to end against a live embeddings endpoint.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "1.19.1: token accounting fixes — one classifier, live config, reachab…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-20T08:19:07Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "8a8c030eb1d3a6ac380f2ebfd43a97bc275b9ab1",
          "body": "… cerebrum backup, byte-safe context split, word-prefix recall\n\nVerified against source from a Nemotron-Ultra repo scan (false positives filtered):\n- withLock around compactLedger/consolidateMemory/dedupeAndCapBuglog/markPushed\n- writeCerebrumFromAi aborts overwrite if the backup write fails\n- split\n[…]\nContext hard-cut is byte-accurate (no split multi-byte chars)\n- recall BM25 uses word-prefix matching (port no longer hits report)\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "1.19.0: concurrency + data-safety fixes — lock maintenance ops, guard…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-19T08:30:00Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "a75ad71aed05b630e4c82c89d98f9fe4ae9fd99e",
          "body": "…r, measured-token chart, docs link\n\n- Daemon sends full_state to each newly-connected WS client, so the dashboard no longer shows stale\n  pre-restart data after a daemon restart.\n- \"Recent Activity\" now surfaces the newest entries (was showing the day's oldest on a long session).\n- \"Usage Over Time\n[…]\nal_usage tokens (estimate fallback), keyed on turn end time.\n- Dashboard \"Docs\" link points to this fork's repo, not openwolf.com.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "1.18.2: dashboard fixes — full_state on connect, recent-activity orde…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-16T18:25:03Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "19f3e2fd8da1c0da692e1cd71f80aad646a5312d",
          "body": "Every project shipped the same default ports (18791/18790), so running several daemons meant only\nthe first bound and a second project's dashboard opened the first project's data. Now: `openwolf\nupdate` gives each registered project a unique port pair (reassigning only collisions), `openwolf\ndashboa\n[…]\nred one is held by another\nproject's daemon, and the daemon honours OPENWOLF_DASHBOARD_PORT. Ported from upstream 2.0.1. 51 tests.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "1.18.1: unique dashboard/daemon ports per project (multi-project fix)",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-16T17:49:23Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "158c5b1cd146d0506f2872b8e5f85abb16530ca0",
          "body": "…red tokens, symbol-level anatomy\n\nPorted from cytostack/openwolf 2.0 (AGPL-3.0), adapted to this fork:\n- PreCompact hook + compaction-aware session-start: session state and resume digest survive a\n  context compaction instead of being reset/wiped.\n- Measured token usage: the Stop hook reads the har\n[…]\nbols). Our differentiators (recall, consolidate,\nlocal models, proposal mode, Wolfpack) remain unique — upstream never added them.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "1.18.0: port three upstream 2.0 upgrades — compaction survival, measu…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-16T06:03:36Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "346aae70ab3b246803ea147f7d72a1b92e276efc",
          "body": "…tes, + 4 verified bug fixes\n\nAdded: keyless local-model support (Ollama/llama.cpp/LM Studio) at every call site;\n`openwolf llm[ --test]` to show/probe the configured provider.\nChanged: AI cron tasks default to proposal mode (write to .wolf/proposals/, touch nothing\ncanonical); oversized context fil\n[…]\nd fired against a stopped daemon\n- concurrent cron tasks lost each other's execution logs (cron-state.json RMW now under withLock)\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "1.17.0: local models run keyless, AI cron proposes instead of overwri…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-16T05:18:27Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "8192d4a1e9ee3925ec9e2050fff57ec21cf32470",
          "body": "… about the team\n\n1.16.4 taught recall --team to speak up when the workspace came back empty. It only did so when the\nLOCAL files had hits: with nothing found anywhere, an earlier return printed a bare \"No matches\" and\nnever mentioned the remote.\n\nThat is the case where the ambiguity does the most d\n[…]\ne conclude the\nfeature is broken.\n\nBoth paths now report what happened, and the message stays quiet when --team was not asked for.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "1.16.5: finish the job — the empty-everywhere case still said nothing…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-13T16:30:56Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "f1214586912a3866aa79cfed25b492b5180344bb",
          "body": "An empty answer and an unasked question look identical on the terminal. Worse, the most likely reason\nfor an empty answer is one the user can fix the second they hear it: entries that are still waiting in\nthe approval queue do not appear in recall — so a workspace can hold three hundred entries and \n[…]\nreal workspace: 310 entries pushed, recall --team printed only local hits, and\nnothing indicated the remote had even been queried.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "1.16.4: recall --team was silent when the workspace had nothing to say",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-13T16:27:34Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "f52132693a833337c3e7d3c2cb56ff57f962b878",
          "body": "…eam)\n\nA project can now offer what it has learned to a shared workspace, and search that workspace\nalongside its own files. No endpoint is hardcoded — --url points at whichever server speaks the\nAPI, yours or someone else's.\n\nLocal-first has to survive this feature, so:\n\n- Opt-in and explicit. No b\n[…]\nid not create the\ngitignore (the guard has to exist the moment the secret does), and the fallback built `c-c-8f06e6`.\n41/41 tests.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "1.16.3: opt-in bridge to a remote workspace (link / push / recall --t…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-13T07:55:41Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "83aa3f21d1b948730eaa36931c7e1431a4792854",
          "body": "The other half of 1.16.1. post-write only ever runs on Write|Edit|MultiEdit, so a heredoc\n(cat > f <<EOF), a redirect, a sed -i or a cp never reach it. The Bash hook did exist, but\nit only wrote activity.log — and it bailed out immediately unless openwolf.capture.enabled,\nwhich is opt-in and off by \n[…]\nedited 3+ times\" buglog reminder still cannot attribute a shell\nedit to a file — that would need the path we are refusing to keep.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "1.16.2: edits made through the shell were never counted",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-13T06:24:37Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "3c72a90476fe853aabbd68f85a1e9ff398f3a887",
          "body": "…ctory\n\npost-write drops any path outside the project root so foreign paths cannot leak into\nanatomy/memory (#56) — but it also dropped the fact that a write had happened. So in a\nsession whose work lives in an additional working directory (Claude Code supports\nseveral), files_written stayed empty, \n[…]\nhe built hooks before and after: four writes into a sibling\ndirectory, STATUS.md untouched → silence before, both reminders after.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "1.16.1: the STATUS.md reminder was blind to work done in another dire…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-12T19:54:38Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "09c414f60b4f4cf33aa010188e3bfb9a9045e6d3",
          "body": "…s-project), Command Log dashboard panel\n\n- openwolf consolidate: LLM-merges near-duplicate cerebrum entries via the provider abstraction\n  (findDuplicateEntries → callLlm merge → cerebrum.md rewrite with backup); --dry-run/--threshold/--max,\n  non-overlapping pairs, implausible output skipped; pure\n[…]\nemoved\n- docs/SEO: README (en+de) reworked — works-with lead, contents nav, FAQ; broader npm keywords + new description\n- 37 tests\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "1.16.0: openwolf consolidate (LLM cerebrum dedup), recall --all (cros…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-11T18:16:00Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "9bfcf944f72f1c2bad5a138c60f09ec3f5656deb",
          "body": "…njection, wider secret redaction)\n\nAdversarial review of the 1.14/1.15 surfaces; no feature changes.\n- llm-provider: assertSafeBaseUrl (https except loopback; block private/link-local/metadata IPs);\n  cron-engine fetch redirect:\"error\" so the API key can't follow a 3xx to another host\n- agent-hooks\n[…]\n-u user:pass\n- post-bash: lock activity.log writes\n- 35 tests (new: injection inert, SSRF URLs blocked, redaction bypasses closed)\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "1.15.1: security hardening (SSRF/base_url validation, Codex command-i…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-11T13:56:23Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "5b05909e29b52564f5c45a34641cd21f606ce5e8",
          "body": "…i-agent hooks (Codex/Gemini/OpenCode), localized digest\n\n- cron AI tasks now speak any OpenAI-compatible endpoint (OpenAI/Groq/Cerebras/Mistral/Qwen/local) as well\n  as Anthropic, via openwolf.cron config (llm_provider/llm_base_url/llm_model/api_key_env); Anthropic default\n  unchanged. Verified end\n[…]\ne)\n- getWolfDir honors OPENWOLF_PROJECT_DIR so hooks resolve .wolf/ under any agent\n- 34 tests; README (en+de) + CHANGELOG updated\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "1.15.0: model-agnostic AI tasks (Anthropic + OpenAI-compatible), mult…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-11T13:33:09Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "38011de3fdd701d44c2e7dceffdd926d98b08760",
          "body": "…ct native-memory view, opt-in Bash capture\n\n- recall: stable content-addressed citation ids ([c-3f9a]) + two-layer expand (--full / --id);\n  BM25 ranking (rare-term IDF + length norm), substring matching preserved\n- openwolf.mcpb: one-click Claude Desktop Extension bundling the dependency-free MCP \n[…]\n in makeIgnoreMatcher (shared.ts + maintenance.ts) → grep-able again\n- 31 tests; README/OPENWOLF.md updated (incl. 7 hook scripts)\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "1.14.0: citations + BM25 recall, .mcpb Desktop Extension, cross-proje…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-11T07:06:48Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "39027043d7cc010bf1903b878ddf2f405c6a5050",
          "body": "…lf mcp for Claude Desktop\n\nAlso: README + German README synced (What's Enhanced native-memory row, recall/mcp commands,\nClaude Desktop MCP section). Releases the [Unreleased] set.",
          "is_bot": false,
          "headline": "1.13.0: native Auto Memory interop (recall/doctor/dashboard) + openwo…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T21:22:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e744f3fe69593671f3c9a26ac27d350d274f1f04",
          "body": "…h for Claude Desktop\n\nDependency-free JSON-RPC/stdio MCP server (src/mcp/server.ts) exposing three read-only\ntools so OpenWolf works in the Claude Desktop app + any MCP client, not just Claude Code.\nServes one project (--project/$OPENWOLF_PROJECT_DIR). README documents Desktop registration.\nhandleMcpMessage tested; stdio verified e2e (initialize/tools.list/tools.call on real data).\n24/24 tests. [Unreleased], not tagged.",
          "is_bot": false,
          "headline": "feat(mcp): openwolf mcp server (Phase 3) — recall/resume/memory-healt…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T21:19:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7e6f6370af6bbd2e8ed7f16956fe560530fa1be5",
          "body": "…ve Auto Memory\n\n- /api/native-memory (health + file list, read-only) and /api/native-memory/file\n  (path-validated: basename .md only, must exist, size-capped).\n- NativeMemory.tsx: index-coverage stats, cutoff/dead-link/stale warnings, searchable\n  file list with indexed/orphan badges + click-to-view modal. Sidebar + routing wired.\n- nativeMemoryFiles() in maintenance.ts (tested). Endpoints verified e2e (447 files,\n  353 orphan; traversal attempt -> 400). 23/23 tests. [Unreleased], not tagged.",
          "is_bot": false,
          "headline": "feat(dashboard): Native Memory panel (Phase 2) — browse Claude's nati…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T21:15:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "880a068b3b1d29783dacfa7fa30b20053c1e76d4",
          "body": "…+ resume digest)\n\nRead-only layer over ~/.claude/projects/<slug>/memory/:\n- nativeMemoryDir() resolver (slug = path with / -> -; env override; graceful null).\n- recall searches native topic files too, labelled native/<file>.\n- doctor: native-memory health (indexed vs orphaned vs 200-line cutoff, dead links, stale, footprint).\n- resume digest surfaces native memory in the Available-on-demand index.\nVerified on a real project (447 files, 353 unindexed). 22/22 tests. [Unreleased], not tagged.",
          "is_bot": false,
          "headline": "feat: interop with Claude native Auto Memory (recall + doctor health …",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T21:10:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4c806d6dec074b94aa7acf2378ac067bd09a440c",
          "body": "…t's Enhanced",
          "is_bot": false,
          "headline": "1.12.1: real version in dashboard sidebar; German README; compact Wha…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T20:47:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "adcc04145385306e627e4b01f58af37d81196b43",
          "body": "…op competitor references\n\nRemoves the claude-mem mention from the CHANGELOG 1.12.0 intro (ideas kept, name dropped).",
          "is_bot": false,
          "headline": "docs: add German README (docs/i18n/README.de.md) + language links; dr…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T20:45:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6100454897dbb5710018a33a6c44a48bb3ed6757",
          "body": "…dcoded v1.0.0)\n\nVite injects __APP_VERSION__ from package.json at build time.",
          "is_bot": false,
          "headline": "fix(dashboard): show the real package version in the sidebar (was har…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T20:45:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1ff8f91278da0bcba27d89d5330a14d4dd0f787a",
          "body": "…Commands & files\n\n- What's Enhanced: replace the four growing per-version bullet lists with one compact\n  thematic table (versions live in the CHANGELOG, not here).\n- Commands: add recall + export, group daemon/cron, note update flags.\n- What It Creates: add STATUS.md.\n- Verified Design QC / Requirements still accurate.",
          "is_bot": false,
          "headline": "docs(readme): compact What's Enhanced into a thematic table; refresh …",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T20:39:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "741cdcfbf20b527be455082a37bced68ce135301",
          "body": "Adds the Memory, search & multi-project section (recall, progressive-disclosure\ndigest, <private> exclusion, structured summaries, export, .wolfignore suggestions,\ndashboard routing/aggregate/jump-to-file); fixes the prior section's version range.",
          "is_bot": false,
          "headline": "docs(readme): document 1.11.0 + 1.12.0 in What's Enhanced",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T20:32:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0c86325ce1e6ce48dca65262b2d2cbb9e91ff0c7",
          "body": "…digest, structured summary scaffold\n\nBatched claude-mem-inspired features, zero-infra. Releases the [Unreleased] set.",
          "is_bot": false,
          "headline": "1.12.0: <private> exclusion, openwolf recall, progressive-disclosure …",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T20:27:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "23afaf9a3974e8fdd7cd03fd62f31803a993f1e3",
          "body": "…ed summary scaffold\n\nAdapted from a claude-mem review, kept zero-infra (no DB, no LLM worker):\n- recall(): keyword search over STATUS/cerebrum/memory/buglog -> compact file:line index.\n- buildResumeDigest: curated inline + token-cost hints, memory as one-line headline,\n  'Available on demand' index (counts + token cost + how to pull).\n- SessionStart writes a structured session-summary scaffold; OPENWOLF.md guides filling it.\n[Unreleased], not tagged. 17/17 tests.",
          "is_bot": false,
          "headline": "feat: openwolf recall, progressive-disclosure resume digest, structur…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T20:23:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6d86760cf7461f7146777c4d836efd262e7feee5",
          "body": "… All Projects view + jump-to-file\n\nReleases the batched v1.10-cycle features accumulated under [Unreleased].",
          "is_bot": false,
          "headline": "1.11.0: export CSV/JSON, .wolfignore suggestions, dashboard routing +…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T17:45:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c27cc12e2c1ebabde1cd155f900d84b6b56e1a1c",
          "body": "…ile insights\n\n- useHashRoute: #panel deep-linking + back/forward.\n- /api/aggregate + ProjectsAggregate panel: cross-project rollup (aggregateProjects/\n  projectSummary in maintenance.ts, tested), one-click switch.\n- AI Insights linkify file paths -> deep-link to Anatomy filtered to that file.\n[Unreleased], not tagged. /api/aggregate verified end-to-end against the 5 registered projects.",
          "is_bot": false,
          "headline": "feat(dashboard): hash routing, All Projects aggregate view, jump-to-f…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T17:42:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a604629e3fb3c7dc3d763a6e494d3c3471b961c9",
          "body": "Distinguishes real scanner load (scannable text-file count) from space/watch\nweight (bytes), so big-binary dirs the scanner already skips don't false-trigger.\nPure suggestIgnores() in maintenance.ts + test. [Unreleased], not tagged.",
          "is_bot": false,
          "headline": "feat(doctor): suggest .wolfignore entries for unignored noisy/large dirs",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T17:28:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f742eb4c7cb5613ab40fbd8a068597c8f0d1bdf3",
          "body": "Pure toCSV (RFC 4180) + collectRows helpers, 3 tests. CHANGELOG under [Unreleased]\n— batched for the next release, not tagged.",
          "is_bot": false,
          "headline": "feat(export): openwolf export <sessions|bugs> as JSON or CSV",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T17:22:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "afaa355a327e013837fc3441bc7f07333c241928",
          "body": "SessionStart injects a hard-capped digest (STATUS.md + cerebrum Do-Not-Repeat +\nlatest memory session) as additionalContext so the model resumes without spending\nreads. Skips unedited-template STATUS; config openwolf.session_context; stdout is\nreserved for the JSON so stderr reminders are unaffected. buildResumeDigest in\nshared.ts with 3 unit tests (11/11 pass).",
          "is_bot": false,
          "headline": "1.10.0: session-start resume context (bounded additionalContext digest)",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T17:11:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "16338447dc9c39c0065dbe413786a05a1ccc862b",
          "body": "…ked artifact on node 20\n\npnpm 11.1.3 crashes on node 20 (ERR_UNKNOWN_BUILTIN_MODULE), so a node-20 build\nleg is impossible and tests the wrong thing anyway. The honest guard for\nengines.node>=20 is: build once on 22, then install the packed tarball on node 20\nand run it — verified locally to pass.",
          "is_bot": false,
          "headline": "fix(ci): build/test on node 22 (pnpm 11 needs it), smoke-test the pac…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T17:01:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b97918e66f80fc73761b3707624957563d971d3a",
          "body": "…at setup-node with cache)",
          "is_bot": false,
          "headline": "fix(ci): drop pnpm cache, setup-node before pnpm (node-20 leg failed …",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T16:51:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1f9eb01b6d65f11786aca5850255cdb20bb67633",
          "body": "…est matrix\n\n- publish.yml: create a GitHub Release for each published tag, notes from CHANGELOG.\n- backfill-releases.yml: one-time idempotent backfill of releases for existing tags.\n- ci.yml: build + pnpm test on node 20 and 22 for every push/PR, guarding the\n  engines.node >=20 claim against accidental node-22-only code.",
          "is_bot": false,
          "headline": "ci: GitHub Releases (tokenless via GITHUB_TOKEN) + node 20/22 build-t…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T16:42:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5abfa5dd3414314cffa2ad76394373f3745b6842",
          "body": "…EBADENGINE on 22.14)",
          "is_bot": false,
          "headline": "fix(ci): pin npm@11 (npm@latest is now 12.x, needs node >=22.22.2 -> …",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T16:33:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ffbeaa86a2f416eccbbbb5458af4c31841dd3bf6",
          "body": "Without an explicit version, action-setup used the packageManager field via\ncorepack; with corepack enabled and packageManager=pnpm, corepack intercepts\nnpm too, so `npm install -g npm@latest` (and `npm publish`) failed. An explicit\nversion installs pnpm standalone, leaving npm untouched.",
          "is_bot": false,
          "headline": "fix(ci): pin pnpm/action-setup version to avoid corepack shimming npm",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T16:27:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f16f00c56204e587911e9282ecd74e960ad11a1b",
          "body": "First release published from CI: a v* tag push authenticates via GitHub OIDC\n(no NPM_TOKEN) and attaches provenance. Also pins packageManager pnpm@11.1.3.",
          "is_bot": false,
          "headline": "1.9.4: tokenless releases via npm Trusted Publishing (OIDC)",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T16:24:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3cb14e69c91d687b9646ceae6def508338e094f1",
          "body": "… in CI",
          "is_bot": false,
          "headline": "chore: pin packageManager (pnpm@11.1.3) so pnpm/action-setup resolves…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T16:17:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1ee6ae66447157d3ed7186d01f9c6f0b72dde9f3",
          "body": "Publishes on version-tag push using GitHub OIDC + provenance — no NPM_TOKEN\nsecret. Requires a Trusted Publisher configured on npmjs.com for this repo +\n.github/workflows/publish.yml. The one-shot bootstrap token used to create the\npackage on npm is revoked; all future releases run from CI.",
          "is_bot": false,
          "headline": "ci: tokenless npm publish via Trusted Publishing (OIDC)",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T16:16:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "21b19a45a87387bcdd7ac2870da5367f80f8f0b7",
          "body": "…nstead of building\n\nprepublishOnly ran pnpm build, whose prebuild deletes dist/ — the global\nopenwolf CLI symlinks into dist/bin/openwolf.js, so a failed build mid-publish\ntook the CLI down, and a mistimed publish could ship a stale dist/. Replaced\nwith scripts/prepublish-guard.mjs: refuses to publish unless dist/ is present,\nfresh, on a clean tree, and tagged. Building is now a separate deliberate step.\n\nREADME Quick Start leads with npm install; notes bare openwolf is upstream 1.0.4.",
          "is_bot": false,
          "headline": "1.9.3: publish to npm as openwolf-enhanced; prepublishOnly verifies i…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T15:45:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8e02fbb1f4ca9838f5cdf9e5f4b3c92b54117855",
          "body": "…artifact fixes\n\nThe 'What's Enhanced' section stopped at 1.9.0.",
          "is_bot": false,
          "headline": "docs(readme): document 1.9.1 backup retention and 1.9.2 seeding/hook-…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T15:30:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0296cb20dc0bbcfd2975c87a4c815d7adefdedda",
          "body": "Three findings surfaced while fixing 1.9.1's backup bloat.\n\n- `openwolf update` never created user-data files a project was missing.\n  \"Never overwrite\" was implemented as \"never touch\", so projects created\n  before STATUS.md existed (1.4.0) never got one -- while OPENWOLF.md tells\n  the agent to re\n[…]\narns that `prebuild` deletes dist/ (the global CLI symlinks into\nit) and that a rebuild deploys nothing without `openwolf update`.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "1.9.2: seed missing user-data files, unify hook deployment",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T05:31:36Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "c3ff851763b4999711abf942508b4604b69bcbe3",
          "body": "… write\n\n`openwolf update` copied token-ledger.json into every backup. The ledger is\ncapped by session count rather than bytes, so a mature project's ledger sits at\na few MB and each snapshot carried a full copy. Twelve updates in one afternoon\nleft 38 MB of backups in a 41 MB .wolf/, ~30 MB of it r\n[…]\nted\n  updates accumulated snapshots unless you happened to run doctor.\n\nBackups: 3.2 MB → 484 KB. orderflow/.wolf: 41 MB → 9.0 MB.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "1.9.1: backup retention — exclude token-ledger from backups, prune on…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-10T05:03:57Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "2298992c5048bdece392052a91c5feb3206e0fae",
          "body": "…currency, ledger locking, tests, file-watcher fix, dashboard quick wins)\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs(readme): document 1.6–1.9 enhancements in What's Enhanced (deps …",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-09T20:55:36Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "d06771894ffe8eb60c7072707072383d941fffb6",
          "body": "…box, doctor registry checks, theme-aware tooltips)\n\n- Dashboard: daemon-down warning banner with retry (useWolfData exposes retry()).\n- Design QC: thumbnail grid + full-size lightbox, served by new path-safe token-gated\n  route GET /api/designqc/capture/:file (dotfiles:allow — captures live under .\n[…]\nre route 200 image/png, path traversal rejected; doctor\nreports both healthy registry and injected collision. Build+8 tests green.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "1.9.0: dashboard & CLI quick wins (daemon-down banner, DesignQC light…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-09T20:51:48Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "a59e6f1d3f9b1cb7c2fa87ef3f369553586a83db",
          "body": "…gnore fix\n\nDev majors: TypeScript 5.9->7.0, Vite 6->8, @vitejs/plugin-react 4->6,\nrecharts 2->3, @types/node 22->26, @tailwindcss/vite 4.3.\nRuntime majors: chokidar 4->5, commander 12->15, node-cron 3->4,\nopen 10->11, puppeteer-core 24->25.\n\nFix: file-watcher 'ignored' never fired since the chokida\n[…]\n suite green; pnpm audit --prod: 0 vulns.\nClaude API header 2023-06-01 and model claude-haiku-4-5-20251001 reviewed: both current.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "1.8.0: dependency currency (dev + runtime majors) + latent chokidar i…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-09T19:57:21Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "9cc833e96e37384a7f64c4c397087f2fc5d39e34",
          "body": "…ts), harden /api/switch to registered projects only",
          "is_bot": false,
          "headline": "1.7.0: M1 file-locking for ledger RMW, test suite (node --test, 8 tes…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-09T19:27:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f0987dd4ff08086f1229b950bb38dc89c821ef44",
          "body": "…an), runViaApi 120s timeout, pnpm build works end-to-end",
          "is_bot": false,
          "headline": "1.6.1: security — ws 8.21 + express 5.2.1 + overrides (pnpm audit cle…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-09T19:11:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c6f3b76264c1d2df4214a554b520e2e2b4c31988",
          "body": "…reload), honest status indicators, Design QC on deployed URLs, AI-insights copy-prompt",
          "is_bot": false,
          "headline": "1.6.0: complete PR #4 — auth-aware project switcher (/api/switch hot-…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-09T18:47:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ce8ba456ffb9985b08aa1d9ad859058d1018c943",
          "body": "…I-via-API, cron execution log, token chart honesty, bin +x)",
          "is_bot": false,
          "headline": "1.5.0: adopt core of PR #4 dashboard fixes (Run Now via authed 202, A…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-09T18:27:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2bf5533b3f3f972eae3391651774ead214e56cfb",
          "body": "…th our reminder throttle/additionalContext",
          "is_bot": false,
          "headline": "1.4.0: adopt STATUS.md session handoff document (#40) — integrated wi…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-09T18:12:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a4c7269f20e8ce57990f281b0d9fa1e6d2e50492",
          "body": null,
          "is_bot": false,
          "headline": "README: point 'by Krynex Labs' badge to the krynexlabs.de project page",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-09T17:46:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fc474fd0174d72bab0f9fce46955a74972d74dc0",
          "body": "…or; set maintainer email to info@",
          "is_bot": false,
          "headline": "Add Krynex Labs website (krynexlabs.de) to README + package.json auth…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-09T17:20:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5be82aa9dfcaccdd629b6089075e8b8f818223f2",
          "body": "…under What's Enhanced",
          "is_bot": false,
          "headline": "README: document adopted upstream PRs (1.3.x) + .gitignore/#20 fixes …",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-09T17:15:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d922201e460af86d3bec5047759cf4595de71dfe",
          "body": "…turn nagging)",
          "is_bot": false,
          "headline": "1.3.1: throttle stop-hook reminders to once-per-session (no more per-…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-09T17:13:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cbb209a4946ccbfcab2f132a12e63c5e71bd7312",
          "body": "…), safeCopyFile WSL2/EFS (#33), _managedBy hook tag (#32), dart support (#10)",
          "is_bot": false,
          "headline": "1.3.0: adopt upstream PRs — stop reminders via additionalContext (#55…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-09T17:07:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "52f6a466da9d71fb7dde20dbcd3c9ff8f3bcb2b5",
          "body": "…d port collisions (#20)",
          "is_bot": false,
          "headline": "1.2.1: respect .gitignore (#15), stop findProjectRoot at $HOME + avoi…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-09T16:53:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f1da0fd008bde9dbb737896e61f8d4cd67cba298",
          "body": null,
          "is_bot": false,
          "headline": "README: document security & correctness hardening under What's Enhanced",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-09T16:45:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "13aa1b9405260f8dd870457309bf4df3a13624a6",
          "body": "…xecFile, CRLF, secret files, bug-search null-safety, re-read-after-modify, outside-root)",
          "is_bot": false,
          "headline": "1.2.0: adopt upstream security + correctness fixes (dashboard auth, e…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-09T16:40:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "55df7b8dd2c78aa5eee55d7b30ba09a09038c07d",
          "body": "…; keep upstream attribution",
          "is_bot": false,
          "headline": "Point functional links (issues, bug reports, GitHub, npm) to the fork…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-09T16:08:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "65295f848d8ad192d4fcabd71c4cc0183bfebc14",
          "body": "…, CHANGELOG, package metadata",
          "is_bot": false,
          "headline": "Rebrand to OpenWolf Enhanced 1.1.0: README, NOTICE (AGPL attribution)…",
          "author_name": "Krynex Labs",
          "author_login": null,
          "committed_at": "2026-07-09T15:57:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2a71819533b1bb3739e6a7b87a9eb68d1c392925",
          "body": "…er) + lossless migrate on write",
          "is_bot": false,
          "headline": "krynex.4: tolerate legacy bare-array buglog.json (readBugLog normaliz…",
          "author_name": "krynex",
          "author_login": null,
          "committed_at": "2026-07-09T15:39:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8609012080b780292c44951b9ba7d150a0d27ea0",
          "body": "…n config, status sizes, stop-hook auto-compact",
          "is_bot": false,
          "headline": "krynex.3: openwolf doctor, .wolfignore, config-merge update, retentio…",
          "author_name": "krynex",
          "author_login": null,
          "committed_at": "2026-07-09T15:30:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9354f9a3b395a99530696b0f190b11964f00b845",
          "body": "… auto-detection, skip no-op anatomy rewrites, ignore big files in daemon",
          "is_bot": false,
          "headline": "OpenWolf fork 1.0.4-krynex.1 — bound token-ledger/buglog growth, tame…",
          "author_name": "krynex",
          "author_login": null,
          "committed_at": "2026-07-09T14:43:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "81f64b079665b1b1c32d8653bedd899e49a58640",
          "body": null,
          "is_bot": false,
          "headline": "update 116",
          "author_name": "Dr. Farhan",
          "author_login": "doctorfarhan",
          "committed_at": "2026-03-20T19:49:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bea25f16f1f83137c9032cf37d3b175e7fb7e7bc",
          "body": null,
          "is_bot": false,
          "headline": "update 115",
          "author_name": "Dr. Farhan",
          "author_login": "doctorfarhan",
          "committed_at": "2026-03-20T19:44:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e60bdeb8ce402003162d8bb0b7231187678ede11",
          "body": null,
          "is_bot": false,
          "headline": "update 114",
          "author_name": "Dr. Farhan",
          "author_login": "doctorfarhan",
          "committed_at": "2026-03-20T19:23:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a4de14e6859585a2f9599cb95204682862a31ff0",
          "body": null,
          "is_bot": false,
          "headline": "update 113",
          "author_name": "Dr. Farhan",
          "author_login": "doctorfarhan",
          "committed_at": "2026-03-20T19:13:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7e7016410dcf6aa66e24837c9c485d1157b311ad",
          "body": null,
          "is_bot": false,
          "headline": "1.0.4",
          "author_name": "Dr. Farhan",
          "author_login": "doctorfarhan",
          "committed_at": "2026-03-19T22:53:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e1f9f0a5af799a116aa4d1eef0607af2f4077a09",
          "body": "… statement",
          "is_bot": false,
          "headline": "Add Why OpenWolf section, update SEO meta tags, update README problem…",
          "author_name": "Dr. Farhan",
          "author_login": "doctorfarhan",
          "committed_at": "2026-03-19T22:52:58Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f68bc7dbab52d820146e5bd5a368a4522602cf19",
          "body": null,
          "is_bot": false,
          "headline": "1.0.3",
          "author_name": "Dr. Farhan",
          "author_login": "doctorfarhan",
          "committed_at": "2026-03-19T22:36:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5c9592d5a9d5e67fd1e2f553edc1309f63bb0138",
          "body": null,
          "is_bot": false,
          "headline": "Update author name in footer",
          "author_name": "Dr. Farhan",
          "author_login": "doctorfarhan",
          "committed_at": "2026-03-19T22:34:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "72a800742882dc0a459da199ac59125da3e0e95f",
          "body": null,
          "is_bot": false,
          "headline": "Remove all em dashes from docs site, fix og:description",
          "author_name": "Dr. Farhan",
          "author_login": "doctorfarhan",
          "committed_at": "2026-03-19T22:29:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f9e1533362c0f8c1b470ad7abf063dcf8b1f8d33",
          "body": "…alls",
          "is_bot": false,
          "headline": "Update hero copy, remove badge, rename Zero Extra AI Cost to No API C…",
          "author_name": "Dr. Farhan",
          "author_login": "doctorfarhan",
          "committed_at": "2026-03-19T22:23:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "942323e1ad7c7e50ed8fe5dd5cce8e2b35f77c24",
          "body": null,
          "is_bot": false,
          "headline": "Tint wolf logo SVG to match green accent",
          "author_name": "Dr. Farhan",
          "author_login": "doctorfarhan",
          "committed_at": "2026-03-19T22:10:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "56b925f119d15bf7eaece07aa9108cd3d608f0b6",
          "body": null,
          "is_bot": false,
          "headline": "Fix description alignment, add author credit to footer",
          "author_name": "Dr. Farhan",
          "author_login": "doctorfarhan",
          "committed_at": "2026-03-19T22:04:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9485a5dbb576e7f6cdcde7fcd79213ed3a1d5fa0",
          "body": "…oter",
          "is_bot": false,
          "headline": "Fix button contrast, alignment, duplicate footer — add proper site fo…",
          "author_name": "Dr. Farhan",
          "author_login": "doctorfarhan",
          "committed_at": "2026-03-19T21:59:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b7a171f36f718f1d47d972ee055ac91061f1a178",
          "body": "…, no DaisyUI",
          "is_bot": false,
          "headline": "Rebuild landing page design — proper dark/light mode, better contrast…",
          "author_name": "Dr. Farhan",
          "author_login": "doctorfarhan",
          "committed_at": "2026-03-19T21:49:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bd7a940166fa4ec457e4de26d0466b5a94d6842d",
          "body": null,
          "is_bot": false,
          "headline": "Add docs, GitHub Pages workflow, fix dashboard docs link",
          "author_name": "Dr. Farhan",
          "author_login": "doctorfarhan",
          "committed_at": "2026-03-19T21:19:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3f3f7afe739129bf4d65133a8b419942bbdc875c",
          "body": null,
          "is_bot": false,
          "headline": "1.0.2",
          "author_name": "Dr. Farhan",
          "author_login": "doctorfarhan",
          "committed_at": "2026-03-19T20:37:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "15b77c55373fb4765d339620b543f6500cb97b20",
          "body": null,
          "is_bot": false,
          "headline": "Remove unused glob dependency",
          "author_name": "Dr. Farhan",
          "author_login": "doctorfarhan",
          "committed_at": "2026-03-19T20:37:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 43,
      "commits_last_year": 103,
      "latest_release_at": "2026-07-21T18:22:55Z",
      "latest_release_tag": "v1.20.4",
      "releases_from_tags": false,
      "days_since_last_push": 8,
      "active_weeks_last_year": 4,
      "days_since_latest_release": 8,
      "mean_days_between_releases": 0.6
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": true,
      "health_percentage": 71,
      "has_issue_template": false,
      "has_code_of_conduct": true,
      "has_pull_request_template": false
    },
    "ecosystem": {
      "packages": [
        {
          "name": "openwolf-enhanced",
          "exists": true,
          "license": "AGPL-3.0-only",
          "keywords": [
            "claude",
            "claude-code",
            "claude-desktop",
            "codex",
            "gemini",
            "opencode",
            "mcp",
            "ai",
            "ai-memory",
            "memory",
            "context",
            "context-management",
            "token",
            "hooks",
            "cli",
            "developer-tools",
            "llm",
            "coding-agent",
            "agent",
            "openwolf"
          ],
          "ecosystem": "npm",
          "matches_repo": true,
          "registry_url": "https://www.npmjs.com/package/openwolf-enhanced",
          "is_deprecated": false,
          "latest_version": "1.20.4",
          "repository_url": "https://github.com/bassprofressor-lab/openwolf-enhanced",
          "versions_count": 29,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": 1,
          "monthly_downloads": 5230,
          "first_published_at": "2026-07-10T16:16:00.683000Z",
          "latest_published_at": "2026-07-21T18:22:50.083000Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 8
        }
      ]
    },
    "popularity": {
      "forks": 0,
      "stars": 6,
      "watchers": 0,
      "fork_history": {
        "days": [],
        "complete": true,
        "collected": 0,
        "total_forks": 0
      },
      "star_history": null,
      "open_issues_and_prs": 0
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [],
      "has_llms_txt": false,
      "has_dockerfile": false,
      "has_mcp_signal": false,
      "bootstrap_files": [],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [
        "tsconfig.json"
      ],
      "toolchain_manifests": [],
      "largest_source_bytes": 77006,
      "source_files_sampled": 100,
      "oversized_source_files": 2,
      "agent_instruction_files": [],
      "agent_instruction_max_bytes": null
    },
    "dependencies": {
      "manifests": [
        "docs/package.json",
        "package.json"
      ],
      "advisories": {
        "error": null,
        "scope": "published_package",
        "source": "osv",
        "findings": [],
        "collected": true,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 109,
        "malicious_count": 0,
        "assessed_package": "npm:openwolf-enhanced@1.20.4",
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "npm"
      ],
      "dependencies": [
        {
          "name": "chokidar",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^5.0.0"
        },
        {
          "name": "commander",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^15.0.0"
        },
        {
          "name": "express",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^5.2.1"
        },
        {
          "name": "node-cron",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.0.0"
        },
        {
          "name": "open",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^11.0.0"
        },
        {
          "name": "ws",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^8.21.0"
        }
      ],
      "all_dependencies": {
        "error": "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
        "source": null,
        "packages": [],
        "collected": false,
        "truncated": false,
        "total_count": null,
        "direct_count": null,
        "indirect_count": null
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 0,
        "merged_prs": 0,
        "open_issues": 0,
        "closed_ratio": null,
        "closed_issues": 0,
        "closed_unmerged_prs": 0
      },
      "bus_factor": 1,
      "bot_contributors": 0,
      "top_contributors": [
        {
          "type": "User",
          "login": "doctorfarhan",
          "commits": 20,
          "avatar_url": "https://avatars.githubusercontent.com/u/217878184?v=4"
        }
      ],
      "contributors_sampled": 1,
      "top_contributor_share": 1
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "backfill-releases.yml",
        "ci.yml",
        "deprecate.yml",
        "publish.yml"
      ],
      "has_docs_dir": true,
      "linter_configs": [],
      "has_editorconfig": false,
      "has_linter_config": false,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [
        "package-lock.json",
        "pnpm-lock.yaml"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 0,
            "reason": "branch protection not enabled on development/release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": null,
            "reason": "no pull request found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 0/30 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 3,
            "reason": "project has 1 contributing companies or organizations -- score normalized to 3",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 0,
            "reason": "no update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 0,
            "reason": "project was created within the last 90 days. Please review its contents carefully",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": null,
            "reason": "packaging workflow not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 0,
            "reason": "dependency not pinned by hash detected -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "no SAST tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 0,
            "reason": "security policy file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": 0,
            "reason": "Project has not signed or included provenance with any releases.",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 2,
            "reason": "8 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "0796037af7785dc92a734d518c8d1a861f365840",
        "ran_at": "2026-07-30T12:07:31Z",
        "aggregate_score": 2.3,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": false
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-21T18:22:52Z",
      "oldest_open_prs": [],
      "last_merged_pr_at": null,
      "ci_last_conclusion": "SUCCESS",
      "oldest_open_issues": []
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/bassprofressor-lab/openwolf-enhanced",
    "host": "github.com",
    "name": "openwolf-enhanced",
    "owner": "bassprofressor-lab"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 51,
      "inputs": {
        "security": 38,
        "vitality": 66,
        "community": 50,
        "governance": 29,
        "engineering": 72
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "moderate",
        "name": "Vitality",
        "value": 66,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "moderate",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 50,
            "inputs": {
              "commits_last_year": 103,
              "human_commit_share": 1,
              "days_since_last_push": 8,
              "active_weeks_last_year": 4
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 8 days ago",
                "points": 28.8,
                "status": "partial",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 8
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "4/52 weeks with commits",
                "points": 2.8,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 4
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "103 commits in the last year",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 103
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "project was created within the last 90 days. Please review its contents carefully",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "releases_count": 43,
              "latest_release_tag": "v1.20.4",
              "releases_from_tags": false,
              "days_since_latest_release": 8,
              "mean_days_between_releases": 0.6
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "43 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 43
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 8 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 8
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~0.6 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 0.6
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "unverified",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": "repository_too_young",
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": null,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "maintenance record not established from the collected data",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_unverified",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "moderate",
        "name": "Community & Adoption",
        "value": 50,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "critical",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 11,
            "inputs": {
              "forks": 0,
              "stars": 6,
              "watchers": 0,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "6 stars",
                "points": 11.3,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 6
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "0 forks",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "0 watchers",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "excellent",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": true,
              "has_issue_template": false,
              "has_code_of_conduct": true,
              "has_pull_request_template": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (AGPL-3.0)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "AGPL-3.0"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 18,
                "status": "met",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 13.5,
                "status": "met",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.3
              }
            ]
          },
          {
            "key": "ecosystem_adoption",
            "band": "moderate",
            "name": "Ecosystem adoption (downloads)",
            "note": "Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "registry_dependents"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 62,
            "inputs": {
              "packages": [
                "openwolf-enhanced"
              ],
              "dependents": null,
              "ecosystems": "npm",
              "total_downloads": null,
              "monthly_downloads": 5230
            },
            "components": [
              {
                "key": "monthly_downloads",
                "name": "Monthly downloads",
                "detail": "5,230 downloads/month across npm",
                "points": 49.6,
                "status": "partial",
                "details": [
                  {
                    "code": "downloads_monthly",
                    "params": {
                      "count": 5230,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 80
              },
              {
                "key": "registry_dependents",
                "name": "Registry dependents",
                "detail": "not reported by this ecosystem",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_reported_by_this_ecosystem",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "critical",
        "name": "Sustainability & Governance",
        "value": 29,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "critical",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 13,
            "inputs": {
              "bus_factor": 1,
              "contributors_sampled": 1,
              "top_contributor_share": 1
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "1 contributor(s) cover half of all commits",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 100% of commits",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 100
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "1 contributors",
                "points": 1.4,
                "status": "partial",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 1 contributing companies or organizations -- score normalized to 3",
                "points": 3,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "critical",
            "name": "Issue & PR responsiveness",
            "note": "Excluded from scoring (no data or not applicable): Issue resolution, PR acceptance. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "issue_resolution",
                    "pr_acceptance"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 1,
            "inputs": {
              "merged_prs": 0,
              "open_issues": 0,
              "closed_issues": 0,
              "issue_closed_ratio": null,
              "closed_unmerged_prs": 0
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "no issues or no data",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_issues_or_data",
                    "params": {}
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "no decided pull requests or no data",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_decided_prs_or_data",
                    "params": {}
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "critical",
            "name": "Ownership & stewardship",
            "note": "Excluded from scoring (no data or not applicable): Verified domain. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "verified_domain"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 20,
            "inputs": {
              "followers": 0,
              "owner_type": "User",
              "is_verified": null,
              "owner_login": "bassprofressor-lab",
              "public_repos": 4,
              "account_age_days": 147
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "personal (user) account",
                "points": 10,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_personal",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": "not applicable to user accounts",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_applicable_to_user_accounts",
                    "params": {}
                  }
                ],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "0 followers of bassprofressor-lab",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 0,
                      "login": "bassprofressor-lab"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "4 public repos, account ~0 yr old",
                "points": 5.9,
                "status": "partial",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 4
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 0
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "excellent",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "openwolf-enhanced"
              ],
              "ecosystems": "npm",
              "any_deprecated": false,
              "min_days_since_publish": 8
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on npm",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 8 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 8
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "29 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 29
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "good",
        "name": "Engineering Quality",
        "value": 72,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "moderate",
            "name": "Engineering practices",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: CI-Tests. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_ci_tests"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 60,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": false,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "4 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 4
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "no pull request found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "excellent",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "topics": [
                "agpl",
                "ai",
                "claude",
                "claude-code",
                "context-management",
                "developer-tools",
                "fork",
                "token-optimization"
              ],
              "has_wiki": false,
              "homepage": "https://www.krynexlabs.de/en/openwolf-enhanced",
              "has_readme": true,
              "has_docs_dir": true,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": "https://www.krynexlabs.de/en/openwolf-enhanced",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": "8 topics",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "topics_count",
                    "params": {
                      "count": 8
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "at_risk",
        "name": "Security",
        "value": 38,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "critical",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): CI-Tests, Packaging. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "ci_tests",
                    "packaging"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 23,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 16,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 2,
              "scorecard_aggregate": 2.3
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection not enabled on development/release branches",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "no pull request found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 1 contributing companies or organizations -- score normalized to 3",
                "points": 0.8,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "no update tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "project was created within the last 90 days. Please review its contents carefully",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow not detected",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "no SAST tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "8 existing vulnerabilities detected",
                "points": 1.5,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "dependency_advisories",
            "band": "excellent",
            "name": "Dependency advisories",
            "note": "Excluded from scoring (no data or not applicable): No advisories left outstanding. Remaining weights renormalized. Matched the npm:openwolf-enhanced@1.20.4 runtime dependency closure — what installing the published package pulls in — 109 packages. Reachability is not analyzed.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "no_advisories_left_outstanding"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              },
              {
                "code": "advisories_scope_published",
                "params": {
                  "package": "npm:openwolf-enhanced@1.20.4",
                  "assessed": 109
                }
              },
              {
                "code": "advisories_reachability",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "source": "osv",
              "advisories": 0,
              "affected_packages": 0,
              "assessed_packages": 109,
              "unassessed_packages": 0,
              "affected_by_severity": "none",
              "direct_affected_packages": 0
            },
            "components": [
              {
                "key": "direct_dependencies_free_of_known_advisories",
                "name": "Direct dependencies free of known advisories",
                "detail": "no direct dependency carries a known advisory",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "no_direct_advisories",
                    "params": {}
                  }
                ],
                "max_points": 35
              },
              {
                "key": "indirect_dependencies_free_of_known_advisories",
                "name": "Indirect dependencies free of known advisories",
                "detail": "no indirect dependency carries a known advisory",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "no_indirect_advisories",
                    "params": {}
                  }
                ],
                "max_points": 25
              },
              {
                "key": "no_advisories_left_outstanding",
                "name": "No advisories left outstanding",
                "detail": "no advisory carries a publication date",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_no_publication_date",
                    "params": {}
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "malicious_dependencies",
            "band": "excellent",
            "name": "Malicious dependencies",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "source": "osv",
              "meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
              "packages": [],
              "red_flag": false,
              "assessed_packages": 109,
              "malicious_packages": 0,
              "direct_malicious_packages": 0,
              "withdrawn_malicious_packages": 0,
              "installable_malicious_packages": 0
            },
            "components": [
              {
                "key": "no_dependency_reported_as_a_malicious_package",
                "name": "No dependency reported as a malicious package",
                "detail": "no dependency is reported as a malicious package",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "no_malicious_dependencies",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 1
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "moderate",
        "name": "AI Readiness",
        "value": 56,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "at_risk",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 38,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.71,
              "agent_instruction_files": [],
              "agent_instruction_max_bytes": null
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "no CLAUDE.md / AGENTS.md / editor rules",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_instructions",
                    "params": {}
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "71 of 100 human commits state their intent (structured subject or explanatory body)",
                "points": 37.9,
                "status": "partial",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 71,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "moderate",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 53,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [
                "package-lock.json",
                "pnpm-lock.yaml"
              ],
              "has_dockerfile": false,
              "typed_language": true,
              "bootstrap_files": [],
              "has_devcontainer": false,
              "has_linter_config": false,
              "typecheck_configs": [
                "tsconfig.json"
              ],
              "agent_commit_share": 0.39,
              "toolchain_manifests": [],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "tsconfig.json",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "tsconfig.json"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "39 of the last 100 commits agent-authored or agent-credited",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "agent_authored_commits",
                    "params": {
                      "count": 39,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "no automated dependency updates observed",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_dependency_automation",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 99,
            "inputs": {
              "primary_language": "TypeScript",
              "largest_source_bytes": 77006,
              "source_files_sampled": 100,
              "oversized_source_files": 2
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "TypeScript (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "TypeScript"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "2/100 source files over 60KB",
                "points": 53.9,
                "status": "partial",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 100,
                      "oversized": 2
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token",
    "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-30T12:07:36.072983Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/b/bassprofressor-lab/openwolf-enhanced.svg",
  "full_name": "bassprofressor-lab/openwolf-enhanced",
  "license_state": "standard",
  "license_spdx": "AGPL-3.0"
}

评分是信号,而非担保。 评分反映的是 GitHub 上公开可见的实践——不是代码审计,也不是安全保证。

缺失数据将被剔除并重新归一化权重,绝不按零分计。方法论已版本化并公开:指标 v1.13.0、模式 v0.27.0—— 完整方法论 · 指标知识库.

单项结果在整体记录中的位置: 汇总统计npm.