公开记录
软件健康报告模式 0.26.0 · 指标 1.13.0 · 2026-07-22 03:02 UTC

dexloom / vibe-kanban-indie

Get 10X more out of Claude Code, Codex or any coding agent

Rust · TypeScriptApache-2.0★ 42 星标⑂ 4 复刻始于 2026年5月复刻在 GitHub 上查看 ↗

dexloom/vibe-kanban-indie 的健康指数为 100 分中的 59 分,处于「中等」区间。 其得分最高的类别是Vitality(89/100),最低的是Security(28/100)。 最近一次更新在 2 天前。 近期的大部分工作由 2 位贡献者完成。

59
总分 / 100
中等

软件健康指数

指标归入加权类别,统一采用 1–100 量表。总体分先取类别加权平均;当公开证据触发高风险司法辖区政策时,评级会按政策调整,并设置 49(有风险)的上限。AI 就绪度不计入总体分。

59
优秀85-100堪称典范;基本满足所有检验标准
良好70-84健康;仅有轻微不足
中等50-69可接受,但存在明显不足;建议进行审查
存在风险30-49存在重大薄弱环节;采用时应保持审慎
危急1-29问题严重(项目被弃置、仅有单一维护者、缺乏基本工程规范)
活力社区与采用可持续性与治理工程质量安全AI 就绪度

评分画像

每条轴代表一个类别。形状比平均值更重要——健康的对象会填满整个图形,而“一峰一谷”式画像意味着某一维度的优势正掩盖另一维度的风险。

所有权

dexloom个人账户
68 关注者14 个公开仓库始于 2023年9月

该仓库由个人账户拥有。相较于组织支持的项目,单一所有者项目的延续性风险更高。

软件包生态系统

注册表软件包版本月下载量版本数最近发布
npmvibe-kanban-indie0.2.232,670254 天前

按类别列示的指标

活力

项目是否仍有生命——是否仍在编写代码,是否仍在发布版本?

89优秀 · 占总体的 22%
评分方式
36/36推送新近度 — 最近一次推送于 2 天前
33.9/36提交节奏 — 52 周中有 49 周有提交
18/18提交量 — 最近一年 1,754 次提交
0/10OpenSSF Scorecard:Maintained — project was created within the last 90 days. Please review its contents carefully
所用输入
commits_last_year1,754
human_commit_share1
days_since_last_push2
active_weeks_last_year49

发布纪律

90优秀
评分方式
27/27有发布版本 — 已发布 26 个发布版本
36/36发布时效 — 最近一次发布版本于 4 天前
27/27发布节奏 — 约每 0.7 天发布一次
0/10OpenSSF Scorecard:Signed-Releases — Project has not signed or included provenance with any releases.
所用输入
releases_count26
latest_release_tagv0.2.23
releases_from_tags
days_since_latest_release4
mean_days_between_releases0.7

社区与采用

项目是否拥有用户、下载量与关注度,并具备欢迎贡献者参与的配置?

35存在风险 · 占总体的 18%

流行度与采用

30存在风险
评分方式
26.2/60星标 — 42 个星标
4/25复刻 — 4 个复刻
0/15关注者 — 2 位关注者
所用输入
forks4
stars42
watchers2
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonbelow_threshold

社区健康

25危急
评分方式
0/22.5README
22.5/22.5许可证 — 可识别的许可证(Apache-2.0)
0/18CONTRIBUTING 指南
0/13.5行为准则
0/7.2议题模板
0/6.3PR 模板
所用输入
has_readme
has_license
has_contributing
has_issue_template
has_code_of_conduct
has_pull_request_template
评分方式
45.7/80月度下载量 — npm 合计每月 2,670 次下载
0/20注册表被依赖数 — 该生态系统不报告此项
所用输入
packagesvibe-kanban-indie
dependents
ecosystemsnpm
total_downloads
monthly_downloads2,670
已排除计分(无数据或不适用):注册表被依赖数。 其余权重已重新归一化。

可持续性与治理

项目能否在其成员之外延续——巴士系数、响应能力、由谁支持,以及软件包的维护状况?

66中等 · 占总体的 24%
评分方式
25.2/54巴士系数 — 2 位贡献者贡献了半数提交
12.9/22.5提交分布 — 头号贡献者编写了 43% 的提交
13.5/13.5贡献者广度 — 62 位贡献者
10/10OpenSSF Scorecard:Contributors — project has 7 contributing companies or organizations
所用输入
bus_factor2
contributors_sampled62
top_contributor_share0.426
评分方式
0/46.8议题解决 — 没有议题或无数据
33.5/38.3PR 接受 — 已裁定的 PR 中 7/8 已合并
0/15OpenSSF Scorecard:Code-Review — Found 0/30 approved changesets -- score normalized to 0
所用输入
merged_prs7
open_issues0
closed_issues0
issue_closed_ratio
closed_unmerged_prs1
已排除计分(无数据或不适用):议题解决。 其余权重已重新归一化。
评分方式
10/30所有权背书 — 个人(用户)账户
0/20已验证域名 — 不适用于个人账户
13.2/25所有者影响力 — dexloom 有 68 位关注者
14.3/25既往记录 — 14 个公开仓库,账户约 2 年
所用输入
followers68
owner_typeUser
is_verified
owner_logindexloom
public_repos14
account_age_days1,051
已排除计分(无数据或不适用):已验证域名。 其余权重已重新归一化。
评分方式
25/25已发布且可解析 — npm 上有 1 个软件包
35/35发布时效 — 最近一次发布于 4 天前
20/20版本历史 — 25 个已发布版本
20/20未被弃用 — 活跃,未被弃用或撤回
所用输入
packagesvibe-kanban-indie
ecosystemsnpm
any_deprecated
min_days_since_publish4

工程质量

基础的工程与文档实践是否到位?

64中等 · 占总体的 20%

工程实践

80良好
评分方式
24/24CI 工作流 — 3 个工作流
24/24存在测试
16/16Linter 配置 — .eslintrc.cjs
0/9.6Pre-commit 钩子
0/6.4.editorconfig
0/20OpenSSF Scorecard:CI-Tests — 无数据
所用输入
has_ci
has_tests
has_editorconfig
has_linter_config
has_precommit_config
已排除计分(无数据或不适用):OpenSSF Scorecard:CI-Tests。 其余权重已重新归一化。

文档

40存在风险
评分方式
0/30README
25/25文档目录
15/15文档 / 主页站点 — https://www.vibekanban.com/
0/10仓库描述
0/10主题标签
0/10Wiki
所用输入
topics
has_wiki
homepagehttps://www.vibekanban.com/
has_readme
has_docs_dir
has_description

安全

可见的安全与供应链实践是否稳固,且不存在未解决的高风险司法辖区暴露?

28危急 · 占总体的 16%

安全态势

28危急
评分方式
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — branch protection not enabled on development/release branches
0/2.5CI-Tests — 无数据
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 0/30 approved changesets -- score normalized to 0
2.5/2.5Contributors — project has 7 contributing companies or organizations
10/10Dangerous-Workflow — no dangerous workflow patterns detected
0/7.5Dependency-Update-Tool — no update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5许可证 — license file detected
0/7.5Maintained — project was created within the last 90 days. Please review its contents carefully
5/5Packaging — packaging workflow detected
1/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 2
0/5SAST — no SAST tool detected
0/5Security-Policy — security policy file not detected
0/7.5Signed-Releases — Project has not signed or included provenance with any releases.
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
0/7.5Vulnerabilities — 129 existing vulnerabilities detected
所用输入
sourceopenssf_scorecard
checks_evaluated17
scorecard_versionv5.5.0
checks_inconclusive1
scorecard_aggregate2.8
已排除计分(无数据或不适用):ci_tests。 其余权重已重新归一化。

AI 就绪度

该仓库在多大程度上具备与 AI 编码代理协同开发与维护的条件?这是一枚独立的实验性徽章——权重为 0.0,因此单独呈现,不影响总体健康评分。

75良好 · 占总体的 0%
评分方式
45/45代理指令 — AGENTS.md, CLAUDE.md, crates/remote/AGENTS.md, docs/AGENTS.md, docs/CLAUDE.md, packages/local-web/AGENTS.md
0/15机器可读文档(llms.txt)
34.1/40可读的提交历史 — 100 次人类提交中有 64 次说明了意图(结构化标题或解释性正文)
所用输入
has_llms_txt
legible_history_share0.64
agent_instruction_filesAGENTS.md, CLAUDE.md, crates/remote/AGENTS.md, docs/AGENTS.md, docs/CLAUDE.md, packages/local-web/AGENTS.md
agent_instruction_max_bytes11,140
评分方式
18/18一条命令的引导启动 — Makefile
22/22自动化测试
11/11Lint / 格式化配置 — .eslintrc.cjs
11/11静态类型检查 — npx-cli/tsconfig.json, packages/local-web/tsconfig.json, packages/remote-web/tsconfig.json, packages/ui/tsconfig.json, packages/web-core/tsconfig.json
10/10可复现环境 — Dockerfile, lockfile
10/10已体现的代理实践 — 最近 100 次提交中有 55 次由代理编写或署名代理
0/8自动化维护 — 未观察到自动依赖更新
2/10OpenSSF Scorecard:Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 2
所用输入
has_nix
has_tests
lockfilesCargo.lock, package-lock.json, pnpm-lock.yaml
has_dockerfile
typed_language
bootstrap_filesMakefile
has_devcontainer
has_linter_config
typecheck_configsnpx-cli/tsconfig.json, packages/local-web/tsconfig.json, packages/remote-web/tsconfig.json, packages/ui/tsconfig.json, packages/web-core/tsconfig.json
agent_commit_share0.55
toolchain_manifestsCargo.toml, crates/api-types/Cargo.toml, crates/client-info/Cargo.toml, crates/db/Cargo.toml, crates/deployment/Cargo.toml, crates/desktop-bridge/Cargo.toml, crates/embedded-ssh/Cargo.toml, crates/executors/Cargo.toml, crates/git-host/Cargo.toml, crates/git/Cargo.toml, crates/local-deployment/Cargo.toml, crates/mcp/Cargo.toml, crates/preview-proxy/Cargo.toml, crates/relay-client/Cargo.toml, crates/relay-control/Cargo.toml, crates/relay-hosts/Cargo.toml, crates/relay-protocol/Cargo.toml, crates/relay-tunnel-core/Cargo.toml, crates/relay-tunnel/Cargo.toml, crates/relay-types/Cargo.toml, crates/relay-webrtc/Cargo.toml, crates/relay-ws/Cargo.toml, crates/remote-info/Cargo.toml, crates/remote/Cargo.toml, crates/review/Cargo.toml, crates/server-info/Cargo.toml, crates/server/Cargo.toml, crates/services/Cargo.toml, crates/tauri-app/Cargo.toml, crates/telegram-bridge/Cargo.toml, crates/trusted-key-auth/Cargo.toml, crates/tui/Cargo.toml, crates/utils/Cargo.toml, crates/workspace-manager/Cargo.toml, crates/worktree-manager/Cargo.toml, crates/ws-bridge/Cargo.toml
dependency_bot_commit_share0
评分方式
45/45可类型检查的代码 — Rust(静态类型)
54.7/55可控的文件大小 — 采样的 1,335 个源文件中有 7 个超过 60KB
所用输入
primary_languageRust
largest_source_bytes164,470
source_files_sampled1,335
oversized_source_files7
评分方式
0/40API 模式(OpenAPI/GraphQL/proto)
20/20MCP 服务器
0/40可运行示例
所用输入
example_dirs
has_mcp_signal
api_schema_files

关键数据

42GitHub 星标
62贡献者
1,754最近 12 个月提交数
2距最近推送天数
26发布版本数
2巴士系数(bus factor)
0开放议题
crates.io, npm软件包生态系统数

数据采集警告

  • Community profile unavailable
  • GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository
  • deps.dev does not index npm:vibe-kanban-indie@0.2.23; advisories assessed against the repository dependency graph instead

更多细节

Star 与 Fork 历史 42 ★ / 4 ⇿
42Star
4Fork
23发布

每颗 star 和每个 fork 的添加时间,来自 GitHub 并按天汇总。累计增长位于其构成来源——每日新增——的正上方,二者可相互对照:稳定的自然增长与短暂的突增形态截然不同。当这一差别可被衡量时,它会作为增长真实性予以报告。

0102030405042462026-062026-072026-07
主版本 0次版本 0修订 17
OpenSSF Scorecard 2.8 / 10
2.8综合

来自开源项目 OpenSSF Scorecard 的独立、工具无关的安全评估。每项检查奖励的是安全实践本身,而非特定供应商的工具。Scorecard 无法判定的检查项标记为 不适用,并从安全评分中剔除(绝不按零分计)。Scorecard v5.5.0 · 2026-07-22 03:01 UTC

10Binary-Artifactsno binaries found in the repo
0Branch-Protectionbranch protection not enabled on development/release branches
不适用CI-Testsno pull request found
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 0/30 approved changesets -- score normalized to 0
10Contributorsproject has 7 contributing companies or organizations
10Dangerous-Workflowno dangerous workflow patterns detected
0Dependency-Update-Toolno update tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
0Maintainedproject was created within the last 90 days. Please review its contents carefully
10Packagingpackaging workflow detected
2Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 2
0SASTno SAST tool detected
0Security-Policysecurity policy file not detected
0Signed-ReleasesProject has not signed or included provenance with any releases.
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
0Vulnerabilities129 existing vulnerabilities detected
直接依赖 2
注册表软件包版本约束清单文件
npmadm-zip^0.5.16npx-cli/package.json
npmcac^7.0.0npx-cli/package.json
全部依赖 未采集

本报告未能采集到解析后的依赖集合:GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

原始 JSON 报告 机器可读
{
  "data": {
    "repo": {
      "topics": [],
      "is_fork": true,
      "size_kb": 95620,
      "has_wiki": false,
      "homepage": "https://www.vibekanban.com/",
      "languages": {
        "CSS": 83040,
        "HTML": 38684,
        "Rust": 4730917,
        "Shell": 24767,
        "Swift": 411532,
        "PLpgSQL": 25019,
        "Makefile": 5617,
        "Dockerfile": 13297,
        "JavaScript": 109928,
        "PowerShell": 1064,
        "TypeScript": 3662439
      },
      "pushed_at": "2026-07-19T07:20:47Z",
      "created_at": "2026-05-13T09:03:59Z",
      "owner_type": "User",
      "updated_at": "2026-07-21T15:59:20Z",
      "description": "Get 10X more out of Claude Code, Codex or any coding agent",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "Apache-2.0",
      "default_branch": "main",
      "license_spdx_raw": "Apache-2.0",
      "primary_language": "Rust",
      "significant_languages": [
        "Rust",
        "TypeScript"
      ]
    },
    "owner": {
      "blog": "https://sombrax.com",
      "name": null,
      "type": "User",
      "login": "dexloom",
      "company": null,
      "location": null,
      "followers": 68,
      "avatar_url": "https://avatars.githubusercontent.com/u/144015139?v=4",
      "created_at": "2023-09-04T10:18:34Z",
      "is_verified": null,
      "public_repos": 14,
      "account_age_days": 1051
    },
    "license": {
      "state": "standard",
      "spdx_id": "Apache-2.0",
      "raw_spdx": "Apache-2.0",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": false
    },
    "activity": {
      "releases": [
        {
          "tag": "v0.2.23",
          "kind": "patch",
          "published_at": "2026-07-17T07:38:45Z"
        },
        {
          "tag": "v0.2.22",
          "kind": "patch",
          "published_at": "2026-07-17T04:02:37Z"
        },
        {
          "tag": "v0.2.21",
          "kind": "patch",
          "published_at": "2026-07-16T21:11:36Z"
        },
        {
          "tag": "v0.2.20",
          "kind": "patch",
          "published_at": "2026-07-16T15:59:31Z"
        },
        {
          "tag": "v0.2.19",
          "kind": "patch",
          "published_at": "2026-07-16T12:14:43Z"
        },
        {
          "tag": "v0.2.18",
          "kind": "patch",
          "published_at": "2026-07-15T06:42:59Z"
        },
        {
          "tag": "v0.2.17",
          "kind": "patch",
          "published_at": "2026-07-14T20:10:17Z"
        },
        {
          "tag": "v0.2.16",
          "kind": "patch",
          "published_at": "2026-07-11T08:48:23Z"
        },
        {
          "tag": "v0.2.15",
          "kind": "patch",
          "published_at": "2026-07-10T17:12:00Z"
        },
        {
          "tag": "v0.2.15-beta.2",
          "kind": "prerelease",
          "published_at": "2026-07-10T15:33:47Z"
        },
        {
          "tag": "v0.2.15-beta.1",
          "kind": "prerelease",
          "published_at": "2026-07-10T15:05:58Z"
        },
        {
          "tag": "v0.2.14",
          "kind": "patch",
          "published_at": "2026-07-10T14:27:47Z"
        },
        {
          "tag": "v0.2.13",
          "kind": "patch",
          "published_at": "2026-07-03T16:57:43Z"
        },
        {
          "tag": "v0.2.12",
          "kind": "patch",
          "published_at": "2026-07-03T14:02:43Z"
        },
        {
          "tag": "v0.2.11",
          "kind": "patch",
          "published_at": "2026-07-02T12:36:39Z"
        },
        {
          "tag": "v0.2.10",
          "kind": "patch",
          "published_at": "2026-07-02T04:38:38Z"
        },
        {
          "tag": "v0.2.9",
          "kind": "patch",
          "published_at": "2026-07-01T07:07:26Z"
        },
        {
          "tag": "v0.2.8",
          "kind": "patch",
          "published_at": "2026-06-19T04:29:47Z"
        },
        {
          "tag": "v0.2.8-beta.6",
          "kind": "prerelease",
          "published_at": "2026-06-17T16:32:27Z"
        },
        {
          "tag": "v0.2.8-beta.5",
          "kind": "prerelease",
          "published_at": "2026-06-16T08:33:18Z"
        },
        {
          "tag": "v0.2.8-beta.4",
          "kind": "prerelease",
          "published_at": "2026-06-15T04:44:05Z"
        },
        {
          "tag": "v0.2.8-beta.2",
          "kind": "prerelease",
          "published_at": "2026-06-14T06:01:16Z"
        },
        {
          "tag": "v0.2.7",
          "kind": "patch",
          "published_at": "2026-06-13T14:01:51Z"
        },
        {
          "tag": "v0.2.6",
          "kind": "patch",
          "published_at": "2026-06-06T10:30:35Z"
        },
        {
          "tag": "v0.2.2",
          "kind": "patch",
          "published_at": "2026-05-28T09:30:54Z"
        },
        {
          "tag": "v0.2.1",
          "kind": "patch",
          "published_at": "2026-05-28T08:17:58Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "87d1615af97ef87a7856ebe010b46a81dceb7795",
          "body": null,
          "is_bot": false,
          "headline": "local build fix",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-17T09:49:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3d29b59037c5472a1b1adee4e6b554ba6f57cb16",
          "body": null,
          "is_bot": false,
          "headline": "release: v0.2.23",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-17T06:54:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3557c9f23bb4feaa1d5ef5775461cecc456710d6",
          "body": "…mux's 16KiB imsg cap\n\nHeaded start_workspace (Claude Code Headed / OpenCode Headed) packed the whole\nagent invocation — env + flags + full seed prompt — into `tmux new-session`'s\nsingle command argument. tmux ships each command to its server over a unix\nsocket capped at MAX_IMSGSIZE (16 KiB), so a \n[…]\nl seed arg (no TUI-paste race, no re-escaping). Fixes every headed\nexecutor at the single choke point. Non-headed path was unaffected (execve).\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(terminal): launch headed tmux sessions via temp script to dodge t…",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-17T06:48:58Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "150994cd98de2f65766aad46be7ff3de462f8600",
          "body": "… all in-set locations",
          "is_bot": false,
          "headline": "release: v0.2.22 — OpenCode Headed agent type, subversion bump across…",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-17T03:19:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4e38757692a88f4dd521a56fc2ef74bcb3608f88",
          "body": "…rchestrator\n\nAdd a headed (TUI-in-tmux) variant of the OpenCode executor as an\nalternative to Claude Code Headed, mirroring the ClaudeCodeHeaded pattern.\n\n- A: OpencodeHeaded struct + delegating executor impl, new CodingAgent/\n  BaseCodingAgent::OPENCODE_HEADED variant, MCP dispatch, default profil\n[…]\nstartup (only when opencode is already configured)\n\nOutput mirroring via the TUI's embedded server SSE stream is the remaining\nfollow-up for full agent-progress visibility on an OpenCode orchestrator.",
          "is_bot": false,
          "headline": "OpencodeHeaded: add OPENCODE_HEADED agent type + dual-backend-ready o…",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-17T02:51:33Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "e08990b6b97ba4983035c2473229a40e95d54e49",
          "body": "…), subversion bump across all in-set locations\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "VIBE-28: release v0.2.21 — plugin sync verified (intake agent current…",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-16T20:29:05Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "e9e11262fee4b7c1c5135f600b64ca96bc4c6bb7",
          "body": "Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "release: v0.2.20",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-16T15:14:49Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "204c847be28298c9ab6bf76b8346bcc41ce5d285",
          "body": "…f393f573efba)",
          "is_bot": false,
          "headline": "Orchestrator content compaction (vibe-kanban 5c0d063d-0d8b-4ba3-b7ca-…",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-16T15:04:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "13ca647d294d59d4f4ce47d20df644b78a0344d5",
          "body": "…gent\n\nThe vibe-kanban-indie plugin replaced the orchestrator/sweeper split with a\nsingle-loop orchestrator and deleted the sweeper agent, but the app still\ncomposed a default-agent loop-manager brief whose first tick step was to spawn\nvibe-kanban-indie:sweeper — failing at Orchestrator start with \"\n[…]\n /loop body, and scrub the remaining\nsweeper references from docs, tests, and code comments. The opt-in directives\nblock contract is unchanged.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Remove sweeper: launch the Orchestrator as the plugin's single-loop a…",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-16T14:28:02Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "99a8845b522d76779a44aa062da710f3fc0172ae",
          "body": "Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "release: v0.2.19",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-16T11:33:42Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "dca658988ce4418370fb4dd69e8244768a24571d",
          "body": "…-1/VIBE-2 response diets) (vibe-kanban af804716-4577-46bb-8e9f-ffb6d54cd161)",
          "is_bot": false,
          "headline": "Slim list\\_issues / list\\_workspaces MCP responses (follow-up to VIBE…",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-16T11:23:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "169f86a943d3ae89ce9c7434e9f5327551581122",
          "body": "Track the VibeCrew UI roadmap (explorations-ui-plan.md, 2026-07-08) and the\ntwo Claude Design HTML exports it references (Explorations.dc.html,\nVibeKanbanOneWindow.dc.html) under docs/design/.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs(design): add Explorations UI plan and design exports",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-15T06:06:54Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "75b61d0b7be37d251d102fe082593ab6da7530cb",
          "body": null,
          "is_bot": false,
          "headline": "release: v0.2.18",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-15T05:28:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "44aee2534ac080f0cad17a482652fb0bb30503cc",
          "body": "Starting the orchestrator with `--agent vibe-kanban-indie:orchestrator`\nselects a plugin agent as the top-level session agent, which leaves the\nplugin's sibling agents (sweeper/decider/intake) unregistered as spawnable\nsubagent types — so every tick failed at `Agent(sweeper)` with\n`Agent type 'sweep\n[…]\nsts + docs updated\n\nVerified interactively: the default agent spawns vibe-kanban-indie:sweeper\n(RESULT SPAWN_OK) in a real headed tmux session.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Orchestrator: launch as default Claude so sibling subagents register",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-15T05:19:29Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "404cb74808c9272260dff017fc0ffc39294e8ae2",
          "body": null,
          "is_bot": false,
          "headline": "release: v0.2.17",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-14T19:27:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e4be3bc48911e383ec6d89780ae6bb83e99820d8",
          "body": "Replace the Basic pipeline's merge stage with an authored, CAS-safe, worktree-safe\nsquash auto-merge stage (single-line, UI-safe) and enable it by default, in both the\nbundled seed and the operator-local copy.\n\nThe procedure was AUTHORED, not copied: the card said to copy it verbatim from\nasync-sonn\n[…]\nt;\n  - the base pin is fully qualified (refs/heads/<base>^{commit}), since git\n    resolves refs/tags/ before refs/heads/.\n\ncode-review stays default_enabled = true. All 8 other stages byte-identical.",
          "is_bot": false,
          "headline": "VIBE-19: Basic pipeline — CAS-safe squash auto-merge stage, default on",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-14T18:24:41Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "a3a4c0b7f6491ebb4465db0bd576094da0ac28b9",
          "body": "Add #[serde(default, deserialize_with = \"some_if_present\")] to\nMcpUpdateIssueRequest.parent_issue_id so a JSON null deserialises to Some(None)\ninstead of collapsing to the same outer None as an omitted field - which made\n'parent_issue_id: null' silently no-op instead of un-nesting the issue.\n\nThe RE\n[…]\nviour change: MCP clients sending parent_issue_id: null as a lazy\n\"leave it alone\" now get a real un-nest - they should omit the field instead.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "VIBE-16: fix MCP update_issue parent_issue_id null un-nesting",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-14T10:21:37Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "f7b50cad9a40f907cf8da0d2d0bc7e005c216362",
          "body": "…oot spec/plan, squash-merge stage)\n\nCopy the six live ~/.vibe-kanban/pipelines/*.toml byte-for-byte into\nassets/pipelines/, so a Settings Reset or fresh install hands out the corrected\nprompts instead of the pre-fix ones. Upstreams VIBE-8 and VIBE-13, which only\never edited the live files and left \n[…]\nld\n'repo root' prompt as its expected value, i.e. it asserted the very bug this\ncard fixes. It now asserts the durable invariant (workspace root, never repo\nroot) rather than freezing a broken string.",
          "is_bot": false,
          "headline": "VIBE-15: sync bundled pipeline seeds with live pipelines (workspace-r…",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-14T10:07:54Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "1f3058e3f3a081aa4fb64f6dc3e4c947f3eeceb1",
          "body": "Delete the four preserved assets/pipelines/retired/async.toml.v1-.v4 payload\nfiles and empty the RETIRED const to '&[]', its retirement cycle complete.\nThe retirement machinery (the ensure_seeded_with sweep loop) and both seam\ntests are kept intact as the pattern for future retirements; LEGACY_BASELINE\nand BUNDLED are untouched. Also drops the now-false auto-removal claim from\ndocs/indie/agents-and-pipelines.mdx and records the withdrawn behaviour in\nthe CHANGELOG.",
          "is_bot": false,
          "headline": "VIBE-14: remove retired async.toml assets, empty the RETIRED sweep entry",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-14T08:00:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "186b06aa940e67be584b5c293f6b9beb3984baf6",
          "body": "Replace the update_issue MCP tool's full-issue echo with a flat minimal ack\n(id, simple_id, status, status_id, updated_at, changed[] + echoes of just the\nchanged fields). The card body is never returned - a changed description reports\nonly its character count; callers needing the body call get_issue\n[…]\natus-only flip is 3 HTTP requests instead of ~8.\n\nMeasured: ~1,197 tokens/call (20% of all vibe-kanban MCP result tokens) toward\nthe ack floor.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "VIBE-2: minimal update_issue MCP response, ack instead of full card echo",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-14T06:42:21Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "3585c785868f649158697ecbdb8b82a4291da442",
          "body": "… on, code review off by default",
          "is_bot": false,
          "headline": "VIBE-11: bundle Async Opus/Fable/Sonnet pipelines — squash auto-merge…",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-14T06:16:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e94c8a18c3d2744063bbcc352ab82ec74ac04d3a",
          "body": "…ompt\n\nHead-truncate every prompt string in the get_execution payload's execution blob\n(recursively, incl. nested next_action chains and legacy untagged JSON), so status\npolls stop re-sending the full coding-agent prompt. run_session_prompt keeps the\nfull payload. Measured on a real execution: 3011 -> 839 bytes (73% smaller).\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "VIBE-1: slim get_execution MCP response, stop echoing the executor pr…",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-14T05:09:10Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "6949438f2d031fb691b18fa29c064a955474a4d2",
          "body": "Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "release: v0.2.16",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-11T08:05:49Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "864a981dba4e13bf7f5e4955a05440f1ff471c64",
          "body": null,
          "is_bot": false,
          "headline": "VIBE-10 (vibe-kanban d16ef3b1-e0b3-465f-a111-64a7689d6a8e)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-11T07:54:58Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f13e48edf2e5a4a693b76404ed7b5e955701e35c",
          "body": "Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "release: v0.2.15",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-10T16:32:08Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "68ba7ec026cf147c0f89d451bed74a14c5dbedf4",
          "body": "Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "release: v0.2.15-beta.2",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-10T15:08:38Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "0a6f59b8f50b322f3816a85d49411942fc6d99c5",
          "body": "…provenance\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(ci): pin npm@11 for publish — npm 12.0.0 missing sigstore breaks …",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-10T15:08:04Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "f7c5668b6481868082920b660eed23bafced37cc",
          "body": "Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "release: v0.2.15-beta.1",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-10T14:38:14Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "cbff2786f9afb00c0ddf597b5be5b0099339afcf",
          "body": "…executors\n\nnpm@latest is now npm 12 (requires node >= 22), which broke the publish-npm\njob on node 20 (EBADENGINE) — v0.2.14 published to GitHub but not npm.\nNewer stable clippy on CI rejects redundant field wildcards adjacent to\n'..' in struct patterns (normalize_logs.rs).\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(ci): node 24 for npm trusted publishing, clippy pattern fixes in …",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-10T14:37:21Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "874e9d57702728f4154d7d3c8792717a73558faa",
          "body": "Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "release: v0.2.14",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-10T13:46:14Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "01f4c01c17b9a0d2a400fa1fac565bae91a40074",
          "body": "…nifest migration\n\nReplace bundled async.toml with async-sonnet.toml (Sonnet subagents spec/plan/\ncode) and async-fable.toml (Fable subagents spec/plan marked heavy, Opus\nsubagent codes). Plan review and code review are Codex-only; the Fable review\nstage is removed.\n\nSeeding now tracks bundled files\n[…]\ne-matching a shipped version (assets/pipelines/retired/). Fixes stale local\npipelines never receiving updates (missing heavy badge from VIBE-3).\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(pipelines): split Async into Async Sonnet + Async Fable, seed-ma…",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-10T13:43:08Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "7a6fe99c13ad98996056ca75ff10176363565664",
          "body": "… + release v0.2.13)\n\n# Conflicts:\n#\tCHANGELOG.md\n#\tCargo.lock\n#\tCargo.toml\n#\tcrates/relay-tunnel/Cargo.toml\n#\tcrates/remote/Cargo.lock\n#\tcrates/remote/Cargo.toml\n#\tnpx-cli/package.json\n#\tpackage.json\n#\tpackages/local-web/package.json\n#\tpackages/web-core/src/i18n/locales/es/settings.json\n#\tpackages/\n[…]\n18n/locales/ja/settings.json\n#\tpackages/web-core/src/i18n/locales/ko/settings.json\n#\tpackages/web-core/src/i18n/locales/zh-Hans/settings.json\n#\tpackages/web-core/src/i18n/locales/zh-Hant/settings.json",
          "is_bot": false,
          "headline": "Merge origin/main into main (reconcile v0.2.12 + i18n with VIBE-6/7/8…",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-03T16:27:00Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "8a96f6f70276619721d5cd86e924c512ec53bd44",
          "body": "Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "release: v0.2.13",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-03T15:58:34Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "7f0503ec9da28a6dd9410c25364e3464bf62dfc2",
          "body": null,
          "is_bot": false,
          "headline": "VIBE-8 (vibe-kanban df7f92bd-8d5f-450e-8ae8-59ecbb62d73d)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-03T15:22:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "26be75fda3eba3500b5ca8847a526476e4af3b58",
          "body": null,
          "is_bot": false,
          "headline": "VIBE-7 (vibe-kanban 14fb7498-c610-4507-afa0-b2feda531563)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-03T15:07:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ffa4f544803ee8b4177013c670df17731660a81f",
          "body": "The routines UI (settings.recurrent) i18n keys existed only in en/settings.json,\nso the frontend-checks i18n key-consistency gate failed on main (es, fr, ja, ko,\nzh-Hans, zh-Hant were each missing the whole settings.recurrent block). Add a\ntranslated recurrent block to all six locales to restore parity and unblock CI.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(i18n): translate settings.recurrent block for all non-en locales",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-03T14:04:26Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "52c991a0480c8281956eab4b2786ad4530ea8e8b",
          "body": null,
          "is_bot": false,
          "headline": "VIBE-6 (vibe-kanban e2bd1808-cc54-42ef-9cf1-4b120415d3a0)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-03T13:31:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1b4d50db7b01537eb61f3c16ec346cb124b83141",
          "body": "Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "release: v0.2.12",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-03T13:21:51Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "39dadaed374b13700d5af080a060ed44fc92eda6",
          "body": "…cratch defaults\n\nTwo follow-ups on the merged VIBE-5 fix, both about project-repo expansion:\n\n1. Wrong source of truth. The merged fix read the `project_repos` join\n   table, which is empty in practice — the project's repo set actually lives\n   in the `PROJECT_REPO_DEFAULTS` scratch (the same sourc\n[…]\n_workspace) is unchanged.\n\nHelper `sibling_repo_inputs` reworked accordingly with unit tests (incl.\nstale-repo skip and duplicate-entry dedup).\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "VIBE-5: expand project repos for every linked-issue workspace, from s…",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-03T06:02:29Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "bef53d8f71e6a5962f9583e28544a6eb2b9b0f43",
          "body": "…orktree)\n\nWorkspaces started by the orchestrator via the `start_workspace` MCP tool\ndiverged from UI-created ones in two ways. Both are fixed in the shared\nendpoint `create_and_start_workspace`.\n\nFix 1 (all linked-issue callers) — terminal tab title. The tab title is\nresolved synchronously inside `\n[…]\nt control of their repo set.\n\nAdds a pure `sibling_repo_inputs` helper with unit tests. Regenerated\nshared/types.ts for the new optional field.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "VIBE-5: match orchestrator/MCP workspaces to UI (card tab + project w…",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-03T05:33:29Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "1f6bd7c4b65adcb5a4d8737be845887c8eaa33c3",
          "body": "…uery\n\nThe `#[cfg(test)]`-only `UPDATE workspaces SET container_ref …` query in\n`workspace.rs` (added in 3bc0a833) was never captured by `cargo sqlx prepare`\n(the default run doesn't cover test-cfg code), so `cargo test -p db` fails to\ncompile in offline mode. Regenerated with `--tests --lib`. Pre-existing and\nunrelated to VIBE-5.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore(db): add missing SQLx offline cache for workspace reaper test q…",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-03T05:33:16Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "75dda38662d4a9dc37c8fb940675490bf08bbf69",
          "body": "The Basic pipeline's generic \"code-review\" stage and the Async pipeline's\n\"review-codex\" stage were two different stage ids for the same thing (a Codex\nreview of the card's diff). Because pipeline composition dedupes by stage id\n(canonicalStageOrder), a card combining Basic + Async listed both and r\n[…]\nes the macOS hardcoded step catalog, the web-core pipeline tests\n(fixtures + rewritten dedup test), and docs. No algorithm/parser/type changes.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "VIBE-4: dedup code review into one canonical Codex stage",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T21:17:14Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "0806bd356ef6e7f97034c3e04e2ce5287b9244d6",
          "body": null,
          "is_bot": false,
          "headline": "VIBE-3 (vibe-kanban 1baf84ad-ee28-4a0b-8049-b21f46a7e53c)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T19:48:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e411e485ec8bf295f202c2a6f3e1ba511c95c650",
          "body": null,
          "is_bot": false,
          "headline": "VIBE-1 (vibe-kanban dbe24a4d-d91e-4b65-813b-909d3f0c2a0c)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T19:41:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "14c1baf036f1a5dc6d5e1cc6ca9b88f9ccd48937",
          "body": "Insert a default-enabled `plan-review-codex` stage into\nassets/pipelines/async.toml between `plan` and `code-subagent`, so\nIMPLEMENTATION_PLAN.md gets an independent read-only Codex review —\niterated to no significant findings, plan revised — before the coder\nsubagent is spawned. Lock the composed A\n[…]\nipelines.mdx with the new stage, the Async\nordering, the reset-to-bundled caveat for existing installs, and a\ncorrected stage-defaults sentence.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "VIBE-2: add Codex plan-review stage to the Async pipeline",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T17:19:55Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "ff53102b02d578de9d4235faddc366533f647416",
          "body": "Reconcile the diverged release lineage: origin/main carried release v0.2.10\nwhich local main never incorporated. Preserve that commit in history (merge\nparent) while keeping local main's newer 0.2.11 version state on the\nconflicting version files/CHANGELOG. No changes dropped from either side.",
          "is_bot": false,
          "headline": "Merge origin/main into main",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T11:52:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6d2904c36e86205dba5a2be65f2e7f253647aab7",
          "body": null,
          "is_bot": false,
          "headline": "VIBE-53 (vibe-kanban 2945aa48-a5f0-4084-a623-e04231a63b18)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T10:40:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ae19cf779ca293cad6171f9132fe8c94723cd90b",
          "body": null,
          "is_bot": false,
          "headline": "VIBE-46 (vibe-kanban a68b9c68-32f1-4eca-bc71-907a818a1524)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T10:00:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d2e012c9012c0a7a809a274327c13c06a80456a4",
          "body": null,
          "is_bot": false,
          "headline": "VIBE-50 (vibe-kanban 57907d0f-7534-4e2f-9260-d56e40e7e51f)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T09:28:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "88af49598fde23c7b54bebd041a47018f0e5a11b",
          "body": null,
          "is_bot": false,
          "headline": "VIBE-52 (vibe-kanban ae8fc0e8-0c69-4628-9729-501aadd68501)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T09:25:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "056a6b1356edf43d0bc5d28f537591e2652c83cf",
          "body": null,
          "is_bot": false,
          "headline": "VIBE-45 (vibe-kanban 978199d3-ddb8-4082-bb5c-96dd5434bc40)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T09:21:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "25806a402e0e1ce0b597c0949818da30b06c35fb",
          "body": null,
          "is_bot": false,
          "headline": "VIBE-48 (vibe-kanban 749f2df3-5d50-4c8d-8d71-cd1ed4af6b70)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T08:50:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ae29d88547980d33deccaed6af1b1f4ccb25dec2",
          "body": "Resolve semantic merge conflict between VIBE-44 (recurrent WorkspaceKind)\nand VIBE-47 (per-stage pipeline progress). VIBE-44's find_recurrent_by_name\nquery was missing the current_pipeline_stage column VIBE-47 added to the\nWorkspace struct, breaking the build on main (E0063). Regenerate the sqlx\noffline cache to match.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(db): select current_pipeline_stage in find_recurrent_by_name",
          "author_name": "orchestrator",
          "author_login": null,
          "committed_at": "2026-07-02T08:32:14Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "33a634faebacf3cd8d081bf0770b55ec5fa87e0c",
          "body": null,
          "is_bot": false,
          "headline": "VIBE-44 (vibe-kanban c0a1e950-c0f6-4958-9962-f6b96a57cd67)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T07:18:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "346b94eddc6073c6edb64290ccb5d35f3af6e952",
          "body": "Track and surface which numbered ## Pipeline stage a card's execution\nagent is on (stage N of M). Agents emit a VK-PIPELINE-STAGE marker read\nfrom the shared MsgStore (works headed + headless); persisted on\nworkspaces.current_pipeline_stage and exposed on the workspace API; the\nweb renders a live you-are-here indicator on PipelineSection.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Merge VIBE-47: per-stage pipeline progress on the card",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T07:01:28Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "8718570ce4717cb6aa62ac0b22f50d1b63d3f54a",
          "body": "The workspaces query fingerprints shifted when VIBE-51's multi-pipeline\nchanges merged with the current_pipeline_stage column; regenerate the\noffline cache (incl. test targets) so SQLX_OFFLINE builds stay green.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore(db): regenerate sqlx offline cache after rebase onto main",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T07:00:48Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "82b1eaa93878d18828dc38e3dc1a57bf210cdf26",
          "body": "Adds a read-only PipelineProgress component (PipelineSection.tsx) that\nrenders \"Stage N of M — <label>\" plus a per-stage done/current/pending\nlist, driven by parsePipelineStages(description) for M and the active\nworkspace's current_pipeline_stage for N. Wires it into the issue\npanel via a new render\n[…]\ne the\nfinal report), so KanbanIssuePanelContainer.tsx reads the field via a\nnarrowly-scoped, TODO-commented accessor pending that regeneration.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "web: render live pipeline progress (stage N of M) in the issue panel",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T06:56:22Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "57a9a2437ec761db2353af9b69434d4c1805fa6e",
          "body": "Adds parsePipelineStages(description) to cardPipeline.ts: locates the\ngenerated ## Pipeline block (delimiters first, falling back to the\nheading through end-of-text), then walks lines collecting the\ncontiguous run of numbered list items, stopping at the first non-list\nline. This deliberately exclude\n[…]\npends\nafter a blank line (their own notes) from being counted as stages, and\nkeeps M in sync with whatever the live description currently says.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "web: parse numbered ## Pipeline stages (M + names) from description",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T06:52:24Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "3f017d984d7d0fde4d5ad9969c536c798ef9da71",
          "body": "Threads current_pipeline_stage through the web/panel workspace path\n(LinkedWorkspaceRow -> to_api_workspace -> api_types::Workspace) that\nbacks the /v1/fallback/project_workspaces and /v1/fallback/\nuser_workspaces fallback endpoints the web Kanban and TUI board read.\n\ncrates/remote hydrates api_type\n[…]\nfinal report for why — so it's a known follow-up once run in an\nenvironment with access to the private billing dependency and a local\nPostgres.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "api: expose current_pipeline_stage on workspace API + TS types",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T06:51:58Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "6a1bf26370b0ee566f6258fb713172261b68b301",
          "body": "Extends composePipelineBlock's ORDER_INSTRUCTION so every card with a\nnumbered ## Pipeline block tells its execution agent to output\n`VK-PIPELINE-STAGE: N` as it starts each stage — authored automatically\nat card creation, no per-pipeline-file edit needed.\n\nAlso wires up Vitest for web-core (script,\n[…]\n.ts files in the\npackage; pnpm --filter web-core test now runs cardPipeline's tests\n(including this change) plus the other pre-existing suites.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "web: instruct agents to emit per-stage VK-PIPELINE-STAGE markers",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T06:51:58Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "258db775a2f05d162af01e9d07b17b3ad1f619ca",
          "body": "Adds a pure, unit-tested marker parser (services::pipeline_stage) and\na tracker task that watches an execution's shared MsgStore raw-log\nstream for `VK-PIPELINE-STAGE: N` and persists the latest value onto\nthe owning workspace. Both headless (child stdout) and headed (Claude\ntranscript tail) executi\n[…]\nom headed restart\n  re-adoption (a genuinely distinct call site); an idempotency guard\n  keyed by execution_process_id prevents a double spawn.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "services: detect VK-PIPELINE-STAGE marker and persist per workspace",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T06:51:34Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "6e8e78e720a9f67b1e7dbe3ae388e9253061db1d",
          "body": "Adds a nullable current_pipeline_stage INTEGER column to workspaces as\nthe single source of truth for which numbered ## Pipeline stage a\ncard's execution agent last reported itself as starting. Threads the\nfield through Workspace/WorkspaceWithStatus and all query sites, plus\na focused Workspace::set_current_pipeline_stage updater.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "db: add workspaces.current_pipeline_stage column + model plumbing",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T06:51:34Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "dec24491f75c04bb33c974998e8743ca509c7557",
          "body": "Multi-pipeline additive selection (topological-merge dedupe), expanded-by-default,\nnon-destructive description recompose (preserves manual lines), and editable on\nexisting cards. Provenance carries pipelineIds[].\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Merge VIBE-51: editable additive multi-pipeline card pipelines",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T06:34:36Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "3bc0a833cf82a608e08cfddbad861c0177ce9bab",
          "body": null,
          "is_bot": false,
          "headline": "VIBE-43 (vibe-kanban f04c0a32-fe04-4145-ad3b-d0d31f9c5b6e)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T06:00:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5de6ef98abe2eb5e31eff916a7e9c81eb6a1fecf",
          "body": "…s it\n\nPipelineSection seeds selectedIds/enabledIds/executor/text from\ninitialSelection only via lazy useState initializers (mount-time only), and\nKanbanIssuePanelContainer isn't remounted when the operator switches from\nediting one card to another (no route-level key). Without a key, switching\ncard\n[…]\n until the\noperator interacted. Key the element on the edited issue id (or the\ncreate-composer draft key) so it gets a fresh instance per card.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(pipeline): key edit-mode PipelineSection so switching cards reset…",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T05:53:28Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "9d8d6b6c7b419fb61bb8980283c71dba525cb352",
          "body": "…seline\n\nRun pnpm run format across the workspace; only cosmetic reformatting in the\nVIBE-51 files. Also commit the diffDataAdapter Vitest snapshot baseline that\nrunning the (previously unrunnable) web-core test suite generated on first\nrun, so it becomes a real regression check instead of silently\n\n[…]\nate passes; cargo clippy --workspace passes; clippy on\n  crates/remote hits the same pre-existing SSH/private-dependency limitation\n  as above.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore(pipeline): apply prettier formatting, commit vitest snapshot ba…",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T05:51:57Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "7f316263d42c2092e840f8ea8b2840c0df21c63b",
          "body": "…ontrol\n\nCreate mode now writes extension_metadata.pipeline.pipelineIds (array)\ninstead of the legacy single pipelineId. Add readPipelineProvenance, a\ntype-guarded reader for the untyped JsonValue extension_metadata that accepts\nboth the new pipelineIds array and the legacy pipelineId string, and\nas\n[…]\nipelineSection already renders its own\nborder-t/padding (confirmed while reading the component) — wrapping again\nwould have doubled the border.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(pipeline): wire multi-pipeline provenance + edit-mode Pipeline c…",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T05:46:24Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "22f372673f70e996842ecada308079bfa26dba12",
          "body": "…it-mode seeding\n\nRework PipelineSection into an additive multi-pipeline picker: a checklist\nreplaces the single <select>, stage checkboxes are driven by\ncanonicalStageOrder(selectedPipelines), and the section starts expanded by\ndefault (create and edit). Recompose is non-destructive (drops the `dir\n[…]\nbel,pipelinesHelper,resetToGenerated} i18n keys\nto all 7 locales, replacing the now-unreferenced pipelineLabel/pipelineNone/\nresetToCheckboxes.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(pipeline): multi-select PipelineSection, expanded by default, ed…",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T05:43:09Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "8a92bb1b323e09d6a1df16788e38a711cbc1bca0",
          "body": "…reservation\n\nAdd fixtures mirroring the real basic/wikillm pipeline files and lock in the\nacceptance-critical merge order (spec, recall-knowledge, plan, code-review,\nenrich-knowledge). Cover: array/single back-compat, manual-line survival\nacross recompose, a deselected stage's line being removed (n\n[…]\n removed, a hand-edited\nstage line being treated as manual once it no longer matches its fragment,\nand extractPipelineBlock. All 17 tests pass.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "test(pipeline): cover multi-pipeline merge, dedupe, and manual-line p…",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T05:39:21Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "07a2c3cae388ad108b8ceec89cbc0d0462580491",
          "body": "…ompose\n\nRewrite composePipelineBlock to accept multiple pipelines, merging their\nstages via a stable topological sort (canonicalStageOrder/orderedEnabledStages,\nboth exported for reuse) so a stage shared by two pipelines appears once in a\ndeterministic canonical order. Add options.previousBlock/kno\n[…]\nt for @vibe/web-core (vitest.config.ts + test script) since\nthe pipeline/diff/conversation unit tests in this package had no runner\nconfigured.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(pipeline): multi-pipeline compose logic with non-destructive rec…",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T05:38:06Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "175b7d7948e60c68a7559ab53ba7705297f2bd2a",
          "body": null,
          "is_bot": false,
          "headline": "New release (vibe-kanban af5ccf4f-f612-4a0c-a12c-44420e1ad958)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T04:58:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "430c9e2779dbee6dfa8a987de8e20bce39e86e58",
          "body": "Fourth bundled pipeline (async.toml): an Opus main loop specs and plans,\nspawns the vibe-kanban-indie:coder subagent (Sonnet) to implement from\nSPEC.md + IMPLEMENTATION_PLAN.md, then runs a Fable review subagent\nalongside a Codex review before merge/PR.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(pipelines): add Async subagent fan-out pipeline as bundled default",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T04:55:04Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "08fb38f621fb933b964468aa80dbf126a348b01b",
          "body": "Bump product + workspace version 0.2.9 -> 0.2.10.\n\nHighlights (merged since 0.2.9):\n- File-based, user-editable pipelines in ~/.vibe-kanban/pipelines/ with an\n  ordered, numbered ## Pipeline block driven top-to-bottom by the execution\n  agent (Settings -> Pipeline edits raw TOML; new /api/pipelines API).\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "release: v0.2.10",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-02T03:56:40Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "95ee9b054d5ea82b1b31c84267d2f3da48574e5a",
          "body": null,
          "is_bot": false,
          "headline": "Rethink pipelines (vibe-kanban 6a6824e2-96ab-4d56-bf3a-6ad805ddccf3)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-01T14:47:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a56891def6b07c09dae2a36096f9a14d2486cd4a",
          "body": "…-c060db5a917f)",
          "is_bot": false,
          "headline": "Remove Changeling review from UI (vibe-kanban 1faeadc8-5777-4f29-be12…",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-01T09:45:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4523a6cd3c18df387743390b945d268f0bb5d77c",
          "body": "…24-254404ee4441)",
          "is_bot": false,
          "headline": "Headed agent terminal session flag (vibe-kanban ad680f96-1eb8-49e2-9a…",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-01T09:38:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cbbdffccdb5e729efeb44ddc966ff6c7cf68b097",
          "body": "The v0.2.9 release commit inadvertently reverted the VIBE-38 Log/Terminal\nworkspace files (a polluted git index from an earlier cross-branch checkout).\nRestore all 20 files to their correct post-#6 main state (8d7976ba). The\nversion bump itself (npm + Rust workspace) is unchanged and correct.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix: restore VIBE-38 terminal/workspace files clobbered in v0.2.9 bump",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-01T06:25:33Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "04fbadd6af37ace840e9b69aa7585f462ec07ef4",
          "body": "Bump product + workspace version 0.2.8 -> 0.2.9.\n\nHighlights (merged since 0.2.8):\n- SpecKit (Spec-Driven Development) workbench (#4)\n- Recall/Enrich knowledge-base pipeline steps (#5)\n- Native SwiftUI macOS app (#6)\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "release: v0.2.9",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-01T06:22:38Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "8d7976baedb6a965179fd829af16a717accb4029",
          "body": "* feat(macos): native SwiftUI sketch for the VibeKanban interface\n\nAdd an Xcode (XcodeGen) macOS app under apps/macos that ports the web UI\nto native SwiftUI, talking to the local Rust backend over HTTP + WebSocket.\n\n- Networking: APIClient (REST), PortDiscovery ($TMPDIR/vibe-kanban.port),\n  WebSock\n[…]\novered\nby new ColorTests (HSL parsing + HSL→RGB).\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>\n\n---------\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(macos): native SwiftUI app for VibeKanban (#6)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-01T05:09:56Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "133b430ef6b8655022dc5a5481a83370b8de1537",
          "body": "Add two opt-in pipeline steps to default_pipeline_steps():\n- recall-knowledge (after spec, before plan)\n- enrich-knowledge (after update-docs, before merge)\n\nThese back a per-project knowledge base so each card can enrich durable\nknowledge that later cards recall. Regenerated shared/types.ts. The\nfrontend renders catalog steps generically, so no UI change, migration,\nor MCP change is needed.\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(pipeline): add Recall/Enrich project knowledge-base steps (#5)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-01T05:09:38Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "57f2888a63387213105b5e9a99828693d4e9741a",
          "body": "* feat(speckit): add SpecKit (Spec-Driven Development) workbench\n\nIntegrates GitHub Spec Kit as a dedicated, full workbench in vibe-kanban:\nthe constitution → specify → clarify → plan → tasks → analyze → implement\nflow, with artifacts committed in the repo worktree and parallelism\nvisualized. SpecKi\n[…]\nate. Unblocks backend-clippy and tauri-checks CI.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>\n\n---------\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(speckit): SpecKit (Spec-Driven Development) workbench (#4)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-07-01T04:52:06Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "7c200928b849f53ea50aed62d7e0ce834cbcf664",
          "body": null,
          "is_bot": false,
          "headline": "VIBE-38 (vibe-kanban 7a34f8c1-f3bb-4968-860d-91c7a9fb2fa5)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-06-26T07:23:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "06a8df30cb8d2c884f5bd75bc0a20eace29d60e1",
          "body": null,
          "is_bot": false,
          "headline": "VIBE-38 (vibe-kanban 7a34f8c1-f3bb-4968-860d-91c7a9fb2fa5)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-06-26T07:13:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5ee7a249215b744678aef45a47426adaa8bc1b85",
          "body": null,
          "is_bot": false,
          "headline": "VIBE-37 (vibe-kanban 1711ac11-26fc-4af0-972a-601c0ab6b817)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-06-23T08:43:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bda03178ee5f94064fb01db53a64554d693a4a8a",
          "body": null,
          "is_bot": false,
          "headline": "VIBE-37 (vibe-kanban 1711ac11-26fc-4af0-972a-601c0ab6b817)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-06-23T08:29:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "79888ab06ccd412b390f0f6c48a2d9c974b70460",
          "body": null,
          "is_bot": false,
          "headline": "VIBE-37 (vibe-kanban 1711ac11-26fc-4af0-972a-601c0ab6b817)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-06-23T08:08:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5e1fa146ac03cdc7dd6e7268ef6ccdab8c152be2",
          "body": null,
          "is_bot": false,
          "headline": "docs update",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-06-22T01:05:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "98b973e778da28ebcff36c7088f353ea055c482e",
          "body": "Promote the 0.2.8-beta series to the first stable 0.2.8 release (npm @latest).\nBump workspace + npm package versions and refresh lockfiles.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "release: v0.2.8",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-06-19T03:37:49Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "53ace439eabe99e3a60a6afcc685722f8eb6fc63",
          "body": "Add a leading \"Vibe Kanban Indie\" docs group (whats-different, architecture,\nagents-and-pipelines) reviewing every fork divergence from upstream, plus a\n\"Claude Code Plugins & Skills\" integration page documenting how the\nvibe-kanban-indie, sombrax-telegram, and sombrax-codex plugins link to Indie.\nAlso backfill missing CHANGELOG release links.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs: add Vibe Kanban Indie leading chapter + Claude Code plugins page",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-06-19T03:35:42Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "e77a2636bd252e45999e06c9cdaee6c61470e42e",
          "body": "…ate first\n\nAdds two built-in steps to default_pipeline_steps() with generic, operator-facing\nprompt fragments (matching the existing steps' style):\n- wait-for-approval: pause and wait for the operator's decision before continuing.\n- update-docs: update the docs the change affects, then commit.\n\nReo\n[…]\nline control and Pipeline-steps settings render these\nautomatically. Regenerated shared/types.ts; generate-types --check and config tests pass.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Add Wait-for-approval + Update-documentation pipeline steps; Orchestr…",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-06-18T07:01:04Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "74f1ddfda618a6a4e5696ed5f48f21b501147473",
          "body": "Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Release v0.2.8-beta.6",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-06-17T16:08:50Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "92e94f276d6f70bf914664b691c9ec836c02b5d8",
          "body": null,
          "is_bot": false,
          "headline": "VIBE-34 (vibe-kanban 64d6f286-a23a-4704-9bfa-a019a89a2fad)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-06-17T10:47:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d40246ea633c1ae099688495ac5fbb426c31d3b7",
          "body": null,
          "is_bot": false,
          "headline": "VIBE-34 (vibe-kanban 64d6f286-a23a-4704-9bfa-a019a89a2fad)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-06-17T10:44:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0ff8d6428ee2d83dba8b57e33f8996cd988cef4e",
          "body": null,
          "is_bot": false,
          "headline": "VIBE-34 (vibe-kanban 64d6f286-a23a-4704-9bfa-a019a89a2fad)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-06-17T10:26:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3377645cf642bc2691e620c4a88c401ae1a87a71",
          "body": null,
          "is_bot": false,
          "headline": "VIBE-34 (vibe-kanban 64d6f286-a23a-4704-9bfa-a019a89a2fad)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-06-17T09:44:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ded7dafdb24adbbbf3a1a90787922ab5cad73c62",
          "body": "Bump npm + Rust workspace version to 0.2.8-beta.5. Ships the noir-neon theme\nand logo updates (VIBE-30).\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Release v0.2.8-beta.5",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-06-16T08:09:00Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "30558e9ac32da11deb7a0a977097f0ae2b632377",
          "body": null,
          "is_bot": false,
          "headline": "VIBE-30 (vibe-kanban a1349848-69fb-4a8f-be65-b8c12569a2f9)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-06-16T07:59:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "020848eb19e082eb6d1d377db3ebdd7f8e1306f3",
          "body": null,
          "is_bot": false,
          "headline": "VIBE-30 (vibe-kanban a1349848-69fb-4a8f-be65-b8c12569a2f9)",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-06-16T06:42:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d89d7ce86d48fd0482b977f4b4cd410b7bccb0ea",
          "body": "Bump npm + Rust workspace version to 0.2.8-beta.4. Ships Claude Code Headed\nlocal support and the right-side \"New issue\" pane on top of beta.3.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Release v0.2.8-beta.4",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-06-15T04:19:51Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "a6f46d8b835240b28c5a463d48ffdf18699f0e55",
          "body": "…cc207)",
          "is_bot": false,
          "headline": "Claude Code Headed local (vibe-kanban f15345ce-b7a6-4840-a569-133a377…",
          "author_name": "dexloom",
          "author_login": "dexloom",
          "committed_at": "2026-06-15T04:12:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 26,
      "commits_last_year": 1754,
      "latest_release_at": "2026-07-17T07:38:45Z",
      "latest_release_tag": "v0.2.23",
      "releases_from_tags": false,
      "days_since_last_push": 2,
      "active_weeks_last_year": 49,
      "days_since_latest_release": 4,
      "mean_days_between_releases": 0.7
    },
    "community": {
      "has_readme": false,
      "has_license": false,
      "has_description": false,
      "has_contributing": false,
      "health_percentage": null,
      "has_issue_template": false,
      "has_code_of_conduct": false,
      "has_pull_request_template": false
    },
    "ecosystem": {
      "packages": [
        {
          "name": "vibe-kanban-indie",
          "exists": true,
          "license": null,
          "keywords": [],
          "ecosystem": "npm",
          "matches_repo": true,
          "registry_url": "https://www.npmjs.com/package/vibe-kanban-indie",
          "is_deprecated": false,
          "latest_version": "0.2.23",
          "repository_url": "https://github.com/dexloom/vibe-kanban-indie",
          "versions_count": 25,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": 1,
          "monthly_downloads": 2670,
          "first_published_at": "2026-05-27T10:15:01.194000Z",
          "latest_published_at": "2026-07-17T07:39:10.632000Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 4
        }
      ]
    },
    "popularity": {
      "forks": 4,
      "stars": 42,
      "watchers": 2,
      "fork_history": {
        "days": [
          {
            "date": "2026-06-30",
            "count": 1
          },
          {
            "date": "2026-07-02",
            "count": 1
          },
          {
            "date": "2026-07-07",
            "count": 1
          },
          {
            "date": "2026-07-15",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 4,
        "total_forks": 4
      },
      "star_history": {
        "days": [
          {
            "date": "2026-06-13",
            "count": 1
          },
          {
            "date": "2026-06-18",
            "count": 1
          },
          {
            "date": "2026-06-21",
            "count": 1
          },
          {
            "date": "2026-06-23",
            "count": 2
          },
          {
            "date": "2026-06-24",
            "count": 1
          },
          {
            "date": "2026-06-25",
            "count": 3
          },
          {
            "date": "2026-06-26",
            "count": 1
          },
          {
            "date": "2026-06-28",
            "count": 2
          },
          {
            "date": "2026-06-29",
            "count": 4
          },
          {
            "date": "2026-07-01",
            "count": 2
          },
          {
            "date": "2026-07-03",
            "count": 2
          },
          {
            "date": "2026-07-04",
            "count": 3
          },
          {
            "date": "2026-07-05",
            "count": 1
          },
          {
            "date": "2026-07-06",
            "count": 2
          },
          {
            "date": "2026-07-07",
            "count": 3
          },
          {
            "date": "2026-07-09",
            "count": 2
          },
          {
            "date": "2026-07-11",
            "count": 6
          },
          {
            "date": "2026-07-12",
            "count": 2
          },
          {
            "date": "2026-07-13",
            "count": 1
          },
          {
            "date": "2026-07-15",
            "count": 1
          },
          {
            "date": "2026-07-21",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 42,
        "total_stars": 42
      },
      "open_issues_and_prs": 0
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [],
      "has_llms_txt": false,
      "has_dockerfile": true,
      "has_mcp_signal": true,
      "bootstrap_files": [
        "Makefile"
      ],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [
        "npx-cli/tsconfig.json",
        "packages/local-web/tsconfig.json",
        "packages/remote-web/tsconfig.json",
        "packages/ui/tsconfig.json",
        "packages/web-core/tsconfig.json"
      ],
      "toolchain_manifests": [
        "Cargo.toml",
        "crates/api-types/Cargo.toml",
        "crates/client-info/Cargo.toml",
        "crates/db/Cargo.toml",
        "crates/deployment/Cargo.toml",
        "crates/desktop-bridge/Cargo.toml",
        "crates/embedded-ssh/Cargo.toml",
        "crates/executors/Cargo.toml",
        "crates/git-host/Cargo.toml",
        "crates/git/Cargo.toml",
        "crates/local-deployment/Cargo.toml",
        "crates/mcp/Cargo.toml",
        "crates/preview-proxy/Cargo.toml",
        "crates/relay-client/Cargo.toml",
        "crates/relay-control/Cargo.toml",
        "crates/relay-hosts/Cargo.toml",
        "crates/relay-protocol/Cargo.toml",
        "crates/relay-tunnel-core/Cargo.toml",
        "crates/relay-tunnel/Cargo.toml",
        "crates/relay-types/Cargo.toml",
        "crates/relay-webrtc/Cargo.toml",
        "crates/relay-ws/Cargo.toml",
        "crates/remote-info/Cargo.toml",
        "crates/remote/Cargo.toml",
        "crates/review/Cargo.toml",
        "crates/server-info/Cargo.toml",
        "crates/server/Cargo.toml",
        "crates/services/Cargo.toml",
        "crates/tauri-app/Cargo.toml",
        "crates/telegram-bridge/Cargo.toml",
        "crates/trusted-key-auth/Cargo.toml",
        "crates/tui/Cargo.toml",
        "crates/utils/Cargo.toml",
        "crates/workspace-manager/Cargo.toml",
        "crates/worktree-manager/Cargo.toml",
        "crates/ws-bridge/Cargo.toml"
      ],
      "largest_source_bytes": 164470,
      "source_files_sampled": 1335,
      "oversized_source_files": 7,
      "agent_instruction_files": [
        "AGENTS.md",
        "CLAUDE.md",
        "crates/remote/AGENTS.md",
        "docs/AGENTS.md",
        "docs/CLAUDE.md",
        "packages/local-web/AGENTS.md"
      ],
      "agent_instruction_max_bytes": 11140
    },
    "dependencies": {
      "manifests": [
        "Cargo.toml",
        "npx-cli/package.json",
        "package.json"
      ],
      "advisories": {
        "error": null,
        "scope": null,
        "source": null,
        "findings": [],
        "collected": false,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 0,
        "malicious_count": 0,
        "assessed_package": null,
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "crates",
        "npm"
      ],
      "dependencies": [
        {
          "name": "adm-zip",
          "manifest": "npx-cli/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.5.16"
        },
        {
          "name": "cac",
          "manifest": "npx-cli/package.json",
          "ecosystem": "npm",
          "version_constraint": "^7.0.0"
        }
      ],
      "all_dependencies": {
        "error": "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
        "source": null,
        "packages": [],
        "collected": false,
        "truncated": false,
        "total_count": null,
        "direct_count": null,
        "indirect_count": null
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 0,
        "merged_prs": 7,
        "open_issues": 0,
        "closed_ratio": null,
        "closed_issues": 0,
        "closed_unmerged_prs": 1
      },
      "bus_factor": 2,
      "bot_contributors": 0,
      "top_contributors": [
        {
          "type": "User",
          "login": "stunningpixels",
          "commits": 878,
          "avatar_url": "https://avatars.githubusercontent.com/u/7957964?v=4"
        },
        {
          "type": "User",
          "login": "abcpro1",
          "commits": 257,
          "avatar_url": "https://avatars.githubusercontent.com/u/108011288?v=4"
        },
        {
          "type": "User",
          "login": "LSRCT",
          "commits": 235,
          "avatar_url": "https://avatars.githubusercontent.com/u/44728828?v=4"
        },
        {
          "type": "User",
          "login": "actions-user",
          "commits": 213,
          "avatar_url": "https://avatars.githubusercontent.com/u/65916846?v=4"
        },
        {
          "type": "User",
          "login": "dexloom",
          "commits": 196,
          "avatar_url": "https://avatars.githubusercontent.com/u/144015139?v=4"
        },
        {
          "type": "User",
          "login": "anastasiya1155",
          "commits": 112,
          "avatar_url": "https://avatars.githubusercontent.com/u/35258279?v=4"
        },
        {
          "type": "User",
          "login": "britannio",
          "commits": 44,
          "avatar_url": "https://avatars.githubusercontent.com/u/33752528?v=4"
        },
        {
          "type": "User",
          "login": "vdmkotai",
          "commits": 34,
          "avatar_url": "https://avatars.githubusercontent.com/u/22484807?v=4"
        },
        {
          "type": "User",
          "login": "benodiwal",
          "commits": 23,
          "avatar_url": "https://avatars.githubusercontent.com/u/116568350?v=4"
        },
        {
          "type": "User",
          "login": "t3dotgg",
          "commits": 4,
          "avatar_url": "https://avatars.githubusercontent.com/u/6751787?v=4"
        }
      ],
      "contributors_sampled": 62,
      "top_contributor_share": 0.426
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "docs.yml",
        "release-indie.yml",
        "test.yml"
      ],
      "has_docs_dir": true,
      "linter_configs": [
        ".eslintrc.cjs"
      ],
      "has_editorconfig": false,
      "has_linter_config": true,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [
        "Cargo.lock",
        "package-lock.json",
        "pnpm-lock.yaml"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 0,
            "reason": "branch protection not enabled on development/release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": null,
            "reason": "no pull request found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 0/30 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 10,
            "reason": "project has 7 contributing companies or organizations",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 0,
            "reason": "no update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 0,
            "reason": "project was created within the last 90 days. Please review its contents carefully",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": 10,
            "reason": "packaging workflow detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 2,
            "reason": "dependency not pinned by hash detected -- score normalized to 2",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "no SAST tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 0,
            "reason": "security policy file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": 0,
            "reason": "Project has not signed or included provenance with any releases.",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 0,
            "reason": "129 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "87d1615af97ef87a7856ebe010b46a81dceb7795",
        "ran_at": "2026-07-22T03:01:46Z",
        "aggregate_score": 2.8,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": false
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-19T07:33:31Z",
      "oldest_open_prs": [],
      "last_merged_pr_at": "2026-07-03T03:39:36Z",
      "ci_last_conclusion": "SUCCESS",
      "oldest_open_issues": []
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/dexloom/vibe-kanban-indie",
    "host": "github.com",
    "name": "vibe-kanban-indie",
    "owner": "dexloom"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 59,
      "inputs": {
        "security": 28,
        "vitality": 89,
        "community": 35,
        "governance": 66,
        "engineering": 64
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "excellent",
        "name": "Vitality",
        "value": 89,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "excellent",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 88,
            "inputs": {
              "commits_last_year": 1754,
              "human_commit_share": 1,
              "days_since_last_push": 2,
              "active_weeks_last_year": 49
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 2 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 2
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "49/52 weeks with commits",
                "points": 33.9,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 49
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "1754 commits in the last year",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 1754
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "project was created within the last 90 days. Please review its contents carefully",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "releases_count": 26,
              "latest_release_tag": "v0.2.23",
              "releases_from_tags": false,
              "days_since_latest_release": 4,
              "mean_days_between_releases": 0.7
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "26 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 26
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 4 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 4
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~0.7 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 0.7
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "unverified",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": "repository_too_young",
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": null,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "maintenance record not established from the collected data",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_unverified",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "at_risk",
        "name": "Community & Adoption",
        "value": 35,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "at_risk",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 30,
            "inputs": {
              "forks": 4,
              "stars": 42,
              "watchers": 2,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "below_threshold"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "42 stars",
                "points": 26.2,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 42
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "4 forks",
                "points": 4,
                "status": "partial",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 4
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "2 watchers",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 2
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "critical",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 25,
            "inputs": {
              "has_readme": false,
              "has_license": false,
              "has_contributing": false,
              "has_issue_template": false,
              "has_code_of_conduct": false,
              "has_pull_request_template": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (Apache-2.0)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "Apache-2.0"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.3
              }
            ]
          },
          {
            "key": "ecosystem_adoption",
            "band": "moderate",
            "name": "Ecosystem adoption (downloads)",
            "note": "Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "registry_dependents"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 57,
            "inputs": {
              "packages": [
                "vibe-kanban-indie"
              ],
              "dependents": null,
              "ecosystems": "npm",
              "total_downloads": null,
              "monthly_downloads": 2670
            },
            "components": [
              {
                "key": "monthly_downloads",
                "name": "Monthly downloads",
                "detail": "2,670 downloads/month across npm",
                "points": 45.7,
                "status": "partial",
                "details": [
                  {
                    "code": "downloads_monthly",
                    "params": {
                      "count": 2670,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 80
              },
              {
                "key": "registry_dependents",
                "name": "Registry dependents",
                "detail": "not reported by this ecosystem",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_reported_by_this_ecosystem",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "moderate",
        "name": "Sustainability & Governance",
        "value": 66,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "moderate",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 62,
            "inputs": {
              "bus_factor": 2,
              "contributors_sampled": 62,
              "top_contributor_share": 0.426
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "2 contributor(s) cover half of all commits",
                "points": 25.2,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 2
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 43% of commits",
                "points": 12.9,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 43
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "62 contributors",
                "points": 13.5,
                "status": "met",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 62
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 7 contributing companies or organizations",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "moderate",
            "name": "Issue & PR responsiveness",
            "note": "Excluded from scoring (no data or not applicable): Issue resolution. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "issue_resolution"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 63,
            "inputs": {
              "merged_prs": 7,
              "open_issues": 0,
              "closed_issues": 0,
              "issue_closed_ratio": null,
              "closed_unmerged_prs": 1
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "no issues or no data",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_issues_or_data",
                    "params": {}
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "7/8 decided PRs merged",
                "points": 33.5,
                "status": "partial",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 7,
                      "decided": 8
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "at_risk",
            "name": "Ownership & stewardship",
            "note": "Excluded from scoring (no data or not applicable): Verified domain. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "verified_domain"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 47,
            "inputs": {
              "followers": 68,
              "owner_type": "User",
              "is_verified": null,
              "owner_login": "dexloom",
              "public_repos": 14,
              "account_age_days": 1051
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "personal (user) account",
                "points": 10,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_personal",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": "not applicable to user accounts",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_applicable_to_user_accounts",
                    "params": {}
                  }
                ],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "68 followers of dexloom",
                "points": 13.2,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 68,
                      "login": "dexloom"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "14 public repos, account ~2 yr old",
                "points": 14.3,
                "status": "partial",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 14
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 2
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "excellent",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "vibe-kanban-indie"
              ],
              "ecosystems": "npm",
              "any_deprecated": false,
              "min_days_since_publish": 4
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on npm",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 4 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 4
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "25 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 25
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "moderate",
        "name": "Engineering Quality",
        "value": 64,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "good",
            "name": "Engineering practices",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: CI-Tests. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_ci_tests"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 80,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": true,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "3 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 3
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": ".eslintrc.cjs",
                "points": 16,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".eslintrc.cjs"
                    }
                  }
                ],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "no pull request found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "at_risk",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "topics": [],
              "has_wiki": false,
              "homepage": "https://www.vibekanban.com/",
              "has_readme": false,
              "has_docs_dir": true,
              "has_description": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": "https://www.vibekanban.com/",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "critical",
        "name": "Security",
        "value": 28,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "critical",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): CI-Tests. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "ci_tests"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 28,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 17,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 1,
              "scorecard_aggregate": 2.8
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection not enabled on development/release branches",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "no pull request found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 7 contributing companies or organizations",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "no update tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "project was created within the last 90 days. Please review its contents carefully",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 2",
                "points": 1,
                "status": "partial",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "no SAST tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "129 existing vulnerabilities detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 8
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "good",
        "name": "AI Readiness",
        "value": 75,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "good",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 79,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.64,
              "agent_instruction_files": [
                "AGENTS.md",
                "CLAUDE.md",
                "crates/remote/AGENTS.md",
                "docs/AGENTS.md",
                "docs/CLAUDE.md",
                "packages/local-web/AGENTS.md"
              ],
              "agent_instruction_max_bytes": 11140
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "AGENTS.md, CLAUDE.md, crates/remote/AGENTS.md, docs/AGENTS.md, docs/CLAUDE.md, packages/local-web/AGENTS.md",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "AGENTS.md, CLAUDE.md, crates/remote/AGENTS.md, docs/AGENTS.md, docs/CLAUDE.md, packages/local-web/AGENTS.md"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "64 of 100 human commits state their intent (structured subject or explanatory body)",
                "points": 34.1,
                "status": "partial",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 64,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "good",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 84,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [
                "Cargo.lock",
                "package-lock.json",
                "pnpm-lock.yaml"
              ],
              "has_dockerfile": true,
              "typed_language": true,
              "bootstrap_files": [
                "Makefile"
              ],
              "has_devcontainer": false,
              "has_linter_config": true,
              "typecheck_configs": [
                "npx-cli/tsconfig.json",
                "packages/local-web/tsconfig.json",
                "packages/remote-web/tsconfig.json",
                "packages/ui/tsconfig.json",
                "packages/web-core/tsconfig.json"
              ],
              "agent_commit_share": 0.55,
              "toolchain_manifests": [
                "Cargo.toml",
                "crates/api-types/Cargo.toml",
                "crates/client-info/Cargo.toml",
                "crates/db/Cargo.toml",
                "crates/deployment/Cargo.toml",
                "crates/desktop-bridge/Cargo.toml",
                "crates/embedded-ssh/Cargo.toml",
                "crates/executors/Cargo.toml",
                "crates/git-host/Cargo.toml",
                "crates/git/Cargo.toml",
                "crates/local-deployment/Cargo.toml",
                "crates/mcp/Cargo.toml",
                "crates/preview-proxy/Cargo.toml",
                "crates/relay-client/Cargo.toml",
                "crates/relay-control/Cargo.toml",
                "crates/relay-hosts/Cargo.toml",
                "crates/relay-protocol/Cargo.toml",
                "crates/relay-tunnel-core/Cargo.toml",
                "crates/relay-tunnel/Cargo.toml",
                "crates/relay-types/Cargo.toml",
                "crates/relay-webrtc/Cargo.toml",
                "crates/relay-ws/Cargo.toml",
                "crates/remote-info/Cargo.toml",
                "crates/remote/Cargo.toml",
                "crates/review/Cargo.toml",
                "crates/server-info/Cargo.toml",
                "crates/server/Cargo.toml",
                "crates/services/Cargo.toml",
                "crates/tauri-app/Cargo.toml",
                "crates/telegram-bridge/Cargo.toml",
                "crates/trusted-key-auth/Cargo.toml",
                "crates/tui/Cargo.toml",
                "crates/utils/Cargo.toml",
                "crates/workspace-manager/Cargo.toml",
                "crates/worktree-manager/Cargo.toml",
                "crates/ws-bridge/Cargo.toml"
              ],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": "Makefile",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Makefile"
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": ".eslintrc.cjs",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".eslintrc.cjs"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "npx-cli/tsconfig.json, packages/local-web/tsconfig.json, packages/remote-web/tsconfig.json, packages/ui/tsconfig.json, packages/web-core/tsconfig.json",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "npx-cli/tsconfig.json, packages/local-web/tsconfig.json, packages/remote-web/tsconfig.json, packages/ui/tsconfig.json, packages/web-core/tsconfig.json"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "Dockerfile, lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Dockerfile, lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "55 of the last 100 commits agent-authored or agent-credited",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "agent_authored_commits",
                    "params": {
                      "count": 55,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "no automated dependency updates observed",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_dependency_automation",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 2",
                "points": 2,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "primary_language": "Rust",
              "largest_source_bytes": 164470,
              "source_files_sampled": 1335,
              "oversized_source_files": 7
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "Rust (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Rust"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "7/1335 source files over 60KB",
                "points": 54.7,
                "status": "partial",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 1335,
                      "oversized": 7
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          },
          {
            "key": "ai_interfaces",
            "band": "critical",
            "name": "Machine-readable interfaces",
            "note": null,
            "notes": [],
            "value": 20,
            "inputs": {
              "example_dirs": [],
              "has_mcp_signal": true,
              "api_schema_files": []
            },
            "components": [
              {
                "key": "api_schema_openapi_graphql_proto",
                "name": "API schema (OpenAPI/GraphQL/proto)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 40
              },
              {
                "key": "mcp_server",
                "name": "MCP server",
                "detail": null,
                "points": 20,
                "status": "met",
                "details": [],
                "max_points": 20
              },
              {
                "key": "runnable_examples",
                "name": "Runnable examples",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 40
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "Community profile unavailable",
    "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
    "deps.dev does not index npm:vibe-kanban-indie@0.2.23; advisories assessed against the repository dependency graph instead"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-22T03:02:08.437987Z",
  "schema_version": "0.26.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/d/dexloom/vibe-kanban-indie.svg",
  "full_name": "dexloom/vibe-kanban-indie",
  "license_state": "standard",
  "license_spdx": "Apache-2.0"
}

评分是信号,而非担保。 评分反映的是 GitHub 上公开可见的实践——不是代码审计,也不是安全保证。

缺失数据将被剔除并重新归一化权重,绝不按零分计。方法论已版本化并公开:指标 v1.13.0、模式 v0.26.0—— 完整方法论 · 指标知识库.

单项结果在整体记录中的位置: 汇总统计npm.