公开记录
软件健康报告模式 0.27.0 · 指标 1.13.0 · 2026-07-26 03:31 UTC

jan-xyz / crush

Glamourous agentic coding for all 💘

Go自定义许可证★ 0 星标⑂ 0 复刻始于 2026年5月复刻在 GitHub 上查看 ↗

jan-xyz/crush 的健康指数为 100 分中的 51 分,处于「中等」区间。 其得分最高的类别是AI Readiness(90/100),最低的是Community & Adoption(9/100)。 最近一次更新在 4 天前。 近期的大部分工作由 3 位贡献者完成。

51
总分 / 100
中等

软件健康指数

指标归入加权类别,统一采用 1–100 量表。总体分先取类别加权平均;当公开证据触发高风险司法辖区政策时,评级会按政策调整,并设置 49(有风险)的上限。AI 就绪度不计入总体分。

51
优秀85-100堪称典范;基本满足所有检验标准
良好70-84健康;仅有轻微不足
中等50-69可接受,但存在明显不足;建议进行审查
存在风险30-49存在重大薄弱环节;采用时应保持审慎
危急1-29问题严重(项目被弃置、仅有单一维护者、缺乏基本工程规范)
活力社区与采用可持续性与治理工程质量安全AI 就绪度

评分画像

每条轴代表一个类别。形状比平均值更重要——健康的对象会填满整个图形,而“一峰一谷”式画像意味着某一维度的优势正掩盖另一维度的风险。

所有权

Jan Steinke个人账户
37 关注者68 个公开仓库始于 2013年8月MOIA GmbH

该仓库由个人账户拥有。相较于组织支持的项目,单一所有者项目的延续性风险更高。

软件包生态系统

注册表软件包版本月下载量版本数最近发布
Gogithub.com/charmbracelet/crush指向其他仓库——不计分v0.87.0-1891 天前

按类别列示的指标

活力

项目是否仍有生命——是否仍在编写代码,是否仍在发布版本?

85优秀 · 占总体的 22%
评分方式
36/36推送新近度 — 最近一次推送于 4 天前
29.1/36提交节奏 — 52 周中有 42 周有提交
18/18提交量 — 最近一年 2,260 次提交
0/10OpenSSF Scorecard:Maintained — project was created within the last 90 days. Please review its contents carefully
所用输入
commits_last_year2,260
human_commit_share0.96
days_since_last_push4
active_weeks_last_year42

发布纪律

88优秀
评分方式
16.2/27有发布版本 — 100 个版本标签(无 GitHub 发布版本)
36/36发布时效 — 最近一次发布版本于 30 天前
27/27发布节奏 — 约每 3.3 天发布一次
0/10OpenSSF Scorecard:Signed-Releases — 无数据
所用输入
releases_count100
latest_release_tagv0.80.0
releases_from_tags
days_since_latest_release30
mean_days_between_releases3.3
已排除计分(无数据或不适用):OpenSSF Scorecard:Signed-Releases。 其余权重已重新归一化。

社区与采用

项目是否拥有用户、下载量与关注度,并具备欢迎贡献者参与的配置?

9危急 · 占总体的 18%
评分方式
0/60星标 — 0 个星标
0/25复刻 — 0 个复刻
0/15关注者 — 0 位关注者
所用输入
forks0
stars0
watchers0
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history

社区健康

19危急
评分方式
0/22.5README
16.9/22.5许可证 — 存在许可证文件,但不是可识别的许可证
0/18CONTRIBUTING 指南
0/13.5行为准则
0/7.2议题模板
0/6.3PR 模板
所用输入
has_readme
has_license
has_contributing
has_issue_template
has_code_of_conduct
has_pull_request_template

可持续性与治理

项目能否在其成员之外延续——巴士系数、响应能力、由谁支持,以及软件包的维护状况?

47存在风险 · 占总体的 24%
评分方式
36/54巴士系数 — 3 位贡献者贡献了半数提交
16.3/22.5提交分布 — 头号贡献者编写了 27% 的提交
13.5/13.5贡献者广度 — 97 位贡献者
10/10OpenSSF Scorecard:Contributors — project has 48 contributing companies or organizations
所用输入
bus_factor3
contributors_sampled97
top_contributor_share0.274
评分方式
0/46.8议题解决 — 没有议题或无数据
0/38.3PR 接受 — 没有已裁定的拉取请求或无数据
0/15OpenSSF Scorecard:Code-Review — Found 0/30 approved changesets -- score normalized to 0
所用输入
merged_prs0
open_issues0
closed_issues0
issue_closed_ratio
closed_unmerged_prs0
已排除计分(无数据或不适用):议题解决, PR 接受。 其余权重已重新归一化。
评分方式
10/30所有权背书 — 个人(用户)账户
0/20已验证域名 — 不适用于个人账户
11.4/25所有者影响力 — jan-xyz 有 37 位关注者
25/25既往记录 — 68 个公开仓库,账户约 12 年
所用输入
followers37
owner_typeUser
is_verified
owner_loginjan-xyz
public_repos68
account_age_days4,725
已排除计分(无数据或不适用):已验证域名。 其余权重已重新归一化。

工程质量

基础的工程与文档实践是否到位?

62中等 · 占总体的 20%

工程实践

80良好
评分方式
24/24CI 工作流 — 10 个工作流
24/24存在测试
16/16Linter 配置 — .golangci.yml
0/9.6Pre-commit 钩子
0/6.4.editorconfig
0/20OpenSSF Scorecard:CI-Tests — 无数据
所用输入
has_ci
has_tests
has_editorconfig
has_linter_config
has_precommit_config
已排除计分(无数据或不适用):OpenSSF Scorecard:CI-Tests。 其余权重已重新归一化。

文档

35存在风险
评分方式
0/30README
25/25文档目录
0/15文档 / 主页站点
0/10仓库描述
0/10主题标签
10/10Wiki
所用输入
topics
has_wiki
homepage
has_readme
has_docs_dir
has_description

安全

可见的安全与供应链实践是否稳固,且不存在未解决的高风险司法辖区暴露?

42存在风险 · 占总体的 16%

安全态势

42存在风险
评分方式
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — branch protection not enabled on development/release branches
0/2.5CI-Tests — 无数据
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 0/30 approved changesets -- score normalized to 0
2.5/2.5Contributors — project has 48 contributing companies or organizations
10/10Dangerous-Workflow — no dangerous workflow patterns detected
7.5/7.5Dependency-Update-Tool — update tool detected
0/5Fuzzing — project is not fuzzed
2.2/2.5许可证 — license file detected
0/7.5Maintained — project was created within the last 90 days. Please review its contents carefully
0/5Packaging — 无数据
3/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 6
5/5SAST — SAST tool detected: CodeQL
0/5Security-Policy — security policy file not detected
0/7.5Signed-Releases — 无数据
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
0/7.5Vulnerabilities — 36 existing vulnerabilities detected
所用输入
sourceopenssf_scorecard
checks_evaluated15
scorecard_versionv5.5.0
checks_inconclusive3
scorecard_aggregate4.2
已排除计分(无数据或不适用):ci_tests, packaging, signed_releases。 其余权重已重新归一化。

AI 就绪度

该仓库在多大程度上具备与 AI 编码代理协同开发与维护的条件?这是一枚独立的实验性徽章——权重为 0.0,因此单独呈现,不影响总体健康评分。

90优秀 · 占总体的 0%
评分方式
45/45代理指令 — AGENTS.md, internal/cmd/stats/AGENTS.md, internal/ui/AGENTS.md
0/15机器可读文档(llms.txt)
40/40可读的提交历史 — 96 次人类提交中有 89 次说明了意图(结构化标题或解释性正文)
所用输入
has_llms_txt
legible_history_share0.927
agent_instruction_filesAGENTS.md, internal/cmd/stats/AGENTS.md, internal/ui/AGENTS.md
agent_instruction_max_bytes8,447
评分方式
18/18一条命令的引导启动 — Taskfile.yaml, internal/ui/diffview/Taskfile.yaml
22/22自动化测试
11/11Lint / 格式化配置 — .golangci.yml
11/11静态类型检查 — Go(静态类型)
10/10可复现环境 — Nix, lockfile
0/10已体现的代理实践 — 最近 100 次提交中没有代理编写的提交
8/8自动化维护 — 最近 100 次提交中有 4 次为自动依赖更新
6/10OpenSSF Scorecard:Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 6
所用输入
has_nix
has_tests
lockfilesgo.sum
has_dockerfile
typed_language
bootstrap_filesTaskfile.yaml, internal/ui/diffview/Taskfile.yaml
has_devcontainer
has_linter_config
typecheck_configs
agent_commit_share0
toolchain_manifestsgo.mod
dependency_bot_commit_share0.04
评分方式
45/45可类型检查的代码 — Go(静态类型)
54.7/55可控的文件大小 — 采样的 373 个源文件中有 2 个超过 60KB
所用输入
primary_languageGo
largest_source_bytes118,238
source_files_sampled373
oversized_source_files2
评分方式
40/40API 模式(OpenAPI/GraphQL/proto) — internal/swagger/swagger.json, internal/swagger/swagger.yaml
20/20MCP 服务器
40/40可运行示例 — example, examples
所用输入
example_dirsexample, examples
has_mcp_signal
api_schema_filesinternal/swagger/swagger.json, internal/swagger/swagger.yaml

关键数据

0GitHub 星标
97贡献者
2,260最近 12 个月提交数
4距最近推送天数
100发布版本数
3巴士系数(bus factor)
0开放议题
Go软件包生态系统数

数据采集警告

  • Community profile unavailable
  • go package 'github.com/charmbracelet/crush' points at a different repository (https://github.com/charmbracelet/crush); excluded from ecosystem scoring
  • GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

更多细节

OpenSSF Scorecard 4.2 / 10
4.2综合

来自开源项目 OpenSSF Scorecard 的独立、工具无关的安全评估。每项检查奖励的是安全实践本身,而非特定供应商的工具。Scorecard 无法判定的检查项标记为 不适用,并从安全评分中剔除(绝不按零分计)。Scorecard v5.5.0 · 2026-07-26 03:31 UTC

10Binary-Artifactsno binaries found in the repo
0Branch-Protectionbranch protection not enabled on development/release branches
不适用CI-Testsno pull request found
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 0/30 approved changesets -- score normalized to 0
10Contributorsproject has 48 contributing companies or organizations
10Dangerous-Workflowno dangerous workflow patterns detected
10Dependency-Update-Toolupdate tool detected
0Fuzzingproject is not fuzzed
9Licenselicense file detected
0Maintainedproject was created within the last 90 days. Please review its contents carefully
不适用Packaginginternal error: Client.Actions.ListWorkflowRunsByFileName: internal error: ListWorkflowRunsByFileName: GET https://api.github.com/repos/jan-xyz/crush/actions/workflows/snapshot.yml/runs?status=success: 404 Not Found []
6Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 6
10SASTSAST tool detected: CodeQL
0Security-Policysecurity policy file not detected
不适用Signed-Releasesno releases found
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
0Vulnerabilities36 existing vulnerabilities detected
直接依赖 73
注册表软件包版本约束清单文件
Gocharm.land/bubbles/v2v2.1.0go.mod
Gocharm.land/bubbletea/v2v2.0.6go.mod
Gocharm.land/catwalkv0.39.8go.mod
Gocharm.land/fang/v2v2.0.1go.mod
Gocharm.land/fantasyv0.23.1go.mod
Gocharm.land/glamour/v2v2.0.0go.mod
Gocharm.land/lipgloss/v2v2.0.3go.mod
Gocharm.land/log/v2v2.0.0go.mod
Gocharm.land/x/vcrv0.1.1go.mod
Gogithub.com/JohannesKaufmann/html-to-markdownv1.6.0go.mod
Gogithub.com/MakeNowJust/heredocv1.0.0go.mod
Gogithub.com/Microsoft/go-winiov0.6.2go.mod
Gogithub.com/PuerkitoBio/goqueryv1.12.0go.mod
Gogithub.com/alecthomas/chroma/v2v2.24.1go.mod
Gogithub.com/atotto/clipboardv0.1.4go.mod
Gogithub.com/aymanbagabas/go-nativeclipboardv0.1.3go.mod
Gogithub.com/aymanbagabas/go-udiffv0.4.1go.mod
Gogithub.com/bmatcuk/doublestar/v4v4.10.0go.mod
Gogithub.com/charlievieth/fastwalkv1.0.14go.mod
Gogithub.com/charmbracelet/colorprofilev0.4.3go.mod
Gogithub.com/charmbracelet/openai-gov0.0.0-20260319145158-d0740cc34266go.mod
Gogithub.com/charmbracelet/ultravioletv0.0.0-20260416155717-489999b90468go.mod
Gogithub.com/charmbracelet/x/ansiv0.11.7go.mod
Gogithub.com/charmbracelet/x/editorv0.2.0go.mod
Gogithub.com/charmbracelet/x/etagv0.2.0go.mod
Gogithub.com/charmbracelet/x/exp/charmtonev0.0.0-20260109001716-2fbdffcb221fgo.mod
Gogithub.com/charmbracelet/x/exp/goldenv0.0.0-20250806222409-83e3a29d542fgo.mod
Gogithub.com/charmbracelet/x/exp/orderedv0.1.0go.mod
Gogithub.com/charmbracelet/x/exp/slicev0.0.0-20260422141420-a6cbdff8a7e2go.mod
Gogithub.com/charmbracelet/x/exp/stringsv0.1.0go.mod
Gogithub.com/charmbracelet/x/powernapv0.1.5go.mod
Gogithub.com/charmbracelet/x/termv0.2.2go.mod
Gogithub.com/clipperhouse/displaywidthv0.11.0go.mod
Gogithub.com/clipperhouse/uax29/v2v2.7.0go.mod
Gogithub.com/denisbrodbeck/machineidv1.0.1go.mod
Gogithub.com/disintegration/imagingv1.6.2go.mod
Gogithub.com/dustin/go-humanizev1.0.1go.mod
Gogithub.com/gen2brain/beeepv0.11.2go.mod
Gogithub.com/go-git/go-git/v5v5.19.0go.mod
Gogithub.com/google/uuidv1.6.0go.mod
Gogithub.com/invopop/jsonschemav0.14.0go.mod
Gogithub.com/itchyny/gojqv0.12.19go.mod
Gogithub.com/joho/godotenvv1.5.1go.mod
Gogithub.com/jordanella/go-ansi-paintbrushv0.0.0-20240728195301-b7ad996ecf3dgo.mod
Gogithub.com/lucasb-eyer/go-colorfulv1.4.0go.mod
Gogithub.com/mattn/go-isattyv0.0.22go.mod
Gogithub.com/modelcontextprotocol/go-sdkv1.6.0go.mod
Gogithub.com/ncruces/go-sqlite3v0.34.1go.mod
Gogithub.com/nxadm/tailv1.4.11go.mod
Gogithub.com/pkg/browserv0.0.0-20240102092130-5ac0b6a4141cgo.mod
Gogithub.com/posthog/posthog-gov1.12.5go.mod
Gogithub.com/pressly/goose/v3v3.27.1go.mod
Gogithub.com/qjebbs/go-jsonsv1.0.0-alpha.5go.mod
Gogithub.com/rivo/unisegv0.4.7go.mod
Gogithub.com/sahilm/fuzzyv0.1.2go.mod
Gogithub.com/sourcegraph/jsonrpc2v0.2.1go.mod
Gogithub.com/spf13/cobrav1.10.2go.mod
Gogithub.com/stretchr/testifyv1.11.1go.mod
Gogithub.com/swaggo/http-swagger/v2v2.0.2go.mod
Gogithub.com/swaggo/swagv1.16.6go.mod
Gogithub.com/tidwall/gjsonv1.19.0go.mod
Gogithub.com/tidwall/sjsonv1.2.5go.mod
Gogithub.com/zeebo/xxh3v1.1.0go.mod
Gogo.uber.org/goleakv1.3.0go.mod
Gogolang.org/x/netv0.54.0go.mod
Gogolang.org/x/syncv0.20.0go.mod
Gogolang.org/x/sysv0.44.0go.mod
Gogolang.org/x/textv0.37.0go.mod
Gogopkg.in/natefinch/lumberjack.v2v2.2.1go.mod
Gogopkg.in/yaml.v3v3.0.1go.mod
Gomodernc.org/sqlitev1.50.1go.mod
Gomvdan.cc/sh/moreinterpv0.0.0-20250902163504-3cf4fd5717a5go.mod
Gomvdan.cc/sh/v3v3.13.1go.mod
全部依赖 未采集

本报告未能采集到解析后的依赖集合:GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

原始 JSON 报告 机器可读
{
  "data": {
    "repo": {
      "topics": [],
      "is_fork": true,
      "size_kb": 26303,
      "has_wiki": true,
      "homepage": null,
      "languages": {
        "Go": 2371164,
        "CSS": 4257,
        "Nix": 1043,
        "HTML": 4039,
        "Shell": 716,
        "JavaScript": 10347,
        "Go Template": 32179
      },
      "pushed_at": "2026-07-21T22:07:32Z",
      "created_at": "2026-05-12T15:45:10Z",
      "owner_type": "User",
      "updated_at": "2026-05-12T15:45:11Z",
      "description": "Glamourous agentic coding for all 💘",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": null,
      "default_branch": "main",
      "license_spdx_raw": "NOASSERTION",
      "primary_language": "Go",
      "significant_languages": [
        "Go"
      ]
    },
    "owner": {
      "blog": null,
      "name": "Jan Steinke",
      "type": "User",
      "login": "jan-xyz",
      "company": "MOIA GmbH",
      "location": "Hamburg, Germany",
      "followers": 37,
      "avatar_url": "https://avatars.githubusercontent.com/u/5249233?v=4",
      "created_at": "2013-08-17T06:59:05Z",
      "is_verified": null,
      "public_repos": 68,
      "account_age_days": 4725
    },
    "license": {
      "state": "custom",
      "spdx_id": null,
      "raw_spdx": "NOASSERTION",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": false
    },
    "activity": {
      "releases": [
        {
          "tag": "v0.80.0",
          "kind": "minor",
          "published_at": "2026-06-25T17:53:51Z"
        },
        {
          "tag": "v0.79.1",
          "kind": "patch",
          "published_at": "2026-06-20T12:22:10Z"
        },
        {
          "tag": "v0.79.0",
          "kind": "minor",
          "published_at": "2026-06-19T20:38:39Z"
        },
        {
          "tag": "v0.78.0",
          "kind": "minor",
          "published_at": "2026-06-19T13:37:46Z"
        },
        {
          "tag": "v0.77.0",
          "kind": "minor",
          "published_at": "2026-06-14T18:15:21Z"
        },
        {
          "tag": "v0.76.0",
          "kind": "minor",
          "published_at": "2026-06-05T20:52:14Z"
        },
        {
          "tag": "v0.75.0",
          "kind": "minor",
          "published_at": "2026-06-02T21:40:46Z"
        },
        {
          "tag": "v0.74.1",
          "kind": "patch",
          "published_at": "2026-05-29T20:37:14Z"
        },
        {
          "tag": "v0.74.0",
          "kind": "minor",
          "published_at": "2026-05-28T21:18:44Z"
        },
        {
          "tag": "v0.73.0",
          "kind": "minor",
          "published_at": "2026-05-26T18:21:15Z"
        },
        {
          "tag": "v0.72.0",
          "kind": "minor",
          "published_at": "2026-05-25T21:00:06Z"
        },
        {
          "tag": "v0.71.0",
          "kind": "minor",
          "published_at": "2026-05-22T19:43:42Z"
        },
        {
          "tag": "v0.70.0",
          "kind": "minor",
          "published_at": "2026-05-18T20:18:14Z"
        },
        {
          "tag": "v0.69.1",
          "kind": "patch",
          "published_at": "2026-05-15T20:24:49Z"
        },
        {
          "tag": "v0.69.0",
          "kind": "minor",
          "published_at": "2026-05-15T13:15:01Z"
        },
        {
          "tag": "v0.68.0",
          "kind": "minor",
          "published_at": "2026-05-14T20:26:02Z"
        },
        {
          "tag": "v0.67.0",
          "kind": "minor",
          "published_at": "2026-05-11T20:44:32Z"
        },
        {
          "tag": "v0.66.1",
          "kind": "patch",
          "published_at": "2026-05-08T21:05:59Z"
        },
        {
          "tag": "v0.66.0",
          "kind": "minor",
          "published_at": "2026-05-06T20:45:33Z"
        },
        {
          "tag": "v0.65.3",
          "kind": "patch",
          "published_at": "2026-05-04T21:23:43Z"
        },
        {
          "tag": "v0.65.2",
          "kind": "patch",
          "published_at": "2026-05-01T19:24:20Z"
        },
        {
          "tag": "v0.65.1",
          "kind": "patch",
          "published_at": "2026-05-01T19:20:36Z"
        },
        {
          "tag": "v0.65.0",
          "kind": "minor",
          "published_at": "2026-05-01T18:51:31Z"
        },
        {
          "tag": "v0.64.0",
          "kind": "minor",
          "published_at": "2026-04-29T13:29:06Z"
        },
        {
          "tag": "v0.63.0",
          "kind": "minor",
          "published_at": "2026-04-27T20:25:58Z"
        },
        {
          "tag": "v0.62.1",
          "kind": "patch",
          "published_at": "2026-04-24T20:22:58Z"
        },
        {
          "tag": "v0.62.0",
          "kind": "minor",
          "published_at": "2026-04-22T21:02:06Z"
        },
        {
          "tag": "v0.61.1",
          "kind": "patch",
          "published_at": "2026-04-21T13:30:41Z"
        },
        {
          "tag": "v0.61.0",
          "kind": "minor",
          "published_at": "2026-04-20T20:37:57Z"
        },
        {
          "tag": "v0.60.0",
          "kind": "minor",
          "published_at": "2026-04-17T16:48:04Z"
        },
        {
          "tag": "v0.59.0",
          "kind": "minor",
          "published_at": "2026-04-16T21:13:30Z"
        },
        {
          "tag": "v0.58.0",
          "kind": "minor",
          "published_at": "2026-04-15T20:58:08Z"
        },
        {
          "tag": "v0.57.0",
          "kind": "minor",
          "published_at": "2026-04-13T20:45:50Z"
        },
        {
          "tag": "v0.56.0",
          "kind": "minor",
          "published_at": "2026-04-08T20:05:30Z"
        },
        {
          "tag": "v0.55.1",
          "kind": "patch",
          "published_at": "2026-04-06T20:09:38Z"
        },
        {
          "tag": "v0.55.0",
          "kind": "minor",
          "published_at": "2026-04-02T20:44:46Z"
        },
        {
          "tag": "v0.54.0",
          "kind": "minor",
          "published_at": "2026-03-31T20:31:55Z"
        },
        {
          "tag": "v0.53.0",
          "kind": "minor",
          "published_at": "2026-03-27T19:15:09Z"
        },
        {
          "tag": "v0.52.0",
          "kind": "minor",
          "published_at": "2026-03-25T20:11:10Z"
        },
        {
          "tag": "v0.51.3",
          "kind": "patch",
          "published_at": "2026-03-24T20:15:21Z"
        },
        {
          "tag": "v0.51.2",
          "kind": "patch",
          "published_at": "2026-03-20T20:21:24Z"
        },
        {
          "tag": "v0.51.1",
          "kind": "patch",
          "published_at": "2026-03-19T20:47:46Z"
        },
        {
          "tag": "v0.51.0",
          "kind": "minor",
          "published_at": "2026-03-19T17:47:52Z"
        },
        {
          "tag": "v0.50.1",
          "kind": "patch",
          "published_at": "2026-03-17T18:28:49Z"
        },
        {
          "tag": "v0.50.0",
          "kind": "minor",
          "published_at": "2026-03-16T20:44:36Z"
        },
        {
          "tag": "v0.49.0",
          "kind": "minor",
          "published_at": "2026-03-13T21:07:26Z"
        },
        {
          "tag": "v0.48.0",
          "kind": "minor",
          "published_at": "2026-03-12T17:27:49Z"
        },
        {
          "tag": "v0.47.2",
          "kind": "patch",
          "published_at": "2026-03-05T20:33:08Z"
        },
        {
          "tag": "v0.47.1",
          "kind": "patch",
          "published_at": "2026-03-05T14:26:51Z"
        },
        {
          "tag": "v0.47.0",
          "kind": "minor",
          "published_at": "2026-03-04T14:42:07Z"
        },
        {
          "tag": "v0.46.2",
          "kind": "patch",
          "published_at": "2026-03-02T20:12:01Z"
        },
        {
          "tag": "v0.46.1",
          "kind": "patch",
          "published_at": "2026-02-27T20:13:55Z"
        },
        {
          "tag": "v0.46.0",
          "kind": "minor",
          "published_at": "2026-02-26T20:04:52Z"
        },
        {
          "tag": "v0.45.1",
          "kind": "patch",
          "published_at": "2026-02-25T21:07:57Z"
        },
        {
          "tag": "v0.45.0",
          "kind": "minor",
          "published_at": "2026-02-24T20:59:35Z"
        },
        {
          "tag": "v0.44.0",
          "kind": "minor",
          "published_at": "2026-02-22T18:31:02Z"
        },
        {
          "tag": "v0.43.4",
          "kind": "patch",
          "published_at": "2026-02-20T18:23:14Z"
        },
        {
          "tag": "v0.43.3",
          "kind": "patch",
          "published_at": "2026-02-20T18:10:52Z"
        },
        {
          "tag": "v0.43.2",
          "kind": "patch",
          "published_at": "2026-02-19T14:07:57Z"
        },
        {
          "tag": "v0.43.1",
          "kind": "patch",
          "published_at": "2026-02-18T20:32:19Z"
        },
        {
          "tag": "v0.43.0",
          "kind": "minor",
          "published_at": "2026-02-13T17:59:08Z"
        },
        {
          "tag": "v0.42.0",
          "kind": "minor",
          "published_at": "2026-02-11T21:09:16Z"
        },
        {
          "tag": "v0.41.0",
          "kind": "minor",
          "published_at": "2026-02-09T20:42:06Z"
        },
        {
          "tag": "v0.40.0",
          "kind": "minor",
          "published_at": "2026-02-09T14:40:35Z"
        },
        {
          "tag": "v0.39.3",
          "kind": "patch",
          "published_at": "2026-02-05T14:34:07Z"
        },
        {
          "tag": "v0.39.2",
          "kind": "patch",
          "published_at": "2026-02-05T13:17:54Z"
        },
        {
          "tag": "v0.39.1",
          "kind": "patch",
          "published_at": "2026-02-04T12:30:41Z"
        },
        {
          "tag": "v0.39.0",
          "kind": "minor",
          "published_at": "2026-02-03T19:26:16Z"
        },
        {
          "tag": "v0.38.1",
          "kind": "patch",
          "published_at": "2026-02-02T16:33:37Z"
        },
        {
          "tag": "v0.38.0",
          "kind": "minor",
          "published_at": "2026-02-02T14:38:34Z"
        },
        {
          "tag": "v0.37.0",
          "kind": "minor",
          "published_at": "2026-01-30T17:01:19Z"
        },
        {
          "tag": "v0.36.0",
          "kind": "minor",
          "published_at": "2026-01-27T13:48:17Z"
        },
        {
          "tag": "v0.35.0",
          "kind": "minor",
          "published_at": "2026-01-23T20:26:17Z"
        },
        {
          "tag": "v0.34.0",
          "kind": "minor",
          "published_at": "2026-01-21T21:16:06Z"
        },
        {
          "tag": "v0.33.3",
          "kind": "patch",
          "published_at": "2026-01-18T09:19:54Z"
        },
        {
          "tag": "v0.33.2",
          "kind": "patch",
          "published_at": "2026-01-16T21:40:06Z"
        },
        {
          "tag": "v0.33.1",
          "kind": "patch",
          "published_at": "2026-01-16T21:00:03Z"
        },
        {
          "tag": "v0.33.0",
          "kind": "minor",
          "published_at": "2026-01-16T20:17:52Z"
        },
        {
          "tag": "v0.32.1",
          "kind": "patch",
          "published_at": "2026-01-13T20:57:08Z"
        },
        {
          "tag": "v0.32.0",
          "kind": "minor",
          "published_at": "2026-01-12T18:33:10Z"
        },
        {
          "tag": "v0.31.0",
          "kind": "minor",
          "published_at": "2026-01-07T16:20:04Z"
        },
        {
          "tag": "v0.30.3",
          "kind": "patch",
          "published_at": "2026-01-05T16:55:48Z"
        },
        {
          "tag": "v0.30.2",
          "kind": "patch",
          "published_at": "2026-01-04T02:00:26Z"
        },
        {
          "tag": "v0.30.1",
          "kind": "patch",
          "published_at": "2026-01-03T17:43:33Z"
        },
        {
          "tag": "v0.29.1",
          "kind": "patch",
          "published_at": "2025-12-22T18:27:20Z"
        },
        {
          "tag": "v0.29.0",
          "kind": "minor",
          "published_at": "2025-12-19T19:44:57Z"
        },
        {
          "tag": "v0.28.0",
          "kind": "minor",
          "published_at": "2025-12-18T21:11:12Z"
        },
        {
          "tag": "v0.27.0",
          "kind": "minor",
          "published_at": "2025-12-17T18:56:28Z"
        },
        {
          "tag": "v0.26.0",
          "kind": "minor",
          "published_at": "2025-12-16T19:48:56Z"
        },
        {
          "tag": "v0.25.0",
          "kind": "minor",
          "published_at": "2025-12-16T14:34:04Z"
        },
        {
          "tag": "v0.24.0",
          "kind": "minor",
          "published_at": "2025-12-12T20:34:30Z"
        },
        {
          "tag": "v0.23.0",
          "kind": "minor",
          "published_at": "2025-12-11T20:08:15Z"
        },
        {
          "tag": "v0.22.2",
          "kind": "patch",
          "published_at": "2025-12-10T13:25:10Z"
        },
        {
          "tag": "v0.22.1",
          "kind": "patch",
          "published_at": "2025-12-08T16:30:16Z"
        },
        {
          "tag": "v0.22.0",
          "kind": "minor",
          "published_at": "2025-12-08T15:04:02Z"
        },
        {
          "tag": "v0.21.0",
          "kind": "minor",
          "published_at": "2025-12-04T16:17:31Z"
        },
        {
          "tag": "v0.20.1",
          "kind": "patch",
          "published_at": "2025-12-01T22:39:25Z"
        },
        {
          "tag": "v0.20.0",
          "kind": "minor",
          "published_at": "2025-12-01T20:20:32Z"
        },
        {
          "tag": "v0.19.4",
          "kind": "patch",
          "published_at": "2025-12-01T13:43:30Z"
        },
        {
          "tag": "v0.19.3",
          "kind": "patch",
          "published_at": "2025-11-29T15:52:22Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "651abb48aecf6a46e0557dd69d0ad1f399b2de9e",
          "body": null,
          "is_bot": false,
          "headline": "chore(golden): rerecord vhs",
          "author_name": "Kieran Klukas",
          "author_login": "taciturnaxolotl",
          "committed_at": "2026-05-12T14:54:58Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "efb3b03390d40c41cf54a009230b8db3eac7072c",
          "body": null,
          "is_bot": false,
          "headline": "feat(prompts): remove long prompt option",
          "author_name": "Kieran Klukas",
          "author_login": "taciturnaxolotl",
          "committed_at": "2026-05-12T14:54:58Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7b34700a8fddcbe0fa28dae999bf04fe55d26443",
          "body": null,
          "is_bot": false,
          "headline": "chore: auto-update files",
          "author_name": "Charm",
          "author_login": "charmcli",
          "committed_at": "2026-05-12T14:39:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c853a939ef079d5e8b662df41f61fe7932d61628",
          "body": "…2883)\n\nCo-authored-by: Charm Crush <crush@charm.land>",
          "is_bot": false,
          "headline": "fix(config): always resolve the data directory to an absolute path (#…",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-12T14:37:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bf5dd26e59741737bd359739249a67a304e4f1ef",
          "body": null,
          "is_bot": false,
          "headline": "fix(paste): normalize windows newlines",
          "author_name": "Kieran Klukas",
          "author_login": "taciturnaxolotl",
          "committed_at": "2026-05-11T21:04:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a1a480600d31bbe474043a8cee4bfc3734feb698",
          "body": null,
          "is_bot": false,
          "headline": "v0.67.0",
          "author_name": "Andrey Nering",
          "author_login": "andreynering",
          "committed_at": "2026-05-11T20:44:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2235a49d0dc5433e1d7015f90f10aa4d65864383",
          "body": null,
          "is_bot": false,
          "headline": "fix: limit view size checks to returned content (#2785)",
          "author_name": "Greg Slepak",
          "author_login": "taoeffect",
          "committed_at": "2026-05-11T20:36:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "24da509486e374024e9a03d27aab26bfdeef9cc8",
          "body": "We were not using the correct format. According to the SPEC it should be:\n\n    Assisted-by: AGENT_NAME:MODEL_VERSION\n\nSo now it'll look like this:\n\n    Assisted-by: Crush:kimi-k2.6\n\nSee:\n\nhttps://docs.kernel.org/process/coding-assistants.html#attribution",
          "is_bot": false,
          "headline": "fix: properly follow the `Assisted-by` header spec (#2871)",
          "author_name": "Andrey Nering",
          "author_login": "andreynering",
          "committed_at": "2026-05-11T20:23:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1d42341dc89ce897280360612d345fdc26a776fc",
          "body": null,
          "is_bot": false,
          "headline": "docs(hooks): clarify relative paths",
          "author_name": "Kieran Klukas",
          "author_login": "taciturnaxolotl",
          "committed_at": "2026-05-11T19:55:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "61a9fcedcbaea1bceb66a2ad70cfeb66d60c8579",
          "body": null,
          "is_bot": false,
          "headline": "fix(config): individual errors on json parse",
          "author_name": "Kieran Klukas",
          "author_login": "taciturnaxolotl",
          "committed_at": "2026-05-11T19:55:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3b0d5de2b831f76b9a03533142aad48c0a5bfc76",
          "body": null,
          "is_bot": false,
          "headline": "chore: auto-update files",
          "author_name": "Charm",
          "author_login": "charmcli",
          "committed_at": "2026-05-11T18:08:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "da262be6374f90da2f889cb8edcafe85ace85038",
          "body": null,
          "is_bot": false,
          "headline": "fix(schema): fix schema descriptions being cut off",
          "author_name": "Kieran Klukas",
          "author_login": "taciturnaxolotl",
          "committed_at": "2026-05-11T18:06:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9d3466885813791119e6d3bf72460eb0b623f894",
          "body": "I keep hitting a bug where a turn finishes -- desktop notification\nfires, agent is clearly done -- but the terminal stays stuck on\nthe spinner with input blocked until something unrelated wakes\nthe TUI up.\n\nThe TUI polls IsSessionBusy() inside its TypeAgentFinished\nhandler and only re-evaluates on i\n[…]\nession's cancel func, so the poll on receipt sees true and\nthe busy gates stay stuck.  Reorder so cleanup runs first.\n\n💘 Generated with Crush\n\nAssisted-by: Claude Opus 4.7 via Crush <crush@charm.land>",
          "is_bot": false,
          "headline": "fix(agent): release activeRequests before publishing TypeAgentFinished",
          "author_name": "Sven Olsen",
          "author_login": "sven2718",
          "committed_at": "2026-05-11T13:47:47Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "78088cd25c6803234a59aab46f50c8882a6e77f1",
          "body": "* Ref https://github.com/charmbracelet/x/pull/853 by @sven2718",
          "is_bot": false,
          "headline": "fix(lsp): update powernap with fix for lsps windows (#2862)",
          "author_name": "Andrey Nering",
          "author_login": "andreynering",
          "committed_at": "2026-05-11T12:52:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "445d1a05e6424ec7ab9d431938f2116ce7964217",
          "body": null,
          "is_bot": true,
          "headline": "chore(deps): bump the all group with 9 updates (#2861)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-05-11T12:28:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "615c4e92efc8f099d9d013d9b87a9ddeba2aac40",
          "body": null,
          "is_bot": true,
          "headline": "chore(deps): bump the all group with 2 updates (#2860)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-05-11T12:27:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7da38da0b09f58ccbc623beb616ce2db80ad70e6",
          "body": null,
          "is_bot": false,
          "headline": "refactor(tools): remove touch tool; allow empty write content",
          "author_name": "vorticalbox",
          "author_login": "vorticalbox",
          "committed_at": "2026-05-10T20:43:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0da13d76995011ec0ba85bf19d444710f04fdf88",
          "body": "Mirrors the view.go sanitizer pattern (filepath.Abs + filepath.Rel +\n\"..\" check) so CodeQL no longer flags os.Stat/MkdirAll/OpenFile in the\ntouch tool as uncontrolled path expressions.",
          "is_bot": false,
          "headline": "fix(tools/touch): gate outside-workingDir paths via permission prompt",
          "author_name": "vorticalbox",
          "author_login": "vorticalbox",
          "committed_at": "2026-05-10T20:43:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "010ca2f5bf4f0d039b6fe086f195838374582bd6",
          "body": null,
          "is_bot": false,
          "headline": "feat: add touch tool for empty files",
          "author_name": "vorticalbox",
          "author_login": "vorticalbox",
          "committed_at": "2026-05-10T20:43:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "302f4ecf357152659b645a823613eff61dfb29cc",
          "body": null,
          "is_bot": false,
          "headline": "chore: modernize errors.As to errors.AsType",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-10T01:40:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "32410e29a464f7a4c5e0aa27046ee9a725fcb4ec",
          "body": null,
          "is_bot": false,
          "headline": "fix(shell): fix build error post-refactor",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-10T01:40:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "09c83e839d810f6e1e12896e137afa64389b0fe5",
          "body": "feat(hooks): use embedded shell by default",
          "is_bot": false,
          "headline": "Merge pull request #2730 from charmbracelet/hookshell",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-10T00:53:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ac79e5bb0343722d4403607ff6bc6072e6e61081",
          "body": null,
          "is_bot": false,
          "headline": "fix(tools/view): detect image mime type; don't rely on extension (#2757)",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-10T00:23:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8f2fd3d5addea4449bf4a04c291c12bad5faab52",
          "body": "config: lenient shell expansion default, uniform coverage across MCP, LSP, and providers",
          "is_bot": false,
          "headline": "Merge pull request #2788 from charmbracelet/revolve-env-vars-round-two",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-10T00:23:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b7607a0bdb6822c227d4e443889cfce57083292d",
          "body": null,
          "is_bot": false,
          "headline": "chore: auto-update files",
          "author_name": "Charm",
          "author_login": "charmcli",
          "committed_at": "2026-05-10T00:18:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2814e4083573c56da082aa0f68d04d143cc1a9d0",
          "body": "fix(config): restore full shell expansion in MCP config values",
          "is_bot": false,
          "headline": "Merge pull request #2782 from charmbracelet/resolve-env-vars",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-10T00:17:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d7d25cf89fe2613851aa083267ccb0e4389f05a1",
          "body": "… (#2791)\n\nThe assistant message type's toggle-expand method returned no value,\nso it silently failed to satisfy the expandable interface and the\nkeyboard expand path skipped assistant thinking blocks. Expansion\nonly worked via the mouse, which called the concrete method directly.\n\nFixing the signat\n[…]\n, gated on that flag so clicks elsewhere do nothing.\n\nAdds a runtime regression test plus a compile-time interface\nassertion so this can't silently come back.\n\nCo-authored-by: Crush <crush@charm.land>",
          "is_bot": false,
          "headline": "fix(ui/chat): make keyboard expand work for assistant thinking blocks…",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-10T00:15:44Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "ff0e709c4ac8c50dfd7940766a857096fcbc8519",
          "body": null,
          "is_bot": false,
          "headline": "chore(legal): @smeinecke has signed the CLA",
          "author_name": "Charm",
          "author_login": "charmcli",
          "committed_at": "2026-05-09T01:47:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7a8dd00db28f9528bbf326088601f3fa201ce690",
          "body": null,
          "is_bot": false,
          "headline": "chore(legal): @acheong08 has signed the CLA",
          "author_name": "Charm",
          "author_login": "charmcli",
          "committed_at": "2026-05-08T23:37:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2e9fa661ac4e37824d3918f3e9f5a27a85d9b4fe",
          "body": null,
          "is_bot": false,
          "headline": "chore(legal): @sven2718 has signed the CLA",
          "author_name": "Charm",
          "author_login": "charmcli",
          "committed_at": "2026-05-08T21:47:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b51b1e29925ac514dcb3425ecb91f7cad6c611ba",
          "body": null,
          "is_bot": false,
          "headline": "v0.66.1",
          "author_name": "Andrey Nering",
          "author_login": "andreynering",
          "committed_at": "2026-05-08T21:05:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "086cfdaeda19d075a4248017070e9f83de776805",
          "body": "When a tool call is made with invalid arguments, Crush will now report\nthe error back so the model will continue working and can do another\nattempt.\n\nFix on Fantasy done by @mkaaad.\n\n* Ref https://github.com/charmbracelet/crush/issues/2776\n* Ref https://github.com/charmbracelet/fantasy/pull/223",
          "is_bot": false,
          "headline": "fix: update fantasy with tool call fixes (#2839)",
          "author_name": "Andrey Nering",
          "author_login": "andreynering",
          "committed_at": "2026-05-08T18:16:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "44ece2c849d22e473b4af4fd97b01a7322de969d",
          "body": null,
          "is_bot": false,
          "headline": "fix(tools): truncate long running background commands to 30k chars",
          "author_name": "Kieran Klukas",
          "author_login": "taciturnaxolotl",
          "committed_at": "2026-05-08T17:44:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "abeaff09a811234805d566db38131cf5cbbda94b",
          "body": "`NewBrokerWithOptions` accepted `channelBufferSize` parameter, but never\nstored or used it, so `Subsribe`` always used the hardcoded\n`bufferSize` constant (64).",
          "is_bot": false,
          "headline": "fix(pubsub): respect channelBufferSize parameter in Subsribe",
          "author_name": "Yeonuk Hwang",
          "author_login": "yeonuk-hwang",
          "committed_at": "2026-05-08T15:44:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f9701886055c04b7b0a8d0c8864f89de462e721e",
          "body": null,
          "is_bot": false,
          "headline": "chore(legal): @yeonuk-hwang has signed the CLA",
          "author_name": "Charm",
          "author_login": "charmcli",
          "committed_at": "2026-05-08T15:33:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "89181a6809289f3a775e90972da409becc264a28",
          "body": null,
          "is_bot": false,
          "headline": "fix(tools): don't return a go error on glob tool failure",
          "author_name": "Kieran Klukas",
          "author_login": "taciturnaxolotl",
          "committed_at": "2026-05-08T15:20:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b90bcc3f2f946052f6981fbf2ee19fa46f24c7c7",
          "body": null,
          "is_bot": false,
          "headline": "fix(ui): allow oauth modals to consume enter",
          "author_name": "Kieran Klukas",
          "author_login": "taciturnaxolotl",
          "committed_at": "2026-05-08T14:58:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d5b47658cb1e2c9bc6491f65726c84ccc7e1adec",
          "body": null,
          "is_bot": false,
          "headline": "docs(readme): fixed typo in hooks (#2801)",
          "author_name": "ardevd",
          "author_login": "ardevd",
          "committed_at": "2026-05-08T14:03:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a924ca1cb6bb15869fd1c9c10c4fbdc5feb8c7f9",
          "body": null,
          "is_bot": false,
          "headline": "fix(tui): show initialization mark errors in status footer (#2825)",
          "author_name": "huaiyuWangh",
          "author_login": "huaiyuWangh",
          "committed_at": "2026-05-08T13:56:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5816fada9363c15bd9bc211c70f97e0e38af2f34",
          "body": null,
          "is_bot": false,
          "headline": "fix(agent): support flat_rate cost handling (#2116)",
          "author_name": "huaiyuWangh",
          "author_login": "huaiyuWangh",
          "committed_at": "2026-05-08T13:55:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "95e93e96ebdc86adc05ad30207ff6302c9d7ce5f",
          "body": null,
          "is_bot": false,
          "headline": "fix(ui): add exit alias to the quit command",
          "author_name": "Kieran Klukas",
          "author_login": "taciturnaxolotl",
          "committed_at": "2026-05-07T23:57:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "11eabdfc6e35a1baa8a764184c5b4afe106f4d66",
          "body": null,
          "is_bot": false,
          "headline": "fix(errors): surface errors in subagents",
          "author_name": "Kieran Klukas",
          "author_login": "taciturnaxolotl",
          "committed_at": "2026-05-07T19:08:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ae1c95ac45ce9472abd12ca347a58e71919b9259",
          "body": null,
          "is_bot": false,
          "headline": "fix(posthog): do not discard custom properties of an error (#2829)",
          "author_name": "Andrey Nering",
          "author_login": "andreynering",
          "committed_at": "2026-05-07T17:29:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5aad7904dba7dab2607d96cbdb3e62483316cea3",
          "body": null,
          "is_bot": false,
          "headline": "fix(tools): fix a potential nill crash in cached glob results",
          "author_name": "Kieran Klukas",
          "author_login": "taciturnaxolotl",
          "committed_at": "2026-05-07T14:28:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8bc4a75289efc3e819a95f9c16f351f9cd4a091f",
          "body": null,
          "is_bot": false,
          "headline": "fix(config): atomically update multiple fields during oauth",
          "author_name": "Kieran Klukas",
          "author_login": "taciturnaxolotl",
          "committed_at": "2026-05-07T14:27:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3b9b361bb4de52586f8b3be7a912001023de5a5b",
          "body": null,
          "is_bot": false,
          "headline": "docs(readme): document `HYPER_API_KEY`",
          "author_name": "Andrey Nering",
          "author_login": "andreynering",
          "committed_at": "2026-05-06T21:23:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "279b501ee7a4952cd7d6eb333baf16de7e4cd96a",
          "body": null,
          "is_bot": false,
          "headline": "v0.66.0",
          "author_name": "Andrey Nering",
          "author_login": "andreynering",
          "committed_at": "2026-05-06T20:45:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8cd4786cc66b29da2412e6cc9f40cfa364cd1a17",
          "body": "…ation\n\nExtract `refreshTokenIfExpired` and `retryAfterUnauthorized` functions\nto eliminate duplicated OAuth/API key refresh logic in both `Run` and\n`Summarize`.\n\n💘 Generated with Crush\n\nAssisted-by: Kimi K2.6 via Crush <crush@charm.land>",
          "is_bot": false,
          "headline": "refactor(coordinator): extract token refresh helpers to reduce duplic…",
          "author_name": "Andrey Nering",
          "author_login": "andreynering",
          "committed_at": "2026-05-06T20:38:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6bdd233b03104c31105c0b7282ef20f9105bbe6d",
          "body": null,
          "is_bot": false,
          "headline": "fix(ui): display error on summarization instead of leaving spinning",
          "author_name": "Kieran Klukas",
          "author_login": "taciturnaxolotl",
          "committed_at": "2026-05-06T20:38:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a4020df6279f6e32dae43204f86fa9db3344de95",
          "body": null,
          "is_bot": false,
          "headline": "fix(summarize): reauthenticate oauth tokens when used to summarize",
          "author_name": "Kieran Klukas",
          "author_login": "taciturnaxolotl",
          "committed_at": "2026-05-06T20:38:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6d95ecc5c7b530f88fa7503d3897a3456a252f53",
          "body": "…m (#2818)\n\nWhen switching from a vision-capable model to one without image support\nmid-conversation, historical user messages containing image attachments\nwould cause API errors. Now those attachments are filtered out from the\nprompt history based on the current model's SupportsImages capability.\n\n💘 Generated with Crush\n\nAssisted-by: Kimi K2.6 via Crush <crush@charm.land>",
          "is_bot": false,
          "headline": "fix: skip image attachments in history when model doesn't support the…",
          "author_name": "Andrey Nering",
          "author_login": "andreynering",
          "committed_at": "2026-05-06T20:05:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "61f49b23ed3fa9bf3abc5677489068712b916b74",
          "body": null,
          "is_bot": false,
          "headline": "fix(agent): drain queued messages after manual session summarize",
          "author_name": "Kieran Klukas",
          "author_login": "taciturnaxolotl",
          "committed_at": "2026-05-06T19:00:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0e039d005194c303e5c0a9ba43cce8f1760008f6",
          "body": null,
          "is_bot": false,
          "headline": "fix(ui): prevent duplicate custom skills from rendering",
          "author_name": "Ilgaz",
          "author_login": "ilgax",
          "committed_at": "2026-05-06T00:33:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9af81e357b90ee2ec569d1c3f536bce7c96cfcf3",
          "body": null,
          "is_bot": false,
          "headline": "merge: resolve conflicts with main",
          "author_name": "Kieran Klukas",
          "author_login": "taciturnaxolotl",
          "committed_at": "2026-05-05T17:21:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3d95ca948e3e5137df3b852cc4e934f80c49eb02",
          "body": null,
          "is_bot": false,
          "headline": "bug: yollo mode via flag doesn't activate prompt",
          "author_name": "Kieran Klukas",
          "author_login": "taciturnaxolotl",
          "committed_at": "2026-05-05T17:18:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c9fd6be3e3720fccdc2e2afad55dcf504141cc52",
          "body": null,
          "is_bot": false,
          "headline": "fix(shell): convert path to posix path in tests",
          "author_name": "Kieran Klukas",
          "author_login": "taciturnaxolotl",
          "committed_at": "2026-05-05T16:50:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "452cd75277496b7a0203d70064ce91253b4ea434",
          "body": null,
          "is_bot": false,
          "headline": "feat: add Nix flake for development environment (#2512)",
          "author_name": "Kieran Klukas",
          "author_login": "taciturnaxolotl",
          "committed_at": "2026-05-05T15:31:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b64cb0290a08e6439aee7468235754688f22299a",
          "body": null,
          "is_bot": false,
          "headline": "chore(legal): @ardevd has signed the CLA",
          "author_name": "Charm",
          "author_login": "charmcli",
          "committed_at": "2026-05-05T07:22:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3aa26d99627b3faa6a2535f19ad8b1e7bcdff545",
          "body": null,
          "is_bot": false,
          "headline": "v0.65.3",
          "author_name": "Andrey Nering",
          "author_login": "andreynering",
          "committed_at": "2026-05-04T21:23:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ecebe91e2c3bd4882f53429bbfaec2a34ee22041",
          "body": null,
          "is_bot": false,
          "headline": "chore: auto-update files",
          "author_name": "Charm",
          "author_login": "charmcli",
          "committed_at": "2026-05-04T21:15:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "812d78bd4d91a7d0e97c8e101024d35cd453c916",
          "body": null,
          "is_bot": false,
          "headline": "chore(deps): update catwalk",
          "author_name": "Andrey Nering",
          "author_login": "andreynering",
          "committed_at": "2026-05-04T21:13:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "99bc5ce850c1da02207ceba39f92afee6cba73fa",
          "body": "When refreshing an OAuth token (e.g. for Hyper), check the config file\non disk first to see if another Crush session already refreshed it.\nIf the disk token differs from the in-memory one, use the disk token\nand skip the external refresh request. Prevents unnecessary token\nchurn and 401s when multiple Crush sessions are running.\n\n💘 Generated with Crush\n\nAssisted-by: Kimi K2.6 via Crush <crush@charm.land>",
          "is_bot": false,
          "headline": "fix(config): check config file for newer token before OAuth refresh",
          "author_name": "Andrey Nering",
          "author_login": "andreynering",
          "committed_at": "2026-05-04T21:13:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1ed6f5248c5eb8d86d002d22578b206a09e2ceed",
          "body": "This is an additional guard to invalidate the cache in the off-chance\nstyles are mutated (rather than updated via applyTheme(), as they\nshould be).",
          "is_bot": false,
          "headline": "refactor(ui): pair markdown cache invalidation with the styles mutation",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-04T20:57:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "19197e30864f22f1b7e29b9f005d3fe6d2bae728",
          "body": "The theme prep overhaul in 755f6fa made the main markdown renderer and\nthinking block markdown renderer heavier, which exasperated a gap in\nperf. Basically every token chunk would clear would clear the per-item\nrender cache and force a re-render.\n\nThis update memoizes renderers with markdown and should generally\ngive us a nice increase in perf compared to what we had before the theme\nrendering.",
          "is_bot": false,
          "headline": "fix(ui): cache glamour renderers",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-04T20:57:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "401084133df3e7b1895de169c4b67aea0f72b572",
          "body": "… (#2690)\n\nCrush could fail to start with \"file is not a database (26)\" after a\nsession ran many sub-agents in parallel. The shared *sql.DB was opened\nwith Go's default unlimited connection pool, so each concurrent sub-agent\n(session/message/cost writes via coordinator.runSubAgent) could open its\now\n[…]\n. #2129, #2576). Defense in depth alongside the\n  pool limit.\n\nFor the ncruces driver the DSN must use the file: URI prefix for query\nparams to be parsed; the plain path form silently ignores _txlock.",
          "is_bot": false,
          "headline": "fix(db): prevent SQLITE_NOTADB corruption under concurrent sub-agents…",
          "author_name": "Greg Slepak",
          "author_login": "taoeffect",
          "committed_at": "2026-05-04T14:22:09Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "481202e63e79c1ab53834478cae34425c2b5f5a6",
          "body": null,
          "is_bot": true,
          "headline": "chore(deps): bump the all group with 4 updates (#2795)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-05-04T13:01:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "81e4d5a01b1ff27a4de19a1e134a6447f23e703e",
          "body": null,
          "is_bot": true,
          "headline": "chore(deps): bump github/codeql-action in the all group (#2794)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-05-04T13:00:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b5c8a6d3d9e79e9d19f286b967b2b6ff7206aa43",
          "body": null,
          "is_bot": false,
          "headline": "chore(legal): @ilgax has signed the CLA",
          "author_name": "Charm",
          "author_login": "charmcli",
          "committed_at": "2026-05-03T21:25:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f9134777c941001444eb57ecc81bfcb49c6366f5",
          "body": "The hand-rolled $VARNAME-only resolver (NewEnvironmentVariableResolver)\nhad no production callers. Tests have been switched to the shell\nresolver, which is what production already uses, and the dead type\nplus its tests are gone.\n\nCo-Authored-By: Charm Crush <crush@charm.land>",
          "is_bot": false,
          "headline": "config: remove unused environment variable resolver",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-03T21:02:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "06f43507a3254ef30f09674003000f42e6c22b0b",
          "body": "Adds a Shell Expansion section to the skill that covers the\nsupported syntax, the quiet-unset default, which fields expand\n(LSP args and env and MCP url included), that extra_body does not\nexpand, the empty-header drop rule, and a short security note. The\nprovider, LSP, and MCP subsections now link to that section instead\nof suggesting $ENV_VAR is the only option.\n\nCo-Authored-By: Charm Crush <crush@charm.land>",
          "is_bot": false,
          "headline": "docs(skill): document shell expansion in crush-config skill",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-03T21:02:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "45f7484b495a6ec4e155d38a82a9935bdb11d8a5",
          "body": "The godoc on the shell variable resolver still said unset variables\nwere a hard error. Updated to match the new lenient default and to\npoint at ${VAR:?message} as the way to require a value.\n\nCo-Authored-By: Charm Crush <crush@charm.land>",
          "is_bot": false,
          "headline": "docs: update resolver godoc to match lenient default",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-03T21:02:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a28aded746952db21274b1c5222438959fa0f31c",
          "body": "Several MCP startup tests were written against the old \"unset\nvariable is an error\" behavior and no longer tripped now that\nmissing variables quietly expand to empty. The fixtures switch to\n$(false) or an empty URL so the failing and empty paths are still\ncovered, and a couple of new subtests pin the new quiet behavior so\nit cannot silently regress.\n\nCo-Authored-By: Charm Crush <crush@charm.land>",
          "is_bot": false,
          "headline": "test: realign MCP init tests with lenient shell expansion",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-03T21:02:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bcce66238bfe697f6ff8aef71197d8e4b19f426e",
          "body": "Updates the README and a handful of struct docs to describe the new\nbehavior: missing variables expand to empty, ${VAR:?message} is the\nway to require a value, empty header values are dropped, extra_body\nis a plain JSON passthrough, and crush.json should be treated as\ntrusted code because any $(...) in it runs at load time with the\nuser's shell privileges.\n\nCo-Authored-By: Charm Crush <crush@charm.land>",
          "is_bot": false,
          "headline": "docs: document lenient shell expansion and security model",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-03T21:02:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "71aa8d1382ecc05c9e7bb4a915e0c10917047f92",
          "body": "Pins down that a provider with a missing or broken api_key is still\nskipped with a warning, now that unset variables quietly expand to\nempty instead of erroring. Azure-style api_endpoint is covered the\nsame way. Tests only, no behavior change.\n\nCo-Authored-By: Charm Crush <crush@charm.land>",
          "is_bot": false,
          "headline": "test: pin provider skip behavior for api_key and endpoint expansion",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-03T21:02:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1f83559440dda9ef8654c1fe3cc8e48f98c143dd",
          "body": "LSP args and env values used to be passed to the language server as\nraw strings, so \"$HOME/go\" was sent literally. They now go through\nthe same shell expansion already used elsewhere in the config. If\nexpansion fails, that LSP fails to load with a message that points\nat the specific arg or env key.\n\nCo-Authored-By: Charm Crush <crush@charm.land>",
          "is_bot": false,
          "headline": "lsp: expand shell variables in args and env",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-03T21:02:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f23e9982cc216751e509e15b9a147477070478bb",
          "body": "Provider extra_headers used to log and keep the raw template when a\ncommand inside the header failed. A failing command now stops the\nprovider from loading, with a clear error that names the provider\nand the header.\n\nHeaders whose value ends up as an empty string are dropped from the\noutgoing request, so \"OpenAI-Organization\": \"$OPENAI_ORG_ID\" keeps\nworking when the variable is not set. MCP headers follow the same\nrule.\n\nCo-Authored-By: Charm Crush <crush@charm.land>",
          "is_bot": false,
          "headline": "config: fail provider header expansion loudly and drop empty values",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-03T21:02:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c3cf9622b20df3b47b40ff52d7a23c7d56910616",
          "body": "Updates tests that assumed missing variables in config values were\nan error. They now expect an empty string, matching the new default.\nNew tests cover ${VAR:?message}, which is the way to still fail\nloudly when a variable is required.\n\nCo-Authored-By: Charm Crush <crush@charm.land>",
          "is_bot": false,
          "headline": "test: update config tests to match lenient expansion",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-03T21:02:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "abacef933667599de956fc9493166bf9f92c56f6",
          "body": "Missing env vars in crush.json used to fail loudly. They now quietly\nexpand to an empty string, the same as bash. If you want the old\nstrict behavior for a specific value, write it as ${VAR:?message}\nand Crush will still complain when the variable is not set.\n\nCo-Authored-By: Charm Crush <crush@charm.land>",
          "is_bot": false,
          "headline": "shell: switch config value expansion to lenient by default",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-03T21:02:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4be35b800dbddc4cb38bf32b72905d498bbc0e83",
          "body": null,
          "is_bot": false,
          "headline": "chore(legal): @somjik-api has signed the CLA",
          "author_name": "Charm",
          "author_login": "charmcli",
          "committed_at": "2026-05-02T21:18:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "40684228138303a922ff71a8f39dfe85fad30572",
          "body": "Windows t.TempDir() returns C:\\... paths whose backslashes get\nconsumed as escapes when injected into $(cat ...). Convert to\nforward slashes so the embedded shell resolves the path on every OS.\n\nAlso accept the Windows coreutils error shape (\"cannot find\") in\naddition to POSIX \"exit status\" when asserting that inner diagnostic\ndetail is surfaced — mvdan/sh runs coreutils in-process on Windows\nso there is no subprocess exit status to report.",
          "is_bot": false,
          "headline": "test: use forward slashes in shell commands for Windows compat",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-02T19:49:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d745ff590a6945c2d47bae67b304ad01a9f10dbc",
          "body": null,
          "is_bot": false,
          "headline": "docs(README): add note about shell expansion in MCP config",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-02T19:49:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "240e5c2ccb9ed4853f1fc9e220aa02ee20600b3d",
          "body": null,
          "is_bot": false,
          "headline": "test: cover shell expansion in MCP config resolution",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-02T19:49:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f71645753fb8429356354b1354a58c439580d9bc",
          "body": "m.URL now runs through the same resolver as command, args, env, and\nheaders so $VAR / $(cmd) work in http and sse endpoints. The empty-url\nguard runs after resolution so ${X:-} still fails cleanly, and failing\nexpansions surface via the existing StateError path.",
          "is_bot": false,
          "headline": "feat(config): resolve MCP url through shell expansion",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-02T19:49:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "dbd40d82dccf4f6c13e67f37e9bb889a38fd1d39",
          "body": "…s/args\n\nAdds MCPConfig.ResolvedArgs and changes ResolvedEnv/ResolvedHeaders to\ntake a VariableResolver, so createTransport threads one resolver through\ncommand, args, env, and headers. Client mode (IdentityResolver) now\nkeeps all four fields literal for server-side expansion; server mode\nexpands uniformly via the shell resolver.",
          "is_bot": false,
          "headline": "feat(config): resolve MCP args and thread resolver through env/header…",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-02T19:48:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c1352663ccbb330ea518feb45f53b2afee26aa56",
          "body": null,
          "is_bot": false,
          "headline": "refactor(config): make Resolved{Env,Headers} pure and error-returning",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-02T19:48:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5dc30cfac53a4db94cc0f81b0d8d8879afd72196",
          "body": "Rewires shellVariableResolver onto the embedded shell interpreter used\nby the bash tool and hooks, replacing the hand-rolled parser. Adds a\nbounded, scrubbed sanitizeResolveError so resolution failures surface\nsafely without leaking oversized or non-printable inner stderr.",
          "is_bot": false,
          "headline": "refactor(config): resolve shell vars via shell.ExpandValue",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-02T19:48:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "711d3a384f27bdf4548579292f8ae80d34e5e30f",
          "body": "Groundwork for replacing the hand-rolled parser in internal/config/resolve.go.\n\nIntroduces shell.ExpandValue, a single-value expansion entry point built\non mvdan.cc/sh/v3's syntax + expand packages. Runs with nounset on and\nglobbing off, preserves internal whitespace, strips only trailing\nnewlines from command substitution output, and bounds/scrubs inner\nstderr surfaced in errors. Shares the builtin/block/coreutils handler\nchain with NewShell but uses the caller-provided env verbatim.",
          "is_bot": false,
          "headline": "feat(shell): add ExpandValue for config value shell expansion",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-02T19:47:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "56b192e35e8cdaa63f44318ecd13da418e790582",
          "body": null,
          "is_bot": false,
          "headline": "v0.65.2",
          "author_name": "Andrey Nering",
          "author_login": "andreynering",
          "committed_at": "2026-05-01T19:24:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "63e03ff456777af169e718f7c0b5841d109045ad",
          "body": null,
          "is_bot": false,
          "headline": "v0.65.1",
          "author_name": "Andrey Nering",
          "author_login": "andreynering",
          "committed_at": "2026-05-01T19:20:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0f3a6cd96e147687e268885ab7d23c0e06079efb",
          "body": "See: https://github.com/charmbracelet/meta/commit/86917ec06aa42153f5e48cb2570dfc5efd1e389d",
          "is_bot": false,
          "headline": "ci: remove snapcraft token",
          "author_name": "Andrey Nering",
          "author_login": "andreynering",
          "committed_at": "2026-05-01T19:16:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "77d86b81bde9c6f6ebe138855cf2ad8db88ac762",
          "body": null,
          "is_bot": false,
          "headline": "v0.65.0",
          "author_name": "Andrey Nering",
          "author_login": "andreynering",
          "committed_at": "2026-05-01T18:51:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ce314b8e0d2ad6a8c0661ab2dbde6d8f2ecf65b1",
          "body": null,
          "is_bot": false,
          "headline": "feat(ui): add hypercredit readout to small top header",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-01T16:18:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d5b5a9e1ccfdb2e764ecd1444fafe12dbf7999b7",
          "body": null,
          "is_bot": false,
          "headline": "chore(ui): hypercrush small type treatment",
          "author_name": "Christian Rocha",
          "author_login": "meowgorithm",
          "committed_at": "2026-05-01T16:18:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a93277f3d7e0514f04f25140b43abbca0383908f",
          "body": null,
          "is_bot": false,
          "headline": "chore(legal): @pragneshbagary has signed the CLA",
          "author_name": "Charm",
          "author_login": "charmcli",
          "committed_at": "2026-05-01T11:54:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0a9d0b00018a118e763423f506ec4e69c73cfefe",
          "body": null,
          "is_bot": false,
          "headline": "chore(legal): @mkaaad has signed the CLA",
          "author_name": "Charm",
          "author_login": "charmcli",
          "committed_at": "2026-05-01T08:25:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bae92990dd0cdd4c0bdc312efac91f89e8a17288",
          "body": null,
          "is_bot": false,
          "headline": "chore(legal): @SAY-5 has signed the CLA",
          "author_name": "Charm",
          "author_login": "charmcli",
          "committed_at": "2026-05-01T01:00:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "98f9a17adf796009cd2ff2d098a82d365704b8e2",
          "body": null,
          "is_bot": false,
          "headline": "chore: auto-update files",
          "author_name": "Charm",
          "author_login": "charmcli",
          "committed_at": "2026-04-30T21:54:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a14feb3ef119b171647f96c8443ab52b5fe3f5e3",
          "body": "No need to set `HYPERCRUSH=1` anymore.",
          "is_bot": false,
          "headline": "feat: launch hyper beta (#2768)",
          "author_name": "Andrey Nering",
          "author_login": "andreynering",
          "committed_at": "2026-04-30T21:53:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6ce4fbceecccd8a00da7476b9a11aa073d07f6d4",
          "body": null,
          "is_bot": false,
          "headline": "feat(hyper): show remaining hypercredits in the sidebar (#2766)",
          "author_name": "Andrey Nering",
          "author_login": "andreynering",
          "committed_at": "2026-04-30T21:52:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5d8f924061b3171d871a2c4fefcd2e3352abbf90",
          "body": null,
          "is_bot": false,
          "headline": "test: re-record test fixtures",
          "author_name": "Andrey Nering",
          "author_login": "andreynering",
          "committed_at": "2026-04-30T21:30:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 100,
      "commits_last_year": 2260,
      "latest_release_at": "2026-06-25T17:53:51Z",
      "latest_release_tag": "v0.80.0",
      "releases_from_tags": true,
      "days_since_last_push": 4,
      "active_weeks_last_year": 42,
      "days_since_latest_release": 30,
      "mean_days_between_releases": 3.3
    },
    "community": {
      "has_readme": false,
      "has_license": false,
      "has_description": false,
      "has_contributing": false,
      "health_percentage": null,
      "has_issue_template": false,
      "has_code_of_conduct": false,
      "has_pull_request_template": false
    },
    "ecosystem": {
      "packages": [
        {
          "name": "github.com/charmbracelet/crush",
          "exists": true,
          "license": null,
          "keywords": [],
          "ecosystem": "go",
          "matches_repo": false,
          "registry_url": "https://pkg.go.dev/github.com/charmbracelet/crush",
          "is_deprecated": false,
          "latest_version": "v0.87.0",
          "repository_url": "https://github.com/charmbracelet/crush",
          "versions_count": 189,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": null,
          "monthly_downloads": null,
          "first_published_at": null,
          "latest_published_at": "2026-07-24T19:30:03Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 1
        }
      ]
    },
    "popularity": {
      "forks": 0,
      "stars": 0,
      "watchers": 0,
      "fork_history": {
        "days": [],
        "complete": true,
        "collected": 0,
        "total_forks": 0
      },
      "star_history": {
        "days": [],
        "complete": true,
        "collected": 0,
        "total_stars": 0,
        "collected_at": null
      },
      "open_issues_and_prs": 0
    },
    "ai_readiness": {
      "has_nix": true,
      "example_dirs": [
        "example",
        "examples"
      ],
      "has_llms_txt": false,
      "has_dockerfile": false,
      "has_mcp_signal": true,
      "bootstrap_files": [
        "Taskfile.yaml",
        "internal/ui/diffview/Taskfile.yaml"
      ],
      "api_schema_files": [
        "internal/swagger/swagger.json",
        "internal/swagger/swagger.yaml"
      ],
      "has_devcontainer": false,
      "typecheck_configs": [],
      "toolchain_manifests": [
        "go.mod"
      ],
      "largest_source_bytes": 118238,
      "source_files_sampled": 373,
      "oversized_source_files": 2,
      "agent_instruction_files": [
        "AGENTS.md",
        "internal/cmd/stats/AGENTS.md",
        "internal/ui/AGENTS.md"
      ],
      "agent_instruction_max_bytes": 8447
    },
    "dependencies": {
      "manifests": [
        "go.mod"
      ],
      "advisories": {
        "error": null,
        "scope": null,
        "source": null,
        "findings": [],
        "collected": false,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 0,
        "malicious_count": 0,
        "assessed_package": null,
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "go"
      ],
      "dependencies": [
        {
          "name": "charm.land/bubbles/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.1.0"
        },
        {
          "name": "charm.land/bubbletea/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.0.6"
        },
        {
          "name": "charm.land/catwalk",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.39.8"
        },
        {
          "name": "charm.land/fang/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.0.1"
        },
        {
          "name": "charm.land/fantasy",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.23.1"
        },
        {
          "name": "charm.land/glamour/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.0.0"
        },
        {
          "name": "charm.land/lipgloss/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.0.3"
        },
        {
          "name": "charm.land/log/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.0.0"
        },
        {
          "name": "charm.land/x/vcr",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.1.1"
        },
        {
          "name": "github.com/JohannesKaufmann/html-to-markdown",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.6.0"
        },
        {
          "name": "github.com/MakeNowJust/heredoc",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.0"
        },
        {
          "name": "github.com/Microsoft/go-winio",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.6.2"
        },
        {
          "name": "github.com/PuerkitoBio/goquery",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.12.0"
        },
        {
          "name": "github.com/alecthomas/chroma/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.24.1"
        },
        {
          "name": "github.com/atotto/clipboard",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.1.4"
        },
        {
          "name": "github.com/aymanbagabas/go-nativeclipboard",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.1.3"
        },
        {
          "name": "github.com/aymanbagabas/go-udiff",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.4.1"
        },
        {
          "name": "github.com/bmatcuk/doublestar/v4",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v4.10.0"
        },
        {
          "name": "github.com/charlievieth/fastwalk",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.14"
        },
        {
          "name": "github.com/charmbracelet/colorprofile",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.4.3"
        },
        {
          "name": "github.com/charmbracelet/openai-go",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20260319145158-d0740cc34266"
        },
        {
          "name": "github.com/charmbracelet/ultraviolet",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20260416155717-489999b90468"
        },
        {
          "name": "github.com/charmbracelet/x/ansi",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.11.7"
        },
        {
          "name": "github.com/charmbracelet/x/editor",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.2.0"
        },
        {
          "name": "github.com/charmbracelet/x/etag",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.2.0"
        },
        {
          "name": "github.com/charmbracelet/x/exp/charmtone",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20260109001716-2fbdffcb221f"
        },
        {
          "name": "github.com/charmbracelet/x/exp/golden",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20250806222409-83e3a29d542f"
        },
        {
          "name": "github.com/charmbracelet/x/exp/ordered",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.1.0"
        },
        {
          "name": "github.com/charmbracelet/x/exp/slice",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20260422141420-a6cbdff8a7e2"
        },
        {
          "name": "github.com/charmbracelet/x/exp/strings",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.1.0"
        },
        {
          "name": "github.com/charmbracelet/x/powernap",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.1.5"
        },
        {
          "name": "github.com/charmbracelet/x/term",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.2.2"
        },
        {
          "name": "github.com/clipperhouse/displaywidth",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.11.0"
        },
        {
          "name": "github.com/clipperhouse/uax29/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.7.0"
        },
        {
          "name": "github.com/denisbrodbeck/machineid",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.1"
        },
        {
          "name": "github.com/disintegration/imaging",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.6.2"
        },
        {
          "name": "github.com/dustin/go-humanize",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.1"
        },
        {
          "name": "github.com/gen2brain/beeep",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.11.2"
        },
        {
          "name": "github.com/go-git/go-git/v5",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v5.19.0"
        },
        {
          "name": "github.com/google/uuid",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.6.0"
        },
        {
          "name": "github.com/invopop/jsonschema",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.14.0"
        },
        {
          "name": "github.com/itchyny/gojq",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.12.19"
        },
        {
          "name": "github.com/joho/godotenv",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.5.1"
        },
        {
          "name": "github.com/jordanella/go-ansi-paintbrush",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20240728195301-b7ad996ecf3d"
        },
        {
          "name": "github.com/lucasb-eyer/go-colorful",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.4.0"
        },
        {
          "name": "github.com/mattn/go-isatty",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.22"
        },
        {
          "name": "github.com/modelcontextprotocol/go-sdk",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.6.0"
        },
        {
          "name": "github.com/ncruces/go-sqlite3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.34.1"
        },
        {
          "name": "github.com/nxadm/tail",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.4.11"
        },
        {
          "name": "github.com/pkg/browser",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20240102092130-5ac0b6a4141c"
        },
        {
          "name": "github.com/posthog/posthog-go",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.12.5"
        },
        {
          "name": "github.com/pressly/goose/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.27.1"
        },
        {
          "name": "github.com/qjebbs/go-jsons",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.0-alpha.5"
        },
        {
          "name": "github.com/rivo/uniseg",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.4.7"
        },
        {
          "name": "github.com/sahilm/fuzzy",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.1.2"
        },
        {
          "name": "github.com/sourcegraph/jsonrpc2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.2.1"
        },
        {
          "name": "github.com/spf13/cobra",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.10.2"
        },
        {
          "name": "github.com/stretchr/testify",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.11.1"
        },
        {
          "name": "github.com/swaggo/http-swagger/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.0.2"
        },
        {
          "name": "github.com/swaggo/swag",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.16.6"
        },
        {
          "name": "github.com/tidwall/gjson",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.19.0"
        },
        {
          "name": "github.com/tidwall/sjson",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.2.5"
        },
        {
          "name": "github.com/zeebo/xxh3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.1.0"
        },
        {
          "name": "go.uber.org/goleak",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.3.0"
        },
        {
          "name": "golang.org/x/net",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.54.0"
        },
        {
          "name": "golang.org/x/sync",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.20.0"
        },
        {
          "name": "golang.org/x/sys",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.44.0"
        },
        {
          "name": "golang.org/x/text",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.37.0"
        },
        {
          "name": "gopkg.in/natefinch/lumberjack.v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.2.1"
        },
        {
          "name": "gopkg.in/yaml.v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.0.1"
        },
        {
          "name": "modernc.org/sqlite",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.50.1"
        },
        {
          "name": "mvdan.cc/sh/moreinterp",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20250902163504-3cf4fd5717a5"
        },
        {
          "name": "mvdan.cc/sh/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.13.1"
        }
      ],
      "all_dependencies": {
        "error": "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
        "source": null,
        "packages": [],
        "collected": false,
        "truncated": false,
        "total_count": null,
        "direct_count": null,
        "indirect_count": null
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 0,
        "merged_prs": 0,
        "open_issues": 0,
        "closed_ratio": null,
        "closed_issues": 0,
        "closed_unmerged_prs": 0
      },
      "bus_factor": 3,
      "bot_contributors": 3,
      "top_contributors": [
        {
          "type": "User",
          "login": "kujtimiihoxha",
          "commits": 874,
          "avatar_url": "https://avatars.githubusercontent.com/u/14311743?v=4"
        },
        {
          "type": "User",
          "login": "andreynering",
          "commits": 630,
          "avatar_url": "https://avatars.githubusercontent.com/u/7011819?v=4"
        },
        {
          "type": "User",
          "login": "aymanbagabas",
          "commits": 405,
          "avatar_url": "https://avatars.githubusercontent.com/u/3187948?v=4"
        },
        {
          "type": "User",
          "login": "meowgorithm",
          "commits": 354,
          "avatar_url": "https://avatars.githubusercontent.com/u/25087?v=4"
        },
        {
          "type": "User",
          "login": "caarlos0",
          "commits": 329,
          "avatar_url": "https://avatars.githubusercontent.com/u/245435?v=4"
        },
        {
          "type": "User",
          "login": "charmcli",
          "commits": 248,
          "avatar_url": "https://avatars.githubusercontent.com/u/124303983?v=4"
        },
        {
          "type": "User",
          "login": "raphamorim",
          "commits": 61,
          "avatar_url": "https://avatars.githubusercontent.com/u/3630346?v=4"
        },
        {
          "type": "User",
          "login": "taigrr",
          "commits": 34,
          "avatar_url": "https://avatars.githubusercontent.com/u/8261498?v=4"
        },
        {
          "type": "User",
          "login": "Amolith",
          "commits": 30,
          "avatar_url": "https://avatars.githubusercontent.com/u/29460675?v=4"
        },
        {
          "type": "User",
          "login": "huaiyuWangh",
          "commits": 23,
          "avatar_url": "https://avatars.githubusercontent.com/u/34158348?v=4"
        }
      ],
      "contributors_sampled": 97,
      "top_contributor_share": 0.274
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "build.yml",
        "cla.yml",
        "labeler.yml",
        "lint-sync.yml",
        "lint.yml",
        "nightly.yml",
        "release.yml",
        "schema-update.yml",
        "security.yml",
        "snapshot.yml"
      ],
      "has_docs_dir": true,
      "linter_configs": [
        ".golangci.yml"
      ],
      "has_editorconfig": false,
      "has_linter_config": true,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [
        "go.sum"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 0,
            "reason": "branch protection not enabled on development/release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": null,
            "reason": "no pull request found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 0/30 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 10,
            "reason": "project has 48 contributing companies or organizations",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 10,
            "reason": "update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 9,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 0,
            "reason": "project was created within the last 90 days. Please review its contents carefully",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": null,
            "reason": "internal error: Client.Actions.ListWorkflowRunsByFileName: internal error: ListWorkflowRunsByFileName: GET https://api.github.com/repos/jan-xyz/crush/actions/workflows/snapshot.yml/runs?status=success: 404 Not Found []",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 6,
            "reason": "dependency not pinned by hash detected -- score normalized to 6",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 10,
            "reason": "SAST tool detected: CodeQL",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 0,
            "reason": "security policy file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": null,
            "reason": "no releases found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 0,
            "reason": "36 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "651abb48aecf6a46e0557dd69d0ad1f399b2de9e",
        "ran_at": "2026-07-26T03:31:36Z",
        "aggregate_score": 4.2,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": true
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": null,
      "oldest_open_prs": [],
      "last_merged_pr_at": null,
      "ci_last_conclusion": null,
      "oldest_open_issues": []
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/jan-xyz/crush",
    "host": "github.com",
    "name": "crush",
    "owner": "jan-xyz"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 51,
      "inputs": {
        "security": 42,
        "vitality": 85,
        "community": 9,
        "governance": 47,
        "engineering": 62
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "excellent",
        "name": "Vitality",
        "value": 85,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "good",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 83,
            "inputs": {
              "commits_last_year": 2260,
              "human_commit_share": 0.96,
              "days_since_last_push": 4,
              "active_weeks_last_year": 42
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 4 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 4
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "42/52 weeks with commits",
                "points": 29.1,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 42
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "2260 commits in the last year",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 2260
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "project was created within the last 90 days. Please review its contents carefully",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 88,
            "inputs": {
              "releases_count": 100,
              "latest_release_tag": "v0.80.0",
              "releases_from_tags": true,
              "days_since_latest_release": 30,
              "mean_days_between_releases": 3.3
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "100 version tags (no GitHub releases)",
                "points": 16.2,
                "status": "partial",
                "details": [
                  {
                    "code": "version_tags_no_releases",
                    "params": {
                      "count": 100
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 30 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 30
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~3.3 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 3.3
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "unverified",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": "repository_too_young",
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": null,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "maintenance record not established from the collected data",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_unverified",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "critical",
        "name": "Community & Adoption",
        "value": 9,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "critical",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 1,
            "inputs": {
              "forks": 0,
              "stars": 0,
              "watchers": 0,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "0 stars",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "0 forks",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "0 watchers",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "critical",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 19,
            "inputs": {
              "has_readme": false,
              "has_license": false,
              "has_contributing": false,
              "has_issue_template": false,
              "has_code_of_conduct": false,
              "has_pull_request_template": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file present, not a recognized license",
                "points": 16.9,
                "status": "partial",
                "details": [
                  {
                    "code": "license_custom",
                    "params": {}
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.3
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "at_risk",
        "name": "Sustainability & Governance",
        "value": 47,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "good",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 76,
            "inputs": {
              "bus_factor": 3,
              "contributors_sampled": 97,
              "top_contributor_share": 0.274
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "3 contributor(s) cover half of all commits",
                "points": 36,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 3
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 27% of commits",
                "points": 16.3,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 27
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "97 contributors",
                "points": 13.5,
                "status": "met",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 97
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 48 contributing companies or organizations",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "critical",
            "name": "Issue & PR responsiveness",
            "note": "Excluded from scoring (no data or not applicable): Issue resolution, PR acceptance. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "issue_resolution",
                    "pr_acceptance"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 1,
            "inputs": {
              "merged_prs": 0,
              "open_issues": 0,
              "closed_issues": 0,
              "issue_closed_ratio": null,
              "closed_unmerged_prs": 0
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "no issues or no data",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_issues_or_data",
                    "params": {}
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "no decided pull requests or no data",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_decided_prs_or_data",
                    "params": {}
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "moderate",
            "name": "Ownership & stewardship",
            "note": "Excluded from scoring (no data or not applicable): Verified domain. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "verified_domain"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 58,
            "inputs": {
              "followers": 37,
              "owner_type": "User",
              "is_verified": null,
              "owner_login": "jan-xyz",
              "public_repos": 68,
              "account_age_days": 4725
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "personal (user) account",
                "points": 10,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_personal",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": "not applicable to user accounts",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_applicable_to_user_accounts",
                    "params": {}
                  }
                ],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "37 followers of jan-xyz",
                "points": 11.4,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 37,
                      "login": "jan-xyz"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "68 public repos, account ~12 yr old",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 68
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 12
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "moderate",
        "name": "Engineering Quality",
        "value": 62,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "good",
            "name": "Engineering practices",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: CI-Tests. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_ci_tests"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 80,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": true,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "10 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 10
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": ".golangci.yml",
                "points": 16,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".golangci.yml"
                    }
                  }
                ],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "no pull request found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "at_risk",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 35,
            "inputs": {
              "topics": [],
              "has_wiki": true,
              "homepage": null,
              "has_readme": false,
              "has_docs_dir": true,
              "has_description": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "at_risk",
        "name": "Security",
        "value": 42,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "at_risk",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): CI-Tests, Packaging, Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "ci_tests",
                    "packaging",
                    "signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 42,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 15,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 3,
              "scorecard_aggregate": 4.2
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection not enabled on development/release branches",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "no pull request found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 48 contributing companies or organizations",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "update tool detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.2,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "project was created within the last 90 days. Please review its contents carefully",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "internal error: Client.Actions.ListWorkflowRunsByFileName: internal error: ListWorkflowRunsByFileName: GET https://api.github.com/repos/jan-xyz/crush/actions/workflows/snapshot.yml/runs?status=success: 404 Not Found []",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 6",
                "points": 3,
                "status": "partial",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool detected: CodeQL",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "36 existing vulnerabilities detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 25
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "excellent",
        "name": "AI Readiness",
        "value": 90,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "excellent",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.927,
              "agent_instruction_files": [
                "AGENTS.md",
                "internal/cmd/stats/AGENTS.md",
                "internal/ui/AGENTS.md"
              ],
              "agent_instruction_max_bytes": 8447
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "AGENTS.md, internal/cmd/stats/AGENTS.md, internal/ui/AGENTS.md",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "AGENTS.md, internal/cmd/stats/AGENTS.md, internal/ui/AGENTS.md"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "89 of 96 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 89,
                      "sampled": 96
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "excellent",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 86,
            "inputs": {
              "has_nix": true,
              "has_tests": true,
              "lockfiles": [
                "go.sum"
              ],
              "has_dockerfile": false,
              "typed_language": true,
              "bootstrap_files": [
                "Taskfile.yaml",
                "internal/ui/diffview/Taskfile.yaml"
              ],
              "has_devcontainer": false,
              "has_linter_config": true,
              "typecheck_configs": [],
              "agent_commit_share": 0,
              "toolchain_manifests": [
                "go.mod"
              ],
              "dependency_bot_commit_share": 0.04
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": "Taskfile.yaml, internal/ui/diffview/Taskfile.yaml",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Taskfile.yaml, internal/ui/diffview/Taskfile.yaml"
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": ".golangci.yml",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".golangci.yml"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "Go (statically typed)",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Go"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "Nix, lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Nix, lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "no agent-authored commits among the last 100",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_authored_commits",
                    "params": {
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "4 of the last 100 commits are automated dependency updates",
                "points": 8,
                "status": "met",
                "details": [
                  {
                    "code": "dependency_bot_commits",
                    "params": {
                      "count": 4,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 6",
                "points": 6,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "primary_language": "Go",
              "largest_source_bytes": 118238,
              "source_files_sampled": 373,
              "oversized_source_files": 2
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "Go (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Go"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "2/373 source files over 60KB",
                "points": 54.7,
                "status": "partial",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 373,
                      "oversized": 2
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          },
          {
            "key": "ai_interfaces",
            "band": "excellent",
            "name": "Machine-readable interfaces",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "example_dirs": [
                "example",
                "examples"
              ],
              "has_mcp_signal": true,
              "api_schema_files": [
                "internal/swagger/swagger.json",
                "internal/swagger/swagger.yaml"
              ]
            },
            "components": [
              {
                "key": "api_schema_openapi_graphql_proto",
                "name": "API schema (OpenAPI/GraphQL/proto)",
                "detail": "internal/swagger/swagger.json, internal/swagger/swagger.yaml",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "internal/swagger/swagger.json, internal/swagger/swagger.yaml"
                    }
                  }
                ],
                "max_points": 40
              },
              {
                "key": "mcp_server",
                "name": "MCP server",
                "detail": null,
                "points": 20,
                "status": "met",
                "details": [],
                "max_points": 20
              },
              {
                "key": "runnable_examples",
                "name": "Runnable examples",
                "detail": "example, examples",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "example, examples"
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "Community profile unavailable",
    "go package 'github.com/charmbracelet/crush' points at a different repository (https://github.com/charmbracelet/crush); excluded from ecosystem scoring",
    "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-26T03:31:53.406383Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/j/jan-xyz/crush.svg",
  "full_name": "jan-xyz/crush",
  "license_state": "custom",
  "license_spdx": null
}

评分是信号,而非担保。 评分反映的是 GitHub 上公开可见的实践——不是代码审计,也不是安全保证。

缺失数据将被剔除并重新归一化权重,绝不按零分计。方法论已版本化并公开:指标 v1.13.0、模式 v0.27.0—— 完整方法论 · 指标知识库.

单项结果在整体记录中的位置: 汇总统计Go.