公开记录
软件健康报告模式 0.27.0 · 指标 1.13.0 · 2026-07-31 06:58 UTC

kurajs / kura

Kura — the knowledgebase for humans and agents. Agent-native docs infrastructure, built on June.

TypeScriptMIT★ 6 星标⑂ 0 复刻始于 2026年6月在 GitHub 上查看 ↗

kurajs/kura 的健康指数为 100 分中的 58 分,处于「中等」区间。 其得分最高的类别是Engineering Quality(74/100),最低的是Community & Adoption(42/100)。 最近一次更新在 8 天前。 近期的大部分工作由 1 位贡献者完成。

58
总分 / 100
中等

软件健康指数

指标归入加权类别,统一采用 1–100 量表。总体分先取类别加权平均;当公开证据触发高风险司法辖区政策时,评级会按政策调整,并设置 49(有风险)的上限。AI 就绪度不计入总体分。

58
优秀85-100堪称典范;基本满足所有检验标准
良好70-84健康;仅有轻微不足
中等50-69可接受,但存在明显不足;建议进行审查
存在风险30-49存在重大薄弱环节;采用时应保持审慎
危急1-29问题严重(项目被弃置、仅有单一维护者、缺乏基本工程规范)
活力社区与采用可持续性与治理工程质量安全AI 就绪度

评分画像

每条轴代表一个类别。形状比平均值更重要——健康的对象会填满整个图形,而“一峰一谷”式画像意味着某一维度的优势正掩盖另一维度的风险。

所有权

kurajs组织
1 关注者3 个公开仓库始于 2026年6月

该仓库由组织支持——共同承担、可问责的托管责任,可延续于任何单一维护者之后。

软件包生态系统

按类别列示的指标

活力

项目是否仍有生命——是否仍在编写代码,是否仍在发布版本?

71良好 · 占总体的 22%
评分方式
28.8/36推送新近度 — 最近一次推送于 8 天前
4.2/36提交节奏 — 52 周中有 6 周有提交
18/18提交量 — 最近一年 388 次提交
0/10OpenSSF Scorecard:Maintained — project was created within the last 90 days. Please review its contents carefully
所用输入
commits_last_year388
human_commit_share0.84
days_since_last_push8
active_weeks_last_year6

发布纪律

100优秀
评分方式
27/27有发布版本 — 已发布 7 个发布版本
36/36发布时效 — 最近一次发布版本于 21 天前
27/27发布节奏 — 约每 3.2 天发布一次
0/10OpenSSF Scorecard:Signed-Releases — 无数据
所用输入
releases_count7
latest_release_tagv0.0.68
releases_from_tags
days_since_latest_release21
mean_days_between_releases3.2
已排除计分(无数据或不适用):OpenSSF Scorecard:Signed-Releases。 其余权重已重新归一化。

社区与采用

项目是否拥有用户、下载量与关注度,并具备欢迎贡献者参与的配置?

42存在风险 · 占总体的 18%
评分方式
11.3/60星标 — 6 个星标
0/25复刻 — 0 个复刻
0/15关注者 — 0 位关注者
所用输入
forks0
stars6
watchers0
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history

社区健康

50中等
评分方式
22.5/22.5README
22.5/22.5许可证 — 可识别的许可证(MIT)
0/18CONTRIBUTING 指南
0/13.5行为准则
0/7.2议题模板
0/6.3PR 模板
所用输入
has_readme
has_license
has_contributing
has_issue_template
has_code_of_conduct
has_pull_request_template
评分方式
64.1/80月度下载量 — npm 合计每月 63,840 次下载
0/20注册表被依赖数 — 该生态系统不报告此项
所用输入
packages@kurajs/cli, @kurajs/core, @kurajs/ctrlk, @kurajs/search, @kurajs/tokenizers, create-kura, @kurajs/transformers
dependents
ecosystemsnpm
total_downloads
monthly_downloads63,840
已排除计分(无数据或不适用):注册表被依赖数。 其余权重已重新归一化。

可持续性与治理

项目能否在其成员之外延续——巴士系数、响应能力、由谁支持,以及软件包的维护状况?

52中等 · 占总体的 24%
评分方式
9/54巴士系数 — 1 位贡献者贡献了半数提交
0/22.5提交分布 — 头号贡献者编写了 100% 的提交
1.4/13.5贡献者广度 — 1 位贡献者
6/10OpenSSF Scorecard:Contributors — project has 2 contributing companies or organizations -- score normalized to 6
所用输入
bus_factor1
contributors_sampled1
top_contributor_share1
评分方式
0/46.8议题解决 — 没有议题或无数据
38.2/38.3PR 接受 — 已裁定的 PR 中 82/82 已合并
0/15OpenSSF Scorecard:Code-Review — Found 0/9 approved changesets -- score normalized to 0
所用输入
merged_prs82
open_issues0
closed_issues0
issue_closed_ratio
closed_unmerged_prs0
已排除计分(无数据或不适用):议题解决。 其余权重已重新归一化。
评分方式
30/30所有权背书 — 组织持有
0/20已验证域名
2.2/25所有者影响力 — kurajs 有 1 位关注者
4.6/25既往记录 — 3 个公开仓库,账户约 0 年
所用输入
followers1
owner_typeOrganization
is_verified
owner_loginkurajs
public_repos3
account_age_days44
评分方式
25/25已发布且可解析 — npm 上有 7 个软件包
35/35发布时效 — 最近一次发布于 8 天前
20/20版本历史 — 25 个已发布版本
20/20未被弃用 — 活跃,未被弃用或撤回
所用输入
packages@kurajs/cli, @kurajs/core, @kurajs/ctrlk, @kurajs/search, @kurajs/tokenizers, create-kura, @kurajs/transformers
ecosystemsnpm
any_deprecated
min_days_since_publish8

工程质量

基础的工程与文档实践是否到位?

74良好 · 占总体的 20%

工程实践

64中等
评分方式
24/24CI 工作流 — 4 个工作流
24/24存在测试
0/16Linter 配置
0/9.6Pre-commit 钩子
0/6.4.editorconfig
16/20OpenSSF Scorecard:CI-Tests — 10 out of 12 merged PRs checked by a CI test -- score normalized to 8
所用输入
has_ci
has_tests
has_editorconfig
has_linter_config
has_precommit_config

文档

90优秀
评分方式
30/30README
25/25文档目录
15/15文档 / 主页站点 — https://kura.build
10/10仓库描述
10/10主题标签 — 17 个主题标签
0/10Wiki
所用输入
topicsagent-native, ai-agents, cloudflare-workers, docs, documentation, embeddings, i18n, june, knowledgebase, llms, mcp, mdx, rag, react, semantic-search, typescript, vector-search
has_wiki
homepagehttps://kura.build
has_readme
has_docs_dir
has_description

安全

可见的安全与供应链实践是否稳固,且不存在未解决的高风险司法辖区暴露?

48存在风险 · 占总体的 16%

安全态势

35存在风险
评分方式
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — branch protection not enabled on development/release branches
2/2.5CI-Tests — 10 out of 12 merged PRs checked by a CI test -- score normalized to 8
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 0/9 approved changesets -- score normalized to 0
1.5/2.5Contributors — project has 2 contributing companies or organizations -- score normalized to 6
10/10Dangerous-Workflow — no dangerous workflow patterns detected
0/7.5Dependency-Update-Tool — no update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5许可证 — license file detected
0/7.5Maintained — project was created within the last 90 days. Please review its contents carefully
5/5Packaging — packaging workflow detected
0/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
0/5SAST — SAST tool is not run on all commits -- score normalized to 0
0/5Security-Policy — security policy file not detected
0/7.5Signed-Releases — 无数据
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
6/7.5Vulnerabilities — 2 existing vulnerabilities detected
所用输入
sourceopenssf_scorecard
checks_evaluated17
scorecard_versionv5.5.0
checks_inconclusive1
scorecard_aggregate3.5
已排除计分(无数据或不适用):signed_releases。 其余权重已重新归一化。
评分方式
35/35直接依赖不含已知公告 — 没有直接依赖携带已知公告
25/25间接依赖不含已知公告 — 没有间接依赖携带已知公告
0/40没有长期未处理的公告 — 没有公告带有发布日期
所用输入
sourceosv
advisories0
affected_packages0
assessed_packages227
unassessed_packages0
affected_by_severitynone
direct_affected_packages0
已排除计分(无数据或不适用):没有长期未处理的公告。 其余权重已重新归一化。 比对的是 npm:@kurajs/cli@0.1.0 的运行时依赖闭包——安装已发布的软件包时真正被拉取进来的内容——共 227 个软件包。 未对可达性进行分析。

AI 就绪度

该仓库在多大程度上具备与 AI 编码代理协同开发与维护的条件?这是一枚独立的实验性徽章——权重为 0.0,因此单独呈现,不影响总体健康评分。

63中等 · 占总体的 0%
评分方式
45/45代理指令 — examples/docs/content/docs/concepts/agents.md, examples/docs/content/docs/ja-JP/concepts/agents.md, examples/search/content/agents.md
0/15机器可读文档(llms.txt)
40/40可读的提交历史 — 84 次人类提交中有 84 次说明了意图(结构化标题或解释性正文)
所用输入
has_llms_txt
legible_history_share1
agent_instruction_filesexamples/docs/content/docs/concepts/agents.md, examples/docs/content/docs/ja-JP/concepts/agents.md, examples/search/content/agents.md
agent_instruction_max_bytes718
评分方式
0/18一条命令的引导启动
22/22自动化测试
0/11Lint / 格式化配置
11/11静态类型检查 — examples/docs-cjk/tsconfig.json, examples/docs/tsconfig.json, examples/search/tsconfig.json, packages/cli/tsconfig.json, packages/create-kura/template/tsconfig.json, packages/ctrlk/tsconfig.json, packages/docs/tsconfig.json, packages/kura-transformers/tsconfig.json, packages/kura/tsconfig.json, packages/search/tsconfig.json, packages/tokenizers/tsconfig.json
0/10可复现环境
8/10已体现的代理实践 — 最近 100 次提交中有 4 次由代理编写或署名代理
0/8自动化维护 — 未观察到自动依赖更新
0/10OpenSSF Scorecard:Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
所用输入
has_nix
has_tests
lockfiles
has_dockerfile
typed_language
bootstrap_files
has_devcontainer
has_linter_config
typecheck_configsexamples/docs-cjk/tsconfig.json, examples/docs/tsconfig.json, examples/search/tsconfig.json, packages/cli/tsconfig.json, packages/create-kura/template/tsconfig.json, packages/ctrlk/tsconfig.json, packages/docs/tsconfig.json, packages/kura-transformers/tsconfig.json, packages/kura/tsconfig.json, packages/search/tsconfig.json, packages/tokenizers/tsconfig.json
agent_commit_share0.04
toolchain_manifests
dependency_bot_commit_share0
评分方式
45/45可类型检查的代码 — TypeScript(静态类型)
55/55可控的文件大小 — 采样的 93 个源文件中有 0 个超过 60KB
所用输入
primary_languageTypeScript
largest_source_bytes36,659
source_files_sampled93
oversized_source_files0

机器可读接口

40存在风险
评分方式
0/40API 模式(OpenAPI/GraphQL/proto)
0/20MCP 服务器
40/40可运行示例 — examples
所用输入
example_dirsexamples
has_mcp_signal
api_schema_files

关键数据

6GitHub 星标
1贡献者
388最近 12 个月提交数
8距最近推送天数
7发布版本数
1巴士系数(bus factor)
0开放议题
npm软件包生态系统数

数据采集警告

  • Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token
  • GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

更多细节

OpenSSF Scorecard 3.5 / 10
3.5综合

来自开源项目 OpenSSF Scorecard 的独立、工具无关的安全评估。每项检查奖励的是安全实践本身,而非特定供应商的工具。Scorecard 无法判定的检查项标记为 不适用,并从安全评分中剔除(绝不按零分计)。Scorecard v5.5.0 · 2026-07-31 06:57 UTC

10Binary-Artifactsno binaries found in the repo
0Branch-Protectionbranch protection not enabled on development/release branches
8CI-Tests10 out of 12 merged PRs checked by a CI test -- score normalized to 8
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 0/9 approved changesets -- score normalized to 0
6Contributorsproject has 2 contributing companies or organizations -- score normalized to 6
10Dangerous-Workflowno dangerous workflow patterns detected
0Dependency-Update-Toolno update tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
0Maintainedproject was created within the last 90 days. Please review its contents carefully
10Packagingpackaging workflow detected
0Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 0
0SASTSAST tool is not run on all commits -- score normalized to 0
0Security-Policysecurity policy file not detected
不适用Signed-Releasesno releases found
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
8Vulnerabilities2 existing vulnerabilities detected
直接依赖 5
注册表软件包版本约束清单文件
npm@junejs/cli>=0.0.50 <0.1.0packages/cli/package.json
npm@kurajs/core>=0.1.0packages/cli/package.json
npmsmol-toml^1.7.0packages/cli/package.json
npm@kurajs/docs>=0.1.0packages/cli/package.json
npm@kurajs/search>=0.1.0packages/tokenizers/package.json
全部依赖 未采集

本报告未能采集到解析后的依赖集合:GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

依赖安全公告 0

安装 npm:@kurajs/cli@0.1.0 会引入 227 个包(直接与传递):其中 0 个存在已知公告,0 个为直接依赖。

没有已知公告影响已评估的依赖。

公告表示依赖图中记录的版本落入某条公告的受影响范围。可达性未经分析,且依赖图包含开发与测试的版本固定——某项发现可能只涉及工具链而非交付的软件。

原始 JSON 报告 机器可读
{
  "data": {
    "repo": {
      "topics": [
        "agent-native",
        "ai-agents",
        "cloudflare-workers",
        "docs",
        "documentation",
        "embeddings",
        "i18n",
        "june",
        "knowledgebase",
        "llms",
        "mcp",
        "mdx",
        "rag",
        "react",
        "semantic-search",
        "typescript",
        "vector-search"
      ],
      "is_fork": false,
      "size_kb": 1098,
      "has_wiki": false,
      "homepage": "https://kura.build",
      "languages": {
        "CSS": 16712,
        "Shell": 3731,
        "JavaScript": 38840,
        "TypeScript": 503801
      },
      "pushed_at": "2026-07-22T08:03:15Z",
      "created_at": "2026-06-17T00:57:52Z",
      "owner_type": "Organization",
      "updated_at": "2026-07-22T08:04:30Z",
      "description": "Kura — the knowledgebase for humans and agents. Agent-native docs infrastructure, built on June.",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "MIT",
      "default_branch": "main",
      "license_spdx_raw": "MIT",
      "primary_language": "TypeScript",
      "significant_languages": [
        "TypeScript"
      ]
    },
    "owner": {
      "blog": null,
      "name": null,
      "type": "Organization",
      "login": "kurajs",
      "company": null,
      "location": null,
      "followers": 1,
      "avatar_url": "https://avatars.githubusercontent.com/u/294199052?v=4",
      "created_at": "2026-06-16T13:32:55Z",
      "is_verified": null,
      "public_repos": 3,
      "account_age_days": 44
    },
    "license": {
      "state": "standard",
      "spdx_id": "MIT",
      "raw_spdx": "MIT",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v0.0.68",
          "kind": "patch",
          "published_at": "2026-07-10T06:01:39Z"
        },
        {
          "tag": "v0.0.19",
          "kind": "patch",
          "published_at": "2026-06-23T16:11:29Z"
        },
        {
          "tag": "v0.0.14",
          "kind": "patch",
          "published_at": "2026-06-23T03:27:23Z"
        },
        {
          "tag": "v0.0.13",
          "kind": "patch",
          "published_at": "2026-06-23T03:14:07Z"
        },
        {
          "tag": "v0.0.12",
          "kind": "patch",
          "published_at": "2026-06-21T02:31:59Z"
        },
        {
          "tag": "v0.0.11",
          "kind": "patch",
          "published_at": "2026-06-20T21:55:53Z"
        },
        {
          "tag": "v0.0.10",
          "kind": "patch",
          "published_at": "2026-06-20T20:53:37Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "63c03e7c5fc84e3142d614b205d2367f72e6da51",
          "body": "chore(release): version packages",
          "is_bot": false,
          "headline": "Merge pull request #82 from kurajs/changeset-release/main",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-22T08:03:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fe933662ac863a604f4a98cbfd848f079a4ca1f6",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): version packages",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-22T07:57:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c35d9e4f954b39ac3ac07d9eaf5e87fb32bb3f2f",
          "body": "fix(docs): nav-tab sync no longer hides content <Tabs> (data-tab attribute collision)",
          "is_bot": false,
          "headline": "Merge pull request #81 from kurajs/fix/nav-tab-attr-collision",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-22T07:57:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "56174b97b27f3e4d9649f9a6be184a3cb98fa333",
          "body": "Render the REAL DocsLayoutShell + mdx Tabs and run the REAL SIDEBAR_SYNC_JS\nin happy-dom: nav groups toggle by URL, content tab buttons/panels keep\ntheir state, and a user-selected tab survives a sync re-run. All five tests\nfail against the pre-fix ui.tsx (verified by mutation check).",
          "is_bot": false,
          "headline": "test(docs): lock the nav-tab / content-Tabs attribute contract",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-22T07:56:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ceb342e4e3989e42af71ea9d7d67c8b5ab54ad44",
          "body": "… content Tabs\n\nThe docs shell's sidebar tab groups and the content <Tabs> component both\nused the data-tab attribute. SIDEBAR_SYNC_JS syncs nav-tab visibility with a\ndocument-wide [data-tab] query, so on sites with root-meta nav tabs it set\nhidden on every content tab button/panel (their data-tab i\n[…]\n block to an empty box.\nThe outlet MutationObserver re-ran sync() after every soft-nav, so the state\ncould never recover. Scope the shell to its own data-nav-tab attribute;\ncontent Tabs keep data-tab.",
          "is_bot": false,
          "headline": "fix(docs): rename shell nav-tab groups to data-nav-tab to stop hiding…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-22T07:53:28Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "5cbe0a9a3c9d24d11eff52c94be2bc10eefaadf0",
          "body": "chore(release): version packages",
          "is_bot": false,
          "headline": "Merge pull request #80 from kurajs/changeset-release/main",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-22T07:51:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "dbde4703e3829423d57a717ccb40241fd29918eb",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): version packages",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-22T07:48:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f497307f0cfd9f7969e70806009f7cb9526c1997",
          "body": "fix(create-kura): template tracks the current @kurajs majors",
          "is_bot": false,
          "headline": "Merge pull request #79 from kurajs/fix/create-kura-template-ranges",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-22T07:48:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d7e6d85a7034337738eb29830f536921927ec9d5",
          "body": "…sence in guard\n\nnpm caret pins the leftmost non-zero segment, so ^0.0.z admits only\n0.0.z — the guard previously treated ^0.0.15 as covering 0.0.20, which\nwould defeat the drift check while packages sit in 0.0.x. Also assert\nthe template declares the dependency before checking coverage, so a\ndropped dep fails with a named message instead of a TypeError.",
          "is_bot": false,
          "headline": "fix(create-kura): correct ^0.0.z caret semantics and assert range pre…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-22T07:45:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f97bd047380f8194262920f6a8eaad2ef88e584a",
          "body": "The Kura 0.1.0 release left the scaffold template pointing at the\npre-0.1.0 ranges (@kurajs/docs ^0.0.25, @kurajs/cli ^0.0.15), so\ncreate-kura produced apps on stale majors. Bump both to ^0.1.0 and add\na test asserting the template's caret ranges cover the workspace\nversions, so a future release can't silently leave the template behind.",
          "is_bot": false,
          "headline": "fix(create-kura): template tracks the current @kurajs majors",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-22T07:39:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ec0e5383d815c1a8b41de92e02f2c56ba20b00de",
          "body": "chore(release): version packages",
          "is_bot": false,
          "headline": "Merge pull request #78 from kurajs/changeset-release/main",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-10T05:58:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3104fe8f81dbb6e3ae78bb65f8f24f5d7e640883",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): version packages",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-10T05:54:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4c25d3c9beb26df25d7849fe7326d629d453d9e3",
          "body": "June released @junejs/core + @junejs/server 0.1.0 (@junejs/cli 0.0.51 now\ndepends on >=0.1.0, so the whole runtime resolves to the 0.1.0 line). Move\nKura onto it and take all of @kurajs/* to 0.1.0 together:\n\n- @kurajs/docs now peers @junejs/core at >=0.1.0 <0.2.0 (was <0.1.0);\n  examples take @junej\n[…]\n is green on it\n(all package builds, 302 tests, examples/docs build, and a dev server\nserving HTML / .md / i18n / /search / /mcp).\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat: adopt June 0.1.0 and cut Kura 0.1.0",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-10T05:53:20Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "b070ad0652d56757def03cbf5eaab5a9934881d1",
          "body": "… upgrade\n\n`npm install -g npm@latest` on the setup-node toolcache pruned npm's bundled\n`sigstore` dep, so `npm publish --provenance` died with \"Cannot find module\n'sigstore'\" (the v0.0.67 release run failed on create-kura@0.0.17). Node 24\nbundles npm 11.16 — recent enough for OIDC trusted publishing (>= 11.5.1) and\ncomplete — so use it directly and drop the manual upgrade.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(ci): release publish uses node 24's complete npm, not an in-place…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-10T05:20:52Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "0e9f0d2085d11f3c1f66f1c528024005d11b8038",
          "body": "chore(release): version packages",
          "is_bot": false,
          "headline": "Merge pull request #77 from kurajs/changeset-release/main",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-10T05:10:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "021ebe540de7cb8a182e1d99c3a8b976c417a691",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): version packages",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-10T05:10:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9ae33a26e506a710dd82b3dcd5458249937568fa",
          "body": "…s.ts\n\n`kura index` freezes app/_links.ts (since @kurajs/cli 0.0.27) and\napp/_assets.ts (since 0.0.28), but neither the scaffold's .gitignore nor\nthis repo's root .gitignore listed them — so a project built with a current\nCLI ends up with two untracked machine-generated files. Add both to the\ncreate-kura template (with a patch changeset) and to the monorepo root\n.gitignore (for the examples).\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(create-kura): ignore newer generated app/_links.ts and app/_asset…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-10T05:09:20Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "c7939029d5c02497e190ad502ef7bdbfa377eed2",
          "body": "Refresh bun.lock so @junejs/cli AND the examples resolve @junejs/server\n0.0.59 (and its required @junejs/core 0.0.49). Under bun's isolated linker\nthe `june` bin loads @junejs/cli's own resolved @junejs/server, so a full\nre-resolve is what actually moves the runtime — not just the examples' dep.\n\nSt\n[…]\nndcss, rolldown, opencc-js, …).\n\nVerified: bun run check + bun run test green; examples/docs builds against\n@junejs/server 0.0.59.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore(deps): move June runtime to @junejs/server 0.0.59 (lockfile only)",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-10T05:06:46Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "d29da2fdfc80cfa84c9494e3125fecb67a87a978",
          "body": "chore(release): version packages",
          "is_bot": false,
          "headline": "Merge pull request #76 from kurajs/changeset-release/main",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-08T18:14:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b0d86ca4e34dadd47a0101e59a1a4d41b224656b",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): version packages",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-08T18:12:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3131cbed3e5b7e5e755afcbba3dfac4efb862bb0",
          "body": "fix(docs): widen @junejs/og dependency to >=0.0.5 (escape the broken 0.0.4 pin)",
          "is_bot": false,
          "headline": "Merge pull request #75 from kurajs/fix/widen-junejs-og-range",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-08T18:12:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4c577d3a74fb27b028b6c693eb3d01f4791cf385",
          "body": null,
          "is_bot": false,
          "headline": "chore: update lockfile for widened @junejs/og range",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-08T18:06:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f8d586d4bc535d4c1e3b17e69601af589a660ef8",
          "body": "…0.0.4 pin)\n\n@kurajs/docs pinned @junejs/og ^0.0.4 (npm caret on 0.0.z = exact 0.0.4), whose edge backend\nstatically re-exports @vercel/og — its top-level ./yoga.wasm?module import can't be bundled,\nbreaking Vercel builds carrying the OG route. 0.0.5 lazy-loads @vercel/og. Widen to a range so\nconsumers resolve 0.0.5+ transitively and no longer need a pnpm.overrides pin to escape 0.0.4.",
          "is_bot": false,
          "headline": "fix(docs): widen @junejs/og dependency to >=0.0.5 (escape the broken …",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-08T18:03:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fb3add9838015e52a4b516ef82a63b5d5e577230",
          "body": "chore(release): version packages",
          "is_bot": false,
          "headline": "Merge pull request #74 from kurajs/changeset-release/main",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T20:53:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e125ae9cbb11c8cb46139addf80ab7d3cd2a6700",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): version packages",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-04T20:53:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c4c53545e1f1f382644d189525c7f8a475c572ed",
          "body": "feat(docs): reveal the active sidebar item on load (container-scoped, zero new bundle)",
          "is_bot": false,
          "headline": "Merge pull request #73 from kurajs/feat/sidebar-reveal-active",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T20:52:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bfc113bf2633d17d82d97761153962baacef259c",
          "body": "… zero new bundle)\n\nA long sidebar (model-compose's 30+-entry Reference tree) reset to the top on every full page\nload, losing the reader's place. The shell's existing SIDEBAR_SYNC_JS inline script now centers\nthe active link inside #docs-nav when it is out of view: rect math against the sidebar's O\n[…]\nin happy-dom with stubbed geometry — no\nmirrored logic: below-the-fold centering math, already-visible no-op, hidden-sidebar no-op (no\nNaN), and no-active untouched; aria-current sync asserted intact.",
          "is_bot": false,
          "headline": "feat(docs): reveal the active sidebar item on load (container-scoped,…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T20:13:15Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "a404ccbc3cec778c664d85701f8c247da1c59370",
          "body": "chore(release): version packages",
          "is_bot": false,
          "headline": "Merge pull request #72 from kurajs/changeset-release/main",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T19:58:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "59cc539629076cb5186285d0d9acce5911cd1423",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): version packages",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-04T19:57:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6cbc70d6fffa2c23c70ad76008c3da28e347b3fd",
          "body": "feat(cli): freeze the content-asset manifest + copy referenced images on static builds",
          "is_bot": false,
          "headline": "Merge pull request #71 from kurajs/feat/content-images-cli",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T19:57:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ffae398da7a248817329c8fa4d010a380551e9ed",
          "body": "…e symlink test\n\nNon-static targets can't serve the copied files (the dev route has no fs on Workers), so a\npopulated manifest produced broken /assets/ URLs there — the freeze now collects images only for\nstatic targets, keeping authored srcs everywhere else (matching the deploy-time note). The\nsymlink-escape test used require() in an ESM package, so its assertion silently never ran; proper\nimport restores it (and it passes).",
          "is_bot": false,
          "headline": "fix(cli): image manifest freezes empty on non-static targets; ESM-saf…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T19:53:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e1883987d6e33ca79a67bf380c75ffb935500efe",
          "body": "…manifest (defense in depth)",
          "is_bot": false,
          "headline": "fix(cli): the dev route rejects traversal segments regardless of the …",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T19:39:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "925db575b0c6b346e83a0e6176f344c0d52e0781",
          "body": "path.resolve + root-prefix check rejects ..-segment contentRels before statSync runs, so the\noracle never touches paths outside the tree even transiently; the realpath check still guards\nsymlinks after.",
          "is_bot": false,
          "headline": "fix(cli): lexical confinement before any fs call in the asset oracle",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T19:35:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f4d1c25236dcb553cea528a25379979e37689715",
          "body": "…athMapper JSDoc; config load only on build success",
          "is_bot": false,
          "headline": "fix(cli): honor the never-fail copy contract per file; reattach repoP…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T19:31:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6f9051bb80c3caa9d7835b8203bdbbadb837f65a",
          "body": "june's deployStatic is BUILD-ONLY (no platform CLI; CI publishes dist/static afterwards), so the\ncopy completes the local artifact before anything uploads it.",
          "is_bot": false,
          "headline": "docs(cli): note why the static post-deploy asset copy is ordering-safe",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T19:27:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4f9b578baf363c359f914c12300ec8eb4c5a7341",
          "body": null,
          "is_bot": false,
          "headline": "perf(cli): hoist the path-escape predicate out of the mapper hot path",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T19:23:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "60947fef2766851ff21560d1d94d3959c21f4747",
          "body": "…pers; encoded route URLs\n\nThe /assets shadow warning fires only on a ROOT docs mount (under a basePath nothing shadows);\npath-escape detection uses the exact '..' segment boundary so '..dots/x.md' names aren't dropped\n(applied to the pre-existing repoPathMapper too); the generated route percent-encodes segments\nbefore building the file URL.",
          "is_bot": false,
          "headline": "fix(cli): basePath-aware clash warning; exact .. boundary in both map…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T19:20:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f374d329f159ddb0d13fc8d6988627ae2a965977",
          "body": "…llipsis\n\nA corrupted _assets.ts with a non-array files value no longer flows into the copy step, and the\nreserved-namespace warning only appends an ellipsis when clashes were actually truncated.",
          "is_bot": false,
          "headline": "fix(cli): type-guard the frozen manifest read; honest clash-warning e…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T19:14:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d60745ee522964c3ad6330e00024121bdcf7f629",
          "body": "… the dev route\n\ncontentFileOf now resolves real paths and requires them under the tree root (a symlink can't pull\noutside files into the manifest or the copy), and transient stat races read as absent instead of\nthrowing. The generated route precomputes a Set for O(1) membership.",
          "is_bot": false,
          "headline": "fix(cli): confine the asset oracle to the content tree; Set lookup in…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T19:10:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "29a75184dfa26c801d6ae483fe81cfea7ce22984",
          "body": null,
          "is_bot": false,
          "headline": "chore: regenerate lockfile on the post-0.0.52 base",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T18:24:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "856a5abf02101465c74405fee4657d31c5b69e5a",
          "body": "… on static builds\n\nPR-B2 of the image pipeline (docs side shipped in 0.0.52). kura index now writes app/_assets.ts in\nthe always-run block (same lifecycle as _links.ts): per-doc CONTENT-tree-relative paths (derivable\nin isolated builds where repo paths are empty; mount-aware for docs-as-code source\n[…]\nn the trilingual\nmodel-compose build: 1 image frozen + copied, all three locales' pages, the .md agent surface, and\nthe search corpus carry /assets/... URLs; the trilingual search output is unchanged.",
          "is_bot": false,
          "headline": "feat(cli): freeze the content-asset manifest + copy referenced images…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T18:24:23Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "ac3528c0bad6da639b133edc59d073343e3f008b",
          "body": "chore(release): version packages",
          "is_bot": false,
          "headline": "Merge pull request #70 from kurajs/changeset-release/main",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T18:15:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1f82b4cd594b81d7ccbe430ea1a626728b4ed52a",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): version packages",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-04T18:14:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fc6df0386b3c5afeef6d8d494c528057b52999a4",
          "body": "feat(docs): content-image resolution behind a frozen asset manifest (inert alone)",
          "is_bot": false,
          "headline": "Merge pull request #69 from kurajs/feat/content-images-docs",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T18:14:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8536c98f39b0f41cb7101a5ec0bba70ef0d03356",
          "body": "…omment\n\nrewriteLineLinks superseded it in the code-span fix; the block comment still claimed images always\nstay authored (now: unless resolveImage is bound).",
          "is_bot": false,
          "headline": "chore(docs): drop dead rewriteSegment; refresh the markdown-surface c…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T18:03:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "505ffab6c7b6d57da900958038d4a82b32a22294",
          "body": "…agment\n\nresolveAsset treated the whole src as a filesystem path, so an SVG-sprite ref (./icons.svg#logo)\nfolded the fragment into the oracle candidate and never matched. Split the hash before resolution,\nre-append it to the rewritten URL (resolveLink parity).",
          "is_bot": false,
          "headline": "fix(docs): asset srcs with fragments resolve the path and keep the fr…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T17:58:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4d92fbfc2990cda407dc33f8fe2b3069156114c0",
          "body": "…inert alone)\n\nDocs images (<img src=\"./images/x.png\">) rendered verbatim: never copied, and relative srcs break\nunder directory-style page URLs. New asset layer in links.ts: AssetData (frozen by the CLI as\napp/_assets.ts — content-tree-relative coordinates, which survive isolated builds where repo \n[…]\nranges mirrors), declines + <a>-untouched-by-img-pass,\nempty-manifest gates, markdown fence guarding, and a jsx render+corpus row with a byte-parity\ncounterpart. 67 unit + 7 jsx green; monorepo green.",
          "is_bot": false,
          "headline": "feat(docs): content-image resolution behind a frozen asset manifest (…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T17:36:16Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "52ed73d04cdf12f354ad5c1234cf947f253b0aa8",
          "body": "chore(release): version packages",
          "is_bot": false,
          "headline": "Merge pull request #68 from kurajs/changeset-release/main",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T17:30:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9457124db576c71ab8766a297a742e442c119c97",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): version packages",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-04T17:29:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5b250e70891fdb63f2690dbebace1a4bbfc1b52b",
          "body": "feat(docs): locale-scoped search — per-locale corpora, indexes, and hybrid filtering",
          "is_bot": false,
          "headline": "Merge pull request #67 from kurajs/feat/i18n-search",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T17:29:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "74d6bca1909b2b5eda82affd0c93cfb5e3ece666",
          "body": "… only)\n\nqLang/tokensOf used the raw requested locale even when it was not declared, breaking the\nunknown-behaves-as-unset contract at the tokenization layer and letting arbitrary strings key the\ntokenizer cache. New lang(): with declared locales only declared tags apply; without declarations\n(legacy callers) the raw locale keeps today's behavior — the existing no-knownLocales CJK test\nstays green, plus two new rows pinning both sides.",
          "is_bot": false,
          "headline": "fix(docs): tokenization locale normalizes like scoping (declared tags…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T17:17:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5a158ec3b6feda9456d2c3480607d08a1afeea8d",
          "body": "…ybrid filtering\n\nThe corpus/index layer saw only DOCS (default-locale entries), so a trilingual static site shipped\nthree byte-identical EN search.json files and the server keyword index was EN-only; the locale\nparam only tokenized queries and tie-broke collapses. Now the locale MODEL is the merged\n[…]\n on the trilingual model-compose build: the three\nsearch.json files now differ (zh: 21 zh-cn variants + 36 fallbacks), and a 730-anchor canary\nverifies corpus/render slugger alignment on CJK headings.",
          "is_bot": false,
          "headline": "feat(docs): locale-scoped search — per-locale corpora, indexes, and h…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T05:46:58Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "050baa558032635dd6163bdf0444d12f61ad649c",
          "body": "chore(release): version packages",
          "is_bot": false,
          "headline": "Merge pull request #66 from kurajs/changeset-release/main",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T01:07:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "763ea1f7b9e58bdde6c8aedb4d2950ec9948899b",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): version packages",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-04T01:07:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7f2044f58a81897796b8807331242d112896149d",
          "body": "fix(docs): links with code-span TEXT rewrite; only a span-quoted TARGET is skipped",
          "is_bot": false,
          "headline": "Merge pull request #65 from kurajs/fix/code-span-link-text",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T01:06:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "18707214c40fe0e1ec6d380a2f161c63132080c0",
          "body": "…ET is skipped\n\nrewriteMarkdownLinks split each line around code spans, so a link whose text is backticked (the\n[`tests/x.toml`](../tests/x.toml) shape rustbgpd uses everywhere) lost its [text prefix and never\nmatched — the markdown surfaces stayed raw AND the CLI's corpus scan (same scanner) never \n[…]\neven the HTML tier-2 lookup missed. The guard now computes span\nranges and skips a link only when its TARGET position falls inside one (quoted examples), which is\nwhat the quoting rule actually means.",
          "is_bot": false,
          "headline": "fix(docs): links with code-span TEXT rewrite; only a span-quoted TARG…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T01:05:46Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "9707c054e8ea508d9e0e9ea58807ec207ff75382",
          "body": "chore(release): version packages",
          "is_bot": false,
          "headline": "Merge pull request #64 from kurajs/changeset-release/main",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T00:58:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "38bdc254bcecc03e338151ab3a46f1d9df4f12e9",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): version packages",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-04T00:57:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "913b37263cfb3162cb78fd54f0997b82e9e08d00",
          "body": "feat(cli): freeze app/_links.ts — source paths, repo detection, corpus-filtered oracle",
          "is_bot": false,
          "headline": "Merge pull request #61 from kurajs/feat/link-resolution-cli",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T00:57:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a91d578c11fdf072bfea3fa0e884a03025b46790",
          "body": "…A_SOURCE_MAP bases\n\nAlso fixes the null-prototype deepEqual assertions the previous commit left red locally (spread\nbefore comparing; prototypes differ by design now).",
          "is_bot": false,
          "headline": "fix(cli): parse ssh:// GitHub remotes; strip leading slashes from KUR…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T00:51:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "97fe207d2c5fba525fce0b3a3e49da8e47f8b2da",
          "body": "…oc no longer vanishes)",
          "is_bot": false,
          "headline": "fix(cli): null-prototype maps in collectSourcePaths (a __proto__.md d…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T00:47:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "be17efe5b227993e116e3b7d23ca7c725a038d9a",
          "body": "…ON.parse\n\nAn empty/whitespace config repo produced https://github.com/ garbage; it now counts as unset.\nAnd the frozen module is emitted as JSON.parse(...) instead of an object literal, so a\n__proto__-named slug becomes an own property rather than silently setting the prototype.",
          "is_bot": false,
          "headline": "fix(cli): empty repo string falls through to detection; freeze via JS…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T00:43:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "736a3b1217b705e2b81b682c69bc8d48cbabd7a7",
          "body": "Mapping order followed Object.entries, so an overlapping shallower root could shadow a deeper one.\nTrees now sort longest-path-first.",
          "is_bot": false,
          "headline": "fix(cli): most-specific KURA_SOURCE_MAP tree wins on overlapping roots",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T00:38:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "27b1e0a9e449579355712b3514e995154969e465",
          "body": "… miss cleanly)\n\nsourcePaths/localeSourcePaths are plain objects, so a missing slug named toString/constructor\nreturned an inherited function from every lookup site. All lookups now go through an\nObject.hasOwn guard (docs fromPathOf + get_page, cli fromOf + the coverage check, which used\nthe prototype-chain-including in operator).",
          "is_bot": false,
          "headline": "fix: own-key lookups for the frozen link maps (prototype-member slugs…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T00:35:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "df11fe00f74450d30b392025893c3937954b405d",
          "body": "…nicode-escaped the description)",
          "is_bot": false,
          "headline": "chore: restore docs package.json byte-identical to main (json.dumps u…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T00:30:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7f5ec9ff9cefb39f4a12943f8dd34aa327fce366",
          "body": "…nd peer\n\nNow structurally correct: docs 0.0.48 shipped first (#62), so the workspace satisfies the floor\nand a published CLI can never legally pair with a docs version lacking the ./links entrypoint.\nThe PR changeset is cli-only (the docs half shipped in the #62 train).",
          "is_bot": false,
          "headline": "fix(cli): floor @kurajs/docs at >=0.0.48 (the ./links subpath), dep a…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T00:30:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7055079c238e6068b2e9da2cbeac85815e178e0b",
          "body": "With KURA_REPO_ROOT set (copied build tree) and no GITHUB_REPOSITORY, the remote fallback ran git\nin the build dir (not a repo) and always returned null. gitOriginUrl now takes a cwd and cmdIndex\npasses repoRoot ?? cwd.",
          "is_bot": false,
          "headline": "fix(cli): read the origin remote from the repo root, not the build cwd",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T00:29:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8c49f25c31922c29e507db3949f43148308e257e",
          "body": "…udo-tests\n\nNode's runner doesn't guarantee test ordering, and a failure skipped the cleanup test. Hooks run\nregardless.",
          "is_bot": false,
          "headline": "test(cli): temp-dir lifecycle via before/after hooks, not ordered pse…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T00:29:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0c4984dd780240b0cb5dd70f81a1c08da8422900",
          "body": ">=0.0.48 failed frozen-lockfile install (workspace docs is 0.0.47 pre-release). Use >=0.0.47 —\nthe same release train bumps docs to 0.0.48, and a fresh install of the published cli resolves\nto the newest docs anyway.",
          "is_bot": false,
          "headline": "fix(cli): docs floor must be satisfiable by the workspace version",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T00:29:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e2dbc15c1ed9641998575a5850df871ad44e6ae6",
          "body": "…he corpus-filtered oracle\n\nThe CLI is the only place with a filesystem AND git, so kura index now freezes everything the\n3-tier resolver needs: (1) per-doc repo-relative source paths via the same walk + slugOf rule as\nlastUpdated, incl. locale mirrors — with KURA_REPO_ROOT / KURA_SOURCE_MAP for bui\n[…]\n URLs in\nBOTH the HTML and the .md projections; on-site links unchanged; zero dead ../ hrefs site-wide.\n17 new unit tests (detection precedence, path mapping, walk, oracle scan, deterministic freeze).",
          "is_bot": false,
          "headline": "feat(cli): freeze app/_links.ts — source paths, repo detection, and t…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T00:29:48Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "af8173b865effd82ebe7dbc8bad690a47b7896b9",
          "body": "chore(release): version packages",
          "is_bot": false,
          "headline": "Merge pull request #63 from kurajs/changeset-release/main",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T00:28:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "98aee9af7e40fb7e51f22d75df1b73b78394984b",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): version packages",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-04T00:28:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f09159139bf76a0883166d22e92679f81253601c",
          "body": "feat(docs): export resolveRepoPath + the @kurajs/docs/links subpath",
          "is_bot": false,
          "headline": "Merge pull request #62 from kurajs/feat/docs-links-subpath",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T00:27:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1da00e9cc0dbc59d631afe01cab2c9a2bdae7c37",
          "body": "Extract repoPathOf + per-segment escape decoding into one exported resolveRepoPath (the CLI's\ncorpus scan must share the resolver's exact path semantics), and expose a lean ./links subpath\n(zero runtime imports — type-only DocLike) so the CLI can import without pulling June code\nthrough the main entry.",
          "is_bot": false,
          "headline": "feat(docs): export resolveRepoPath + the @kurajs/docs/links subpath",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-04T00:26:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1a756c9ad2ff84c49aa453f0a9e133403a73dd7f",
          "body": "chore(release): version packages",
          "is_bot": false,
          "headline": "Merge pull request #60 from kurajs/changeset-release/main",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-03T23:51:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "75015dbdee4d17591c9bbd9baf5cc23cd122d950",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): version packages",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-03T23:50:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f0ff8a842e7d51c99f4a2f32c61624eca1d7b85e",
          "body": "feat(docs): 3-tier in-content link resolution behind frozen LinkData",
          "is_bot": false,
          "headline": "Merge pull request #59 from kurajs/feat/link-resolution-docs",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-03T23:49:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6f5d4163ec46e396731fda5097a4551f42e00e86",
          "body": "…tion\n\nAn authored %2F must not become a path separator: escapes now decode per segment, and a segment\nwhose decode introduces '/' keeps its raw spelling (test: notes%2Fguide.md does not resolve to the\ntracked notes/guide.md). get_page's description now says what it returns: the authored Markdown\nsource, not 'clean Markdown'.",
          "is_bot": false,
          "headline": "fix(docs): decode link escapes per segment; truthful get_page descrip…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-03T23:47:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e478080db8ab572237821281a8df146873b948fd",
          "body": "…arify GitHub-shaped tier-2\n\n(1) md-flavor tier-1 URLs skipped the .md suffix for the homepage; now built as\ndocPath(basePath, slug + '.md') exactly like DocBody's Copy-Markdown link, so agents crawling\nmarkdown stay in markdown on home too. (2) The gitlab example in the normalizeRepoUrl test implied\narbitrary-forge support; swapped for a GHES host and documented on LinkData.repoUrl that tier-2\nURLs are GitHub-shaped (blob/tree) pending a URL template for other forges.",
          "is_bot": false,
          "headline": "fix(docs): md-flavor home link follows the DocBody .md convention; cl…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-03T23:43:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "adf8e58d468bbad8ab0c4747746ab8712b605b8a",
          "body": "String(r.repo) coerced any TOML type (repo = true became the string \"true\" and then a garbage\nhttps://github.com/true URL). Non-string, non-false values are now ignored rather than coerced.",
          "is_bot": false,
          "headline": "fix(docs): fromKuraToml accepts only string|false for repo",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-03T23:38:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c9008764279432c341ae4578be1a98c35c8f9cc4",
          "body": "…ware get_page\n\n(1) buildLinkContext registered only default sourcePaths, so a link normalized against a variant\nbase (docs/ja/...) missed slugByPath and leaked to the repo oracle or the basename guesser; variant\npaths now register to the same slugs (the caller's toDocHref supplies the locale prefix\n[…]\nale input; the response keeps the pairing invariant — source.path\nalways describes the bytes returned (the variant's own file when a variant is served, the default\nfile otherwise, including fallback).",
          "is_bot": false,
          "headline": "fix(docs): register locale-variant paths in the tier-1 maps; locale-a…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-03T23:34:13Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "abc2a05783dae467ce178cde9b70f42e8690223a",
          "body": "…eir own source path\n\nThree review follow-ups: (1) the inline-code guard used a naive backtick split that could not\nrepresent spans containing backticks; replaced with exact-run matching (an opener of N backticks\ncloses on the next run of exactly N; unmatched runs are literal). (2)+(3) i18n mirrors \n[…]\nlling\nback to the default path when no variant exists (fallback entries ARE the default file). Adds an\nend-to-end jsx test (tier 2 blob + tier 1 on-site through createDocs) and resolver/scanner cases.",
          "is_bot": false,
          "headline": "fix(docs): CommonMark code spans, and locale variants resolve from th…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-03T23:26:41Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "05e5ede7b1c41e0d5ecacdf460a43d835310d7ce",
          "body": "The old form compared the resolver against itself (the .replace un-did the encoding before the\ncall). Now an authored %20 target must decode to the on-disk space, hit the repo-file oracle, and\nre-encode in the emitted blob URL.",
          "is_bot": false,
          "headline": "test(docs): make the percent-encoding case a real assertion",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-03T23:17:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2c3a4d1b58f54b328dabe305f7c0a646041cc1df",
          "body": "…k length rule\n\nTwo review follow-ups on the resolver: (1) tier-2 directory (tree) URLs dropped the authored\n#fragment while blob URLs kept it - append it there too. (2) rewriteMarkdownLinks' fence tracking\nrecorded only the fence character, so a 3-backtick line closed a 4-backtick fence early and an\ninfo-string line could close a fence; the closer now requires the same char, at least the opening\nlength, and only whitespace after (CommonMark). Tests for all three shapes.",
          "is_bot": false,
          "headline": "fix(docs): tree links keep anchors; fence closer must match CommonMar…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-03T23:13:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4ab0612cd53b0928438fc9f44e42cdbfebc05bf0",
          "body": "Authored links like ../RECEIPTS.md#a (a doc pruned from the build), ../../KNOWN_ISSUES.md (a repo\nroot file), or ../tests/harness.rs (source) stayed raw relative hrefs and 404'd on the site. New\nlinks.ts resolves each page's links from its own repo source path: tier 1 on-site page (path-exact\nvia sl\n[…]\n string pins the\ncanonical repo over the detected one, false hard-disables tier 2.\n\n47 resolver tests mirror the real-world corpora (rustbgpd, beads_rust) incl. the exact live 404s;\nwhole suite green.",
          "is_bot": false,
          "headline": "feat(docs): 3-tier in-content link resolution behind frozen LinkData",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-03T23:05:27Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "1a6f225fbeb507e9143f1b660a3cd9adbb49fb8e",
          "body": "chore(release): version packages",
          "is_bot": false,
          "headline": "Merge pull request #58 from kurajs/changeset-release/main",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-03T16:05:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "21c11d782e9a8b607f4ee6baec7a064c5ccfe8c2",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): version packages",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-03T16:02:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4ebfa9c9c3a6b329f9f95ac92e9f63d38fc5761b",
          "body": "feat(docs): collapse a hand-written in-page Table of Contents into a <details>",
          "is_bot": false,
          "headline": "Merge pull request #57 from kurajs/feat/collapse-in-page-toc",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-03T16:02:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6783287506bd901b25b98aa952a5960280bce415",
          "body": "…e scope\n\nTOC_HEADING matched h1-h6, but the heading-id pass and the search indexer (splitByHeadings) only cover\nh2-h4. Folding an h1/h5/h6 ToC would reserve its slugger id outside that scope and could misalign the\nh2-h4 ids. Narrow the match to h2-h4.",
          "is_bot": false,
          "headline": "fix(docs): restrict in-page ToC folding to h2-h4 to match the pipelin…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-03T15:41:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "55ea6af6d270b16e643ec5f01808e2371207af2d",
          "body": "…ed-motion\n\nThe .kura-toc ::details-content height animation ran regardless of the user's motion preference, unlike\nthe other animations in preset.css. Wrap it in @media (prefers-reduced-motion: no-preference) so\nreduced-motion users get the instant native open/close.",
          "is_bot": false,
          "headline": "fix(docs): gate the collapsed-ToC open animation behind prefers-reduc…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-03T15:36:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0a89357022c08f3f01275763dfee5c73dce26962",
          "body": "…id collisions\n\nThe <details> that replaces a hand-written Table of Contents drew its id from a raw slugify(), which\nwas not registered with the document slugger. A later real heading with the same text would then be\nassigned the identical id (duplicate ids, ambiguous anchors). Draw the id from the same createSlugger()\nso it de-dups against subsequent headings and stays aligned with the search indexer.",
          "is_bot": false,
          "headline": "fix(docs): reserve the folded ToC id in the slugger to avoid heading …",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-03T15:36:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7196a74a96904cc6e372d89b05d008aa524c73b6",
          "body": "…<details>\n\nA doc that hand-writes a '## Table of Contents' list duplicates the auto-generated right-rail ToC and\neats a screenful. processHtml now detects that heading + its (anchor-link) list and folds both into a\ncollapsed <details> before the heading-id pass, so it also drops out of the right-ra\n[…]\n> fences are removed. Detection is guarded (mostly in-page anchor links) and nesting-safe. Adds\n.kura-toc CSS (reusing the .chevron marker; progressive ::details-content animation, zero JS) and tests.",
          "is_bot": false,
          "headline": "feat(docs): collapse a hand-written in-page Table of Contents into a …",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-03T15:24:12Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "822ac2a5295220849ef541b689b2d4fb393be1cd",
          "body": "chore(release): version packages",
          "is_bot": false,
          "headline": "Merge pull request #56 from kurajs/changeset-release/main",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-02T20:43:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "94873cb4aed9e84fb1bac6f1f2d5f217dbde11af",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): version packages",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-02T20:43:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fbeaf9d03e3067a893bc4d92a9b4af59981cba27",
          "body": "fix(docs): footer llms.txt deploy prefix + hide MCP on static",
          "is_bot": false,
          "headline": "Merge pull request #55 from kurajs/fix/footer-deploy-links",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-02T20:43:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bed43b569d10f3abcb7e8e6989114f5e776a43f9",
          "body": "…atic\n\nThe footer hardcoded href=\"/llms.txt\", so under a deploy subpath (GitHub Pages /openab) it\n404'd — llms.txt is a deploy-ROOT file (not under the docs basePath or a locale), so it takes\nthe deploy prefix alone (/openab/llms.txt). MCP is a server route a static build never emits,\nso hide it on static rather than link a dead /mcp. DocsLayoutShell gains a deployPrefix prop.",
          "is_bot": false,
          "headline": "fix(docs): footer llms.txt link missing deploy prefix; hide MCP on st…",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-02T20:37:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f88f69985d0ae191d8f3b93e6e8fd11e2da3d82b",
          "body": "chore(release): version packages",
          "is_bot": false,
          "headline": "Merge pull request #54 from kurajs/changeset-release/main",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-02T20:25:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fe9c7d000f84c273ac07f0583e232b31be0734aa",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): version packages",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-02T20:24:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4de093bd8c73a0c716c72300fa16ab468bebede5",
          "body": "feat(search): rich HTML previews + HTML-sourced index",
          "is_bot": false,
          "headline": "Merge pull request #53 from kurajs/feat/html-preview",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-02T20:24:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "047db53c3ffa2ce6e60bbea819d51137bb0459ed",
          "body": null,
          "is_bot": false,
          "headline": "chore: changeset for rich HTML search previews",
          "author_name": "Lawrence Lin",
          "author_login": "linyiru",
          "committed_at": "2026-07-02T20:20:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 7,
      "commits_last_year": 388,
      "latest_release_at": "2026-07-10T06:01:39Z",
      "latest_release_tag": "v0.0.68",
      "releases_from_tags": false,
      "days_since_last_push": 8,
      "active_weeks_last_year": 6,
      "days_since_latest_release": 21,
      "mean_days_between_releases": 3.2
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": false,
      "health_percentage": 37,
      "has_issue_template": false,
      "has_code_of_conduct": false,
      "has_pull_request_template": false
    },
    "ecosystem": {
      "packages": [
        {
          "name": "@kurajs/cli",
          "exists": true,
          "license": "MIT",
          "keywords": [
            "kura",
            "june",
            "cli",
            "docs",
            "search",
            "index",
            "mcp"
          ],
          "ecosystem": "npm",
          "matches_repo": true,
          "registry_url": "https://www.npmjs.com/package/@kurajs/cli",
          "is_deprecated": false,
          "latest_version": "0.1.0",
          "repository_url": "https://github.com/kurajs/kura",
          "versions_count": 25,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": 1,
          "monthly_downloads": 13636,
          "first_published_at": "2026-06-16T23:56:01.237000Z",
          "latest_published_at": "2026-07-10T05:59:42.170000Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 21
        },
        {
          "name": "@kurajs/core",
          "exists": true,
          "license": "MIT",
          "keywords": [
            "kura",
            "june",
            "vector",
            "rag",
            "knowledgebase",
            "embeddings",
            "search"
          ],
          "ecosystem": "npm",
          "matches_repo": true,
          "registry_url": "https://www.npmjs.com/package/@kurajs/core",
          "is_deprecated": false,
          "latest_version": "0.1.0",
          "repository_url": "https://github.com/kurajs/kura",
          "versions_count": 2,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": 1,
          "monthly_downloads": 12128,
          "first_published_at": "2026-06-16T23:55:54.281000Z",
          "latest_published_at": "2026-07-10T05:59:56.947000Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 21
        },
        {
          "name": "@kurajs/ctrlk",
          "exists": true,
          "license": "MIT",
          "keywords": [
            "kura",
            "june",
            "command-palette",
            "cmdk",
            "ctrl-k",
            "command-menu",
            "search",
            "headless",
            "a11y"
          ],
          "ecosystem": "npm",
          "matches_repo": true,
          "registry_url": "https://www.npmjs.com/package/@kurajs/ctrlk",
          "is_deprecated": false,
          "latest_version": "0.1.0",
          "repository_url": "https://github.com/kurajs/kura",
          "versions_count": 4,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": 1,
          "monthly_downloads": 12098,
          "first_published_at": "2026-06-23T23:56:24.733000Z",
          "latest_published_at": "2026-07-10T05:59:47.370000Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 21
        },
        {
          "name": "@kurajs/search",
          "exists": true,
          "license": "MIT",
          "keywords": [
            "kura",
            "june",
            "bm25",
            "search",
            "full-text",
            "keyword",
            "knowledgebase"
          ],
          "ecosystem": "npm",
          "matches_repo": true,
          "registry_url": "https://www.npmjs.com/package/@kurajs/search",
          "is_deprecated": false,
          "latest_version": "0.1.0",
          "repository_url": "https://github.com/kurajs/kura",
          "versions_count": 3,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": 1,
          "monthly_downloads": 12434,
          "first_published_at": "2026-06-23T21:16:26.706000Z",
          "latest_published_at": "2026-07-10T06:00:15.688000Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 21
        },
        {
          "name": "@kurajs/tokenizers",
          "exists": true,
          "license": "MIT",
          "keywords": [
            "kura",
            "tokenizer",
            "cjk",
            "chinese",
            "japanese",
            "bigram",
            "intl-segmenter"
          ],
          "ecosystem": "npm",
          "matches_repo": true,
          "registry_url": "https://www.npmjs.com/package/@kurajs/tokenizers",
          "is_deprecated": false,
          "latest_version": "0.1.0",
          "repository_url": "https://github.com/kurajs/kura",
          "versions_count": 2,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": 1,
          "monthly_downloads": 12590,
          "first_published_at": "2026-06-23T21:16:34.599000Z",
          "latest_published_at": "2026-07-10T06:00:21.715000Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 21
        },
        {
          "name": "create-kura",
          "exists": true,
          "license": "MIT",
          "keywords": [
            "kura",
            "june",
            "docs",
            "documentation",
            "mcp",
            "agent-native"
          ],
          "ecosystem": "npm",
          "matches_repo": true,
          "registry_url": "https://www.npmjs.com/package/create-kura",
          "is_deprecated": false,
          "latest_version": "0.0.18",
          "repository_url": "https://github.com/kurajs/kura",
          "versions_count": 18,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": 1,
          "monthly_downloads": 739,
          "first_published_at": "2026-06-16T00:30:41.338000Z",
          "latest_published_at": "2026-07-22T08:04:09.089000Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 8
        },
        {
          "name": "@kurajs/transformers",
          "exists": true,
          "license": "MIT",
          "keywords": [
            "kura",
            "embeddings",
            "bge-m3",
            "transformers.js",
            "onnx"
          ],
          "ecosystem": "npm",
          "matches_repo": true,
          "registry_url": "https://www.npmjs.com/package/@kurajs/transformers",
          "is_deprecated": false,
          "latest_version": "0.1.0",
          "repository_url": "https://github.com/kurajs/kura",
          "versions_count": 3,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": 1,
          "monthly_downloads": 215,
          "first_published_at": "2026-06-16T23:55:56.520000Z",
          "latest_published_at": "2026-07-10T06:00:10.537000Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 21
        }
      ]
    },
    "popularity": {
      "forks": 0,
      "stars": 6,
      "watchers": 0,
      "fork_history": {
        "days": [],
        "complete": true,
        "collected": 0,
        "total_forks": 0
      },
      "star_history": null,
      "open_issues_and_prs": 0
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [
        "examples"
      ],
      "has_llms_txt": false,
      "has_dockerfile": false,
      "has_mcp_signal": false,
      "bootstrap_files": [],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [
        "examples/docs-cjk/tsconfig.json",
        "examples/docs/tsconfig.json",
        "examples/search/tsconfig.json",
        "packages/cli/tsconfig.json",
        "packages/create-kura/template/tsconfig.json",
        "packages/ctrlk/tsconfig.json",
        "packages/docs/tsconfig.json",
        "packages/kura-transformers/tsconfig.json",
        "packages/kura/tsconfig.json",
        "packages/search/tsconfig.json",
        "packages/tokenizers/tsconfig.json"
      ],
      "toolchain_manifests": [],
      "largest_source_bytes": 36659,
      "source_files_sampled": 93,
      "oversized_source_files": 0,
      "agent_instruction_files": [
        "examples/docs/content/docs/concepts/agents.md",
        "examples/docs/content/docs/ja-JP/concepts/agents.md",
        "examples/search/content/agents.md"
      ],
      "agent_instruction_max_bytes": 718
    },
    "dependencies": {
      "manifests": [
        "package.json"
      ],
      "advisories": {
        "error": null,
        "scope": "published_package",
        "source": "osv",
        "findings": [],
        "collected": true,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 227,
        "malicious_count": 0,
        "assessed_package": "npm:@kurajs/cli@0.1.0",
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "npm"
      ],
      "dependencies": [
        {
          "name": "@junejs/cli",
          "manifest": "packages/cli/package.json",
          "ecosystem": "npm",
          "version_constraint": ">=0.0.50 <0.1.0"
        },
        {
          "name": "@kurajs/core",
          "manifest": "packages/cli/package.json",
          "ecosystem": "npm",
          "version_constraint": ">=0.1.0"
        },
        {
          "name": "smol-toml",
          "manifest": "packages/cli/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.7.0"
        },
        {
          "name": "@kurajs/docs",
          "manifest": "packages/cli/package.json",
          "ecosystem": "npm",
          "version_constraint": ">=0.1.0"
        },
        {
          "name": "@kurajs/search",
          "manifest": "packages/tokenizers/package.json",
          "ecosystem": "npm",
          "version_constraint": ">=0.1.0"
        }
      ],
      "all_dependencies": {
        "error": "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
        "source": null,
        "packages": [],
        "collected": false,
        "truncated": false,
        "total_count": null,
        "direct_count": null,
        "indirect_count": null
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 0,
        "merged_prs": 82,
        "open_issues": 0,
        "closed_ratio": null,
        "closed_issues": 0,
        "closed_unmerged_prs": 0
      },
      "bus_factor": 1,
      "bot_contributors": 1,
      "top_contributors": [
        {
          "type": "User",
          "login": "linyiru",
          "commits": 358,
          "avatar_url": "https://avatars.githubusercontent.com/u/8616?v=4"
        }
      ],
      "contributors_sampled": 1,
      "top_contributor_share": 1
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "changesets.yml",
        "ci.yml",
        "curator.yml",
        "release.yml"
      ],
      "has_docs_dir": true,
      "linter_configs": [],
      "has_editorconfig": false,
      "has_linter_config": false,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 0,
            "reason": "branch protection not enabled on development/release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": 8,
            "reason": "10 out of 12 merged PRs checked by a CI test -- score normalized to 8",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 0/9 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 6,
            "reason": "project has 2 contributing companies or organizations -- score normalized to 6",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 0,
            "reason": "no update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 0,
            "reason": "project was created within the last 90 days. Please review its contents carefully",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": 10,
            "reason": "packaging workflow detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 0,
            "reason": "dependency not pinned by hash detected -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "SAST tool is not run on all commits -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 0,
            "reason": "security policy file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": null,
            "reason": "no releases found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 8,
            "reason": "2 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "63c03e7c5fc84e3142d614b205d2367f72e6da51",
        "ran_at": "2026-07-31T06:57:48Z",
        "aggregate_score": 3.5,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": false
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-22T08:04:22Z",
      "oldest_open_prs": [],
      "last_merged_pr_at": "2026-07-22T08:03:15Z",
      "ci_last_conclusion": "SUCCESS",
      "oldest_open_issues": []
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/kurajs/kura",
    "host": "github.com",
    "name": "kura",
    "owner": "kurajs"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 58,
      "inputs": {
        "security": 48,
        "vitality": 71,
        "community": 42,
        "governance": 52,
        "engineering": 74
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "good",
        "name": "Vitality",
        "value": 71,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "moderate",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 51,
            "inputs": {
              "commits_last_year": 388,
              "human_commit_share": 0.84,
              "days_since_last_push": 8,
              "active_weeks_last_year": 6
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 8 days ago",
                "points": 28.8,
                "status": "partial",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 8
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "6/52 weeks with commits",
                "points": 4.2,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 6
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "388 commits in the last year",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 388
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "project was created within the last 90 days. Please review its contents carefully",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "releases_count": 7,
              "latest_release_tag": "v0.0.68",
              "releases_from_tags": false,
              "days_since_latest_release": 21,
              "mean_days_between_releases": 3.2
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "7 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 7
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 21 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 21
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~3.2 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 3.2
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "unverified",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": "repository_too_young",
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": null,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "maintenance record not established from the collected data",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_unverified",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "at_risk",
        "name": "Community & Adoption",
        "value": 42,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "critical",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 11,
            "inputs": {
              "forks": 0,
              "stars": 6,
              "watchers": 0,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "6 stars",
                "points": 11.3,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 6
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "0 forks",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "0 watchers",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "moderate",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 50,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": false,
              "has_issue_template": false,
              "has_code_of_conduct": false,
              "has_pull_request_template": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (MIT)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "MIT"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.3
              }
            ]
          },
          {
            "key": "ecosystem_adoption",
            "band": "good",
            "name": "Ecosystem adoption (downloads)",
            "note": "Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "registry_dependents"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 80,
            "inputs": {
              "packages": [
                "@kurajs/cli",
                "@kurajs/core",
                "@kurajs/ctrlk",
                "@kurajs/search",
                "@kurajs/tokenizers",
                "create-kura",
                "@kurajs/transformers"
              ],
              "dependents": null,
              "ecosystems": "npm",
              "total_downloads": null,
              "monthly_downloads": 63840
            },
            "components": [
              {
                "key": "monthly_downloads",
                "name": "Monthly downloads",
                "detail": "63,840 downloads/month across npm",
                "points": 64.1,
                "status": "partial",
                "details": [
                  {
                    "code": "downloads_monthly",
                    "params": {
                      "count": 63840,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 80
              },
              {
                "key": "registry_dependents",
                "name": "Registry dependents",
                "detail": "not reported by this ecosystem",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_reported_by_this_ecosystem",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "moderate",
        "name": "Sustainability & Governance",
        "value": 52,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "critical",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 16,
            "inputs": {
              "bus_factor": 1,
              "contributors_sampled": 1,
              "top_contributor_share": 1
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "1 contributor(s) cover half of all commits",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 100% of commits",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 100
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "1 contributors",
                "points": 1.4,
                "status": "partial",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 2 contributing companies or organizations -- score normalized to 6",
                "points": 6,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "good",
            "name": "Issue & PR responsiveness",
            "note": "Excluded from scoring (no data or not applicable): Issue resolution. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "issue_resolution"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 72,
            "inputs": {
              "merged_prs": 82,
              "open_issues": 0,
              "closed_issues": 0,
              "issue_closed_ratio": null,
              "closed_unmerged_prs": 0
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "no issues or no data",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_issues_or_data",
                    "params": {}
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "82/82 decided PRs merged",
                "points": 38.2,
                "status": "met",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 82,
                      "decided": 82
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 0/9 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "at_risk",
            "name": "Ownership & stewardship",
            "note": null,
            "notes": [],
            "value": 37,
            "inputs": {
              "followers": 1,
              "owner_type": "Organization",
              "is_verified": null,
              "owner_login": "kurajs",
              "public_repos": 3,
              "account_age_days": 44
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "organization-owned",
                "points": 30,
                "status": "met",
                "details": [
                  {
                    "code": "owner_organization",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "1 followers of kurajs",
                "points": 2.2,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 1,
                      "login": "kurajs"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "3 public repos, account ~0 yr old",
                "points": 4.6,
                "status": "partial",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 3
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 0
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "excellent",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "@kurajs/cli",
                "@kurajs/core",
                "@kurajs/ctrlk",
                "@kurajs/search",
                "@kurajs/tokenizers",
                "create-kura",
                "@kurajs/transformers"
              ],
              "ecosystems": "npm",
              "any_deprecated": false,
              "min_days_since_publish": 8
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "7 package(s) on npm",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 7,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 8 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 8
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "25 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 25
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "good",
        "name": "Engineering Quality",
        "value": 74,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "moderate",
            "name": "Engineering practices",
            "note": null,
            "notes": [],
            "value": 64,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": false,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "4 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 4
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "10 out of 12 merged PRs checked by a CI test -- score normalized to 8",
                "points": 16,
                "status": "partial",
                "details": [],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "excellent",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "topics": [
                "agent-native",
                "ai-agents",
                "cloudflare-workers",
                "docs",
                "documentation",
                "embeddings",
                "i18n",
                "june",
                "knowledgebase",
                "llms",
                "mcp",
                "mdx",
                "rag",
                "react",
                "semantic-search",
                "typescript",
                "vector-search"
              ],
              "has_wiki": false,
              "homepage": "https://kura.build",
              "has_readme": true,
              "has_docs_dir": true,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": "https://kura.build",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": "17 topics",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "topics_count",
                    "params": {
                      "count": 17
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "at_risk",
        "name": "Security",
        "value": 48,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "at_risk",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 35,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 17,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 1,
              "scorecard_aggregate": 3.5
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection not enabled on development/release branches",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "10 out of 12 merged PRs checked by a CI test -- score normalized to 8",
                "points": 2,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 0/9 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 2 contributing companies or organizations -- score normalized to 6",
                "points": 1.5,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "no update tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "project was created within the last 90 days. Please review its contents carefully",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool is not run on all commits -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "2 existing vulnerabilities detected",
                "points": 6,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "dependency_advisories",
            "band": "excellent",
            "name": "Dependency advisories",
            "note": "Excluded from scoring (no data or not applicable): No advisories left outstanding. Remaining weights renormalized. Matched the npm:@kurajs/cli@0.1.0 runtime dependency closure — what installing the published package pulls in — 227 packages. Reachability is not analyzed.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "no_advisories_left_outstanding"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              },
              {
                "code": "advisories_scope_published",
                "params": {
                  "package": "npm:@kurajs/cli@0.1.0",
                  "assessed": 227
                }
              },
              {
                "code": "advisories_reachability",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "source": "osv",
              "advisories": 0,
              "affected_packages": 0,
              "assessed_packages": 227,
              "unassessed_packages": 0,
              "affected_by_severity": "none",
              "direct_affected_packages": 0
            },
            "components": [
              {
                "key": "direct_dependencies_free_of_known_advisories",
                "name": "Direct dependencies free of known advisories",
                "detail": "no direct dependency carries a known advisory",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "no_direct_advisories",
                    "params": {}
                  }
                ],
                "max_points": 35
              },
              {
                "key": "indirect_dependencies_free_of_known_advisories",
                "name": "Indirect dependencies free of known advisories",
                "detail": "no indirect dependency carries a known advisory",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "no_indirect_advisories",
                    "params": {}
                  }
                ],
                "max_points": 25
              },
              {
                "key": "no_advisories_left_outstanding",
                "name": "No advisories left outstanding",
                "detail": "no advisory carries a publication date",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_no_publication_date",
                    "params": {}
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "malicious_dependencies",
            "band": "excellent",
            "name": "Malicious dependencies",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "source": "osv",
              "meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
              "packages": [],
              "red_flag": false,
              "assessed_packages": 227,
              "malicious_packages": 0,
              "direct_malicious_packages": 0,
              "withdrawn_malicious_packages": 0,
              "installable_malicious_packages": 0
            },
            "components": [
              {
                "key": "no_dependency_reported_as_a_malicious_package",
                "name": "No dependency reported as a malicious package",
                "detail": "no dependency is reported as a malicious package",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "no_malicious_dependencies",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 2
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "moderate",
        "name": "AI Readiness",
        "value": 63,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "excellent",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 1,
              "agent_instruction_files": [
                "examples/docs/content/docs/concepts/agents.md",
                "examples/docs/content/docs/ja-JP/concepts/agents.md",
                "examples/search/content/agents.md"
              ],
              "agent_instruction_max_bytes": 718
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "examples/docs/content/docs/concepts/agents.md, examples/docs/content/docs/ja-JP/concepts/agents.md, examples/search/content/agents.md",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "examples/docs/content/docs/concepts/agents.md, examples/docs/content/docs/ja-JP/concepts/agents.md, examples/search/content/agents.md"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "84 of 84 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 84,
                      "sampled": 84
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "at_risk",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 41,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [],
              "has_dockerfile": false,
              "typed_language": true,
              "bootstrap_files": [],
              "has_devcontainer": false,
              "has_linter_config": false,
              "typecheck_configs": [
                "examples/docs-cjk/tsconfig.json",
                "examples/docs/tsconfig.json",
                "examples/search/tsconfig.json",
                "packages/cli/tsconfig.json",
                "packages/create-kura/template/tsconfig.json",
                "packages/ctrlk/tsconfig.json",
                "packages/docs/tsconfig.json",
                "packages/kura-transformers/tsconfig.json",
                "packages/kura/tsconfig.json",
                "packages/search/tsconfig.json",
                "packages/tokenizers/tsconfig.json"
              ],
              "agent_commit_share": 0.04,
              "toolchain_manifests": [],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "examples/docs-cjk/tsconfig.json, examples/docs/tsconfig.json, examples/search/tsconfig.json, packages/cli/tsconfig.json, packages/create-kura/template/tsconfig.json, packages/ctrlk/tsconfig.json, packages/docs/tsconfig.json, packages/kura-transformers/tsconfig.json, packages/kura/tsconfig.json, packages/search/tsconfig.json, packages/tokenizers/tsconfig.json",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "examples/docs-cjk/tsconfig.json, examples/docs/tsconfig.json, examples/search/tsconfig.json, packages/cli/tsconfig.json, packages/create-kura/template/tsconfig.json, packages/ctrlk/tsconfig.json, packages/docs/tsconfig.json, packages/kura-transformers/tsconfig.json, packages/kura/tsconfig.json, packages/search/tsconfig.json, packages/tokenizers/tsconfig.json"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "4 of the last 100 commits agent-authored or agent-credited",
                "points": 8,
                "status": "partial",
                "details": [
                  {
                    "code": "agent_authored_commits",
                    "params": {
                      "count": 4,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "no automated dependency updates observed",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_dependency_automation",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "primary_language": "TypeScript",
              "largest_source_bytes": 36659,
              "source_files_sampled": 93,
              "oversized_source_files": 0
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "TypeScript (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "TypeScript"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "0/93 source files over 60KB",
                "points": 55,
                "status": "met",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 93,
                      "oversized": 0
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          },
          {
            "key": "ai_interfaces",
            "band": "at_risk",
            "name": "Machine-readable interfaces",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "example_dirs": [
                "examples"
              ],
              "has_mcp_signal": false,
              "api_schema_files": []
            },
            "components": [
              {
                "key": "api_schema_openapi_graphql_proto",
                "name": "API schema (OpenAPI/GraphQL/proto)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 40
              },
              {
                "key": "mcp_server",
                "name": "MCP server",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "runnable_examples",
                "name": "Runnable examples",
                "detail": "examples",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "examples"
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token",
    "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-31T06:58:04.123867Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/k/kurajs/kura.svg",
  "full_name": "kurajs/kura",
  "license_state": "standard",
  "license_spdx": "MIT"
}

评分是信号,而非担保。 评分反映的是 GitHub 上公开可见的实践——不是代码审计,也不是安全保证。

缺失数据将被剔除并重新归一化权重,绝不按零分计。方法论已版本化并公开:指标 v1.13.0、模式 v0.27.0—— 完整方法论 · 指标知识库.

单项结果在整体记录中的位置: 汇总统计npm.