原始 JSON 报告 机器可读
{
"data": {
"repo": {
"topics": [
"matrix-org",
"golang",
"matrix",
"go"
],
"is_fork": false,
"size_kb": 5625,
"has_wiki": false,
"homepage": "https://maunium.net/go/mautrix",
"languages": {
"Go": 2805193,
"PLpgSQL": 7108
},
"pushed_at": "2026-07-22T19:35:20Z",
"created_at": "2016-06-20T21:27:20Z",
"owner_type": "Organization",
"updated_at": "2026-07-22T19:35:26Z",
"description": "A Golang Matrix framework.",
"is_archived": false,
"is_disabled": false,
"license_spdx": "MPL-2.0",
"default_branch": "main",
"license_spdx_raw": "MPL-2.0",
"primary_language": "Go",
"significant_languages": [
"Go"
]
},
"owner": {
"blog": "https://docs.mau.fi/",
"name": null,
"type": "Organization",
"login": "mautrix",
"company": null,
"location": null,
"followers": 600,
"avatar_url": "https://avatars.githubusercontent.com/u/88519669?v=4",
"created_at": "2021-08-06T01:30:50Z",
"is_verified": null,
"public_repos": 30,
"account_age_days": 1811
},
"license": {
"state": "standard",
"spdx_id": "MPL-2.0",
"raw_spdx": "MPL-2.0",
"file_present": true,
"scorecard_found": true,
"profile_has_license": true
},
"activity": {
"releases": [
{
"tag": "v0.29.0",
"kind": "minor",
"published_at": "2026-07-16T09:51:34Z"
},
{
"tag": "v0.28.1",
"kind": "patch",
"published_at": "2026-06-16T12:09:05Z"
},
{
"tag": "v0.28.0",
"kind": "minor",
"published_at": "2026-05-16T10:22:25Z"
},
{
"tag": "v0.27.0",
"kind": "minor",
"published_at": "2026-04-16T10:39:24Z"
},
{
"tag": "v0.26.4",
"kind": "patch",
"published_at": "2026-03-16T15:23:09Z"
},
{
"tag": "v0.26.3",
"kind": "patch",
"published_at": "2026-02-16T12:40:56Z"
},
{
"tag": "v0.26.2",
"kind": "patch",
"published_at": "2026-01-16T13:02:33Z"
},
{
"tag": "v0.26.1",
"kind": "patch",
"published_at": "2025-12-16T13:51:35Z"
},
{
"tag": "v0.26.0",
"kind": "minor",
"published_at": "2025-11-16T10:54:14Z"
},
{
"tag": "v0.25.2",
"kind": "patch",
"published_at": "2025-10-16T09:41:14Z"
},
{
"tag": "v0.25.1",
"kind": "patch",
"published_at": "2025-09-16T11:49:13Z"
},
{
"tag": "v0.25.0",
"kind": "minor",
"published_at": "2025-08-16T10:20:45Z"
},
{
"tag": "v0.24.2",
"kind": "patch",
"published_at": "2025-07-16T08:33:54Z"
},
{
"tag": "v0.24.1",
"kind": "patch",
"published_at": "2025-06-16T13:46:10Z"
},
{
"tag": "v0.24.0",
"kind": "minor",
"published_at": "2025-05-16T05:15:25Z"
},
{
"tag": "v0.23.3",
"kind": "patch",
"published_at": "2025-04-16T09:36:24Z"
},
{
"tag": "v0.23.2",
"kind": "patch",
"published_at": "2025-03-16T14:48:21Z"
},
{
"tag": "v0.23.1",
"kind": "patch",
"published_at": "2025-02-16T15:20:31Z"
},
{
"tag": "v0.23.0",
"kind": "minor",
"published_at": "2025-01-16T11:19:13Z"
},
{
"tag": "v0.22.1",
"kind": "patch",
"published_at": "2024-12-16T14:04:59Z"
},
{
"tag": "v0.22.0",
"kind": "minor",
"published_at": "2024-11-16T14:06:19Z"
},
{
"tag": "v0.21.1",
"kind": "patch",
"published_at": "2024-10-16T07:34:29Z"
},
{
"tag": "v0.21.0",
"kind": "minor",
"published_at": "2024-09-16T10:56:28Z"
},
{
"tag": "v0.20.0",
"kind": "minor",
"published_at": "2024-08-16T08:59:49Z"
},
{
"tag": "v0.19.0",
"kind": "minor",
"published_at": "2024-07-16T08:16:10Z"
},
{
"tag": "v0.19.0-beta.1",
"kind": "prerelease",
"published_at": "2024-06-16T20:40:02Z"
},
{
"tag": "v0.18.1",
"kind": "patch",
"published_at": "2024-04-16T11:00:30Z"
},
{
"tag": "v0.18.0",
"kind": "minor",
"published_at": "2024-03-16T10:59:05Z"
},
{
"tag": "v0.18.0-beta.1",
"kind": "prerelease",
"published_at": "2024-02-16T15:13:34Z"
},
{
"tag": "v0.17.0",
"kind": "minor",
"published_at": "2024-01-16T14:13:48Z"
},
{
"tag": "v0.16.2",
"kind": "patch",
"published_at": "2023-11-16T13:17:37Z"
},
{
"tag": "v0.16.1",
"kind": "patch",
"published_at": "2023-09-16T14:01:10Z"
},
{
"tag": "v0.16.0",
"kind": "minor",
"published_at": "2023-08-16T21:47:06Z"
},
{
"tag": "v0.15.4",
"kind": "patch",
"published_at": "2023-07-16T09:26:49Z"
},
{
"tag": "v0.15.3",
"kind": "patch",
"published_at": "2023-06-16T11:30:12Z"
},
{
"tag": "v0.15.2",
"kind": "patch",
"published_at": "2023-05-16T14:51:40Z"
},
{
"tag": "v0.15.1",
"kind": "patch",
"published_at": "2023-04-16T12:24:00Z"
},
{
"tag": "v0.15.0",
"kind": "minor",
"published_at": "2023-03-16T10:35:11Z"
},
{
"tag": "v0.15.0-beta.3",
"kind": "prerelease",
"published_at": "2023-03-15T16:01:51Z"
},
{
"tag": "v0.15.0-beta.2",
"kind": "prerelease",
"published_at": "2023-03-02T11:57:56Z"
},
{
"tag": "v0.15.0-beta.1",
"kind": "prerelease",
"published_at": "2023-02-24T20:37:52Z"
},
{
"tag": "v0.14.0",
"kind": "minor",
"published_at": "2023-02-16T10:47:59Z"
},
{
"tag": "v0.13.0",
"kind": "minor",
"published_at": "2023-01-16T12:05:11Z"
},
{
"tag": "v0.11.1",
"kind": "patch",
"published_at": "2023-01-15T13:49:02Z"
},
{
"tag": "v0.12.4",
"kind": "patch",
"published_at": "2022-12-16T15:18:40Z"
},
{
"tag": "v0.12.3",
"kind": "patch",
"published_at": "2022-11-15T22:08:01Z"
},
{
"tag": "v0.12.2",
"kind": "patch",
"published_at": "2022-10-16T14:15:52Z"
},
{
"tag": "v0.12.1",
"kind": "patch",
"published_at": "2022-09-16T09:41:00Z"
},
{
"tag": "v0.12.0",
"kind": "minor",
"published_at": "2022-08-16T08:01:05Z"
},
{
"tag": "v0.11.0",
"kind": "minor",
"published_at": "2022-05-16T17:30:58Z"
},
{
"tag": "v0.10.12",
"kind": "patch",
"published_at": "2022-03-15T23:37:50Z"
},
{
"tag": "v0.10.11",
"kind": "patch",
"published_at": "2022-03-15T23:35:10Z"
},
{
"tag": "v0.10.10",
"kind": "patch",
"published_at": "2022-01-16T18:10:20Z"
},
{
"tag": "v0.10.9",
"kind": "patch",
"published_at": "2022-01-04T18:15:56Z"
},
{
"tag": "v0.10.8",
"kind": "patch",
"published_at": "2021-12-30T11:04:15Z"
},
{
"tag": "v0.10.7",
"kind": "patch",
"published_at": "2021-12-30T11:01:31Z"
},
{
"tag": "v0.10.5",
"kind": "patch",
"published_at": "2021-12-06T12:15:11Z"
},
{
"tag": "v0.10.4",
"kind": "patch",
"published_at": "2021-11-30T10:33:36Z"
},
{
"tag": "v0.10.3",
"kind": "patch",
"published_at": "2021-11-30T10:32:48Z"
},
{
"tag": "v0.10.2",
"kind": "patch",
"published_at": "2021-11-16T10:04:45Z"
},
{
"tag": "v0.10.1",
"kind": "patch",
"published_at": "2021-11-16T10:01:53Z"
},
{
"tag": "v0.9.30",
"kind": "patch",
"published_at": "2021-10-26T14:26:16Z"
},
{
"tag": "v0.9.29",
"kind": "patch",
"published_at": "2021-09-30T13:57:12Z"
},
{
"tag": "v0.9.28",
"kind": "patch",
"published_at": "2021-09-30T13:55:05Z"
},
{
"tag": "v0.9.27",
"kind": "patch",
"published_at": "2021-09-30T13:54:23Z"
},
{
"tag": "v0.9.26",
"kind": "patch",
"published_at": "2021-09-21T14:52:31Z"
},
{
"tag": "v0.9.25",
"kind": "patch",
"published_at": "2021-09-21T14:50:08Z"
},
{
"tag": "v0.9.24",
"kind": "patch",
"published_at": "2021-09-21T14:48:11Z"
},
{
"tag": "v0.9.23",
"kind": "patch",
"published_at": "2021-08-31T14:59:02Z"
},
{
"tag": "v0.9.22",
"kind": "patch",
"published_at": "2021-08-31T14:58:44Z"
},
{
"tag": "v0.9.21",
"kind": "patch",
"published_at": "2021-08-31T14:58:18Z"
},
{
"tag": "v0.9.20",
"kind": "patch",
"published_at": "2021-08-31T14:57:11Z"
},
{
"tag": "v0.9.19",
"kind": "patch",
"published_at": "2021-08-16T22:28:47Z"
},
{
"tag": "v0.9.18",
"kind": "patch",
"published_at": "2021-08-16T12:52:20Z"
},
{
"tag": "v0.9.17",
"kind": "patch",
"published_at": "2021-08-16T12:51:49Z"
},
{
"tag": "v0.9.15",
"kind": "patch",
"published_at": "2021-07-17T20:11:11Z"
},
{
"tag": "v0.9.14",
"kind": "patch",
"published_at": "2021-07-17T20:09:45Z"
},
{
"tag": "v0.9.13",
"kind": "patch",
"published_at": "2021-06-15T12:10:53Z"
},
{
"tag": "v0.9.12",
"kind": "patch",
"published_at": "2021-05-19T09:53:44Z"
},
{
"tag": "v0.9.11",
"kind": "patch",
"published_at": "2021-05-19T09:53:13Z"
},
{
"tag": "v0.9.10",
"kind": "patch",
"published_at": "2021-04-29T20:53:40Z"
},
{
"tag": "v0.9.9",
"kind": "patch",
"published_at": "2021-04-29T20:53:11Z"
},
{
"tag": "v0.9.8",
"kind": "patch",
"published_at": "2021-04-25T12:20:09Z"
},
{
"tag": "v0.9.7",
"kind": "patch",
"published_at": "2021-04-19T22:38:23Z"
},
{
"tag": "v0.9.6",
"kind": "patch",
"published_at": "2021-04-15T13:26:42Z"
},
{
"tag": "v0.9.5",
"kind": "patch",
"published_at": "2021-04-15T13:25:22Z"
},
{
"tag": "v0.9.4",
"kind": "patch",
"published_at": "2021-04-15T13:24:44Z"
},
{
"tag": "v0.9.3",
"kind": "patch",
"published_at": "2021-04-02T17:07:59Z"
},
{
"tag": "v0.9.2",
"kind": "patch",
"published_at": "2021-03-24T08:43:43Z"
},
{
"tag": "v0.9.1",
"kind": "patch",
"published_at": "2021-03-11T20:46:09Z"
},
{
"tag": "v0.9.0",
"kind": "minor",
"published_at": "2021-03-04T18:42:27Z"
},
{
"tag": "v0.8.6",
"kind": "patch",
"published_at": "2021-03-02T09:44:37Z"
},
{
"tag": "v0.8.5",
"kind": "patch",
"published_at": "2021-02-26T11:28:13Z"
},
{
"tag": "v0.8.4",
"kind": "patch",
"published_at": "2021-02-26T11:27:09Z"
},
{
"tag": "v0.8.3",
"kind": "patch",
"published_at": "2021-02-21T11:21:35Z"
},
{
"tag": "v0.8.2",
"kind": "patch",
"published_at": "2021-02-21T11:14:39Z"
},
{
"tag": "v0.8.1",
"kind": "patch",
"published_at": "2021-02-21T11:14:15Z"
},
{
"tag": "v0.8.0",
"kind": "minor",
"published_at": "2020-12-24T09:12:45Z"
},
{
"tag": "v0.1.0-alpha.2",
"kind": "prerelease",
"published_at": "2018-12-22T19:37:39Z"
},
{
"tag": "v0.1.0-alpha.1",
"kind": "prerelease",
"published_at": "2018-12-21T20:49:54Z"
}
],
"recent_commits": [
{
"oid": "2ee6142f1dd5bcbcdebf54cc553ea7acfcad979a",
"body": null,
"is_bot": false,
"headline": "bridgev2/portal: add interface for checking alternate message IDs",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-22T18:12:10Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0da3a79a8f1cc5ec091478c70993a78c7400fe32",
"body": null,
"is_bot": false,
"headline": "client: add wrapper for /rtc/transports endpoint",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-22T16:34:27Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2c336f2a92997642a5634a9722bc6c4fa2bde545",
"body": null,
"is_bot": false,
"headline": "bridgev2/portalreid: add String method for ReIDResult",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-22T14:22:21Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "607c6e990485d36def145c7a4abbd32fc66fbeec",
"body": null,
"is_bot": false,
"headline": "bridgev2: refuse to start if portals were previously split (#526)",
"author_name": "Nick Mills-Barrett",
"author_login": "Fizzadar",
"committed_at": "2026-07-22T14:04:30Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "5743d9b6f27e2de4966f50e13a658308cdcdbbcb",
"body": null,
"is_bot": false,
"headline": "crypto: make megolm decrypt locking more customizable",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-19T13:07:52Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "5370e821500f6a710570adab1db40f3ffea714ee",
"body": null,
"is_bot": false,
"headline": "crypto: unlock megolm lock before session received callback",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-19T10:43:01Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c2f5131b4359fab629fd715c30ddf4682bb830bd",
"body": null,
"is_bot": false,
"headline": "crypto: plumb history visibility to megolm session creation",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-18T16:36:55Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a0eea267681f7528c096783788043d29ca1c10a6",
"body": null,
"is_bot": false,
"headline": "sqlstores: use new methods for initializing upgrade tables",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-18T00:00:03Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "6a31957a916570155cb99946c48a0f2f63fa3f27",
"body": null,
"is_bot": false,
"headline": "crypto: store source user for forwarded room keys",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-17T23:32:21Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "48ef8b0095c9ad7f4c9793a4f4fab91c1218e980",
"body": null,
"is_bot": false,
"headline": "crypto: add methods for receiving key bundles",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-17T23:32:21Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0a78bc82adae4bd3ff0a140711e04a5724a8d83a",
"body": null,
"is_bot": false,
"headline": "crypto/sqlstore: add method for setting key backup version",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-17T23:32:21Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "af782a6785b6f4c0e430022f849e04be89062b76",
"body": null,
"is_bot": false,
"headline": "crypto/decryptmegolm: use keyed lock",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-17T23:32:21Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "e2ce2d1d771dbb08adac68661f1825a3d0de1f41",
"body": null,
"is_bot": false,
"headline": "crypto: unify saving megolm sessions",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-17T22:24:10Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "89ee0b6bd7592a5957168d88c8bb4854de222731",
"body": null,
"is_bot": false,
"headline": "crypto: add field for shared history flag",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-17T22:06:21Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "e57716d1bf75ebb893b728bc1ca55dc1ae0fb35d",
"body": null,
"is_bot": false,
"headline": "bridgev2/backfill: unset queue_done flag when unsetting is_done",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-17T18:26:52Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3e875ecc1199a3006669369ab477cec0cd66f340",
"body": null,
"is_bot": false,
"headline": "bridgev2/login: add `LoginCookiesParams.Hidden` boolean field (#525)",
"author_name": "Nick Mills-Barrett",
"author_login": "Fizzadar",
"committed_at": "2026-07-17T14:43:42Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "cd97ac6703a3d17a040aaefec1623635e0e2bcfb",
"body": null,
"is_bot": false,
"headline": "federation/client: add optional server name filter",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-16T18:46:55Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "de21e912d789b7cae0a6de938960d0bae68f85ca",
"body": null,
"is_bot": false,
"headline": "error: add nil safety",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-16T18:17:46Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "39e4cac2b7f079e9b8cd72931454444999d8d504",
"body": null,
"is_bot": false,
"headline": "federation: fix error returned when auth isn't configured",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-16T18:17:18Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c5d96b4de36fa8de21ab47b08347aa1344f6655a",
"body": null,
"is_bot": false,
"headline": "bridgev2/commands: handle no login flows being returned",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-16T14:46:25Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "28acf6a0d554cfc5fbfcf1a66315431bdc590693",
"body": null,
"is_bot": false,
"headline": "Bump version to v0.29.0",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-16T09:45:31Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "54826cf6b7e01cc9ed4b0b5cc4f0992dd4079711",
"body": null,
"is_bot": false,
"headline": "bridgev2/provisioning: fix log line",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-16T09:43:04Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "cf620e67da2d1d0eb289dc3c75c7d9d242eda93f",
"body": null,
"is_bot": false,
"headline": "oauth: trim out useless fields in server metadata",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-12T18:41:28Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "77f38528cf84cd2aef5c4f9119bbde630c6e2b49",
"body": null,
"is_bot": false,
"headline": "client: distinguish stream parsing error",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-12T10:17:00Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f6531777f56c4a8276b65c1439e991b860c1ecb9",
"body": null,
"is_bot": false,
"headline": "oauth: add more buffer for refreshing tokens with long lifetimes",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-12T09:48:23Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0be5a7053f3f2a61d9c986abddf757325e8be38e",
"body": null,
"is_bot": false,
"headline": "oauth: fix get authorization code response",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-12T09:48:06Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2afa486625984fc6ff753bda6d658bf8bf9fc7d8",
"body": null,
"is_bot": false,
"headline": "client: add support for oauth login",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-11T23:33:49Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a4d13dc9b75b63b6d00c32ca0188c9d1a3de0519",
"body": null,
"is_bot": false,
"headline": "event/poll: split poll structs",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-10T19:45:33Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "415264e04b69836b0b431019708454659884dd86",
"body": null,
"is_bot": false,
"headline": "bridgev2/portal: ensure portal create events aren't backgrounded",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-08T13:07:17Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d9c352f407ddea15240df53235db4adfee4b2f53",
"body": null,
"is_bot": false,
"headline": "versions: add v1.19",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-08T12:26:14Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "beda80cd4b36b9194cd2905257e9db392f0a97f8",
"body": null,
"is_bot": false,
"headline": "bridgev2/database: add method to get next message from db",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-08T12:26:14Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "903c504c9356363c57dcebea4478831fa707b196",
"body": "…ures when not logged in (#523)",
"is_bot": false,
"headline": "bridgev2/portal: use prev state bad credentials message for send fail…",
"author_name": "Nick Mills-Barrett",
"author_login": "Fizzadar",
"committed_at": "2026-07-08T10:30:26Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "bf2dbb2aa895b10f079eb20c264a6e6fc39193ce",
"body": null,
"is_bot": false,
"headline": "bridgev2/matrix: add option to fail webauthn logins in provisioning API",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-02T12:39:19Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ff45b96cdfe9580da3bbd01cd4bda53f284f5599",
"body": null,
"is_bot": false,
"headline": "bridgev2/config: re-add allow_matrix_auth option",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-02T12:36:44Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "bbd547b7edc7dc54df6b6233813203d10d455d81",
"body": null,
"is_bot": false,
"headline": "bridgev2/login: remove non-publickey webauthn types",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-01T21:14:45Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "87ac48185b02347a798e0fccde713456af11debb",
"body": null,
"is_bot": false,
"headline": "bridgev2/login: fix field name",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-01T20:40:45Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d33ead4e1d860fd22ad7410e18a24b4911a22f88",
"body": null,
"is_bot": false,
"headline": "bridgev2/login: add webauthn step type (#520)",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-07-01T19:56:54Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ea1582b48d52ca3702680723b386f853012a5156",
"body": null,
"is_bot": false,
"headline": "crypto/verificationhelper: add missing !",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-06-30T11:29:13Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "658489e8ba74b19dd4158962a161dd23e4daa2e2",
"body": "…imeCompare",
"is_bot": false,
"headline": "crypto/verificationhelper: use hmac.Equal instead of subtle.ConstantT…",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-06-30T11:25:15Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "696c313e4ed380e92f6d358879068ce80c4bd926",
"body": null,
"is_bot": false,
"headline": "crypto/sqlstore: remove redundant IF NOT EXISTS",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-06-30T11:24:25Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "9e7a7e3e051daa76e707643b6da9d48695af8bd2",
"body": "Without this there's a short window during bridge shutdown when any\nsends will be ignored with status=success.",
"is_bot": false,
"headline": "bridgev2/portal: don't suppress send errors during shutdown (#519)",
"author_name": "Nick Mills-Barrett",
"author_login": "Fizzadar",
"committed_at": "2026-06-30T11:24:18Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "eaea4265e6278154b6f0aa64c491d8618762c9aa",
"body": null,
"is_bot": false,
"headline": "bridgev2: add option to force original sender for edit",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-06-29T13:01:38Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f9cbcbbcfe5f6a6109250876b396874839da2f4a",
"body": null,
"is_bot": false,
"headline": "bridgev2/portal: add stack trace to panic analytics",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-06-29T12:37:23Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "7be64ba592206c2d351f415ca6549bc5c12a178f",
"body": null,
"is_bot": false,
"headline": "bridgev2: add hook for fetching certain portal receiver in event",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-06-24T17:09:54Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "913d53e57695cbe15fbe1d7654203d8b020dcd34",
"body": null,
"is_bot": false,
"headline": "Bump version to v0.28.1",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-06-16T12:04:57Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "cb2d80e938094cf5e4ecb48ab802290813bd81ba",
"body": null,
"is_bot": false,
"headline": "error: use internal error field when stringifying HTTPError (#514)",
"author_name": "Radon Rosborough",
"author_login": "radon-at-beeper",
"committed_at": "2026-06-12T17:37:30Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "346f79ea932c5acfa46555dba1b21f12981d85bd",
"body": "…eld (#461)",
"is_bot": false,
"headline": "bridgev2/provisioning: include internal error in separate response fi…",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-06-12T16:43:04Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b05469c34ea07c80fc3fa792c08bd69160439e99",
"body": null,
"is_bot": false,
"headline": "pushrules: deprecate DontNotify and Coalesce, remove NotifySpecified",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-06-09T10:03:20Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "dbbc3d0ed0849eec85cebdb8a1fcf6c55ab4f2c0",
"body": null,
"is_bot": false,
"headline": "dependencies: update",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-06-09T09:22:00Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "7629300dde5e5b0e31c4673ba8d827c44f6b103d",
"body": null,
"is_bot": false,
"headline": "client: add wrapper for updating push rule actions",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-06-07T16:41:26Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "54496b9a5f1e39fd62c544d3f3d2bc4ac57a7eb1",
"body": null,
"is_bot": false,
"headline": "client: fix push rule update request schema",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-06-05T20:11:40Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "08db795356106805d20acde025349544f945958e",
"body": null,
"is_bot": false,
"headline": "client: add wrapper for enabling/disabling push rules",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-06-05T20:06:44Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "494ed037fd4eb06fb5730a31d63ca24abc617041",
"body": null,
"is_bot": false,
"headline": "bridgev2/matrix: add ParseContentURI method for direct media",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-06-03T10:15:16Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "23ffcf6f8d5206c45578fa25e3e36ae73a89d4f3",
"body": null,
"is_bot": false,
"headline": "client: add missing wrapping to search api",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-31T21:22:25Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3ef7f326cfdbdf5e6a5865448c1e3bf8b8392022",
"body": null,
"is_bot": false,
"headline": "bridgev2/config: update env config docs",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-31T16:28:29Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d5cf42572c13179d1ae32cb9be2d3f1af3030e2e",
"body": null,
"is_bot": false,
"headline": "client: add wrapper for server-side search endpoint",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-31T14:01:41Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "dc946e6f31e9cdcf2036079311b343278b4e1524",
"body": null,
"is_bot": false,
"headline": "client: fix variable name",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-29T15:43:20Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d46954cfcd85131c086272c5dc972ae316f4ca07",
"body": "…to homeserver",
"is_bot": false,
"headline": "bridgev2/config: add option to change maximum number of http retries …",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-29T15:38:25Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d6034a37aae699d9dfd7c65658e48b317e75f2b2",
"body": null,
"is_bot": false,
"headline": "client: add max http backoff option",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-29T15:37:00Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "26e686f21ded03132f82ffaa7f5d1028d799cf4b",
"body": "…tead of rejecting request",
"is_bot": false,
"headline": "bridgev2/provisioning: remove self from group participant members ins…",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-29T11:20:16Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "5891e63e21d030f6915551247517369c6dd08884",
"body": null,
"is_bot": false,
"headline": "client: get retry reset channel outside of waiting goroutine (#509)",
"author_name": "Nick Mills-Barrett",
"author_login": "Fizzadar",
"committed_at": "2026-05-29T10:58:19Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "032614b1f88c1b45a820b1d1f629f10e793409df",
"body": null,
"is_bot": false,
"headline": "bridgev2/config: add plaintext_mentions to config",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-28T15:07:04Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d00b9b09fcd5b6d3e39752328d509c5f11a7d6ff",
"body": "…ault",
"is_bot": false,
"headline": "event/capabilities: add flag for whether redactions are hidden by def…",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-27T10:31:08Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a6f211f8c7ed51028499c9bab322e30cf3d69afe",
"body": null,
"is_bot": false,
"headline": "bridgev2/portal: update child portals when parent info changes",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-26T22:12:36Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "49ef94b33f867cec6d442640cf175a89fe346b36",
"body": null,
"is_bot": false,
"headline": "bridgev2/messagestatus: add Is for MessageStatus",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-25T10:57:03Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ca53149701410de292ccfd86559115b0bbb8519e",
"body": null,
"is_bot": false,
"headline": "bridgev2/matrix: wrap file upload size errors",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-25T09:18:11Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c39c468e9e44eb46ce5d7b5242f69d4bd7ff8483",
"body": "Fixes #505",
"is_bot": false,
"headline": "bridgev2/commands: warn against logging in in a non-management room",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-22T20:48:49Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c7729af4cee501271e26658387c35472b169052d",
"body": null,
"is_bot": false,
"headline": "bridgev2: add hide placeholder flag to redactions",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-20T14:06:28Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "34b5f49408a3354617721d55be9a06a20cc9a491",
"body": null,
"is_bot": false,
"headline": "bridgev2/provisioning: bump login timeout to 30 minutes",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-19T14:53:16Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3fc7246047b9c11817b4db1ae792beea87ab14d5",
"body": null,
"is_bot": false,
"headline": "bridgev2/provisioning: allow retrying requests (#504)",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-19T14:19:38Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a616b2b236fcb762e065ab1836b707aa71db3f46",
"body": null,
"is_bot": false,
"headline": "Bump version to v0.28.0",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-16T10:18:44Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c1f0359539464c8d38f8523cd80d806f75ff7c34",
"body": null,
"is_bot": false,
"headline": "crypto/sqlstore: add option to drop message index table for migration",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-14T14:56:02Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "05c4399c13490c9b0e1c802feeae4fa536745b20",
"body": null,
"is_bot": false,
"headline": "crypto/canonicaljson: disable old code entirely when jsonv2 is enabled",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-14T14:56:02Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "aa12073127a5c8b2d4a98bbc71c08908f0119e8c",
"body": "Add a simple trigger using exsync.Event to abort and retry network requests.\n\nMoves per-request context creation into mautrix directly, hooked into retry logic. New logic only applies if a RequestRetryTrigger is provided.\n\nOriginal author: Adam Van Ymeren",
"is_bot": false,
"headline": "client: Rework network request retries (#492)",
"author_name": "Adam Van Ymeren",
"author_login": "adamvy",
"committed_at": "2026-05-14T12:40:54Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "5fba7e3afae4fc08e00ca8db1ece10dfff5c5d4f",
"body": null,
"is_bot": false,
"headline": "bridgev2/matrix: skip state store query if encryption is required",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-13T12:01:23Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1fb5b3ccc1416c41e6d6b2d2817283b99b020464",
"body": null,
"is_bot": false,
"headline": "statestore: add warning log if join rules has unknown content",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-13T12:01:21Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "de69846de3f46dc067699a31c1cb3800623b7c46",
"body": "…alidating",
"is_bot": false,
"headline": "crypto/devicelist: preserve existing trust state in database when rev…",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-12T16:25:42Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "97d3c74f954549664f3ee1dca622be629aa3c1fb",
"body": "…sted",
"is_bot": false,
"headline": "crypto/decryptmegolm: don't treat own indirect keys as implicitly tru…",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-12T16:25:25Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "4786197a691d172dd1393606dc62cf41c21072bd",
"body": "…bled",
"is_bot": false,
"headline": "crypto/keysharing: no-op HandleBeeperRoomKeyAck if deleting isn't ena…",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-12T16:13:03Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "7c0986318ff8422fab68f2a51e5e589b59193e4f",
"body": null,
"is_bot": false,
"headline": "crypto/olm: disable cross-library tests for goolm-only builds",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-12T14:49:23Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "fbc88f059f783c899a61c575b977f36d58152c29",
"body": null,
"is_bot": false,
"headline": "ci: add gotestfmt for goolm tests",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-12T14:44:06Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1f3720b541ff86f4335b6012644e9ce524a0df1c",
"body": null,
"is_bot": false,
"headline": "crypto/cross_sign: fix tests",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-12T14:42:04Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0abcb48a6791e626d38dfb7289973a9fd864ca9a",
"body": null,
"is_bot": false,
"headline": "ci: run tests on goolm too",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-12T14:29:35Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c86a55bb2eaadd5609db80c255579432cc2837e9",
"body": null,
"is_bot": false,
"headline": "crypto/cross_sign: check own cross-signing key signatures everywhere",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-12T14:20:05Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0b69bfcf21ee4615b28f5d9ba6e04a0052190c9c",
"body": null,
"is_bot": false,
"headline": "crypto/cross_sign: clarify that PutCrossSigningKey doesn't imply trust",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-12T13:27:51Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0a5fed02c307f56d7080743eefab96f44a6fc3aa",
"body": null,
"is_bot": false,
"headline": "crypto/decryptmegolm: add new trust level for imported keys",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-12T13:27:29Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2b8457dcbe3f030fc35cf4b034af78bde58d702b",
"body": null,
"is_bot": false,
"headline": "crypto/store: remove sender key from message index key",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-12T12:54:38Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a2b5dfea760a7cac8479e762c90a94a1a8062572",
"body": null,
"is_bot": false,
"headline": "crypto/verificationhelper: check correct cross-signing keys",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-12T12:21:36Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "9de01e1e14d758bf9c1020c45e1585521d0e68d3",
"body": null,
"is_bot": false,
"headline": "crypto/decryptolm: validate bundled device keys",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-12T12:02:19Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "24150ae18587a4f9cd664d73095be695ae6bd008",
"body": null,
"is_bot": false,
"headline": "crypto/canonicaljson: add more misc tests",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-11T20:53:23Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c9026ee90eb0bdccc70058ba7615f8d82ff9716c",
"body": null,
"is_bot": false,
"headline": "crypto/olm: add note on safe usage to RemoveOneTimeKeys",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-11T20:28:37Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ddf412ea23510497a85ffe2d7f11bd69b470e06d",
"body": null,
"is_bot": false,
"headline": "crypto/goolm: add message index validation to GroupMessage decoding",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-11T20:28:24Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a2ffa196159c0c10bc8ed22e6d6510f72bb022fe",
"body": "…egolmSessionExport.Decode",
"is_bot": false,
"headline": "crypto/goolm: use same key validation in signature verification and M…",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-11T20:27:56Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "80a2089efbdea469f13bedc48ae7895b578bf863",
"body": null,
"is_bot": false,
"headline": "crypto/goolm: check public key when decoding megolm exports",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-11T14:03:02Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a0d06c8d0f17752b1421871cab01b8e0eccfdac4",
"body": null,
"is_bot": false,
"headline": "crypto/goolm/libolmpickle: add bounds for ratchet decoding",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-11T14:03:02Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "71bd71bce33f95454f54a057fa81f21cc8bf4c28",
"body": "…cating",
"is_bot": false,
"headline": "crypto/goolm/libolmpickle: validate ciphertext length instead of trun…",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-11T14:03:02Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "9b1e7f450677ce7dab462095d66894fa4c486923",
"body": null,
"is_bot": false,
"headline": "crypto/goolm: only accept exact mac length",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-11T13:47:57Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f73f835966d336e24e889d04cb7c726f26476f73",
"body": null,
"is_bot": false,
"headline": "crypto/goolm/libolmpickle: make reading zero bytes as nil more explicit",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-11T13:47:54Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f75481da2804418c8921434454f1aff6410189ae",
"body": null,
"is_bot": false,
"headline": "crypto/goolm/message: return explicit error on counter overflow",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-11T13:47:46Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "54abeec7376f78d208e654439aa07f96a6c5a727",
"body": null,
"is_bot": false,
"headline": "dependencies: update go-util",
"author_name": "Tulir Asokan",
"author_login": "tulir",
"committed_at": "2026-05-11T12:46:43Z",
"body_truncated": false,
"is_coding_agent": false
}
],
"releases_count": 100,
"commits_last_year": 654,
"latest_release_at": "2026-07-16T09:51:34Z",
"latest_release_tag": "v0.29.0",
"releases_from_tags": false,
"days_since_last_push": 0,
"active_weeks_last_year": 52,
"days_since_latest_release": 6,
"mean_days_between_releases": 30.3
},
"community": {
"has_readme": true,
"has_license": true,
"has_description": true,
"has_contributing": true,
"health_percentage": 62,
"has_issue_template": false,
"has_code_of_conduct": false,
"has_pull_request_template": true
},
"ecosystem": {
"packages": [
{
"name": "maunium.net/go/mautrix",
"exists": true,
"license": null,
"keywords": [],
"ecosystem": "go",
"matches_repo": null,
"registry_url": "https://pkg.go.dev/maunium.net/go/mautrix",
"is_deprecated": false,
"latest_version": "v0.29.0",
"repository_url": null,
"versions_count": 167,
"total_downloads": null,
"dependents_count": null,
"deprecation_note": null,
"maintainers_count": null,
"monthly_downloads": null,
"first_published_at": null,
"latest_published_at": "2026-07-16T09:45:31Z",
"latest_version_yanked": null,
"days_since_latest_publish": 6
}
]
},
"popularity": {
"forks": 117,
"stars": 644,
"watchers": 8,
"fork_history": {
"days": [
{
"date": "2018-04-29",
"count": 1
},
{
"date": "2019-03-02",
"count": 1
},
{
"date": "2020-04-08",
"count": 1
},
{
"date": "2020-06-13",
"count": 1
},
{
"date": "2020-06-19",
"count": 1
},
{
"date": "2020-06-24",
"count": 1
},
{
"date": "2020-11-09",
"count": 1
},
{
"date": "2020-11-27",
"count": 1
},
{
"date": "2021-02-12",
"count": 1
},
{
"date": "2021-02-20",
"count": 1
},
{
"date": "2021-03-12",
"count": 1
},
{
"date": "2021-04-12",
"count": 1
},
{
"date": "2021-06-08",
"count": 1
},
{
"date": "2021-08-25",
"count": 1
},
{
"date": "2021-11-12",
"count": 1
},
{
"date": "2022-01-03",
"count": 1
},
{
"date": "2022-01-12",
"count": 1
},
{
"date": "2022-01-27",
"count": 1
},
{
"date": "2022-02-01",
"count": 1
},
{
"date": "2022-02-15",
"count": 1
},
{
"date": "2022-02-18",
"count": 1
},
{
"date": "2022-03-01",
"count": 1
},
{
"date": "2022-03-17",
"count": 1
},
{
"date": "2022-04-01",
"count": 1
},
{
"date": "2022-05-09",
"count": 1
},
{
"date": "2022-06-13",
"count": 1
},
{
"date": "2022-08-11",
"count": 1
},
{
"date": "2022-08-22",
"count": 1
},
{
"date": "2022-09-16",
"count": 1
},
{
"date": "2022-10-11",
"count": 1
},
{
"date": "2022-10-29",
"count": 1
},
{
"date": "2022-10-31",
"count": 1
},
{
"date": "2022-11-29",
"count": 1
},
{
"date": "2022-12-13",
"count": 1
},
{
"date": "2022-12-18",
"count": 1
},
{
"date": "2023-01-06",
"count": 1
},
{
"date": "2023-02-28",
"count": 1
},
{
"date": "2023-04-02",
"count": 1
},
{
"date": "2023-04-03",
"count": 1
},
{
"date": "2023-06-19",
"count": 2
},
{
"date": "2023-07-01",
"count": 1
},
{
"date": "2023-07-13",
"count": 1
},
{
"date": "2023-08-07",
"count": 1
},
{
"date": "2023-09-21",
"count": 1
},
{
"date": "2023-10-29",
"count": 1
},
{
"date": "2023-11-20",
"count": 1
},
{
"date": "2023-12-28",
"count": 1
},
{
"date": "2024-01-03",
"count": 1
},
{
"date": "2024-01-20",
"count": 1
},
{
"date": "2024-01-30",
"count": 2
},
{
"date": "2024-02-19",
"count": 1
},
{
"date": "2024-02-29",
"count": 1
},
{
"date": "2024-03-16",
"count": 2
},
{
"date": "2024-03-23",
"count": 1
},
{
"date": "2024-04-17",
"count": 1
},
{
"date": "2024-04-26",
"count": 1
},
{
"date": "2024-05-10",
"count": 1
},
{
"date": "2024-05-23",
"count": 1
},
{
"date": "2024-07-08",
"count": 1
},
{
"date": "2024-08-04",
"count": 1
},
{
"date": "2024-08-30",
"count": 1
},
{
"date": "2024-09-17",
"count": 1
},
{
"date": "2024-09-20",
"count": 1
},
{
"date": "2024-10-02",
"count": 1
},
{
"date": "2024-10-16",
"count": 1
},
{
"date": "2024-12-02",
"count": 1
},
{
"date": "2024-12-17",
"count": 1
},
{
"date": "2025-01-03",
"count": 1
},
{
"date": "2025-01-08",
"count": 1
},
{
"date": "2025-02-03",
"count": 1
},
{
"date": "2025-03-12",
"count": 1
},
{
"date": "2025-03-26",
"count": 1
},
{
"date": "2025-04-04",
"count": 1
},
{
"date": "2025-04-09",
"count": 1
},
{
"date": "2025-04-14",
"count": 1
},
{
"date": "2025-05-09",
"count": 1
},
{
"date": "2025-06-06",
"count": 1
},
{
"date": "2025-06-19",
"count": 1
},
{
"date": "2025-07-01",
"count": 1
},
{
"date": "2025-08-04",
"count": 1
},
{
"date": "2025-08-08",
"count": 1
},
{
"date": "2025-10-16",
"count": 1
},
{
"date": "2025-10-23",
"count": 1
},
{
"date": "2025-11-10",
"count": 1
},
{
"date": "2025-11-13",
"count": 1
},
{
"date": "2025-11-17",
"count": 1
},
{
"date": "2025-12-06",
"count": 1
},
{
"date": "2025-12-08",
"count": 1
},
{
"date": "2026-01-08",
"count": 1
},
{
"date": "2026-01-25",
"count": 1
},
{
"date": "2026-02-12",
"count": 1
},
{
"date": "2026-02-20",
"count": 1
},
{
"date": "2026-02-22",
"count": 1
},
{
"date": "2026-02-26",
"count": 1
},
{
"date": "2026-03-05",
"count": 1
},
{
"date": "2026-03-15",
"count": 2
},
{
"date": "2026-03-20",
"count": 1
},
{
"date": "2026-03-28",
"count": 1
},
{
"date": "2026-04-10",
"count": 1
},
{
"date": "2026-05-02",
"count": 1
},
{
"date": "2026-05-09",
"count": 2
},
{
"date": "2026-05-12",
"count": 1
},
{
"date": "2026-05-14",
"count": 1
},
{
"date": "2026-05-15",
"count": 1
},
{
"date": "2026-05-17",
"count": 1
},
{
"date": "2026-05-30",
"count": 1
},
{
"date": "2026-06-05",
"count": 1
},
{
"date": "2026-06-08",
"count": 1
},
{
"date": "2026-06-09",
"count": 1
},
{
"date": "2026-06-16",
"count": 1
},
{
"date": "2026-07-22",
"count": 1
}
],
"complete": true,
"collected": 116,
"total_forks": 117
},
"star_history": null,
"open_issues_and_prs": 58
},
"ai_readiness": {
"has_nix": false,
"example_dirs": [
"example"
],
"has_llms_txt": false,
"has_dockerfile": false,
"has_mcp_signal": false,
"bootstrap_files": [],
"api_schema_files": [],
"has_devcontainer": false,
"typecheck_configs": [],
"toolchain_manifests": [
"go.mod"
],
"largest_source_bytes": 196787,
"source_files_sampled": 382,
"oversized_source_files": 2,
"agent_instruction_files": [],
"agent_instruction_max_bytes": null
},
"dependencies": {
"manifests": [
"go.mod"
],
"advisories": {
"error": null,
"scope": "repository_graph",
"source": "osv",
"findings": [
{
"name": "golang.org/x/crypto",
"direct": true,
"version": "v0.54.0",
"severity": "unknown",
"ecosystem": "go",
"cvss_score": null,
"advisory_ids": [
"GO-2026-5932"
],
"fixed_version": null,
"advisory_count": 1,
"oldest_advisory_days": 15
}
],
"collected": true,
"malicious": [],
"truncated": false,
"by_severity": {
"unknown": 1
},
"advisory_count": 1,
"affected_count": 1,
"assessed_count": 32,
"malicious_count": 0,
"assessed_package": null,
"unassessed_count": 0,
"direct_affected_count": 1
},
"ecosystems": [
"go"
],
"dependencies": [
{
"name": "filippo.io/edwards25519",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.2.0"
},
{
"name": "github.com/chzyer/readline",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.5.1"
},
{
"name": "github.com/coder/websocket",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.8.15"
},
{
"name": "github.com/lib/pq",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.12.3"
},
{
"name": "github.com/mattn/go-sqlite3",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.14.48"
},
{
"name": "github.com/rs/xid",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.6.0"
},
{
"name": "github.com/rs/zerolog",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.35.1"
},
{
"name": "github.com/skip2/go-qrcode",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.0.0-20200617195104-da1b6568686e"
},
{
"name": "github.com/stretchr/testify",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.11.1"
},
{
"name": "github.com/tidwall/gjson",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.19.0"
},
{
"name": "github.com/tidwall/sjson",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.2.5"
},
{
"name": "github.com/yuin/goldmark",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.8.4"
},
{
"name": "go.mau.fi/util",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.9.12-0.20260719092501-f9c03d846391"
},
{
"name": "go.mau.fi/zeroconfig",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.2.0"
},
{
"name": "golang.org/x/crypto",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.54.0"
},
{
"name": "golang.org/x/exp",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.0.0-20260709172345-9ea1abe57597"
},
{
"name": "golang.org/x/net",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.57.0"
},
{
"name": "golang.org/x/sync",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.22.0"
},
{
"name": "gopkg.in/yaml.v3",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v3.0.1"
},
{
"name": "maunium.net/go/mauflag",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.0.0"
}
],
"all_dependencies": {
"error": null,
"source": "github-sbom",
"packages": [
{
"name": "filippo.io/edwards25519",
"direct": true,
"version": "v1.2.0",
"ecosystem": "go"
},
{
"name": "github.com/chzyer/readline",
"direct": true,
"version": "v1.5.1",
"ecosystem": "go"
},
{
"name": "github.com/coder/websocket",
"direct": true,
"version": "v1.8.15",
"ecosystem": "go"
},
{
"name": "github.com/lib/pq",
"direct": true,
"version": "v1.12.3",
"ecosystem": "go"
},
{
"name": "github.com/mattn/go-sqlite3",
"direct": true,
"version": "v1.14.48",
"ecosystem": "go"
},
{
"name": "github.com/rs/xid",
"direct": true,
"version": "v1.6.0",
"ecosystem": "go"
},
{
"name": "github.com/rs/zerolog",
"direct": true,
"version": "v1.35.1",
"ecosystem": "go"
},
{
"name": "github.com/skip2/go-qrcode",
"direct": true,
"version": "v0.0.0-20200617195104-da1b6568686e",
"ecosystem": "go"
},
{
"name": "github.com/stretchr/testify",
"direct": true,
"version": "v1.11.1",
"ecosystem": "go"
},
{
"name": "github.com/tidwall/gjson",
"direct": true,
"version": "v1.19.0",
"ecosystem": "go"
},
{
"name": "github.com/tidwall/sjson",
"direct": true,
"version": "v1.2.5",
"ecosystem": "go"
},
{
"name": "github.com/yuin/goldmark",
"direct": true,
"version": "v1.8.4",
"ecosystem": "go"
},
{
"name": "go.mau.fi/util",
"direct": true,
"version": "v0.9.12-0.20260719092501-f9c03d846391",
"ecosystem": "go"
},
{
"name": "go.mau.fi/zeroconfig",
"direct": true,
"version": "v0.2.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/crypto",
"direct": true,
"version": "v0.54.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/exp",
"direct": true,
"version": "v0.0.0-20260709172345-9ea1abe57597",
"ecosystem": "go"
},
{
"name": "golang.org/x/net",
"direct": true,
"version": "v0.57.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/sync",
"direct": true,
"version": "v0.22.0",
"ecosystem": "go"
},
{
"name": "gopkg.in/yaml.v3",
"direct": true,
"version": "v3.0.1",
"ecosystem": "go"
},
{
"name": "maunium.net/go/mauflag",
"direct": true,
"version": "v1.0.0",
"ecosystem": "go"
},
{
"name": "github.com/coreos/go-systemd/v22",
"direct": false,
"version": "v22.7.0",
"ecosystem": "go"
},
{
"name": "github.com/davecgh/go-spew",
"direct": false,
"version": "v1.1.1",
"ecosystem": "go"
},
{
"name": "github.com/mattn/go-colorable",
"direct": false,
"version": "v0.1.14",
"ecosystem": "go"
},
{
"name": "github.com/mattn/go-isatty",
"direct": false,
"version": "v0.0.20",
"ecosystem": "go"
},
{
"name": "github.com/petermattis/goid",
"direct": false,
"version": "v0.0.0-20260713124913-97594f28f5ca",
"ecosystem": "go"
},
{
"name": "github.com/pmezard/go-difflib",
"direct": false,
"version": "v1.0.0",
"ecosystem": "go"
},
{
"name": "github.com/tidwall/match",
"direct": false,
"version": "v1.1.1",
"ecosystem": "go"
},
{
"name": "github.com/tidwall/pretty",
"direct": false,
"version": "v1.2.1",
"ecosystem": "go"
},
{
"name": "golang.org/x/sys",
"direct": false,
"version": "v0.47.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/text",
"direct": false,
"version": "v0.40.0",
"ecosystem": "go"
},
{
"name": "gopkg.in/natefinch/lumberjack.v2",
"direct": false,
"version": "v2.2.1",
"ecosystem": "go"
},
{
"name": "maunium.net/go/mautrix",
"direct": false,
"version": "0.7.6",
"ecosystem": "go"
}
],
"collected": true,
"truncated": false,
"total_count": 32,
"direct_count": 20,
"indirect_count": 12
}
},
"maintainership": {
"issues": {
"open_prs": 35,
"merged_prs": 335,
"open_issues": 23,
"closed_ratio": 0.709,
"closed_issues": 56,
"closed_unmerged_prs": 76
},
"bus_factor": 1,
"bot_contributors": 0,
"top_contributors": [
{
"type": "User",
"login": "tulir",
"commits": 2629,
"avatar_url": "https://avatars.githubusercontent.com/u/4224639?v=4"
},
{
"type": "User",
"login": "sumnerevans",
"commits": 211,
"avatar_url": "https://avatars.githubusercontent.com/u/16734772?v=4"
},
{
"type": "User",
"login": "kegsay",
"commits": 71,
"avatar_url": "https://avatars.githubusercontent.com/u/7190048?v=4"
},
{
"type": "User",
"login": "Fizzadar",
"commits": 50,
"avatar_url": "https://avatars.githubusercontent.com/u/1026154?v=4"
},
{
"type": "User",
"login": "hifi",
"commits": 44,
"avatar_url": "https://avatars.githubusercontent.com/u/106598?v=4"
},
{
"type": "User",
"login": "nikofil",
"commits": 41,
"avatar_url": "https://avatars.githubusercontent.com/u/5767669?v=4"
},
{
"type": "User",
"login": "rxl881",
"commits": 23,
"avatar_url": "https://avatars.githubusercontent.com/u/6763606?v=4"
},
{
"type": "User",
"login": "timedoutuk",
"commits": 17,
"avatar_url": "https://avatars.githubusercontent.com/u/53234499?v=4"
},
{
"type": "User",
"login": "bradtgmurray",
"commits": 15,
"avatar_url": "https://avatars.githubusercontent.com/u/33967?v=4"
},
{
"type": "User",
"login": "qua3k",
"commits": 9,
"avatar_url": "https://avatars.githubusercontent.com/u/78624738?v=4"
}
],
"contributors_sampled": 52,
"top_contributor_share": 0.822
},
"quality_signals": {
"has_ci": true,
"has_tests": true,
"ci_workflows": [
"go.yml",
"stale.yml"
],
"has_docs_dir": false,
"linter_configs": [],
"has_editorconfig": true,
"has_linter_config": true,
"has_precommit_config": true
},
"security_signals": {
"lockfiles": [
"go.sum"
],
"scorecard": {
"checks": [
{
"name": "Binary-Artifacts",
"score": 10,
"reason": "no binaries found in the repo",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
},
{
"name": "Branch-Protection",
"score": null,
"reason": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
},
{
"name": "CI-Tests",
"score": 10,
"reason": "2 out of 2 merged PRs checked by a CI test -- score normalized to 10",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
},
{
"name": "CII-Best-Practices",
"score": 0,
"reason": "no effort to earn an OpenSSF best practices badge detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
},
{
"name": "Code-Review",
"score": 0,
"reason": "Found 2/30 approved changesets -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
},
{
"name": "Contributors",
"score": 10,
"reason": "project has 17 contributing companies or organizations",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
},
{
"name": "Dangerous-Workflow",
"score": 10,
"reason": "no dangerous workflow patterns detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
},
{
"name": "Dependency-Update-Tool",
"score": 0,
"reason": "no update tool detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
},
{
"name": "Fuzzing",
"score": 10,
"reason": "project is fuzzed",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
},
{
"name": "License",
"score": 10,
"reason": "license file detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
},
{
"name": "Maintained",
"score": 10,
"reason": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
},
{
"name": "Packaging",
"score": null,
"reason": "packaging workflow not detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
},
{
"name": "Pinned-Dependencies",
"score": 2,
"reason": "dependency not pinned by hash detected -- score normalized to 2",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
},
{
"name": "SAST",
"score": 0,
"reason": "SAST tool is not run on all commits -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
},
{
"name": "Security-Policy",
"score": 0,
"reason": "security policy file not detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
},
{
"name": "Signed-Releases",
"score": null,
"reason": "no releases found",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
},
{
"name": "Token-Permissions",
"score": 0,
"reason": "detected GitHub workflow tokens with excessive permissions",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
},
{
"name": "Vulnerabilities",
"score": 9,
"reason": "1 existing vulnerabilities detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
}
],
"commit": "2ee6142f1dd5bcbcdebf54cc553ea7acfcad979a",
"ran_at": "2026-07-23T01:00:11Z",
"aggregate_score": 5.3,
"scorecard_version": "v5.5.0"
},
"has_codeql_workflow": false,
"has_security_policy": false,
"has_dependabot_config": false
},
"contribution_flow": {
"collected": true,
"ci_last_run_at": "2026-07-22T19:37:28Z",
"oldest_open_prs": [
{
"number": 77,
"created_at": "2022-06-03T15:12:36Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 79,
"created_at": "2022-06-14T12:53:22Z",
"last_comment_at": "2022-06-14T14:46:25Z",
"last_comment_author": "qua3k"
},
{
"number": 82,
"created_at": "2022-06-22T23:07:54Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 85,
"created_at": "2022-08-03T08:08:15Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 207,
"created_at": "2024-04-19T09:39:29Z",
"last_comment_at": "2024-11-26T15:51:11Z",
"last_comment_author": "grvn-ht"
},
{
"number": 228,
"created_at": "2024-05-23T14:14:37Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 255,
"created_at": "2024-07-16T03:40:47Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 270,
"created_at": "2024-08-19T18:46:45Z",
"last_comment_at": "2024-08-20T20:13:25Z",
"last_comment_author": "maltee1"
},
{
"number": 285,
"created_at": "2024-09-09T18:40:44Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 289,
"created_at": "2024-09-25T22:58:24Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 314,
"created_at": "2024-11-18T02:55:55Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 321,
"created_at": "2024-11-26T15:34:25Z",
"last_comment_at": "2024-11-27T10:14:24Z",
"last_comment_author": "grvn-ht"
},
{
"number": 360,
"created_at": "2025-03-09T22:24:17Z",
"last_comment_at": "2025-03-10T13:04:06Z",
"last_comment_author": "bradtgmurray"
},
{
"number": 378,
"created_at": "2025-05-09T07:12:03Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 410,
"created_at": "2025-09-06T10:14:45Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 440,
"created_at": "2025-12-08T19:24:36Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 442,
"created_at": "2025-12-19T12:25:25Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 452,
"created_at": "2026-01-18T19:20:13Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 455,
"created_at": "2026-01-22T14:56:29Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 475,
"created_at": "2026-03-20T20:10:08Z",
"last_comment_at": null,
"last_comment_author": null
}
],
"last_merged_pr_at": "2026-07-22T14:04:30Z",
"ci_last_conclusion": "SUCCESS",
"oldest_open_issues": [
{
"number": 5,
"created_at": "2019-09-29T14:45:13Z",
"last_comment_at": "2021-08-20T20:10:42Z",
"last_comment_author": "z3ntu"
},
{
"number": 22,
"created_at": "2020-12-16T10:00:12Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 39,
"created_at": "2021-09-15T16:41:32Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 95,
"created_at": "2022-10-17T12:44:21Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 147,
"created_at": "2023-11-26T06:15:45Z",
"last_comment_at": "2024-08-22T23:32:50Z",
"last_comment_author": "jkandasa"
},
{
"number": 262,
"created_at": "2024-08-01T22:05:19Z",
"last_comment_at": "2025-03-25T21:12:08Z",
"last_comment_author": "sumnerevans"
},
{
"number": 280,
"created_at": "2024-08-31T12:11:31Z",
"last_comment_at": "2024-08-31T18:43:29Z",
"last_comment_author": "gmacon"
},
{
"number": 291,
"created_at": "2024-10-04T05:10:32Z",
"last_comment_at": "2024-10-04T18:48:48Z",
"last_comment_author": "redgoat650"
},
{
"number": 293,
"created_at": "2024-10-11T18:26:38Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 295,
"created_at": "2024-10-17T10:14:49Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 301,
"created_at": "2024-10-27T16:48:20Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 302,
"created_at": "2024-10-28T01:01:09Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 322,
"created_at": "2024-11-26T15:34:39Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 325,
"created_at": "2024-11-28T22:41:31Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 404,
"created_at": "2025-08-28T07:21:47Z",
"last_comment_at": "2025-12-06T10:53:50Z",
"last_comment_author": "maishivamhoo123"
},
{
"number": 437,
"created_at": "2025-12-04T15:23:27Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 443,
"created_at": "2025-12-22T19:58:05Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 447,
"created_at": "2026-01-02T06:39:10Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 450,
"created_at": "2026-01-11T10:59:06Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 470,
"created_at": "2026-03-08T17:57:50Z",
"last_comment_at": null,
"last_comment_author": null
}
]
}
},
"config": {
"disabled_metrics": [],
"disabled_categories": [],
"disabled_components": {}
},
"source": {
"url": "https://github.com/mautrix/go",
"host": "github.com",
"name": "go",
"owner": "mautrix"
},
"metrics": {
"overall": {
"key": "overall",
"band": "good",
"name": "Overall health",
"note": null,
"notes": [],
"value": 77,
"inputs": {
"security": 60,
"vitality": 100,
"community": 72,
"governance": 65,
"engineering": 86
},
"components": []
},
"categories": [
{
"key": "vitality",
"band": "excellent",
"name": "Vitality",
"value": 100,
"weight": 0.22,
"metrics": [
{
"key": "development_activity",
"band": "excellent",
"name": "Development activity",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"commits_last_year": 654,
"human_commit_share": 1,
"days_since_last_push": 0,
"active_weeks_last_year": 52
},
"components": [
{
"key": "push_recency",
"name": "Push recency",
"detail": "last push 0 days ago",
"points": 36,
"status": "met",
"details": [
{
"code": "push_recency",
"params": {
"days": 0
}
}
],
"max_points": 36
},
{
"key": "commit_cadence",
"name": "Commit cadence",
"detail": "52/52 weeks with commits",
"points": 36,
"status": "met",
"details": [
{
"code": "commit_cadence_weeks",
"params": {
"weeks": 52
}
}
],
"max_points": 36
},
{
"key": "commit_volume",
"name": "Commit volume",
"detail": "654 commits in the last year",
"points": 18,
"status": "met",
"details": [
{
"code": "commits_last_year",
"params": {
"count": 654
}
}
],
"max_points": 18
},
{
"key": "openssf_scorecard_maintained",
"name": "OpenSSF Scorecard: Maintained",
"detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
"points": 10,
"status": "met",
"details": [],
"max_points": 10
}
]
},
{
"key": "release_discipline",
"band": "excellent",
"name": "Release discipline",
"note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"openssf_scorecard_signed_releases"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 100,
"inputs": {
"releases_count": 100,
"latest_release_tag": "v0.29.0",
"releases_from_tags": false,
"days_since_latest_release": 6,
"mean_days_between_releases": 30.3
},
"components": [
{
"key": "ships_releases",
"name": "Ships releases",
"detail": "100 releases published",
"points": 27,
"status": "met",
"details": [
{
"code": "releases_published",
"params": {
"count": 100
}
}
],
"max_points": 27
},
{
"key": "release_recency",
"name": "Release recency",
"detail": "latest release 6 days ago",
"points": 36,
"status": "met",
"details": [
{
"code": "release_recency",
"params": {
"days": 6
}
}
],
"max_points": 36
},
{
"key": "release_cadence",
"name": "Release cadence",
"detail": "a release every ~30.3 days",
"points": 27,
"status": "met",
"details": [
{
"code": "release_cadence",
"params": {
"gap": 30.3
}
}
],
"max_points": 27
},
{
"key": "openssf_scorecard_signed_releases",
"name": "OpenSSF Scorecard: Signed-Releases",
"detail": "no releases found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 10
}
]
},
{
"key": "abandonment",
"band": "excellent",
"name": "Abandonment",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"cap": null,
"state": "maintained",
"guards": [],
"signals": [],
"red_flag": false,
"multiplier_pct": 100,
"declared_reason": null,
"unverified_reason": null,
"unanswered_open_prs": null,
"unanswered_open_issues": null,
"days_since_last_merged_pr": null,
"days_since_last_human_commit": 0,
"days_since_last_human_commit_is_floor": false
},
"components": [
{
"key": "project_is_still_maintained",
"name": "Project is still maintained",
"detail": "last human commit 0 days ago",
"points": 100,
"status": "met",
"details": [
{
"code": "abandonment_maintained",
"params": {
"days": 0
}
}
],
"max_points": 100
}
]
}
],
"description": "Is the project alive — is code being written and are releases shipping?"
},
{
"key": "community",
"band": "good",
"name": "Community & Adoption",
"value": 72,
"weight": 0.18,
"metrics": [
{
"key": "popularity",
"band": "moderate",
"name": "Popularity & adoption",
"note": null,
"notes": [],
"value": 68,
"inputs": {
"forks": 117,
"stars": 644,
"watchers": 8,
"growth_state": "unverified",
"growth_factor_pct": 100,
"growth_unverified_reason": "no_history"
},
"components": [
{
"key": "stars",
"name": "Stars",
"detail": "644 stars",
"points": 45.6,
"status": "partial",
"details": [
{
"code": "stars",
"params": {
"count": 644
}
}
],
"max_points": 60
},
{
"key": "forks",
"name": "Forks",
"detail": "117 forks",
"points": 17.2,
"status": "partial",
"details": [
{
"code": "forks",
"params": {
"count": 117
}
}
],
"max_points": 25
},
{
"key": "watchers",
"name": "Watchers",
"detail": "8 watchers",
"points": 4.7,
"status": "partial",
"details": [
{
"code": "watchers",
"params": {
"count": 8
}
}
],
"max_points": 15
}
]
},
{
"key": "community_health",
"band": "good",
"name": "Community health",
"note": null,
"notes": [],
"value": 77,
"inputs": {
"has_readme": true,
"has_license": true,
"has_contributing": true,
"has_issue_template": false,
"has_code_of_conduct": false,
"has_pull_request_template": true
},
"components": [
{
"key": "readme",
"name": "README",
"detail": null,
"points": 22.5,
"status": "met",
"details": [],
"max_points": 22.5
},
{
"key": "license",
"name": "License",
"detail": "recognized license (MPL-2.0)",
"points": 22.5,
"status": "met",
"details": [
{
"code": "license_standard",
"params": {}
},
{
"code": "license_spdx",
"params": {
"spdx": "MPL-2.0"
}
}
],
"max_points": 22.5
},
{
"key": "contributing_guide",
"name": "CONTRIBUTING guide",
"detail": null,
"points": 18,
"status": "met",
"details": [],
"max_points": 18
},
{
"key": "code_of_conduct",
"name": "Code of conduct",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 13.5
},
{
"key": "issue_template",
"name": "Issue template",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.2
},
{
"key": "pr_template",
"name": "PR template",
"detail": null,
"points": 6.3,
"status": "met",
"details": [],
"max_points": 6.3
}
]
}
],
"description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
},
{
"key": "governance",
"band": "moderate",
"name": "Sustainability & Governance",
"value": 65,
"weight": 0.24,
"metrics": [
{
"key": "maintainer_resilience",
"band": "at_risk",
"name": "Maintainer resilience (bus factor)",
"note": null,
"notes": [],
"value": 36,
"inputs": {
"bus_factor": 1,
"contributors_sampled": 52,
"top_contributor_share": 0.822
},
"components": [
{
"key": "bus_factor",
"name": "Bus factor",
"detail": "1 contributor(s) cover half of all commits",
"points": 9,
"status": "partial",
"details": [
{
"code": "bus_factor",
"params": {
"count": 1
}
}
],
"max_points": 54
},
{
"key": "commit_distribution",
"name": "Commit distribution",
"detail": "top contributor authored 82% of commits",
"points": 4,
"status": "partial",
"details": [
{
"code": "top_contributor_share",
"params": {
"share": 82
}
}
],
"max_points": 22.5
},
{
"key": "contributor_breadth",
"name": "Contributor breadth",
"detail": "52 contributors",
"points": 13.5,
"status": "met",
"details": [
{
"code": "contributors_sampled",
"params": {
"count": 52
}
}
],
"max_points": 13.5
},
{
"key": "openssf_scorecard_contributors",
"name": "OpenSSF Scorecard: Contributors",
"detail": "project has 17 contributing companies or organizations",
"points": 10,
"status": "met",
"details": [],
"max_points": 10
}
]
},
{
"key": "responsiveness",
"band": "moderate",
"name": "Issue & PR responsiveness",
"note": null,
"notes": [],
"value": 64,
"inputs": {
"merged_prs": 335,
"open_issues": 23,
"closed_issues": 56,
"issue_closed_ratio": 0.709,
"closed_unmerged_prs": 76
},
"components": [
{
"key": "issue_resolution",
"name": "Issue resolution",
"detail": "71% of issues closed",
"points": 33.1,
"status": "partial",
"details": [
{
"code": "issues_closed_share",
"params": {
"share": 71
}
}
],
"max_points": 46.75
},
{
"key": "pr_acceptance",
"name": "PR acceptance",
"detail": "335/411 decided PRs merged",
"points": 31.2,
"status": "partial",
"details": [
{
"code": "decided_prs_merged",
"params": {
"merged": 335,
"decided": 411
}
}
],
"max_points": 38.25
},
{
"key": "openssf_scorecard_code_review",
"name": "OpenSSF Scorecard: Code-Review",
"detail": "Found 2/30 approved changesets -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 15
}
]
},
{
"key": "stewardship",
"band": "good",
"name": "Ownership & stewardship",
"note": null,
"notes": [],
"value": 71,
"inputs": {
"followers": 600,
"owner_type": "Organization",
"is_verified": null,
"owner_login": "mautrix",
"public_repos": 30,
"account_age_days": 1811
},
"components": [
{
"key": "ownership_backing",
"name": "Ownership backing",
"detail": "organization-owned",
"points": 30,
"status": "met",
"details": [
{
"code": "owner_organization",
"params": {}
}
],
"max_points": 30
},
{
"key": "verified_domain",
"name": "Verified domain",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 20
},
{
"key": "owner_reach",
"name": "Owner reach",
"detail": "600 followers of mautrix",
"points": 20,
"status": "partial",
"details": [
{
"code": "owner_followers",
"params": {
"count": 600,
"login": "mautrix"
}
}
],
"max_points": 25
},
{
"key": "track_record",
"name": "Track record",
"detail": "30 public repos, account ~4 yr old",
"points": 20.8,
"status": "partial",
"details": [
{
"code": "public_repos",
"params": {
"count": 30
}
},
{
"code": "account_age_years",
"params": {
"years": 4
}
}
],
"max_points": 25
}
]
},
{
"key": "package_maintenance",
"band": "excellent",
"name": "Package maintenance",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"packages": [
"maunium.net/go/mautrix"
],
"ecosystems": "go",
"any_deprecated": false,
"min_days_since_publish": 6
},
"components": [
{
"key": "published_resolvable",
"name": "Published & resolvable",
"detail": "1 package(s) on go",
"points": 25,
"status": "met",
"details": [
{
"code": "packages_published",
"params": {
"count": 1,
"ecosystems": "go"
}
}
],
"max_points": 25
},
{
"key": "publish_recency",
"name": "Publish recency",
"detail": "latest publish 6 days ago",
"points": 35,
"status": "met",
"details": [
{
"code": "publish_recency",
"params": {
"days": 6
}
}
],
"max_points": 35
},
{
"key": "version_history",
"name": "Version history",
"detail": "167 published versions",
"points": 20,
"status": "met",
"details": [
{
"code": "published_versions",
"params": {
"count": 167
}
}
],
"max_points": 20
},
{
"key": "not_deprecated",
"name": "Not deprecated",
"detail": "active, not deprecated or yanked",
"points": 20,
"status": "met",
"details": [
{
"code": "package_not_deprecated",
"params": {}
}
],
"max_points": 20
}
]
}
],
"description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
},
{
"key": "engineering",
"band": "excellent",
"name": "Engineering Quality",
"value": 86,
"weight": 0.2,
"metrics": [
{
"key": "engineering_practices",
"band": "excellent",
"name": "Engineering practices",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"has_ci": true,
"has_tests": true,
"has_editorconfig": true,
"has_linter_config": true,
"has_precommit_config": true
},
"components": [
{
"key": "ci_workflows",
"name": "CI workflows",
"detail": "2 workflow(s)",
"points": 24,
"status": "met",
"details": [
{
"code": "ci_workflows",
"params": {
"count": 2
}
}
],
"max_points": 24
},
{
"key": "tests_present",
"name": "Tests present",
"detail": null,
"points": 24,
"status": "met",
"details": [],
"max_points": 24
},
{
"key": "linter_config",
"name": "Linter config",
"detail": null,
"points": 16,
"status": "met",
"details": [],
"max_points": 16
},
{
"key": "pre_commit_hooks",
"name": "Pre-commit hooks",
"detail": null,
"points": 9.6,
"status": "met",
"details": [],
"max_points": 9.6
},
{
"key": "editorconfig",
"name": ".editorconfig",
"detail": null,
"points": 6.4,
"status": "met",
"details": [],
"max_points": 6.4
},
{
"key": "openssf_scorecard_ci_tests",
"name": "OpenSSF Scorecard: CI-Tests",
"detail": "2 out of 2 merged PRs checked by a CI test -- score normalized to 10",
"points": 20,
"status": "met",
"details": [],
"max_points": 20
}
]
},
{
"key": "documentation",
"band": "moderate",
"name": "Documentation",
"note": null,
"notes": [],
"value": 65,
"inputs": {
"topics": [
"matrix-org",
"golang",
"matrix",
"go"
],
"has_wiki": false,
"homepage": "https://maunium.net/go/mautrix",
"has_readme": true,
"has_docs_dir": false,
"has_description": true
},
"components": [
{
"key": "readme",
"name": "README",
"detail": null,
"points": 30,
"status": "met",
"details": [],
"max_points": 30
},
{
"key": "documentation_directory",
"name": "Documentation directory",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 25
},
{
"key": "documentation_homepage_site",
"name": "Documentation / homepage site",
"detail": "https://maunium.net/go/mautrix",
"points": 15,
"status": "met",
"details": [],
"max_points": 15
},
{
"key": "repository_description",
"name": "Repository description",
"detail": null,
"points": 10,
"status": "met",
"details": [],
"max_points": 10
},
{
"key": "topics",
"name": "Topics",
"detail": "4 topics",
"points": 10,
"status": "met",
"details": [
{
"code": "topics_count",
"params": {
"count": 4
}
}
],
"max_points": 10
},
{
"key": "wiki",
"name": "Wiki",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
}
],
"description": "Are baseline engineering and documentation practices in place?"
},
{
"key": "security",
"band": "moderate",
"name": "Security",
"value": 60,
"weight": 0.16,
"metrics": [
{
"key": "security_posture",
"band": "moderate",
"name": "Security posture",
"note": "Excluded from scoring (no data or not applicable): Branch-Protection, Packaging, Signed-Releases. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"branch_protection",
"packaging",
"signed_releases"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 53,
"inputs": {
"source": "openssf_scorecard",
"checks_evaluated": 15,
"scorecard_version": "v5.5.0",
"checks_inconclusive": 3,
"scorecard_aggregate": 5.3
},
"components": [
{
"key": "binary_artifacts",
"name": "Binary-Artifacts",
"detail": "no binaries found in the repo",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "branch_protection",
"name": "Branch-Protection",
"detail": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 7.5
},
{
"key": "ci_tests",
"name": "CI-Tests",
"detail": "2 out of 2 merged PRs checked by a CI test -- score normalized to 10",
"points": 2.5,
"status": "met",
"details": [],
"max_points": 2.5
},
{
"key": "cii_best_practices",
"name": "CII-Best-Practices",
"detail": "no effort to earn an OpenSSF best practices badge detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 2.5
},
{
"key": "code_review",
"name": "Code-Review",
"detail": "Found 2/30 approved changesets -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "contributors",
"name": "Contributors",
"detail": "project has 17 contributing companies or organizations",
"points": 2.5,
"status": "met",
"details": [],
"max_points": 2.5
},
{
"key": "dangerous_workflow",
"name": "Dangerous-Workflow",
"detail": "no dangerous workflow patterns detected",
"points": 10,
"status": "met",
"details": [],
"max_points": 10
},
{
"key": "dependency_update_tool",
"name": "Dependency-Update-Tool",
"detail": "no update tool detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "fuzzing",
"name": "Fuzzing",
"detail": "project is fuzzed",
"points": 5,
"status": "met",
"details": [],
"max_points": 5
},
{
"key": "license",
"name": "License",
"detail": "license file detected",
"points": 2.5,
"status": "met",
"details": [],
"max_points": 2.5
},
{
"key": "maintained",
"name": "Maintained",
"detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "packaging",
"name": "Packaging",
"detail": "packaging workflow not detected",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 5
},
{
"key": "pinned_dependencies",
"name": "Pinned-Dependencies",
"detail": "dependency not pinned by hash detected -- score normalized to 2",
"points": 1,
"status": "partial",
"details": [],
"max_points": 5
},
{
"key": "sast",
"name": "SAST",
"detail": "SAST tool is not run on all commits -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "security_policy",
"name": "Security-Policy",
"detail": "security policy file not detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "signed_releases",
"name": "Signed-Releases",
"detail": "no releases found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 7.5
},
{
"key": "token_permissions",
"name": "Token-Permissions",
"detail": "detected GitHub workflow tokens with excessive permissions",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "vulnerabilities",
"name": "Vulnerabilities",
"detail": "1 existing vulnerabilities detected",
"points": 6.8,
"status": "partial",
"details": [],
"max_points": 7.5
}
]
},
{
"key": "dependency_advisories",
"band": "excellent",
"name": "Dependency advisories",
"note": "Excluded from scoring (no data or not applicable): Indirect dependencies free of known advisories. Remaining weights renormalized. Matched 32 resolved dependencies against OSV. This repository publishes no package the index resolves, so the repository dependency graph was assessed instead. That graph mixes development and test pins with shipped dependencies, so only the declared runtime dependencies are scored; transitive findings are reported as context and excluded from the score. Reachability is not analyzed.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"indirect_dependencies_free_of_known_advisories"
]
}
},
{
"code": "weights_renormalized",
"params": {}
},
{
"code": "advisories_scope_repository",
"params": {
"assessed": 32
}
},
{
"code": "advisories_repo_graph_caveat",
"params": {}
},
{
"code": "advisories_reachability",
"params": {}
}
],
"value": 89,
"inputs": {
"source": "osv",
"advisories": 1,
"affected_packages": 1,
"assessed_packages": 32,
"unassessed_packages": 0,
"affected_by_severity": "unknown 1",
"direct_affected_packages": 1
},
"components": [
{
"key": "direct_dependencies_free_of_known_advisories",
"name": "Direct dependencies free of known advisories",
"detail": "1 affected: golang.org/x/crypto v0.54.0 (unknown)",
"points": 26.6,
"status": "partial",
"details": [
{
"code": "advisories_affected",
"params": {
"count": 1,
"packages": "golang.org/x/crypto v0.54.0 (unknown)"
}
}
],
"max_points": 35
},
{
"key": "indirect_dependencies_free_of_known_advisories",
"name": "Indirect dependencies free of known advisories",
"detail": "transitive set not separable from development and test dependencies in this scope",
"points": 0,
"status": "excluded",
"details": [
{
"code": "advisories_scope_not_separable",
"params": {}
}
],
"max_points": 25
},
{
"key": "no_advisories_left_outstanding",
"name": "No advisories left outstanding",
"detail": "no advisory has been public longer than 90 days",
"points": 40,
"status": "met",
"details": [
{
"code": "advisories_none_stale",
"params": {
"days": 90
}
}
],
"max_points": 40
}
]
},
{
"key": "malicious_dependencies",
"band": "excellent",
"name": "Malicious dependencies",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"source": "osv",
"meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
"packages": [],
"red_flag": false,
"assessed_packages": 32,
"malicious_packages": 0,
"direct_malicious_packages": 0,
"withdrawn_malicious_packages": 0,
"installable_malicious_packages": 0
},
"components": [
{
"key": "no_dependency_reported_as_a_malicious_package",
"name": "No dependency reported as a malicious package",
"detail": "no dependency is reported as a malicious package",
"points": 100,
"status": "met",
"details": [
{
"code": "no_malicious_dependencies",
"params": {}
}
],
"max_points": 100
}
]
},
{
"key": "high_risk_jurisdiction_exposure",
"band": "excellent",
"name": "High-Risk Jurisdiction Exposure",
"note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
"notes": [
{
"code": "jurisdiction_evidence_limits",
"params": {}
}
],
"value": 100,
"inputs": {
"meaning": "self-published location evidence; not nationality or citizenship",
"red_flag": false,
"exposures": [],
"policy_countries": [
"Russia",
"Iran",
"North Korea"
],
"review_only_matches": 0,
"assessed_self_published_locations": 13
},
"components": [
{
"key": "policy_exposure_multiplier",
"name": "Policy exposure multiplier",
"detail": "no confirmed policy-scope location match",
"points": 100,
"status": "met",
"details": [
{
"code": "jurisdiction_no_match",
"params": {}
}
],
"max_points": 100
}
]
}
],
"description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
},
{
"key": "ai_readiness",
"band": "moderate",
"name": "AI Readiness",
"value": 55,
"weight": 0,
"metrics": [
{
"key": "ai_agent_context",
"band": "critical",
"name": "Agent context & guidance",
"note": null,
"notes": [],
"value": 20,
"inputs": {
"has_llms_txt": false,
"legible_history_share": 0.38,
"agent_instruction_files": [],
"agent_instruction_max_bytes": null
},
"components": [
{
"key": "agent_instructions",
"name": "Agent instructions",
"detail": "no CLAUDE.md / AGENTS.md / editor rules",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_agent_instructions",
"params": {}
}
],
"max_points": 45
},
{
"key": "machine_readable_docs_llms_txt",
"name": "Machine-readable docs (llms.txt)",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 15
},
{
"key": "legible_commit_history",
"name": "Legible commit history",
"detail": "38 of 100 human commits state their intent (structured subject or explanatory body)",
"points": 20.3,
"status": "partial",
"details": [
{
"code": "legible_history",
"params": {
"legible": 38,
"sampled": 100
}
}
],
"max_points": 40
}
]
},
{
"key": "ai_verify_loop",
"band": "moderate",
"name": "Verify loop (build / test / typecheck)",
"note": null,
"notes": [],
"value": 69,
"inputs": {
"has_nix": false,
"has_tests": true,
"lockfiles": [
"go.sum"
],
"has_dockerfile": false,
"typed_language": true,
"bootstrap_files": [],
"has_devcontainer": false,
"has_linter_config": true,
"typecheck_configs": [],
"agent_commit_share": 0,
"toolchain_manifests": [
"go.mod"
],
"dependency_bot_commit_share": 0
},
"components": [
{
"key": "one_command_bootstrap",
"name": "One-command bootstrap",
"detail": "go.mod (toolchain convention, no task runner)",
"points": 12.6,
"status": "partial",
"details": [
{
"code": "toolchain_convention",
"params": {
"files": "go.mod"
}
}
],
"max_points": 18
},
{
"key": "automated_tests",
"name": "Automated tests",
"detail": null,
"points": 22,
"status": "met",
"details": [],
"max_points": 22
},
{
"key": "lint_format_config",
"name": "Lint / format config",
"detail": null,
"points": 11,
"status": "met",
"details": [],
"max_points": 11
},
{
"key": "static_type_checking",
"name": "Static type checking",
"detail": "Go (statically typed)",
"points": 11,
"status": "met",
"details": [
{
"code": "statically_typed_language",
"params": {
"language": "Go"
}
}
],
"max_points": 11
},
{
"key": "reproducible_environment",
"name": "Reproducible environment",
"detail": "lockfile",
"points": 10,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "lockfile"
}
}
],
"max_points": 10
},
{
"key": "demonstrated_agent_practice",
"name": "Demonstrated agent practice",
"detail": "no agent-authored commits among the last 100",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_agent_authored_commits",
"params": {
"sampled": 100
}
}
],
"max_points": 10
},
{
"key": "automated_maintenance",
"name": "Automated maintenance",
"detail": "no automated dependency updates observed",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_dependency_automation",
"params": {}
}
],
"max_points": 8
},
{
"key": "openssf_scorecard_pinned_dependencies",
"name": "OpenSSF Scorecard: Pinned-Dependencies",
"detail": "dependency not pinned by hash detected -- score normalized to 2",
"points": 2,
"status": "partial",
"details": [],
"max_points": 10
}
]
},
{
"key": "ai_code_legibility",
"band": "excellent",
"name": "Code legibility for models",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"primary_language": "Go",
"largest_source_bytes": 196787,
"source_files_sampled": 382,
"oversized_source_files": 2
},
"components": [
{
"key": "type_checkable_code",
"name": "Type-checkable code",
"detail": "Go (statically typed)",
"points": 45,
"status": "met",
"details": [
{
"code": "statically_typed_language",
"params": {
"language": "Go"
}
}
],
"max_points": 45
},
{
"key": "manageable_file_sizes",
"name": "Manageable file sizes",
"detail": "2/382 source files over 60KB",
"points": 54.7,
"status": "partial",
"details": [
{
"code": "oversized_source_files",
"params": {
"kb": 60,
"sampled": 382,
"oversized": 2
}
}
],
"max_points": 55
}
]
},
{
"key": "ai_interfaces",
"band": "at_risk",
"name": "Machine-readable interfaces",
"note": null,
"notes": [],
"value": 40,
"inputs": {
"example_dirs": [
"example"
],
"has_mcp_signal": false,
"api_schema_files": []
},
"components": [
{
"key": "api_schema_openapi_graphql_proto",
"name": "API schema (OpenAPI/GraphQL/proto)",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 40
},
{
"key": "mcp_server",
"name": "MCP server",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 20
},
{
"key": "runnable_examples",
"name": "Runnable examples",
"detail": "example",
"points": 40,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "example"
}
}
],
"max_points": 40
}
]
}
],
"description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
}
],
"metrics_version": "1.13.0"
},
"warnings": [
"Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token"
],
"report_type": "repository",
"generated_at": "2026-07-23T01:00:30.323393Z",
"schema_version": "0.27.0",
"badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/m/mautrix/go.svg",
"full_name": "mautrix/go",
"license_state": "standard",
"license_spdx": "MPL-2.0"
}