公开记录
软件健康报告模式 0.27.0 · 指标 1.13.0 · 2026-07-28 01:05 UTC

mrpalide / skycoin

Skycoin Core and Wallet

Go · TypeScript未检测到许可证★ 0 星标⑂ 0 复刻始于 2021年4月复刻在 GitHub 上查看 ↗

mrpalide/skycoin 的健康指数为 100 分中的 45 分,处于「存在风险」区间。 其得分最高的类别是AI Readiness(78/100),最低的是Community & Adoption(1/100)。 最近一次更新在 7 天前。 近期的大部分工作由 2 位贡献者完成。

45
总分 / 100
存在风险

软件健康指数

指标归入加权类别,统一采用 1–100 量表。总体分先取类别加权平均;当公开证据触发高风险司法辖区政策时,评级会按政策调整,并设置 49(有风险)的上限。AI 就绪度不计入总体分。

45
优秀85-100堪称典范;基本满足所有检验标准
良好70-84健康;仅有轻微不足
中等50-69可接受,但存在明显不足;建议进行审查
存在风险30-49存在重大薄弱环节;采用时应保持审慎
危急1-29问题严重(项目被弃置、仅有单一维护者、缺乏基本工程规范)
活力社区与采用可持续性与治理工程质量安全AI 就绪度

评分画像

每条轴代表一个类别。形状比平均值更重要——健康的对象会填满整个图形,而“一峰一谷”式画像意味着某一维度的优势正掩盖另一维度的风险。

所有权

MohammadReza P.个人账户
67 关注者27 个公开仓库始于 2021年2月

该仓库由个人账户拥有。相较于组织支持的项目,单一所有者项目的延续性风险更高。

软件包生态系统

注册表软件包版本月下载量版本数最近发布
Gogithub.com/skycoin/skycoin指向其他仓库——不计分v0.28.5-44125 天前

按类别列示的指标

活力

项目是否仍有生命——是否仍在编写代码,是否仍在发布版本?

65中等 · 占总体的 22%
评分方式
36/36推送新近度 — 最近一次推送于 7 天前
18/36提交节奏 — 52 周中有 26 周有提交
18/18提交量 — 最近一年 480 次提交
10/10OpenSSF Scorecard:Maintained — 30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
所用输入
commits_last_year480
human_commit_share1
days_since_last_push7
active_weeks_last_year26

发布纪律

40存在风险
评分方式
16.2/27有发布版本 — 20 个版本标签(无 GitHub 发布版本)
0/36发布时效 — 最近一次发布版本于 2,073 天前
19.8/27发布节奏 — 约每 119.6 天发布一次
0/10OpenSSF Scorecard:Signed-Releases — 无数据
所用输入
releases_count20
latest_release_tagv0.27.1
releases_from_tags
days_since_latest_release2,073
mean_days_between_releases119.6
已排除计分(无数据或不适用):OpenSSF Scorecard:Signed-Releases。 其余权重已重新归一化。

社区与采用

项目是否拥有用户、下载量与关注度,并具备欢迎贡献者参与的配置?

1危急 · 占总体的 18%
评分方式
0/60星标 — 0 个星标
0/25复刻 — 0 个复刻
0/15关注者 — 0 位关注者
所用输入
forks0
stars0
watchers0
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history
评分方式
0/22.5README
0/22.5许可证 — 未检测到许可证文件
0/18CONTRIBUTING 指南
0/13.5行为准则
0/7.2议题模板
0/6.3PR 模板
所用输入
has_readme
has_license
has_contributing
has_issue_template
has_code_of_conduct
has_pull_request_template

可持续性与治理

项目能否在其成员之外延续——巴士系数、响应能力、由谁支持,以及软件包的维护状况?

42存在风险 · 占总体的 24%
评分方式
25.2/54巴士系数 — 2 位贡献者贡献了半数提交
15.1/22.5提交分布 — 头号贡献者编写了 33% 的提交
13.5/13.5贡献者广度 — 57 位贡献者
10/10OpenSSF Scorecard:Contributors — project has 12 contributing companies or organizations
所用输入
bus_factor2
contributors_sampled57
top_contributor_share0.329
评分方式
0/46.8议题解决 — 没有议题或无数据
0/38.3PR 接受 — 没有已裁定的拉取请求或无数据
0/15OpenSSF Scorecard:Code-Review — Found 0/30 approved changesets -- score normalized to 0
所用输入
merged_prs0
open_issues0
closed_issues0
issue_closed_ratio
closed_unmerged_prs0
已排除计分(无数据或不适用):议题解决, PR 接受。 其余权重已重新归一化。
评分方式
10/30所有权背书 — 个人(用户)账户
0/20已验证域名 — 不适用于个人账户
13.2/25所有者影响力 — mrpalide 有 67 位关注者
21.4/25既往记录 — 27 个公开仓库,账户约 5 年
所用输入
followers67
owner_typeUser
is_verified
owner_loginmrpalide
public_repos27
account_age_days1,987
已排除计分(无数据或不适用):已验证域名。 其余权重已重新归一化。

工程质量

基础的工程与文档实践是否到位?

73良好 · 占总体的 20%

工程实践

88优秀
评分方式
24/24CI 工作流 — 3 个工作流
24/24存在测试
16/16Linter 配置 — .golangci.yaml, .golangci.yml, eslint.config.js
0/9.6Pre-commit 钩子
6.4/6.4.editorconfig
0/20OpenSSF Scorecard:CI-Tests — 无数据
所用输入
has_ci
has_tests
has_editorconfig
has_linter_config
has_precommit_config
已排除计分(无数据或不适用):OpenSSF Scorecard:CI-Tests。 其余权重已重新归一化。

文档

50中等
评分方式
0/30README
25/25文档目录
15/15文档 / 主页站点 — https://www.skycoin.com
0/10仓库描述
0/10主题标签
10/10Wiki
所用输入
topics
has_wiki
homepagehttps://www.skycoin.com
has_readme
has_docs_dir
has_description

安全

可见的安全与供应链实践是否稳固,且不存在未解决的高风险司法辖区暴露?

34存在风险 · 占总体的 16%

安全态势

34存在风险
评分方式
3/7.5Binary-Artifacts — binaries present in source code
0/7.5Branch-Protection — branch protection not enabled on development/release branches
0/2.5CI-Tests — 无数据
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 0/30 approved changesets -- score normalized to 0
2.5/2.5Contributors — project has 12 contributing companies or organizations
10/10Dangerous-Workflow — no dangerous workflow patterns detected
7.5/7.5Dependency-Update-Tool — update tool detected
0/5Fuzzing — project is not fuzzed
0/2.5许可证 — license file not detected
7.5/7.5Maintained — 30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
0/5Packaging — 无数据
0.5/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 1
0/5SAST — no SAST tool detected
0/5Security-Policy — security policy file not detected
0/7.5Signed-Releases — 无数据
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
0/7.5Vulnerabilities — 20 existing vulnerabilities detected
所用输入
sourceopenssf_scorecard
checks_evaluated15
scorecard_versionv5.5.0
checks_inconclusive3
scorecard_aggregate3.4
已排除计分(无数据或不适用):ci_tests, packaging, signed_releases。 其余权重已重新归一化。

AI 就绪度

该仓库在多大程度上具备与 AI 编码代理协同开发与维护的条件?这是一枚独立的实验性徽章——权重为 0.0,因此单独呈现,不影响总体健康评分。

78良好 · 占总体的 0%
评分方式
45/45代理指令 — vendor/github.com/clipperhouse/displaywidth/AGENTS.md, vendor/github.com/gdamore/tcell/v3/AGENTS.md, vendor/github.com/pelletier/go-toml/v2/AGENTS.md
0/15机器可读文档(llms.txt)
40/40可读的提交历史 — 100 次人类提交中有 84 次说明了意图(结构化标题或解释性正文)
所用输入
has_llms_txt
legible_history_share0.84
agent_instruction_filesvendor/github.com/clipperhouse/displaywidth/AGENTS.md, vendor/github.com/gdamore/tcell/v3/AGENTS.md, vendor/github.com/pelletier/go-toml/v2/AGENTS.md
agent_instruction_max_bytes2,974
评分方式
18/18一条命令的引导启动 — Makefile, cmd/skydex-client/Makefile, explorer/Makefile, src/skycoin-lite/Makefile, src/skycoin-web/Makefile, vendor/github.com/briandowns/spinner/Makefile, vendor/github.com/gogo/protobuf/proto/Makefile, vendor/github.com/itchyny/gojq/Makefile, vendor/github.com/itchyny/timefmt-go/Makefile, vendor/github.com/sagikazarmark/locafero/justfile, vendor/github.com/spf13/cast/Makefile, vendor/github.com/spf13/cobra/Makefile, vendor/github.com/spf13/viper/Makefile, vendor/github.com/stretchr/objx/Taskfile.yml, vendor/go.etcd.io/bbolt/Makefile, vendor/modernc.org/gc/v3/Makefile, vendor/modernc.org/libc/Makefile, vendor/modernc.org/mathutil/Makefile, vendor/modernc.org/memory/Makefile, vendor/modernc.org/sqlite/Makefile, vendor/modernc.org/strutil/Makefile, vendor/modernc.org/token/Makefile
22/22自动化测试
11/11Lint / 格式化配置 — .golangci.yaml, .golangci.yml, eslint.config.js
11/11静态类型检查 — explorer/test/tsconfig.json, explorer/tsconfig.json, src/gui/static/tsconfig.json, src/skycoin-web/tsconfig.json
10/10可复现环境 — Dockerfile, Nix, lockfile
0/10已体现的代理实践 — 最近 100 次提交中没有代理编写的提交
5/8自动化维护 — 已配置依赖自动化,但在抽样提交中未观察到
1/10OpenSSF Scorecard:Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 1
所用输入
has_nix
has_tests
lockfilesgo.sum, package-lock.json
has_dockerfile
typed_language
bootstrap_filesMakefile, cmd/skydex-client/Makefile, explorer/Makefile, src/skycoin-lite/Makefile, src/skycoin-web/Makefile, vendor/github.com/briandowns/spinner/Makefile, vendor/github.com/gogo/protobuf/proto/Makefile, vendor/github.com/itchyny/gojq/Makefile, vendor/github.com/itchyny/timefmt-go/Makefile, vendor/github.com/sagikazarmark/locafero/justfile, vendor/github.com/spf13/cast/Makefile, vendor/github.com/spf13/cobra/Makefile, vendor/github.com/spf13/viper/Makefile, vendor/github.com/stretchr/objx/Taskfile.yml, vendor/go.etcd.io/bbolt/Makefile, vendor/modernc.org/gc/v3/Makefile, vendor/modernc.org/libc/Makefile, vendor/modernc.org/mathutil/Makefile, vendor/modernc.org/memory/Makefile, vendor/modernc.org/sqlite/Makefile, vendor/modernc.org/strutil/Makefile, vendor/modernc.org/token/Makefile
has_devcontainer
has_linter_config
typecheck_configsexplorer/test/tsconfig.json, explorer/tsconfig.json, src/gui/static/tsconfig.json, src/skycoin-web/tsconfig.json
agent_commit_share0
toolchain_manifestsgo.mod
dependency_bot_commit_share0
评分方式
45/45可类型检查的代码 — Go(静态类型)
54.2/55可控的文件大小 — 采样的 988 个源文件中有 14 个超过 60KB
所用输入
primary_languageGo
largest_source_bytes2,646,851
source_files_sampled988
oversized_source_files14

机器可读接口

40存在风险
评分方式
0/40API 模式(OpenAPI/GraphQL/proto)
0/20MCP 服务器
40/40可运行示例 — example
所用输入
example_dirsexample
has_mcp_signal
api_schema_files

关键数据

0GitHub 星标
57贡献者
480最近 12 个月提交数
7距最近推送天数
20发布版本数
2巴士系数(bus factor)
0开放议题
Go, npm, PyPI软件包生态系统数

数据采集警告

  • Community profile unavailable
  • go package 'github.com/skycoin/skycoin' points at a different repository (https://github.com/skycoin/skycoin); excluded from ecosystem scoring
  • GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

更多细节

OpenSSF Scorecard 3.4 / 10
3.4综合

来自开源项目 OpenSSF Scorecard 的独立、工具无关的安全评估。每项检查奖励的是安全实践本身,而非特定供应商的工具。Scorecard 无法判定的检查项标记为 不适用,并从安全评分中剔除(绝不按零分计)。Scorecard v5.5.0 · 2026-07-28 01:04 UTC

4Binary-Artifactsbinaries present in source code
0Branch-Protectionbranch protection not enabled on development/release branches
不适用CI-Testsno pull request found
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 0/30 approved changesets -- score normalized to 0
10Contributorsproject has 12 contributing companies or organizations
10Dangerous-Workflowno dangerous workflow patterns detected
10Dependency-Update-Toolupdate tool detected
0Fuzzingproject is not fuzzed
0Licenselicense file not detected
10Maintained30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
不适用Packagingpackaging workflow not detected
1Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 1
0SASTno SAST tool detected
0Security-Policysecurity policy file not detected
不适用Signed-Releasesno releases found
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
0Vulnerabilities20 existing vulnerabilities detected
直接依赖 90
注册表软件包版本约束清单文件
npm@angular/animations^21.2.17explorer/package.json
npm@angular/common^21.2.17explorer/package.json
npm@angular/compiler^21.2.17explorer/package.json
npm@angular/core^21.2.17explorer/package.json
npm@angular/forms^21.2.17explorer/package.json
npm@angular/platform-browser^21.2.17explorer/package.json
npm@angular/platform-browser-dynamic^21.2.17explorer/package.json
npm@angular/router^21.2.17explorer/package.json
npm@ngx-translate/core^17.0.0explorer/package.json
npm@ngx-translate/http-loader^17.0.0explorer/package.json
npm@popperjs/core^2.11.8explorer/package.json
npm@wdio/logger^9.18.0explorer/package.json
npmansi-regex^6.2.2explorer/package.json
npmbasic-ftp^5.3.1explorer/package.json
npmbignumber.js^10.0.2explorer/package.json
npmbootstrap^5.3.8explorer/package.json
npmdisable-scroll^0.6.0explorer/package.json
npmfast-xml-parser^5.7.1explorer/package.json
npmhono^4.12.26explorer/package.json
npmrxjs^7.8.2explorer/package.json
npmstrip-ansi^7.2.0explorer/package.json
npmtslib^2.8.1explorer/package.json
npmzone.js~0.16.1explorer/package.json
Gogithub.com/0magnet/coloredcobrav1.0.2go.mod
Gogithub.com/NYTimes/gziphandlerv1.1.1go.mod
Gogithub.com/andreyvit/diffv0.0.0-20170406064948-c7f18ee00883go.mod
Gogithub.com/bitfield/scriptv0.24.3go.mod
Gogithub.com/blang/semverv3.5.1+incompatiblego.mod
Gogithub.com/briandowns/spinnerv1.23.2go.mod
Gogithub.com/cenkalti/backoffv2.2.1+incompatiblego.mod
Gogithub.com/gdamore/tcell/v3v3.4.1go.mod
Gogithub.com/gogo/protobufv1.3.2go.mod
Gogithub.com/google/go-cmpv0.7.0go.mod
Gogithub.com/google/gousbv1.1.3go.mod
Gogithub.com/google/uuidv1.6.0go.mod
Gogithub.com/gopherjs/gopherjsv1.21.0go.mod
Gogithub.com/mgutz/ansiv0.0.0-20200706080929-d51e80ef957dgo.mod
Gogithub.com/pelletier/go-toml/v2v2.4.3go.mod
Gogithub.com/rs/corsv1.11.1go.mod
Gogithub.com/shopspring/decimalv1.4.0go.mod
Gogithub.com/sirupsen/logrusv1.9.4go.mod
Gogithub.com/skycoin/encodertestv0.0.0-20190217072920-14c2e31898b9go.mod
Gogithub.com/skycoin/hardware-wallet-protobv0.0.0-20250805154629-410561e1bc2fgo.mod
Gogithub.com/skycoin/hardware-wallet/firmwarev0.0.0-20260117000250-43c66b2bf1d2go.mod
Gogithub.com/skycoin/skycoin-litev0.0.0-20190712083345-f5a3f17e6603go.mod
Gogithub.com/spf13/cobrav1.10.2go.mod
Gogithub.com/spf13/pflagv1.0.10go.mod
Gogithub.com/spf13/viperv1.21.0go.mod
Gogithub.com/stretchr/testifyv1.11.1go.mod
Gogithub.com/toqueteos/webbrowserv1.2.1go.mod
Gogo.etcd.io/bboltv1.5.0go.mod
Gogolang.org/x/termv0.45.0go.mod
Gogolang.org/x/timev0.15.0go.mod
Gomodernc.org/sqlitev1.34.0go.mod
npmbootstrap^5.3.3cmd/skydex-client/package.json
npmqrcode.react^4.2.0cmd/skydex-client/package.json
npmreact^18.3.1cmd/skydex-client/package.json
npmreact-dom^18.3.1cmd/skydex-client/package.json
npmaxios^1.16.0electron/app/package.json
npmelectron-context-menu^0.9.1electron/app/package.json
npmelectron-debug^1.5.0electron/app/package.json
npmrxjs^5.5.12electron/app/package.json
npm@angular/animations^21.2.17src/skycoin-web/package.json
npm@angular/cdk^21.2.2src/skycoin-web/package.json
npm@angular/common^21.2.17src/skycoin-web/package.json
npm@angular/compiler^21.2.17src/skycoin-web/package.json
npm@angular/core^21.2.17src/skycoin-web/package.json
npm@angular/forms^21.2.17src/skycoin-web/package.json
npm@angular/material^21.2.2src/skycoin-web/package.json
npm@angular/platform-browser^21.2.17src/skycoin-web/package.json
npm@angular/platform-browser-dynamic^21.2.17src/skycoin-web/package.json
npm@angular/router^21.2.17src/skycoin-web/package.json
npm@ngx-translate/core^17.0.0src/skycoin-web/package.json
npm@ngx-translate/http-loader^17.0.0src/skycoin-web/package.json
npm@popperjs/core^2.11.8src/skycoin-web/package.json
npmaxios^1.16.0src/skycoin-web/package.json
npmbignumber.js^10.0.2src/skycoin-web/package.json
npmbip39^3.1.0src/skycoin-web/package.json
npmbootstrap^5.3.8src/skycoin-web/package.json
npmenhanced-resolve5.20.0src/skycoin-web/package.json
npmfont-awesome^4.7.0src/skycoin-web/package.json
npmhono^4.12.26src/skycoin-web/package.json
npmimmutable^5.1.5src/skycoin-web/package.json
npmjs-yaml^4.1.1src/skycoin-web/package.json
npmlodash^4.17.23src/skycoin-web/package.json
npmmoment^2.30.1src/skycoin-web/package.json
npmrxjs^7.8.2src/skycoin-web/package.json
npmsvgo^4.0.1src/skycoin-web/package.json
npmtslib^2.8.1src/skycoin-web/package.json
npmzone.js~0.16.1src/skycoin-web/package.json
全部依赖 未采集

本报告未能采集到解析后的依赖集合:GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

原始 JSON 报告 机器可读
{
  "data": {
    "repo": {
      "topics": [],
      "is_fork": true,
      "size_kb": 177372,
      "has_wiki": true,
      "homepage": "https://www.skycoin.com",
      "languages": {
        "Go": 7405020,
        "CSS": 16157,
        "HTML": 349844,
        "SCSS": 155729,
        "Shell": 93775,
        "Python": 5211,
        "Assembly": 122992,
        "Makefile": 33963,
        "Dockerfile": 3284,
        "JavaScript": 167457,
        "PowerShell": 3961,
        "TypeScript": 1258318
      },
      "pushed_at": "2026-07-20T08:13:36Z",
      "created_at": "2021-04-20T12:03:34Z",
      "owner_type": "User",
      "updated_at": "2026-07-20T07:51:10Z",
      "description": "Skycoin Core and Wallet",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": null,
      "default_branch": "develop",
      "license_spdx_raw": null,
      "primary_language": "Go",
      "significant_languages": [
        "Go",
        "TypeScript"
      ]
    },
    "owner": {
      "blog": null,
      "name": "MohammadReza P.",
      "type": "User",
      "login": "mrpalide",
      "company": null,
      "location": null,
      "followers": 67,
      "avatar_url": "https://avatars.githubusercontent.com/u/79150699?v=4",
      "created_at": "2021-02-16T13:49:00Z",
      "is_verified": null,
      "public_repos": 27,
      "account_age_days": 1987
    },
    "license": {
      "state": "absent",
      "spdx_id": null,
      "raw_spdx": null,
      "file_present": false,
      "scorecard_found": false,
      "profile_has_license": false
    },
    "activity": {
      "releases": [
        {
          "tag": "v0.27.1",
          "kind": "patch",
          "published_at": "2020-11-23T01:01:48Z"
        },
        {
          "tag": "v0.26.0",
          "kind": "minor",
          "published_at": "2019-05-24T02:01:16Z"
        },
        {
          "tag": "v0.25.1",
          "kind": "patch",
          "published_at": "2019-02-09T13:59:38Z"
        },
        {
          "tag": "v0.25.0",
          "kind": "minor",
          "published_at": "2018-12-27T05:35:56Z"
        },
        {
          "tag": "v0.24.1",
          "kind": "patch",
          "published_at": "2018-08-01T04:24:56Z"
        },
        {
          "tag": "v0.24.0",
          "kind": "minor",
          "published_at": "2018-07-26T03:03:36Z"
        },
        {
          "tag": "v0.23.0",
          "kind": "minor",
          "published_at": "2018-04-26T02:03:57Z"
        },
        {
          "tag": "v0.22.0",
          "kind": "minor",
          "published_at": "2018-03-23T10:21:46Z"
        },
        {
          "tag": "v0.21.1",
          "kind": "patch",
          "published_at": "2017-12-15T01:46:26Z"
        },
        {
          "tag": "v0.21.0",
          "kind": "minor",
          "published_at": "2017-12-12T08:40:16Z"
        },
        {
          "tag": "v0.21.0-rc1",
          "kind": "prerelease",
          "published_at": "2017-12-09T15:07:36Z"
        },
        {
          "tag": "v0.20.4",
          "kind": "patch",
          "published_at": "2017-11-03T12:32:52Z"
        },
        {
          "tag": "v0.20.3",
          "kind": "patch",
          "published_at": "2017-10-23T02:27:21Z"
        },
        {
          "tag": "v0.20.2",
          "kind": "patch",
          "published_at": "2017-10-12T08:03:40Z"
        },
        {
          "tag": "v0.20.1",
          "kind": "patch",
          "published_at": "2017-10-12T06:20:47Z"
        },
        {
          "tag": "v0.20.0",
          "kind": "minor",
          "published_at": "2017-10-11T04:29:50Z"
        },
        {
          "tag": "v0.20.0-alpha.1",
          "kind": "prerelease",
          "published_at": "2017-10-03T03:30:12Z"
        },
        {
          "tag": "0.19.1",
          "kind": "patch",
          "published_at": "2017-08-19T11:14:52Z"
        },
        {
          "tag": "v0.19.1",
          "kind": "patch",
          "published_at": "2017-08-19T11:14:52Z"
        },
        {
          "tag": "v0.19.0",
          "kind": "minor",
          "published_at": "2017-07-10T08:15:12Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "a8217688ad6b6b58b970508fac72031f6715752d",
          "body": "… transport) (#2950)\n\n* add SkyDEX decentralized-exchange engine (src/skydex, cmd/skydex-*)\n\n  Adds the SkyDEX exchange to skycoin, mirroring the skycoin-web layout: the\n  domain logic and UI live here with zero skywire dependency, and skywire adds\n  only a thin transport wrapper.\n\n  - src/skydex/{p\n[…]\n/time\n    v0.15.0 (vendored).\n\n  Runs standalone over TCP today; over skywire it gains public-key identity,\n  e2e auth, and no-DNS/no-IP addressing via the skywire skydex-* apps.\n\n* fix linting issues",
          "is_bot": false,
          "headline": "SkyDEX exchange engine (skycoin-web-style: domain here, skywire wraps…",
          "author_name": "MohammadReza P.",
          "author_login": "mrpalide",
          "committed_at": "2026-07-20T01:09:16Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "13b7562ba73bef811f1a2f4dd70135bf4da5f116",
          "body": "…n-range npm sweep, go get -u, grouped dependabot config (#2946)\n\n* electron: bump electron-builder to 26.15.3 (and lodash, ejs)\n\nReplicates the pending dependabot updates for the /electron subproject:\n\n- electron-builder 22.13.1 -> 26.15.3 (and app-builder-lib) (#2928)\n- lodash 4.17.23 -> 4.18.1 (i\n[…]\ns per ecosystem/directory (go modules, github-actions, and the four\nnpm subprojects) so future updates arrive as a few batched PRs on a weekly\nschedule. Security updates are still raised individually.",
          "is_bot": false,
          "headline": "chore(deps): dependency maintenance — replicate dependabot updates, i…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-19T23:15:03Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "55715c8ac27b0e6d7000ee40afa7df7a87427296",
          "body": "The history view fetched every transaction for every wallet address in a\nsingle verbose v1 /transactions request. On a wallet with a large history\nthat is a huge response (tens of MB for ~1300 transactions), and the node\nbuilds the whole thing in memory before sending it. On a TinyGo-compiled\nnode t\n[…]\nthe chain.\n\nRebuilt the embedded production dist. The build also dropped several\nstale bundles that had accumulated from earlier builds (Angular's\ndeleteOutputPath is off), shrinking the embedded GUI.",
          "is_bot": false,
          "headline": "gui: page the transaction history through the v2 endpoint (#2944)",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-19T22:01:21Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "14057556e1bd78e8b0180b2175a217c183db5985",
          "body": "SendJSONOr500 marshalled the whole response into memory before writing\na byte, and did so with MarshalIndent, which builds a compact buffer and\nthen an indented copy of it. For small responses that is irrelevant, but\nthe verbose transaction history of a busy wallet is tens of megabytes:\nserving one \n[…]\n errors surface after the headers are\nsent, so they can no longer become a 500; they are logged instead. The\ntwo tests that compared response bodies byte-for-byte are updated for\nthe compact encoding.",
          "is_bot": false,
          "headline": "api: stream JSON responses instead of buffering them (#2943)",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-19T22:00:49Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "26b081dda792dc1d35416a82f4a926c3b1d5d34e",
          "body": "…allets (#2942)\n\nTwo fixes so the create-wallet screen offers all the correct options (coin\nselector, deterministic/bip44, segwit) instead of a bare deterministic-only\nform — notably when embedded in the Skywire hypervisor wallet, where wallets\nare browser-side (serverWallets=false):\n\n1. Decouple sh\n[…]\n1): fires immediately if already loaded.\n\nRebuilt dist. Verified live in the Skywire HV wallet: the create form now shows\nSelect coin + Wallet type (deterministic/bip44); segwit appears for BTC+bip44.",
          "is_bot": false,
          "headline": "skycoin-web: create-wallet form must offer wallet types for browser w…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-18T00:05:22Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "5c9484d35e792aec8ff9f76d433fe1b467c83189",
          "body": "…; CI/dep-graph refresh (#2941)\n\n* skycoin-web: reword the onboarding disclaimer (drop token/T&C language)\n\nThe disclaimer shown before the wallet had two inaccurate claims:\n\n- \"cryptographic tokens\" — Skycoin is its own coin (own chain + Coin Hours),\n  not a token, and the wallet has no token suppo\n[…]\ns in this PR so the committed bundle —\nwhich downstreams (e.g. skywire's embedded wallet) vendor — carries the reworded\ndisclaimer and the embedded wizard-skip. Content-hashed chunk renames + en.json.",
          "is_bot": false,
          "headline": "skycoin-web: reword disclaimer + skip onboarding modals when embedded…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-17T17:33:04Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "e77e8ab50df33d13f2920876960ce4438457e4fc",
          "body": "Compile the default binary with TinyGo (smaller binary); embed only static/dist",
          "is_bot": false,
          "headline": "Merge pull request #2903 from 0pcom/tinygo",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-16T04:56:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e848a26a1043624d1a12b3dd7d6300ccfdb45758",
          "body": "…m merge\n\nAdd //nolint:errcheck to the webCtx write helpers and //nolint:gosec to\nthe node-proxy request paths (G704: proxies to operator-configured node\nURLs, not user input) and the daemon pprof import (G108: profiling is\nonly reachable when --pprofmode=http is set).",
          "is_bot": false,
          "headline": "skycoin-web: satisfy golangci-lint (errcheck/gosec) after the upstrea…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-16T04:44:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2dd226955ce824581de28eea276cdf94cd98a36d",
          "body": "# Conflicts:\n#\tcmd/skycoin-web/commands/root.go",
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'upstream/develop' into tinygo",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-16T04:26:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c199babfab0aba10279e10248f5ff3d04a703a37",
          "body": "…bug)\n\nThe TinyGo skycoin build kept debug info and default optimization, making it\nlarger than the standard-go binary (47.6M). Building with -opt=z --no-debug\ndrops it to ~32M (31% smaller, and below the standard-go binary), which is the\npoint of shipping a TinyGo build.",
          "is_bot": false,
          "headline": "ci(release): build the TinyGo binary for minimum size (-opt=z --no-de…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-16T04:16:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "aeb3269d585eda6920adb674b79684c5b5f1ad4a",
          "body": "# Conflicts:\n#\tgo.mod\n#\tgo.sum\n#\tvendor/github.com/klauspost/cpuid/v2/.goreleaser.yml\n#\tvendor/github.com/klauspost/cpuid/v2/README.md\n#\tvendor/github.com/klauspost/cpuid/v2/cpuid.go\n#\tvendor/github.com/klauspost/cpuid/v2/detect_arm64.go\n#\tvendor/github.com/klauspost/cpuid/v2/detect_ref.go\n#\tvendor/\n[…]\nre/document.go\n#\tvendor/golang.org/x/net/bpf/doc.go\n#\tvendor/golang.org/x/net/http2/transport_wrap.go\n#\tvendor/golang.org/x/net/idna/idna.go\n#\tvendor/golang.org/x/sys/cpu/parse.go\n#\tvendor/modules.txt",
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'origin/develop' into tinygo",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-16T03:24:03Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b487e1d7d9e6a114acce5934c871a43c78d9e9c2",
          "body": "…-fast\n\nThree fixes found from the v0.29.0-alpha1 run:\n- Add `permissions: contents: write` so the GITHUB_TOKEN can create the release\n  and upload assets. Without it `gh release create` returned HTTP 403 and every\n  upload failed with \"release not found\" (masked by the create step's `|| true`).\n- T\n[…]\nmpiler-rt-builtins, which a source checkout lacks, so `tinygo build`\n  failed to find e.g. absvdi2.c.\n- Set `fail-fast: false` on the Linux matrices so one arch failing no longer\n  cancels the others.",
          "is_bot": false,
          "headline": "ci(release): fix release permissions, tinygo compiler-rt, matrix fail…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-15T20:20:19Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "1bb378047715a9515b69a27d4db2fa8c995f495f",
          "body": "The standard-go jobs used `go install github.com/skycoin/skycoin@<tag>`, which\nresolves the upstream module path and therefore only builds when the tag exists\non the canonical repo. Build the Linux (main + hardware-wallet) archives from an\nactions/checkout of the tagged ref instead, so the workflow \n[…]\ndarwin and windows jobs still use go install @tag and\nare gated to github.repository == 'skycoin/skycoin'; create-checksums runs with\n!cancelled() so it still combines whatever archives were produced.",
          "is_bot": false,
          "headline": "ci(release): build from a checkout so the workflow works on forks too",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-15T20:06:20Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c8dcf0dbba16dc59be6664b496deae1e4e1ad236",
          "body": "…+ tinygo archives\n\nReworks the release workflow so the standard-go and TinyGo builds match: the\nmain skycoin binary is now built from the repository root (github.com/skycoin/\nskycoin) instead of cmd/release. Standard-go builds are pure Go (CGO disabled),\nso the Linux job cross-compiles every arch w\n[…]\nies keep the musl cross-toolchain and static cgo link\nand now ship in their own skyhw archive, separate from the main binary. The\nprevious workflow is kept at ci-scripts/release.yml.bak for reference.",
          "is_bot": false,
          "headline": "ci(release): build main binary from repo root; split hardware-wallet …",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-15T19:58:52Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c9b61ca7ba497955c3d1630f37d93da189dbbd84",
          "body": "Adds a linux-tinygo job to the release workflow that builds skycoin with the\nTinyGo fork (github.com/0magnet/tinygo, tag v0.42.0-skycoin.1): it installs\nLLVM 22 from apt.llvm.org, builds the fork's tinygo binary (go build -tags\nllvm22), then `tinygo build -gc=precise -tags \"safe netgo\"` the repo roo\n[…]\ntag>-linux-amd64-tinygo.tar.gz. No cgo, so no\nhardware-wallet support; embeds the TinyGo-compiled skycoin-lite wasm. The\nexisting standard-go (cgo, hardware-wallet, multi-arch) archives are unchanged.",
          "is_bot": false,
          "headline": "ci(release): add a Linux/amd64 TinyGo build archive",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-15T19:45:56Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "4d8c231fd7c71509920eb4ee113389aca142ba79",
          "body": "The web wallet embedded the TinyGo-compiled skycoin-lite wasm unconditionally,\nso a standard-go binary shipped the TinyGo wasm (and never the Go one). Select\nthe embed by build tag instead: standard-go builds embed src/skycoin-lite/\nwasm-go, TinyGo builds embed src/skycoin-lite/wasm-tinygo. Each binary now\ncarries exactly one wasm, paired with the matching wasm_exec.js (which differs\nbetween the two toolchains).",
          "is_bot": false,
          "headline": "skycoin-web: embed the wasm matching the build toolchain",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-15T19:37:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a5924644c3d34075f4dbe60a9f5ce34e84cc798f",
          "body": "… deps\n\nTinyGo cannot execute cobra's text/template usage help: text/template invokes\ntemplate methods through reflect.Value.Call, which TinyGo does not implement, so\nthe colorized (coloredcobra) help panicked under TinyGo. The previous workaround\n(cmd/skycoin-wallet/commands/help_tinygo.go) rendere\n[…]\ng once merged.\n\ngo mod tidy additionally drops the now-unused gin / quic-go / ugorji dependency\ntree — the web interface moved off gin to net/http in an earlier commit — which\nremoves it from vendor/.",
          "is_bot": false,
          "headline": "cli: colored help under TinyGo via coloredcobra fork; drop unused gin…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-15T19:11:34Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "19e10ad43a5d751d3dedf86a51a877db1966592f",
          "body": "…nyGo\n\nThe thin-client web wallet was built on github.com/gin-gonic/gin, which\nunconditionally pulls in quic-go/http3 (needs QUIC TLS APIs TinyGo lacks) and\nugorji/go/codec (indexes a cache by reflect.Kind, whose numbering differs under\nTinyGo and crashed at startup). The web command was therefore s\n[…]\nstandard Go; the unified CLI builds under\nTinyGo and the web server serves the GUI, the embedded TinyGo skycoin-lite.wasm\n+ wasm_exec.js, /api/v1/coins, and per-coin proxy routes with correct routing.",
          "is_bot": false,
          "headline": "skycoin-web: replace gin with net/http so it builds and runs under Ti…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-15T00:34:34Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "6300ab58cc03090b43d553a0dc07af478c9fc7cb",
          "body": "The explorer's only TinyGo blocker was rendering the API docs page with\nhtml/template in init(), which needs reflect func-signature introspection\n(reflect.Type.NumOut) that TinyGo doesn't implement. Move that rendering into\na build-tagged renderDocs: html/template on !tinygo, a static notice on tiny\n[…]\nsal (net/http/pprof works under TinyGo now), and\nthe whole-command stub (root_tinygo.go) is removed. Everything else in the\nexplorer (block/tx views, API proxy, static frontend, pprof) works normally.",
          "is_bot": false,
          "headline": "explorer: enable under TinyGo by isolating html/template",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-14T22:48:44Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "da55faf876a171594d587e26d869fe9f4d7b7a2e",
          "body": "TinyGo (0magnet/tinygo develop) now uses Go's software crypto/tls on the\nnative target, so tls.Listen / tls.LoadX509KeyPair work. Drop the\nhttps_tinygo.go stub (ErrHTTPSUnsupported) and make CreateHTTPS universal.\nVerified: the tinygo-built daemon serves the API over TLS 1.3.",
          "is_bot": false,
          "headline": "api: enable the real HTTPS interface under TinyGo (software crypto/tls)",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-14T21:42:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "16104d93f6b8733b82453a5b792a66110396b018",
          "body": "… (#2939)\n\nPart of converging node configuration onto skycoin-web's own Settings → Nodes\nGUI (customNodeUrls) as the single source of truth, so the surrounding skywire\nshell stops maintaining a parallel node setting.\n\n- NodeHealthService: probe the EFFECTIVE node — a per-coin custom URL set in\n  Set\n[…]\nllet-config panel, which keeps only transport/proxy settings).\n\nRebuilt src/gui/dist. The skywire fetch shim change to HONOR this node (instead\nof overriding it) lands coordinated on the skywire side.",
          "is_bot": false,
          "headline": "feat(wallet): node health probes the effective node + Nodes-page help…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-14T18:17:12Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "75c52caab2a9b0aa6894cca0f6d3c022c6dff177",
          "body": "…ailability gating (#2938)\n\n* feat(btc): backend health probe (electrum headers.subscribe / core getblockchaininfo)\n\nAdds Backend.Health() (tipHeight, error) to the btc.Backend interface and both\nimplementers, plus electrum Client.HeadersSubscribe(). A successful call proves\nthe backend is reachable\n[…]\na false positive:\n  the shutdown ctx MUST be non-canceled precisely because the parent ctx\n  is already Done there → documented //nolint:gosec.\n\nUnblocks the wallet-health PR's CI and un-reds develop.",
          "is_bot": false,
          "headline": "feat(wallet): node/electrum connection health at seed-entry + coin-av…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-14T17:08:08Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "bb58bc771ea239a3e5f8ac87d2d0923b9117f7ca",
          "body": "When the electrum connection is carried over a multihop Skywire route + skysocks\n+ in-tab TLS (the browser BTC-over-mesh gateway), the initial handshake\n(server.version) has several high-latency round-trips and the 30s deadline is\neasily hit ('handshake failed: read response: i/o deadline reached'). Bump to\n90s; clearnet is unaffected (completes in well under a second).",
          "is_bot": false,
          "headline": "btc: 90s electrum timeout for mesh-tunnel dialers (was 30s) (#2937)",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-14T01:42:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8ed1fa342933d692a65a9396d3500ffabf1444c8",
          "body": "Public electrum servers overwhelmingly present self-signed certificates — the\nElectrum protocol uses TLS for transport encryption, not CA authentication (the\nreference client accepts/pins self-signed certs out of band). The client did full\nCA verification (ServerName, no InsecureSkipVerify), so near\n[…]\nith 'x509: certificate is not valid for any\nnames'. Set InsecureSkipVerify (ServerName still sent as SNI) so self-signed\nservers work; only the rare CA-fronted server (e.g. blockstream) worked before.",
          "is_bot": false,
          "headline": "electrum: skip CA verification (self-signed certs are the norm) (#2936)",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-14T01:16:18Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "058eea0f734f42cad987040392c9ecbaf74b21b1",
          "body": "Prompt to set a password when creating a client-side wallet. The create-wallet\nform gains an optional Password field (create mode only); when filled, the new\nwallet's seed is encrypted right after creation via setWalletPassword (before\nthe dialog closes). Blank leaves the seed stored unencrypted (persisted for\nconvenience, per the prior change) and it stays encryptable later from the\nwallet detail view. Adds wallet.new.password-label/-info (en + es). Rebuilt\nsrc/gui/dist.",
          "is_bot": false,
          "headline": "skycoin-web: optional password field in the create-wallet dialog (#2935)",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-13T23:26:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c773088143199e2961e2351f3212af91d2e013c7",
          "body": "…#2934)\n\nClient-side (browser) wallets without a password never had their seed written\nto localStorage — saveWallets stored only encryptedSeed — so on refresh the\nwallet lost its seed and forced a seed re-entry ('this wallet will not be\nsaved... re-enter the seed'). Persist the plaintext seed/nextSe\n[…]\n, or legacy\naddresses-only). Setting a password still encrypts the seed at rest (only\nencryptedSeed stored); wallets remain encryptable after the fact via the wallet\ndetail view. Rebuilt src/gui/dist.",
          "is_bot": false,
          "headline": "skycoin-web: persist plaintext seed for un-encrypted client wallets (…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-13T17:22:23Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "bf9a0e032c1a9082537f04e5d18d04dea85eb93b",
          "body": "… (#2933)\n\nServers encode the JSON-RPC `error` field inconsistently — null/absent on\nsuccess, a {code,message} object, or a bare string (blockstream's electrs does\nthis on listunspent/history). The fixed `*rpcError` type made the WHOLE response\nfail to unmarshal (\"cannot unmarshal string into ... rpcError\"), breaking\nListUnspent/GetHistory. Parse the field as json.RawMessage + interpret it via\nrpcErrorString (handles null/empty/string/object). No behavior change for the\nobject form.",
          "is_bot": false,
          "headline": "electrum: parse the JSON-RPC error field leniently (string or object)…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-13T13:14:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "898c5dd8203dfb9527b5f3056529e0b9b0f7a6b1",
          "body": "Follow-up to electrum.NewClientWithDialer (#2931): ElectrumBackend wraps an\nunexported *electrum.Client, so add a constructor that threads a dialer through,\nletting an embedder (e.g. a Skywire visor's BTC gateway) reach an ssl:// Electrum\nserver over the mesh. NewElectrumBackend is unchanged (nil dialer = clearnet).",
          "is_bot": false,
          "headline": "btc: NewElectrumBackendWithDialer — inject the electrum dialer (#2932)",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-13T13:01:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "573a476f1c7d935e76baef9afb4afe6714425654",
          "body": "…table dialer (#2931)\n\nThe Electrum client dialed the server itself (tls.DialWithDialer / net.DialTimeout),\nso it could only reach clearnet servers. Add NewClientWithDialer(serverURL, timeout,\ndial DialFunc): when a dialer is supplied it provides the raw stream (e.g. a skywire\nskysocks/dmsg tunnel o\n[…]\nClient is unchanged (nil dialer → net.DialTimeout).\nThis lets a skywire visor serve BTC to the browser wallet by reaching an ssl:// Electrum\nserver over the mesh, no per-port dmsg forwarding required.",
          "is_bot": false,
          "headline": "electrum: NewClientWithDialer — route the connection through an injec…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-13T12:52:03Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "70f2b057fb425347013a295cfaebef45bd1be01c",
          "body": "…y + context-cancellable serve) (#2929)\n\n* skycoin-web: enable custom-node GUI in prod + --socks5-proxy flag\n\n- environment.prod.ts: enableCustomNodes: false -> true, so the\n  Settings -> Nodes runtime node-URL GUI is available in production\n  builds (parity with dev). Lets users point the thin clie\n[…]\ne); an embedder using ExecuteContext(ctx) can now stop it\ncleanly and won't be killed by a server error. Prereq for running skycoin-web\nas an in-process (internal-launcher) app inside a skywire visor.",
          "is_bot": false,
          "headline": "skycoin-web: embeddable improvements (custom-node GUI + --socks5-prox…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-11T22:19:55Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "1b40deb8d69f5881053060cfd4a7c63863985a4e",
          "body": "… round (npm) (#2925)\n\nReplicates the currently-open dependabot PRs on one branch so merging auto-closes\nthem, and proactively bumps everything else that's in-range so dependabot's next\nscan finds little to flag. Lockfile-only (no manifest/range changes needed).\n\nReplicated dependabot PRs:\n- /explor\n[…]\ndeliberately: the 22.x majors (@angular-eslint, @angular/cdk,\n@angular-builders/custom-webpack) — those need an Angular 21->22 migration, not a\nlockfile bump. All three subdir lockfiles pass 'npm ci'.",
          "is_bot": false,
          "headline": "chore(deps): sweep open dependabot updates + get ahead of the Angular…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-11T11:53:45Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "6a0d3dca54dbe2ef004e58b0ef082d57ad75f6c5",
          "body": "Switches provideHttpClient to the fetch backend instead of the default XHR\nbackend. For a JSON node API this is behavior-equivalent, and it lets an\nembedding host intercept the wallet's node calls via a window.fetch override\n(rather than the harder-to-shim XMLHttpRequest). skywire uses this to route\n[…]\nundled wallet's /api over dmsg from inside the wallet iframe — working in all\nmodes (incl. Service-Worker-less contexts like --harness and single-file),\nreplacing the Service-Worker-only interception.",
          "is_bot": false,
          "headline": "skycoin-web: use Angular's fetch HttpClient backend (withFetch) (#2924)",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-11T11:34:27Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "f012692000f6d1352d2dd527e66600680049d739",
          "body": "…r) (#2923)\n\nassets/scripts/wasm_exec.js was a 51-byte placeholder in both the source assets\nand the built dist; the skycoin-web server injects the real one at runtime\n(cmd/skycoin-web root.go), so the served app worked but the *static* dist did\nnot: loading it without the server (Go is not defined \n[…]\n still overrides /assets/scripts/wasm_exec.js dynamically, so no behavior\nchange there. Lets the dist be served statically (e.g. bundled into another\napp), which is otherwise impossible with the stub.",
          "is_bot": false,
          "headline": "skycoin-web: ship the real wasm_exec.js in the dist (not a placeholde…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-11T10:09:27Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "43953c9302bb60c9c1b9caf3a0edd2c7093c657e",
          "body": "…yable (#2922)\n\nindex.html script tags and cipher.provider.ts's skycoin-lite.wasm fetch used\nabsolute /assets/scripts/... paths, which only resolve when the wallet is served\nat the domain root. Making them relative (resolved against <base href>) lets the\nsame build be served under a sub-path (e.g. /wallet/) by just setting the base\nhref, with zero change to the default root deployment (relative 'assets/scripts/'\nunder base '/' still resolves to /assets/scripts/). Rebuilt dist.",
          "is_bot": false,
          "headline": "skycoin-web: use relative asset paths so the wallet is sub-path deplo…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-11T00:02:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9d23f4be44a598ac9a592e24f2bdcfdee6553ed1",
          "body": "chore(deps): sweep open dependabot npm updates",
          "is_bot": false,
          "headline": "Merge pull request #2919 from 0pcom/chore/dependabot-sweep-2",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-10T19:55:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7b95eb78c1ded69563c42429f31dc6b06be3f205",
          "body": "Replicates the currently-open dependabot PRs on a single branch so merging\nauto-closes them. Manifest + lockfile version bumps only.\n\nAngular core families are bumped in lockstep (^21.2.4 -> ^21.2.17, resolving to\n21.2.18) with the @angular-devkit/@angular build tooling moved with them\n(21.2.19) so \n[…]\nore/verify 3.1.1 (#2915)\n- qs/body-parser/express security bumps (#2885)\n\nelectron: tmp 0.2.7 (#2888)\nelectron/app: form-data 4.0.6 (#2898)\n\nAll five subdir lockfiles pass 'npm ci' (verified locally).",
          "is_bot": false,
          "headline": "chore(deps): sweep open dependabot updates (npm)",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-10T19:51:46Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "1e07e977d580e66f72367342adca0331aa999701",
          "body": "chore(deps): update Go modules + replicate open dependabot frontend bumps",
          "is_bot": false,
          "headline": "Merge pull request #2913 from 0pcom/chore/deps-update",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-10T19:10:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "39d231fa033af33eadd9bb60d7c1ef7624aa2f9d",
          "body": "Go: go get -u ./... + go mod tidy + go mod vendor — bumps golang.org/x/{crypto,\nnet,sys,term,text} to current minor. Builds clean (go build ./cmd/... ./src/...).\n\nFrontend: replicate the open upstream dependabot security patches in the four\npackage-lock.json files (npm update --package-lock-only), s\n[…]\nrc/skycoin-web, src/gui/static, electron)\n  sigstore 4.1.1, @sigstore/core 3.2.1, @sigstore/verify 3.1.1 (explorer, src/gui/static)\nTransitive/ranged bumps — package.json version ranges are unchanged.",
          "is_bot": false,
          "headline": "chore(deps): update Go modules + replicate dependabot frontend bumps",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-10T19:07:21Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "64ecf36a918cf20826098b4ca0b79b0e051311e8",
          "body": "api: expose blockchain_pubkey in /health",
          "is_bot": false,
          "headline": "Merge pull request #2912 from 0pcom/feat/health-blockchain-pubkey",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-10T19:06:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4b12f66903bcb970c2de6e11fa7a1d4d2c3afe1e",
          "body": "TestStableStatus compares the full cli-status output (which embeds HealthResponse)\nagainst goldens; add the new blockchain_pubkey field (skycoin mainnet block\npubkey) to the four status*.golden fixtures.",
          "is_bot": false,
          "headline": "test: update cli status goldens for /health blockchain_pubkey field",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-10T19:03:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "36991040284a78d2d5b18920b535ef957fdab900",
          "body": "Surfaces the block-publisher public key (the authoritative chain identifier that\nsigns every block) in the /api/v1/health response. It is NOT otherwise\nrecoverable from the API — readable blocks strip the signature, so a consumer\ncan't secp256k1-recover it — yet it is the one non-spoofable way to id\n[…]\nrcoin over dmsg. The wallet must verify the chain\nby pubkey, not by name. Plumbed HealthConfig.BlockchainPubkey (from the node's\nconfigured blockchainPubkey) -> HealthResponse.blockchain_pubkey (hex).",
          "is_bot": false,
          "headline": "api: expose blockchain_pubkey in /health",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-07-10T18:46:34Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "ee23fcfb69c46b5aadfc6ef0b6b09e32c7b3c50e",
          "body": "Add //go:build tinygo / !tinygo shims so the default repo-root build\n(go build .) can also be compiled with TinyGo, producing a substantially\nsmaller binary on the already-supported platforms, without changing the\nstandard build. All changes are build-tagged; standard go build / go run .\nbehaviour i\n[…]\nuncs under TinyGo.\n\nNetworking under TinyGo additionally requires a host \"netdev\" (TinyGo's net\npackage has no native socket backend by default); that is a TinyGo-side\nchange and is not included here.",
          "is_bot": false,
          "headline": "build: support compiling the default binary with TinyGo",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-06-23T22:51:46Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b31a8f152ba8dc6e2b79eb4948dfe3d479c66f49",
          "body": "src/gui/static.go embedded the GUI with `//go:embed static/*`, but only\nstatic/dist is ever served (fs.Sub(GuiFiles, \"static/dist\") in\nsrc/api/http.go). The broad pattern embeds the whole front-end working tree —\nsrc/, e2e/, build configs, and (when present locally) node_modules — none of\nwhich is served, bloating the binary. Narrow it to `//go:embed static/dist`\nto embed only what is served. No behavior change.",
          "is_bot": false,
          "headline": "gui: embed only static/dist, not the entire front-end tree",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-06-23T22:51:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b786c9b3d72cd4de08edd3f4cba121d3593829c2",
          "body": "docs: add MkDocs documentation site (GitHub Pages)",
          "is_bot": false,
          "headline": "Merge pull request #2886 from 0pcom/docs/github-pages-site",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-06-12T21:02:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "19726aed7cafb8705b947b8d51aac431b84ca053",
          "body": "Adds a MkDocs Material documentation site served at\nhttps://skycoin.github.io/skycoin/, mirroring the skywire docs setup.\n\n- mkdocs.yml: site config, Material theme and navigation; strict mode on\n- docs/: hand-written home, section landing pages and the dependency\n  graph page (the goda SVG is alrea\n[…]\nion only)\n  and deploys to the gh-pages branch on push to develop via mkdocs\n  gh-deploy\n- Makefile: docs-install / docs-serve / docs-build targets\n- .gitignore: ignore the mkdocs build output (site/)",
          "is_bot": false,
          "headline": "docs: add MkDocs documentation site with GitHub Pages deploy",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-06-12T20:48:44Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "a1a881ff94030bae30a5d24e9faab5da350bccc5",
          "body": "chore(deps): replicate dependabot dependency updates and refresh go deps",
          "is_bot": false,
          "headline": "Merge pull request #2883 from 0pcom/chore/dependabot-deps-update",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-06-12T20:10:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4e1acbb6c733ad4427b2e95fa9144053acf3e6c5",
          "body": null,
          "is_bot": false,
          "headline": "docs: regenerate goda dependency graph",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-06-12T19:34:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f59a326c4817680276ab60d6ae4e44fb755c5109",
          "body": "Run go get -u ./... && go mod tidy && go mod vendor. Notable bumps:\nquic-go 0.59.0 -> 0.60.0, golang.org/x/crypto, net, sys, text, term,\ntcell/v3, go-toml/v2, validator/v10, mongo-driver/v2, sonic and others.",
          "is_bot": false,
          "headline": "chore(deps): update go module dependencies and vendor",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-06-12T19:34:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1a439126e11186bdb1c142f160372e8a8850f9b8",
          "body": "… web\n\n- shell-quote 1.8.3 -> 1.8.4 (src/gui/static)\n- hono 4.12.18 -> 4.12.23 (explorer, src/gui/static, src/skycoin-web)\n- axios 1.15.2 -> 1.16.0 (electron/app, src/skycoin-web)\n- tmp -> 0.2.7 (explorer, src/skycoin-web) and 0.2.1 -> 0.2.6 (electron)\n- qs, body-parser and express (explorer)\n- serialize-javascript 7.0.4 -> 7.0.5 (src/gui/static, src/skycoin-web)\n- @hono/node-server 1.19.11 -> 1.19.14 (explorer)",
          "is_bot": false,
          "headline": "chore(deps): bump npm dependencies across gui, explorer, electron and…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-06-12T19:34:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7ceddfaa3620f4dded3b2fbff6da979306405bca",
          "body": "fix(gnet): invoke Connect/DisconnectCallback outside the strand + dependabot bumps",
          "is_bot": false,
          "headline": "Merge pull request #2868 from 0pcom/fix/gnet-callback-deadlock",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-05-10T19:04:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5fa1bdd391ca77b9e7dfe91856ae988116ab7b26",
          "body": null,
          "is_bot": false,
          "headline": "chore(deps): bump ip-address and express-rate-limit in /src/gui/static",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-05-10T18:44:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "faa95fa66bc11f41c722dab9dc9e3b10211bdcdb",
          "body": "…0 to 7.29.4 in /src/gui/static",
          "is_bot": false,
          "headline": "chore(deps): bump @babel/plugin-transform-modules-systemjs from 7.29.…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-05-10T18:44:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "143e6d37833be065a09ac4886ee63a9dbc83cad2",
          "body": null,
          "is_bot": false,
          "headline": "chore(deps): bump fast-uri from 3.1.0 to 3.1.2 in /src/gui/static",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-05-10T18:44:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "aabb131f5b260f0c94008ca24fcc6e104b1a735d",
          "body": null,
          "is_bot": false,
          "headline": "chore(deps): bump fast-uri from 3.1.0 to 3.1.2 in /explorer",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-05-10T18:44:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1285a82afa297bbba99e2ecd9fd520681ed15210",
          "body": null,
          "is_bot": false,
          "headline": "chore(deps): bump fast-uri from 3.1.0 to 3.1.2 in /src/skycoin-web",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-05-10T18:44:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bfaeafd632bdfb1466e89a1c13b81a32235be95b",
          "body": null,
          "is_bot": false,
          "headline": "chore(deps): bump fast-xml-builder from 1.1.5 to 1.2.0 in /explorer",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-05-10T18:44:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fd213267826cff6e25798cc64de95ce5782a1a0d",
          "body": null,
          "is_bot": false,
          "headline": "chore(deps): bump hono from 4.12.14 to 4.12.18 in /explorer",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-05-10T18:43:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "be56e824e6fde166877ab3c6659f1b49acb630c1",
          "body": null,
          "is_bot": false,
          "headline": "chore(deps): bump hono from 4.12.14 to 4.12.18 in /src/skycoin-web",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-05-10T18:43:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1febc5212d0e72c9b55bded7f2473b5e3db032b8",
          "body": null,
          "is_bot": false,
          "headline": "chore(deps): bump hono from 4.12.14 to 4.12.18 in /src/gui/static",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-05-10T18:43:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "87ffc10affd0f4983495f3dfbc24cdce48209332",
          "body": null,
          "is_bot": false,
          "headline": "chore(deps): bump basic-ftp from 5.3.0 to 5.3.1 in /explorer",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-05-10T18:43:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "dd7c3d6dadf00d765c843b7b3a90a16eb03c9295",
          "body": null,
          "is_bot": false,
          "headline": "chore(deps): bump axios from 1.15.0 to 1.15.2 in /src/skycoin-web",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-05-10T18:43:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c43280f580ca57920a945150a085f4434018c34b",
          "body": null,
          "is_bot": false,
          "headline": "chore(deps): bump axios from 1.15.0 to 1.15.2 in /electron/app",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-05-10T18:43:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "64f4fff2fbc874ca385d1158790d78d2d7d7f764",
          "body": "…n/app",
          "is_bot": false,
          "headline": "chore(deps): bump follow-redirects from 1.15.11 to 1.16.0 in /electro…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-05-10T18:43:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "020760de09ba237d03676d5a11b635e9767c5ef6",
          "body": "The strand worker serializes ConnectionPool state mutations. Invoking\nthe daemon callbacks inside the strand callback meant the strand could\nblock on callbacks that send synchronously to daemon.events. When the\ndaemon Run loop is itself waiting on the strand from another case\n(e.g. broadcastMessage \n[…]\nack on the calling goroutine after the strand returns.\nPer-connection ordering (Connect before Disconnect) is preserved\nbecause both callbacks fire on the same handleConnection goroutine\nsequentially.",
          "is_bot": false,
          "headline": "fix(gnet): invoke Connect/DisconnectCallback outside the strand",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-05-10T18:43:20Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "776152b2fdb8724ac041702a887e2d94f4a39132",
          "body": "chore: update go dependencies",
          "is_bot": false,
          "headline": "Merge pull request #2854 from 0pcom/chore/update-deps",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-04-26T21:11:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c7f0fa39cdbe40eaabf1c9bb06d8af356a2e032e",
          "body": "Same 'Decode error: kind ptr not handled' timing/race that already\ncaused the test to be skipped on GOARCH=386 (commit a78d31ed9) is now\nreliably reproducing on GOOS=windows as well — failed twice in a row\non this branch's Windows CI with identical symptom. Extend the skip\nto cover both.",
          "is_bot": false,
          "headline": "Skip flaky TestPoolBroadcastMessage on Windows too",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-04-26T21:02:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "02c4af3b42b397a365b9cb66756b0b45acb06a5a",
          "body": "  src/skycoin-web/@hono/node-server  1.19.11 → 1.19.14  (#2852)\n  explorer/basic-ftp                 5.2.2 → 5.3.0       (#2853)",
          "is_bot": false,
          "headline": "deps: bump npm deps from open dependabot PRs",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-04-26T20:51:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "39d87a81d353aa05c2d51dcb43233c898f0b597e",
          "body": "go get -v -u ./...\ngo mod tidy\ngo mod vendor\n\nBumps:\n  github.com/mattn/go-isatty       v0.0.20 → v0.0.21\n  github.com/pelletier/go-toml/v2  v2.2.4 → v2.3.0\n  go.mongodb.org/mongo-driver/v2   v2.5.0 → v2.5.1\n  golang.org/x/arch                v0.25.0 → v0.26.0\n  golang.org/x/crypto              v0.4\n[…]\ng/x/sys                 v0.42.0 → v0.43.0\n  golang.org/x/term                v0.41.0 → v0.42.0\n  golang.org/x/text                v0.35.0 → v0.36.0\n  mvdan.cc/sh/v3                   v3.13.0 → v3.13.1",
          "is_bot": false,
          "headline": "chore: update go dependencies",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-04-26T20:48:51Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "3227e98da75245bf5cc8d5ada67ce1db23efb8dc",
          "body": "Inline skywire utility packages + dependabot npm bumps",
          "is_bot": false,
          "headline": "Merge pull request #2851 from 0pcom/feat/inline-skywire-utilities",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-04-26T20:27:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d51631a4f9391df4e2569fcf1c81b8cf40efb22a",
          "body": "- Run goimports across cmd/* and src/util/* to fix CI lint failures\n  on cmd/explorer/commands/root.go, cmd/skycoin-cli/commands/root.go,\n  cmd/skycoin-wallet/commands/root.go, cmd/release/commands/root.go,\n  cmd/skycoin-web/commands/root.go.\n- Remove blank line between calvin's block package comment and the\n  package declaration so the comment is recognized as the package\n  doc by revive (package-comments).",
          "is_bot": false,
          "headline": "fix CI: goimports + calvin package comment placement",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-04-26T20:20:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "47c85ba206ac3520e654e8494aa21a592e11ba16",
          "body": "Skycoin only used three small packages from skywire:\n  pkg/skywire-utilities/pkg/buildinfo\n  pkg/skywire-utilities/pkg/calvin\n  pkg/skywire-utilities/pkg/flags\n\nVendored copies of these packages were the only thing keeping the\nskywire dependency in skycoin's go.mod. Inline them under\nsrc/util/{build\n[…]\n → 4.12.14\n                      follow-redirects 1.15.11 → 1.16.0\n                      lodash 4.17.23 → 4.18.1\n  src/skycoin-web:    hono 4.12.7 → 4.12.14\n                      axios 1.13.6 → 1.15.0",
          "is_bot": false,
          "headline": "Inline skywire utility packages + dependabot npm bumps",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-04-26T20:06:18Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "a27afbb0b33b2e9bb4237e33bffd54bf65cdd64a",
          "body": "Fix explorer blocks page and update serialize-javascript",
          "is_bot": false,
          "headline": "Merge pull request #2838 from 0pcom/fix-explorer-blocks-loading",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-04-01T14:26:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8e904ba3a97543d36a193a763abc9ab49a54f6b3",
          "body": "Add verbose=1 to getBlocks API call so transaction inputs are returned\nas objects with owner/coins/hours fields instead of bare UXID strings.\nWithout verbose mode, parseGenericTransaction fails silently causing\n\"Error loading data\" on the blocks page.\n\nFix Content-Type header ordering in explorer proxy: set Content-Type\nbefore WriteHeader so the header is actually sent to clients.\n\nBump serialize-javascript from 7.0.4 to 7.0.5 (security fix).",
          "is_bot": false,
          "headline": "Fix explorer blocks page and update serialize-javascript",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-04-01T14:25:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a360adb0a4d3c180170b79494c6a54d5d70d523b",
          "body": "…ove to readable package\n\nDe-duplicate wallet response construction: move to readable package",
          "is_bot": false,
          "headline": "Merge pull request #2836 De-duplicate wallet response construction: m…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-28T15:27:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "add3ebd9c5dcd7f8fa55751f88ba984e7f79a5aa",
          "body": "NewWalletResponse and entriesToReadable were duplicated between\nsrc/api/wallet.go and cmd/skycoin-web/commands/wallet_handlers.go.\nMoved the shared logic to src/readable/wallet.go which both packages\ncan import without pulling in heavy node dependencies.\n\napi.WalletResponse is now a type alias for readable.WalletResponse.\napi.NewWalletResponse delegates to readable.NewWalletResponse.",
          "is_bot": false,
          "headline": "De-duplicate wallet response construction: move to readable package",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-28T15:26:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a82db432c8c43b02f03118a276ef09fab52d4f53",
          "body": "Fix skycoin web wallet flow",
          "is_bot": false,
          "headline": "Merge pull request #2835 from 0pcom/fix-skycoin-web-wallet-flow",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-28T11:19:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "05e0d1348152c0d5a6ebaa2732fd9a3a64538fe0",
          "body": "…lets\n\nServer-managed wallets (--wallet-dir) store private keys locally in the\nskycoin-web process, NOT on the remote node. The previous code either\ntried client-side WASM signing (requiring seed entry) or sent keys to\nthe remote node.\n\nThe correct flow for server-managed wallets is:\n1. Create unsig\n[…]\nress\n- Signs and returns the signed encoded transaction\n\nAlso fixed security documentation in README to accurately describe that\nwallet keys are managed locally by skycoin-web, not by the remote node.",
          "is_bot": false,
          "headline": "Fix skycoin-web wallet send flow: sign locally for server-managed wal…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-28T11:16:02Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "102024ecf150f264b5bc2686a55ee7333157386f",
          "body": "…mentation\n\n- send-form: skip seed entry for server-managed wallets (wallet.filename check)\n- spending service: use POST /wallet/transaction with wallet_id for server-managed\n  wallets to create signed transactions directly on the node, instead of creating\n  unsigned transactions and attempting client-side or separate signing\n- Remove unused signWithServer method\n- Add Security Considerations section to README documenting trust implications\n  of both web-only and server-managed modes",
          "is_bot": false,
          "headline": "Fix skycoin-web server-managed wallet send flow and add security docu…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-28T11:01:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "877b36a57239d97f36ded9f0f20dce9d25a907f6",
          "body": "Fix skycoin-web: use server-side signing for server-managed wallets instead of requiring seed entry",
          "is_bot": false,
          "headline": "Merge pull request #2834 from 0pcom/fix-web-wallet-signing",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-28T00:41:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "957f53c3aa5ef1a4b65a796c914a3964d7c960cc",
          "body": "…nstead of requiring seed entry",
          "is_bot": false,
          "headline": "Fix skycoin-web: use server-side signing for server-managed wallets i…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-28T00:39:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "af6de2ed288fa3538fcbe74a8f0560991e767fe8",
          "body": "Improve bip44 wallet gui",
          "is_bot": false,
          "headline": "Merge pull request #2833 from 0pcom/new-feature",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-27T21:04:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4f6288699c5472fff516d1537bb4b8c070e179cb",
          "body": "…d change chain address generation",
          "is_bot": false,
          "headline": "Apply same BIP44 xpub/address restructuring to skycoin-web GUI and ad…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-27T20:56:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c8e17a72fc42de9008bc19472368ec906c9a22b3",
          "body": "…pub keys",
          "is_bot": false,
          "headline": "Restructure BIP44 wallet display: nest addresses under their parent x…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-27T20:41:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9b04c43634f270bd7e46d08e7f1e31bfe323a8ff",
          "body": null,
          "is_bot": false,
          "headline": "Rebuild desktop and web wallet GUI dist files",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-27T20:28:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b2069f285d6d6f3523fd4a66dce226ea27c4f5b1",
          "body": "…dress sections",
          "is_bot": false,
          "headline": "Reorder xpub display, show BIP44 child indices, add path labels to ad…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-27T20:19:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "18cbcd1f8f2858a2f90d540941a60800af40f114",
          "body": "The /wallet/xpub API now accepts single-element paths (e.g. \"0\")\nto return the account-level xpub (m/44'/coin'/account'), in addition\nto the existing two-element paths for chain-level xpubs.\n\nBoth desktop and web wallet GUIs now show three xpub keys per account:\n- Account xPub (derives both chains - needed by reward/auth systems)\n- External Chain xPub (m/.../0)\n- Change Chain xPub (m/.../1)",
          "is_bot": false,
          "headline": "Expose account-level xpub key in API and both wallet GUIs",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-27T14:43:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f48988877c68c8f92773008b6d73ce7f6f357d1e",
          "body": "Add --pprofmode and --pprofaddr flags to explorer and skycoin-web",
          "is_bot": false,
          "headline": "Merge pull request #2832 from 0pcom/add-pprof-to-web-explorer",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-25T01:48:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f2aed255f2a0548ccdc80a8ad65e7b2b7c239b88",
          "body": null,
          "is_bot": false,
          "headline": "Add --pprofmode and --pprofaddr flags to explorer and skycoin-web",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-25T01:37:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7c561776a4f3601423da7feb146275752110bcff",
          "body": "Add release doc",
          "is_bot": false,
          "headline": "Merge pull request #2831 from 0pcom/add-release-doc",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-24T02:41:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f6a52da25e47dc4af68d21d99d0b1d9d68b6ce0c",
          "body": null,
          "is_bot": false,
          "headline": "Include skyhw.exe and DLLs in Windows amd64 MSI installer",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-23T15:38:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "35adbd3c24b13657d4ad44bd7ab0ca8d0c820b43",
          "body": null,
          "is_bot": false,
          "headline": "Add RELEASE.md documenting release binaries and build process",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-23T15:25:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "90b668188f850fdbaa46fea61ce286b8b018e90a",
          "body": "Update deps",
          "is_bot": false,
          "headline": "Merge pull request #2830 from 0pcom/update-deps",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-23T01:52:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "915c264cc62141aa25f2951d322a52c68bab0378",
          "body": null,
          "is_bot": false,
          "headline": "Update dependencies",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-23T01:47:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e0a3cfeb5ef5ac13fa3ff1d2b07ac026c04bd9fd",
          "body": "Refactor",
          "is_bot": false,
          "headline": "Merge pull request #2829 from 0pcom/remove-internal-packages",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-23T01:38:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2eeb5a234219d59376e4b2e7025fc678f6a3c4f8",
          "body": "…ows CI",
          "is_bot": false,
          "headline": "Increase broadcast spam attempts in TestPoolBroadcastMessage for Wind…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-23T01:21:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bb8924534ecd1af04b5b8a8d0b85cac91f6e0f6a",
          "body": "…aAccountsHash const",
          "is_bot": false,
          "headline": "Remove dead code: unused help var, tagName func, rand.Seed calls, met…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-23T01:02:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "77e390e8e6e5fb5c15210e15de77d065788eaa67",
          "body": null,
          "is_bot": false,
          "headline": "Remove dead base58_old.go and its benchmark/test references",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-23T00:56:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "00addd9b1a05d77e31ead889a22e7e5a0eb67950",
          "body": "…dressGenCmd()",
          "is_bot": false,
          "headline": "Reduce cyclomatic complexity: refactor serve(), postProcess(), and ad…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-23T00:28:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c7b0093e097a555340644f4b6fe720edc29e1955",
          "body": "… unify FIBER_TOML handling",
          "is_bot": false,
          "headline": "Refactor: isolate viper state, simplify fiber config application, and…",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-23T00:03:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "488b0383beeb331988245b39773f5cb658cb11da",
          "body": null,
          "is_bot": false,
          "headline": "Fix flaky TestWalletCreateTransaction: avoid BkSeq=0 in test UxOuts",
          "author_name": "Moses Narrow",
          "author_login": "0pcom",
          "committed_at": "2026-03-22T23:31:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 20,
      "commits_last_year": 480,
      "latest_release_at": "2020-11-23T01:01:48Z",
      "latest_release_tag": "v0.27.1",
      "releases_from_tags": true,
      "days_since_last_push": 7,
      "active_weeks_last_year": 26,
      "days_since_latest_release": 2073,
      "mean_days_between_releases": 119.6
    },
    "community": {
      "has_readme": false,
      "has_license": false,
      "has_description": false,
      "has_contributing": false,
      "health_percentage": null,
      "has_issue_template": false,
      "has_code_of_conduct": false,
      "has_pull_request_template": false
    },
    "ecosystem": {
      "packages": [
        {
          "name": "github.com/skycoin/skycoin",
          "exists": true,
          "license": null,
          "keywords": [],
          "ecosystem": "go",
          "matches_repo": false,
          "registry_url": "https://pkg.go.dev/github.com/skycoin/skycoin",
          "is_deprecated": false,
          "latest_version": "v0.28.5",
          "repository_url": "https://github.com/skycoin/skycoin",
          "versions_count": 44,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": null,
          "monthly_downloads": null,
          "first_published_at": null,
          "latest_published_at": "2026-03-24T02:41:21Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 125
        }
      ]
    },
    "popularity": {
      "forks": 0,
      "stars": 0,
      "watchers": 0,
      "fork_history": {
        "days": [],
        "complete": true,
        "collected": 0,
        "total_forks": 0
      },
      "star_history": {
        "days": [],
        "complete": true,
        "collected": 0,
        "total_stars": 0,
        "collected_at": null
      },
      "open_issues_and_prs": 0
    },
    "ai_readiness": {
      "has_nix": true,
      "example_dirs": [
        "example"
      ],
      "has_llms_txt": false,
      "has_dockerfile": true,
      "has_mcp_signal": false,
      "bootstrap_files": [
        "Makefile",
        "cmd/skydex-client/Makefile",
        "explorer/Makefile",
        "src/skycoin-lite/Makefile",
        "src/skycoin-web/Makefile",
        "vendor/github.com/briandowns/spinner/Makefile",
        "vendor/github.com/gogo/protobuf/proto/Makefile",
        "vendor/github.com/itchyny/gojq/Makefile",
        "vendor/github.com/itchyny/timefmt-go/Makefile",
        "vendor/github.com/sagikazarmark/locafero/justfile",
        "vendor/github.com/spf13/cast/Makefile",
        "vendor/github.com/spf13/cobra/Makefile",
        "vendor/github.com/spf13/viper/Makefile",
        "vendor/github.com/stretchr/objx/Taskfile.yml",
        "vendor/go.etcd.io/bbolt/Makefile",
        "vendor/modernc.org/gc/v3/Makefile",
        "vendor/modernc.org/libc/Makefile",
        "vendor/modernc.org/mathutil/Makefile",
        "vendor/modernc.org/memory/Makefile",
        "vendor/modernc.org/sqlite/Makefile",
        "vendor/modernc.org/strutil/Makefile",
        "vendor/modernc.org/token/Makefile"
      ],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [
        "explorer/test/tsconfig.json",
        "explorer/tsconfig.json",
        "src/gui/static/tsconfig.json",
        "src/skycoin-web/tsconfig.json"
      ],
      "toolchain_manifests": [
        "go.mod"
      ],
      "largest_source_bytes": 2646851,
      "source_files_sampled": 988,
      "oversized_source_files": 14,
      "agent_instruction_files": [
        "vendor/github.com/clipperhouse/displaywidth/AGENTS.md",
        "vendor/github.com/gdamore/tcell/v3/AGENTS.md",
        "vendor/github.com/pelletier/go-toml/v2/AGENTS.md"
      ],
      "agent_instruction_max_bytes": 2974
    },
    "dependencies": {
      "manifests": [
        "docs/requirements.txt",
        "electron/package.json",
        "explorer/package.json",
        "go.mod"
      ],
      "advisories": {
        "error": null,
        "scope": null,
        "source": null,
        "findings": [],
        "collected": false,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 0,
        "malicious_count": 0,
        "assessed_package": null,
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "go",
        "npm",
        "pypi"
      ],
      "dependencies": [
        {
          "name": "@angular/animations",
          "manifest": "explorer/package.json",
          "ecosystem": "npm",
          "version_constraint": "^21.2.17"
        },
        {
          "name": "@angular/common",
          "manifest": "explorer/package.json",
          "ecosystem": "npm",
          "version_constraint": "^21.2.17"
        },
        {
          "name": "@angular/compiler",
          "manifest": "explorer/package.json",
          "ecosystem": "npm",
          "version_constraint": "^21.2.17"
        },
        {
          "name": "@angular/core",
          "manifest": "explorer/package.json",
          "ecosystem": "npm",
          "version_constraint": "^21.2.17"
        },
        {
          "name": "@angular/forms",
          "manifest": "explorer/package.json",
          "ecosystem": "npm",
          "version_constraint": "^21.2.17"
        },
        {
          "name": "@angular/platform-browser",
          "manifest": "explorer/package.json",
          "ecosystem": "npm",
          "version_constraint": "^21.2.17"
        },
        {
          "name": "@angular/platform-browser-dynamic",
          "manifest": "explorer/package.json",
          "ecosystem": "npm",
          "version_constraint": "^21.2.17"
        },
        {
          "name": "@angular/router",
          "manifest": "explorer/package.json",
          "ecosystem": "npm",
          "version_constraint": "^21.2.17"
        },
        {
          "name": "@ngx-translate/core",
          "manifest": "explorer/package.json",
          "ecosystem": "npm",
          "version_constraint": "^17.0.0"
        },
        {
          "name": "@ngx-translate/http-loader",
          "manifest": "explorer/package.json",
          "ecosystem": "npm",
          "version_constraint": "^17.0.0"
        },
        {
          "name": "@popperjs/core",
          "manifest": "explorer/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.11.8"
        },
        {
          "name": "@wdio/logger",
          "manifest": "explorer/package.json",
          "ecosystem": "npm",
          "version_constraint": "^9.18.0"
        },
        {
          "name": "ansi-regex",
          "manifest": "explorer/package.json",
          "ecosystem": "npm",
          "version_constraint": "^6.2.2"
        },
        {
          "name": "basic-ftp",
          "manifest": "explorer/package.json",
          "ecosystem": "npm",
          "version_constraint": "^5.3.1"
        },
        {
          "name": "bignumber.js",
          "manifest": "explorer/package.json",
          "ecosystem": "npm",
          "version_constraint": "^10.0.2"
        },
        {
          "name": "bootstrap",
          "manifest": "explorer/package.json",
          "ecosystem": "npm",
          "version_constraint": "^5.3.8"
        },
        {
          "name": "disable-scroll",
          "manifest": "explorer/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.6.0"
        },
        {
          "name": "fast-xml-parser",
          "manifest": "explorer/package.json",
          "ecosystem": "npm",
          "version_constraint": "^5.7.1"
        },
        {
          "name": "hono",
          "manifest": "explorer/package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.12.26"
        },
        {
          "name": "rxjs",
          "manifest": "explorer/package.json",
          "ecosystem": "npm",
          "version_constraint": "^7.8.2"
        },
        {
          "name": "strip-ansi",
          "manifest": "explorer/package.json",
          "ecosystem": "npm",
          "version_constraint": "^7.2.0"
        },
        {
          "name": "tslib",
          "manifest": "explorer/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.8.1"
        },
        {
          "name": "zone.js",
          "manifest": "explorer/package.json",
          "ecosystem": "npm",
          "version_constraint": "~0.16.1"
        },
        {
          "name": "github.com/0magnet/coloredcobra",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.2"
        },
        {
          "name": "github.com/NYTimes/gziphandler",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.1.1"
        },
        {
          "name": "github.com/andreyvit/diff",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20170406064948-c7f18ee00883"
        },
        {
          "name": "github.com/bitfield/script",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.24.3"
        },
        {
          "name": "github.com/blang/semver",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.5.1+incompatible"
        },
        {
          "name": "github.com/briandowns/spinner",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.23.2"
        },
        {
          "name": "github.com/cenkalti/backoff",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.2.1+incompatible"
        },
        {
          "name": "github.com/gdamore/tcell/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.4.1"
        },
        {
          "name": "github.com/gogo/protobuf",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.3.2"
        },
        {
          "name": "github.com/google/go-cmp",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.7.0"
        },
        {
          "name": "github.com/google/gousb",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.1.3"
        },
        {
          "name": "github.com/google/uuid",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.6.0"
        },
        {
          "name": "github.com/gopherjs/gopherjs",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.21.0"
        },
        {
          "name": "github.com/mgutz/ansi",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20200706080929-d51e80ef957d"
        },
        {
          "name": "github.com/pelletier/go-toml/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.4.3"
        },
        {
          "name": "github.com/rs/cors",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.11.1"
        },
        {
          "name": "github.com/shopspring/decimal",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.4.0"
        },
        {
          "name": "github.com/sirupsen/logrus",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.9.4"
        },
        {
          "name": "github.com/skycoin/encodertest",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20190217072920-14c2e31898b9"
        },
        {
          "name": "github.com/skycoin/hardware-wallet-protob",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20250805154629-410561e1bc2f"
        },
        {
          "name": "github.com/skycoin/hardware-wallet/firmware",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20260117000250-43c66b2bf1d2"
        },
        {
          "name": "github.com/skycoin/skycoin-lite",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20190712083345-f5a3f17e6603"
        },
        {
          "name": "github.com/spf13/cobra",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.10.2"
        },
        {
          "name": "github.com/spf13/pflag",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.10"
        },
        {
          "name": "github.com/spf13/viper",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.21.0"
        },
        {
          "name": "github.com/stretchr/testify",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.11.1"
        },
        {
          "name": "github.com/toqueteos/webbrowser",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.2.1"
        },
        {
          "name": "go.etcd.io/bbolt",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.5.0"
        },
        {
          "name": "golang.org/x/term",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.45.0"
        },
        {
          "name": "golang.org/x/time",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.15.0"
        },
        {
          "name": "modernc.org/sqlite",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.34.0"
        },
        {
          "name": "bootstrap",
          "manifest": "cmd/skydex-client/package.json",
          "ecosystem": "npm",
          "version_constraint": "^5.3.3"
        },
        {
          "name": "qrcode.react",
          "manifest": "cmd/skydex-client/package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.2.0"
        },
        {
          "name": "react",
          "manifest": "cmd/skydex-client/package.json",
          "ecosystem": "npm",
          "version_constraint": "^18.3.1"
        },
        {
          "name": "react-dom",
          "manifest": "cmd/skydex-client/package.json",
          "ecosystem": "npm",
          "version_constraint": "^18.3.1"
        },
        {
          "name": "axios",
          "manifest": "electron/app/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.16.0"
        },
        {
          "name": "electron-context-menu",
          "manifest": "electron/app/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.9.1"
        },
        {
          "name": "electron-debug",
          "manifest": "electron/app/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.5.0"
        },
        {
          "name": "rxjs",
          "manifest": "electron/app/package.json",
          "ecosystem": "npm",
          "version_constraint": "^5.5.12"
        },
        {
          "name": "@angular/animations",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "^21.2.17"
        },
        {
          "name": "@angular/cdk",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "^21.2.2"
        },
        {
          "name": "@angular/common",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "^21.2.17"
        },
        {
          "name": "@angular/compiler",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "^21.2.17"
        },
        {
          "name": "@angular/core",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "^21.2.17"
        },
        {
          "name": "@angular/forms",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "^21.2.17"
        },
        {
          "name": "@angular/material",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "^21.2.2"
        },
        {
          "name": "@angular/platform-browser",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "^21.2.17"
        },
        {
          "name": "@angular/platform-browser-dynamic",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "^21.2.17"
        },
        {
          "name": "@angular/router",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "^21.2.17"
        },
        {
          "name": "@ngx-translate/core",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "^17.0.0"
        },
        {
          "name": "@ngx-translate/http-loader",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "^17.0.0"
        },
        {
          "name": "@popperjs/core",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.11.8"
        },
        {
          "name": "axios",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.16.0"
        },
        {
          "name": "bignumber.js",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "^10.0.2"
        },
        {
          "name": "bip39",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.1.0"
        },
        {
          "name": "bootstrap",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "^5.3.8"
        },
        {
          "name": "enhanced-resolve",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "5.20.0"
        },
        {
          "name": "font-awesome",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.7.0"
        },
        {
          "name": "hono",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.12.26"
        },
        {
          "name": "immutable",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "^5.1.5"
        },
        {
          "name": "js-yaml",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.1.1"
        },
        {
          "name": "lodash",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.17.23"
        },
        {
          "name": "moment",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.30.1"
        },
        {
          "name": "rxjs",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "^7.8.2"
        },
        {
          "name": "svgo",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.0.1"
        },
        {
          "name": "tslib",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.8.1"
        },
        {
          "name": "zone.js",
          "manifest": "src/skycoin-web/package.json",
          "ecosystem": "npm",
          "version_constraint": "~0.16.1"
        }
      ],
      "all_dependencies": {
        "error": "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
        "source": null,
        "packages": [],
        "collected": false,
        "truncated": false,
        "total_count": null,
        "direct_count": null,
        "indirect_count": null
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 0,
        "merged_prs": 0,
        "open_issues": 0,
        "closed_ratio": null,
        "closed_issues": 0,
        "closed_unmerged_prs": 0
      },
      "bus_factor": 2,
      "bot_contributors": 1,
      "top_contributors": [
        {
          "type": "User",
          "login": "gz-c",
          "commits": 2586,
          "avatar_url": "https://avatars.githubusercontent.com/u/26845312?v=4"
        },
        {
          "type": "User",
          "login": "iketheadore",
          "commits": 2429,
          "avatar_url": "https://avatars.githubusercontent.com/u/2589926?v=4"
        },
        {
          "type": "User",
          "login": "olemis",
          "commits": 554,
          "avatar_url": "https://avatars.githubusercontent.com/u/538253?v=4"
        },
        {
          "type": "User",
          "login": "Senyoret1",
          "commits": 460,
          "avatar_url": "https://avatars.githubusercontent.com/u/34079003?v=4"
        },
        {
          "type": "User",
          "login": "mahansky",
          "commits": 281,
          "avatar_url": "https://avatars.githubusercontent.com/u/1536298?v=4"
        },
        {
          "type": "User",
          "login": "0pcom",
          "commits": 276,
          "avatar_url": "https://avatars.githubusercontent.com/u/36607567?v=4"
        },
        {
          "type": "User",
          "login": "therealssj",
          "commits": 186,
          "avatar_url": "https://avatars.githubusercontent.com/u/8619106?v=4"
        },
        {
          "type": "User",
          "login": "Vavilen",
          "commits": 181,
          "avatar_url": "https://avatars.githubusercontent.com/u/1123476?v=4"
        },
        {
          "type": "User",
          "login": "stdevStark",
          "commits": 117,
          "avatar_url": "https://avatars.githubusercontent.com/u/35319430?v=4"
        },
        {
          "type": "User",
          "login": "spurserh",
          "commits": 102,
          "avatar_url": "https://avatars.githubusercontent.com/u/938337?v=4"
        }
      ],
      "contributors_sampled": 57,
      "top_contributor_share": 0.329
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "ci.yml",
        "docs.yml",
        "release.yml"
      ],
      "has_docs_dir": true,
      "linter_configs": [
        ".golangci.yaml",
        ".golangci.yml",
        "eslint.config.js"
      ],
      "has_editorconfig": true,
      "has_linter_config": true,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [
        "go.sum",
        "package-lock.json"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 4,
            "reason": "binaries present in source code",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 0,
            "reason": "branch protection not enabled on development/release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": null,
            "reason": "no pull request found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 0/30 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 10,
            "reason": "project has 12 contributing companies or organizations",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 10,
            "reason": "update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 0,
            "reason": "license file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 10,
            "reason": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": null,
            "reason": "packaging workflow not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 1,
            "reason": "dependency not pinned by hash detected -- score normalized to 1",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "no SAST tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 0,
            "reason": "security policy file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": null,
            "reason": "no releases found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 0,
            "reason": "20 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "a8217688ad6b6b58b970508fac72031f6715752d",
        "ran_at": "2026-07-28T01:04:30Z",
        "aggregate_score": 3.4,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": true
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-20T07:50:45Z",
      "oldest_open_prs": [],
      "last_merged_pr_at": null,
      "ci_last_conclusion": null,
      "oldest_open_issues": []
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/mrpalide/skycoin",
    "host": "github.com",
    "name": "skycoin",
    "owner": "mrpalide"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "at_risk",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 45,
      "inputs": {
        "security": 34,
        "vitality": 65,
        "community": 1,
        "governance": 42,
        "engineering": 73
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "moderate",
        "name": "Vitality",
        "value": 65,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "good",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 82,
            "inputs": {
              "commits_last_year": 480,
              "human_commit_share": 1,
              "days_since_last_push": 7,
              "active_weeks_last_year": 26
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 7 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 7
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "26/52 weeks with commits",
                "points": 18,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 26
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "480 commits in the last year",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 480
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "at_risk",
            "name": "Release discipline",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 40,
            "inputs": {
              "releases_count": 20,
              "latest_release_tag": "v0.27.1",
              "releases_from_tags": true,
              "days_since_latest_release": 2073,
              "mean_days_between_releases": 119.6
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "20 version tags (no GitHub releases)",
                "points": 16.2,
                "status": "partial",
                "details": [
                  {
                    "code": "version_tags_no_releases",
                    "params": {
                      "count": 20
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 2073 days ago",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 2073
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~119.6 days",
                "points": 19.8,
                "status": "partial",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 119.6
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "maintained",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": null,
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": 7,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "last human commit 7 days ago",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_maintained",
                    "params": {
                      "days": 7
                    }
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "critical",
        "name": "Community & Adoption",
        "value": 1,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "critical",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 1,
            "inputs": {
              "forks": 0,
              "stars": 0,
              "watchers": 0,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "0 stars",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "0 forks",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "0 watchers",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "critical",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 1,
            "inputs": {
              "has_readme": false,
              "has_license": false,
              "has_contributing": false,
              "has_issue_template": false,
              "has_code_of_conduct": false,
              "has_pull_request_template": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "no license file detected",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "license_absent",
                    "params": {}
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.3
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "at_risk",
        "name": "Sustainability & Governance",
        "value": 42,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "moderate",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 64,
            "inputs": {
              "bus_factor": 2,
              "contributors_sampled": 57,
              "top_contributor_share": 0.329
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "2 contributor(s) cover half of all commits",
                "points": 25.2,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 2
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 33% of commits",
                "points": 15.1,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 33
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "57 contributors",
                "points": 13.5,
                "status": "met",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 57
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 12 contributing companies or organizations",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "critical",
            "name": "Issue & PR responsiveness",
            "note": "Excluded from scoring (no data or not applicable): Issue resolution, PR acceptance. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "issue_resolution",
                    "pr_acceptance"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 1,
            "inputs": {
              "merged_prs": 0,
              "open_issues": 0,
              "closed_issues": 0,
              "issue_closed_ratio": null,
              "closed_unmerged_prs": 0
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "no issues or no data",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_issues_or_data",
                    "params": {}
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "no decided pull requests or no data",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_decided_prs_or_data",
                    "params": {}
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "moderate",
            "name": "Ownership & stewardship",
            "note": "Excluded from scoring (no data or not applicable): Verified domain. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "verified_domain"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 56,
            "inputs": {
              "followers": 67,
              "owner_type": "User",
              "is_verified": null,
              "owner_login": "mrpalide",
              "public_repos": 27,
              "account_age_days": 1987
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "personal (user) account",
                "points": 10,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_personal",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": "not applicable to user accounts",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_applicable_to_user_accounts",
                    "params": {}
                  }
                ],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "67 followers of mrpalide",
                "points": 13.2,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 67,
                      "login": "mrpalide"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "27 public repos, account ~5 yr old",
                "points": 21.4,
                "status": "partial",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 27
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 5
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "good",
        "name": "Engineering Quality",
        "value": 73,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "excellent",
            "name": "Engineering practices",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: CI-Tests. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_ci_tests"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 88,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": true,
              "has_linter_config": true,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "3 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 3
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": ".golangci.yaml, .golangci.yml, eslint.config.js",
                "points": 16,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".golangci.yaml, .golangci.yml, eslint.config.js"
                    }
                  }
                ],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 6.4,
                "status": "met",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "no pull request found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "moderate",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 50,
            "inputs": {
              "topics": [],
              "has_wiki": true,
              "homepage": "https://www.skycoin.com",
              "has_readme": false,
              "has_docs_dir": true,
              "has_description": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": "https://www.skycoin.com",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "at_risk",
        "name": "Security",
        "value": 34,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "at_risk",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): CI-Tests, Packaging, Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "ci_tests",
                    "packaging",
                    "signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 34,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 15,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 3,
              "scorecard_aggregate": 3.4
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "binaries present in source code",
                "points": 3,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection not enabled on development/release branches",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "no pull request found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 12 contributing companies or organizations",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "update tool detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow not detected",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 1",
                "points": 0.5,
                "status": "partial",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "no SAST tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "20 existing vulnerabilities detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 6
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "good",
        "name": "AI Readiness",
        "value": 78,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "excellent",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.84,
              "agent_instruction_files": [
                "vendor/github.com/clipperhouse/displaywidth/AGENTS.md",
                "vendor/github.com/gdamore/tcell/v3/AGENTS.md",
                "vendor/github.com/pelletier/go-toml/v2/AGENTS.md"
              ],
              "agent_instruction_max_bytes": 2974
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "vendor/github.com/clipperhouse/displaywidth/AGENTS.md, vendor/github.com/gdamore/tcell/v3/AGENTS.md, vendor/github.com/pelletier/go-toml/v2/AGENTS.md",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "vendor/github.com/clipperhouse/displaywidth/AGENTS.md, vendor/github.com/gdamore/tcell/v3/AGENTS.md, vendor/github.com/pelletier/go-toml/v2/AGENTS.md"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "84 of 100 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 84,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "good",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 78,
            "inputs": {
              "has_nix": true,
              "has_tests": true,
              "lockfiles": [
                "go.sum",
                "package-lock.json"
              ],
              "has_dockerfile": true,
              "typed_language": true,
              "bootstrap_files": [
                "Makefile",
                "cmd/skydex-client/Makefile",
                "explorer/Makefile",
                "src/skycoin-lite/Makefile",
                "src/skycoin-web/Makefile",
                "vendor/github.com/briandowns/spinner/Makefile",
                "vendor/github.com/gogo/protobuf/proto/Makefile",
                "vendor/github.com/itchyny/gojq/Makefile",
                "vendor/github.com/itchyny/timefmt-go/Makefile",
                "vendor/github.com/sagikazarmark/locafero/justfile",
                "vendor/github.com/spf13/cast/Makefile",
                "vendor/github.com/spf13/cobra/Makefile",
                "vendor/github.com/spf13/viper/Makefile",
                "vendor/github.com/stretchr/objx/Taskfile.yml",
                "vendor/go.etcd.io/bbolt/Makefile",
                "vendor/modernc.org/gc/v3/Makefile",
                "vendor/modernc.org/libc/Makefile",
                "vendor/modernc.org/mathutil/Makefile",
                "vendor/modernc.org/memory/Makefile",
                "vendor/modernc.org/sqlite/Makefile",
                "vendor/modernc.org/strutil/Makefile",
                "vendor/modernc.org/token/Makefile"
              ],
              "has_devcontainer": false,
              "has_linter_config": true,
              "typecheck_configs": [
                "explorer/test/tsconfig.json",
                "explorer/tsconfig.json",
                "src/gui/static/tsconfig.json",
                "src/skycoin-web/tsconfig.json"
              ],
              "agent_commit_share": 0,
              "toolchain_manifests": [
                "go.mod"
              ],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": "Makefile, cmd/skydex-client/Makefile, explorer/Makefile, src/skycoin-lite/Makefile, src/skycoin-web/Makefile, vendor/github.com/briandowns/spinner/Makefile, vendor/github.com/gogo/protobuf/proto/Makefile, vendor/github.com/itchyny/gojq/Makefile, vendor/github.com/itchyny/timefmt-go/Makefile, vendor/github.com/sagikazarmark/locafero/justfile, vendor/github.com/spf13/cast/Makefile, vendor/github.com/spf13/cobra/Makefile, vendor/github.com/spf13/viper/Makefile, vendor/github.com/stretchr/objx/Taskfile.yml, vendor/go.etcd.io/bbolt/Makefile, vendor/modernc.org/gc/v3/Makefile, vendor/modernc.org/libc/Makefile, vendor/modernc.org/mathutil/Makefile, vendor/modernc.org/memory/Makefile, vendor/modernc.org/sqlite/Makefile, vendor/modernc.org/strutil/Makefile, vendor/modernc.org/token/Makefile",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Makefile, cmd/skydex-client/Makefile, explorer/Makefile, src/skycoin-lite/Makefile, src/skycoin-web/Makefile, vendor/github.com/briandowns/spinner/Makefile, vendor/github.com/gogo/protobuf/proto/Makefile, vendor/github.com/itchyny/gojq/Makefile, vendor/github.com/itchyny/timefmt-go/Makefile, vendor/github.com/sagikazarmark/locafero/justfile, vendor/github.com/spf13/cast/Makefile, vendor/github.com/spf13/cobra/Makefile, vendor/github.com/spf13/viper/Makefile, vendor/github.com/stretchr/objx/Taskfile.yml, vendor/go.etcd.io/bbolt/Makefile, vendor/modernc.org/gc/v3/Makefile, vendor/modernc.org/libc/Makefile, vendor/modernc.org/mathutil/Makefile, vendor/modernc.org/memory/Makefile, vendor/modernc.org/sqlite/Makefile, vendor/modernc.org/strutil/Makefile, vendor/modernc.org/token/Makefile"
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": ".golangci.yaml, .golangci.yml, eslint.config.js",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".golangci.yaml, .golangci.yml, eslint.config.js"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "explorer/test/tsconfig.json, explorer/tsconfig.json, src/gui/static/tsconfig.json, src/skycoin-web/tsconfig.json",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "explorer/test/tsconfig.json, explorer/tsconfig.json, src/gui/static/tsconfig.json, src/skycoin-web/tsconfig.json"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "Dockerfile, Nix, lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Dockerfile, Nix, lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "no agent-authored commits among the last 100",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_authored_commits",
                    "params": {
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "dependency automation configured, none observed in the sampled commits",
                "points": 5,
                "status": "partial",
                "details": [
                  {
                    "code": "dependency_bot_config_only",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 1",
                "points": 1,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 99,
            "inputs": {
              "primary_language": "Go",
              "largest_source_bytes": 2646851,
              "source_files_sampled": 988,
              "oversized_source_files": 14
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "Go (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Go"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "14/988 source files over 60KB",
                "points": 54.2,
                "status": "partial",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 988,
                      "oversized": 14
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          },
          {
            "key": "ai_interfaces",
            "band": "at_risk",
            "name": "Machine-readable interfaces",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "example_dirs": [
                "example"
              ],
              "has_mcp_signal": false,
              "api_schema_files": []
            },
            "components": [
              {
                "key": "api_schema_openapi_graphql_proto",
                "name": "API schema (OpenAPI/GraphQL/proto)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 40
              },
              {
                "key": "mcp_server",
                "name": "MCP server",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "runnable_examples",
                "name": "Runnable examples",
                "detail": "example",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "example"
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "Community profile unavailable",
    "go package 'github.com/skycoin/skycoin' points at a different repository (https://github.com/skycoin/skycoin); excluded from ecosystem scoring",
    "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-28T01:05:02.122581Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/m/mrpalide/skycoin.svg",
  "full_name": "mrpalide/skycoin",
  "license_state": "absent",
  "license_spdx": null
}

评分是信号,而非担保。 评分反映的是 GitHub 上公开可见的实践——不是代码审计,也不是安全保证。

缺失数据将被剔除并重新归一化权重,绝不按零分计。方法论已版本化并公开:指标 v1.13.0、模式 v0.27.0—— 完整方法论 · 指标知识库.

单项结果在整体记录中的位置: 汇总统计Go.