公开记录
软件健康报告模式 0.27.0 · 指标 1.13.0 · 2026-07-29 16:32 UTC

nemarOrg / nemar-cli

CLI for NEMAR dataset management

TypeScript自定义许可证★ 0 星标⑂ 1 复刻始于 2026年1月在 GitHub 上查看 ↗

nemarOrg/nemar-cli 的健康指数为 100 分中的 62 分,处于「中等」区间。 其得分最高的类别是Vitality(90/100),最低的是Community & Adoption(35/100)。 最近一次更新在 3 天前。 近期的大部分工作由 1 位贡献者完成。

62
总分 / 100
中等

软件健康指数

指标归入加权类别,统一采用 1–100 量表。总体分先取类别加权平均;当公开证据触发高风险司法辖区政策时,评级会按政策调整,并设置 49(有风险)的上限。AI 就绪度不计入总体分。

62
优秀85-100堪称典范;基本满足所有检验标准
良好70-84健康;仅有轻微不足
中等50-69可接受,但存在明显不足;建议进行审查
存在风险30-49存在重大薄弱环节;采用时应保持审慎
危急1-29问题严重(项目被弃置、仅有单一维护者、缺乏基本工程规范)
活力社区与采用可持续性与治理工程质量安全AI 就绪度

评分画像

每条轴代表一个类别。形状比平均值更重要——健康的对象会填满整个图形,而“一峰一谷”式画像意味着某一维度的优势正掩盖另一维度的风险。

所有权

0 关注者7 个公开仓库始于 2026年2月

该仓库由组织支持——共同承担、可问责的托管责任,可延续于任何单一维护者之后。

软件包生态系统

注册表软件包版本月下载量版本数最近发布标签
npmnemar-cli0.9.640,0801,3763 天前nemarbidsneuroimagingeegemgdataladcli

按类别列示的指标

活力

项目是否仍有生命——是否仍在编写代码,是否仍在发布版本?

90优秀 · 占总体的 22%
评分方式
36/36推送新近度 — 最近一次推送于 3 天前
18.7/36提交节奏 — 52 周中有 27 周有提交
18/18提交量 — 最近一年 1,465 次提交
10/10OpenSSF Scorecard:Maintained — 30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
所用输入
commits_last_year1,465
human_commit_share1
days_since_last_push3
active_weeks_last_year27

发布纪律

100优秀
评分方式
27/27有发布版本 — 已发布 100 个发布版本
36/36发布时效 — 最近一次发布版本于 3 天前
27/27发布节奏 — 约每 2.9 天发布一次
0/10OpenSSF Scorecard:Signed-Releases — 无数据
所用输入
releases_count100
latest_release_tagv0.9.6
releases_from_tags
days_since_latest_release3
mean_days_between_releases2.9
已排除计分(无数据或不适用):OpenSSF Scorecard:Signed-Releases。 其余权重已重新归一化。

社区与采用

项目是否拥有用户、下载量与关注度,并具备欢迎贡献者参与的配置?

35存在风险 · 占总体的 18%
评分方式
0/60星标 — 0 个星标
0/25复刻 — 1 个复刻
0/15关注者 — 0 位关注者
所用输入
forks1
stars0
watchers0
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history

社区健康

44存在风险
评分方式
22.5/22.5README
16.9/22.5许可证 — 存在许可证文件,但不是可识别的许可证
0/18CONTRIBUTING 指南
0/13.5行为准则
0/7.2议题模板
0/6.3PR 模板
所用输入
has_readme
has_license
has_contributing
has_issue_template
has_code_of_conduct
has_pull_request_template
评分方式
61.4/80月度下载量 — npm 合计每月 40,080 次下载
0/20注册表被依赖数 — 该生态系统不报告此项
所用输入
packagesnemar-cli
dependents
ecosystemsnpm
total_downloads
monthly_downloads40,080
已排除计分(无数据或不适用):注册表被依赖数。 其余权重已重新归一化。

可持续性与治理

项目能否在其成员之外延续——巴士系数、响应能力、由谁支持,以及软件包的维护状况?

55中等 · 占总体的 24%
评分方式
9/54巴士系数 — 1 位贡献者贡献了半数提交
0/22.5提交分布 — 头号贡献者编写了 100% 的提交
2.7/13.5贡献者广度 — 2 位贡献者
10/10OpenSSF Scorecard:Contributors — project has 13 contributing companies or organizations
所用输入
bus_factor1
contributors_sampled2
top_contributor_share0.998
评分方式
39.5/46.8议题解决 — 84% 的议题已关闭
37.8/38.3PR 接受 — 已裁定的 PR 中 530/536 已合并
0/15OpenSSF Scorecard:Code-Review — Found 0/12 approved changesets -- score normalized to 0
所用输入
merged_prs530
open_issues78
closed_issues423
issue_closed_ratio0.844
closed_unmerged_prs6
评分方式
30/30所有权背书 — 组织持有
0/20已验证域名
0/25所有者影响力 — nemarOrg 有 0 位关注者
7.5/25既往记录 — 7 个公开仓库,账户约 0 年
所用输入
followers0
owner_typeOrganization
is_verified
owner_loginnemarOrg
public_repos7
account_age_days169
评分方式
25/25已发布且可解析 — npm 上有 1 个软件包
35/35发布时效 — 最近一次发布于 3 天前
20/20版本历史 — 1,376 个已发布版本
20/20未被弃用 — 活跃,未被弃用或撤回
所用输入
packagesnemar-cli
ecosystemsnpm
any_deprecated
min_days_since_publish3

工程质量

基础的工程与文档实践是否到位?

72良好 · 占总体的 20%

工程实践

84良好
评分方式
24/24CI 工作流 — 9 个工作流
24/24存在测试
16/16Linter 配置 — biome.json
0/9.6Pre-commit 钩子
0/6.4.editorconfig
20/20OpenSSF Scorecard:CI-Tests — 10 out of 10 merged PRs checked by a CI test -- score normalized to 10
所用输入
has_ci
has_tests
has_editorconfig
has_linter_config
has_precommit_config

文档

55中等
评分方式
30/30README
0/25文档目录
15/15文档 / 主页站点 — https://docs.nemar.org
10/10仓库描述
0/10主题标签
0/10Wiki
所用输入
topics
has_wiki
homepagehttps://docs.nemar.org
has_readme
has_docs_dir
has_description

安全

可见的安全与供应链实践是否稳固,且不存在未解决的高风险司法辖区暴露?

52中等 · 占总体的 16%

安全态势

40存在风险
评分方式
7.5/7.5Binary-Artifacts — no binaries found in the repo
2.2/7.5Branch-Protection — branch protection is not maximal on development and all release branches
2.5/2.5CI-Tests — 10 out of 10 merged PRs checked by a CI test -- score normalized to 10
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 0/12 approved changesets -- score normalized to 0
2.5/2.5Contributors — project has 13 contributing companies or organizations
10/10Dangerous-Workflow — no dangerous workflow patterns detected
0/7.5Dependency-Update-Tool — no update tool detected
0/5Fuzzing — project is not fuzzed
2.2/2.5许可证 — license file detected
7.5/7.5Maintained — 30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
5/5Packaging — packaging workflow detected
0/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
0/5SAST — SAST tool is not run on all commits -- score normalized to 0
0/5Security-Policy — security policy file not detected
0/7.5Signed-Releases — 无数据
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
0/7.5Vulnerabilities — 56 existing vulnerabilities detected
所用输入
sourceopenssf_scorecard
checks_evaluated17
scorecard_versionv5.5.0
checks_inconclusive1
scorecard_aggregate4.1
已排除计分(无数据或不适用):signed_releases。 其余权重已重新归一化。
评分方式
35/35直接依赖不含已知公告 — 没有直接依赖携带已知公告
25/25间接依赖不含已知公告 — 没有间接依赖携带已知公告
0/40没有长期未处理的公告 — 没有公告带有发布日期
所用输入
sourceosv
advisories0
affected_packages0
assessed_packages86
unassessed_packages0
affected_by_severitynone
direct_affected_packages0
已排除计分(无数据或不适用):没有长期未处理的公告。 其余权重已重新归一化。 比对的是 npm:nemar-cli@0.9.6 的运行时依赖闭包——安装已发布的软件包时真正被拉取进来的内容——共 86 个软件包。 未对可达性进行分析。

AI 就绪度

该仓库在多大程度上具备与 AI 编码代理协同开发与维护的条件?这是一枚独立的实验性徽章——权重为 0.0,因此单独呈现,不影响总体健康评分。

65中等 · 占总体的 0%
评分方式
45/45代理指令 — AGENTS.md, CLAUDE.md
0/15机器可读文档(llms.txt)
40/40可读的提交历史 — 100 次人类提交中有 90 次说明了意图(结构化标题或解释性正文)
所用输入
has_llms_txt
legible_history_share0.9
agent_instruction_filesAGENTS.md, CLAUDE.md
agent_instruction_max_bytes30,651
评分方式
0/18一条命令的引导启动
22/22自动化测试
11/11Lint / 格式化配置 — biome.json
11/11静态类型检查 — backend/tsconfig.json, tsconfig.json
0/10可复现环境
2/10已体现的代理实践 — 最近 100 次提交中有 1 次由代理编写或署名代理
0/8自动化维护 — 未观察到自动依赖更新
0/10OpenSSF Scorecard:Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
所用输入
has_nix
has_tests
lockfiles
has_dockerfile
typed_language
bootstrap_files
has_devcontainer
has_linter_config
typecheck_configsbackend/tsconfig.json, tsconfig.json
agent_commit_share0.01
toolchain_manifests
dependency_bot_commit_share0
评分方式
45/45可类型检查的代码 — TypeScript(静态类型)
54.1/55可控的文件大小 — 采样的 417 个源文件中有 7 个超过 60KB
所用输入
primary_languageTypeScript
largest_source_bytes220,138
source_files_sampled417
oversized_source_files7

机器可读接口

40存在风险
评分方式
0/40API 模式(OpenAPI/GraphQL/proto)
0/20MCP 服务器
40/40可运行示例 — examples
所用输入
example_dirsexamples
has_mcp_signal
api_schema_files

关键数据

0GitHub 星标
2贡献者
1,465最近 12 个月提交数
3距最近推送天数
100发布版本数
1巴士系数(bus factor)
78开放议题
npm软件包生态系统数

数据采集警告

  • GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

更多细节

OpenSSF Scorecard 4.1 / 10
4.1综合

来自开源项目 OpenSSF Scorecard 的独立、工具无关的安全评估。每项检查奖励的是安全实践本身,而非特定供应商的工具。Scorecard 无法判定的检查项标记为 不适用,并从安全评分中剔除(绝不按零分计)。Scorecard v5.5.0 · 2026-07-29 16:32 UTC

10Binary-Artifactsno binaries found in the repo
3Branch-Protectionbranch protection is not maximal on development and all release branches
10CI-Tests10 out of 10 merged PRs checked by a CI test -- score normalized to 10
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 0/12 approved changesets -- score normalized to 0
10Contributorsproject has 13 contributing companies or organizations
10Dangerous-Workflowno dangerous workflow patterns detected
0Dependency-Update-Toolno update tool detected
0Fuzzingproject is not fuzzed
9Licenselicense file detected
10Maintained30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
10Packagingpackaging workflow detected
0Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 0
0SASTSAST tool is not run on all commits -- score normalized to 0
0Security-Policysecurity policy file not detected
不适用Signed-Releasesno releases found
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
0Vulnerabilities56 existing vulnerabilities detected
直接依赖 12
注册表软件包版本约束清单文件
npmhono^4.6.0backend/package.json
npmzod^3.23.0backend/package.json
npm@hono/zod-validator^0.4.0backend/package.json
npmbcryptjs^2.4.3backend/package.json
npmaws4fetch^1.0.20backend/package.json
npmchalk^5.3.0package.json
npmcommander^12.1.0package.json
npmconf^13.0.1package.json
npmfuse.js^7.1.0package.json
npminquirer^9.2.15package.json
npmora^8.0.1package.json
npmzod^3.23.8package.json
全部依赖 未采集

本报告未能采集到解析后的依赖集合:GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

依赖安全公告 0

安装 npm:nemar-cli@0.9.6 会引入 86 个包(直接与传递):其中 0 个存在已知公告,0 个为直接依赖。

没有已知公告影响已评估的依赖。

公告表示依赖图中记录的版本落入某条公告的受影响范围。可达性未经分析,且依赖图包含开发与测试的版本固定——某项发现可能只涉及工具链而非交付的软件。

原始 JSON 报告 机器可读
{
  "data": {
    "repo": {
      "topics": [],
      "is_fork": false,
      "size_kb": 4381,
      "has_wiki": false,
      "homepage": "https://docs.nemar.org",
      "languages": {
        "Shell": 125885,
        "JavaScript": 9981,
        "TypeScript": 4568216
      },
      "pushed_at": "2026-07-25T23:31:31Z",
      "created_at": "2026-01-14T05:11:06Z",
      "owner_type": "Organization",
      "updated_at": "2026-07-25T18:37:44Z",
      "description": "CLI for NEMAR dataset management",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": null,
      "default_branch": "main",
      "license_spdx_raw": "NOASSERTION",
      "primary_language": "TypeScript",
      "significant_languages": [
        "TypeScript"
      ]
    },
    "owner": {
      "blog": "https://nemar.org",
      "name": "NEMAR Organization",
      "type": "Organization",
      "login": "nemarOrg",
      "company": null,
      "location": "United States of America",
      "followers": 0,
      "avatar_url": "https://avatars.githubusercontent.com/u/260529202?v=4",
      "created_at": "2026-02-09T22:00:58Z",
      "is_verified": null,
      "public_repos": 7,
      "account_age_days": 169
    },
    "license": {
      "state": "custom",
      "spdx_id": null,
      "raw_spdx": "NOASSERTION",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v0.9.6",
          "kind": "patch",
          "published_at": "2026-07-25T18:37:42Z"
        },
        {
          "tag": "v0.9.5",
          "kind": "patch",
          "published_at": "2026-07-24T22:13:21Z"
        },
        {
          "tag": "v0.9.4",
          "kind": "patch",
          "published_at": "2026-07-23T00:37:05Z"
        },
        {
          "tag": "v0.9.3",
          "kind": "patch",
          "published_at": "2026-07-22T22:21:28Z"
        },
        {
          "tag": "v0.9.2",
          "kind": "patch",
          "published_at": "2026-07-22T00:44:31Z"
        },
        {
          "tag": "v0.9.1",
          "kind": "patch",
          "published_at": "2026-07-21T23:18:43Z"
        },
        {
          "tag": "v0.9.0",
          "kind": "minor",
          "published_at": "2026-07-21T00:58:43Z"
        },
        {
          "tag": "v0.8.75",
          "kind": "patch",
          "published_at": "2026-06-30T05:48:42Z"
        },
        {
          "tag": "v0.8.74",
          "kind": "patch",
          "published_at": "2026-06-30T03:40:31Z"
        },
        {
          "tag": "v0.8.73",
          "kind": "patch",
          "published_at": "2026-06-29T18:51:15Z"
        },
        {
          "tag": "v0.8.72",
          "kind": "patch",
          "published_at": "2026-06-28T22:46:04Z"
        },
        {
          "tag": "v0.8.71",
          "kind": "patch",
          "published_at": "2026-06-28T22:18:41Z"
        },
        {
          "tag": "v0.8.70",
          "kind": "patch",
          "published_at": "2026-06-27T06:55:06Z"
        },
        {
          "tag": "v0.8.69",
          "kind": "patch",
          "published_at": "2026-06-21T20:08:17Z"
        },
        {
          "tag": "v0.8.68",
          "kind": "patch",
          "published_at": "2026-06-21T06:36:18Z"
        },
        {
          "tag": "v0.8.67",
          "kind": "patch",
          "published_at": "2026-06-20T23:29:02Z"
        },
        {
          "tag": "v0.8.66",
          "kind": "patch",
          "published_at": "2026-06-20T21:37:20Z"
        },
        {
          "tag": "v0.8.65",
          "kind": "patch",
          "published_at": "2026-06-20T20:32:41Z"
        },
        {
          "tag": "v0.8.64",
          "kind": "patch",
          "published_at": "2026-06-20T19:37:46Z"
        },
        {
          "tag": "v0.8.63",
          "kind": "patch",
          "published_at": "2026-06-20T17:49:30Z"
        },
        {
          "tag": "v0.8.62",
          "kind": "patch",
          "published_at": "2026-06-19T00:21:08Z"
        },
        {
          "tag": "v0.8.61",
          "kind": "patch",
          "published_at": "2026-06-18T04:28:16Z"
        },
        {
          "tag": "v0.8.60",
          "kind": "patch",
          "published_at": "2026-06-18T04:05:12Z"
        },
        {
          "tag": "v0.8.59",
          "kind": "patch",
          "published_at": "2026-06-18T03:01:29Z"
        },
        {
          "tag": "v0.8.58",
          "kind": "patch",
          "published_at": "2026-06-18T01:25:27Z"
        },
        {
          "tag": "v0.8.57",
          "kind": "patch",
          "published_at": "2026-06-17T21:25:19Z"
        },
        {
          "tag": "v0.8.56",
          "kind": "patch",
          "published_at": "2026-06-17T19:47:35Z"
        },
        {
          "tag": "v0.8.55",
          "kind": "patch",
          "published_at": "2026-06-17T13:47:55Z"
        },
        {
          "tag": "v0.8.54",
          "kind": "patch",
          "published_at": "2026-06-17T07:17:53Z"
        },
        {
          "tag": "v0.8.53",
          "kind": "patch",
          "published_at": "2026-06-17T00:42:19Z"
        },
        {
          "tag": "v0.8.52",
          "kind": "patch",
          "published_at": "2026-06-09T17:10:49Z"
        },
        {
          "tag": "v0.8.51",
          "kind": "patch",
          "published_at": "2026-06-09T02:16:06Z"
        },
        {
          "tag": "v0.8.50",
          "kind": "patch",
          "published_at": "2026-06-08T15:22:45Z"
        },
        {
          "tag": "v0.8.49",
          "kind": "patch",
          "published_at": "2026-06-08T05:03:17Z"
        },
        {
          "tag": "v0.8.48",
          "kind": "patch",
          "published_at": "2026-06-07T17:54:27Z"
        },
        {
          "tag": "v0.8.47",
          "kind": "patch",
          "published_at": "2026-06-05T01:26:54Z"
        },
        {
          "tag": "v0.8.46",
          "kind": "patch",
          "published_at": "2026-06-03T06:46:57Z"
        },
        {
          "tag": "v0.8.45",
          "kind": "patch",
          "published_at": "2026-06-03T05:18:49Z"
        },
        {
          "tag": "v0.8.44",
          "kind": "patch",
          "published_at": "2026-06-03T00:38:54Z"
        },
        {
          "tag": "v0.8.43",
          "kind": "patch",
          "published_at": "2026-06-02T23:09:08Z"
        },
        {
          "tag": "v0.8.42",
          "kind": "patch",
          "published_at": "2026-06-02T19:59:53Z"
        },
        {
          "tag": "v0.8.41",
          "kind": "patch",
          "published_at": "2026-06-02T19:24:44Z"
        },
        {
          "tag": "v0.8.40",
          "kind": "patch",
          "published_at": "2026-06-01T23:57:52Z"
        },
        {
          "tag": "v0.8.39",
          "kind": "patch",
          "published_at": "2026-05-28T16:33:25Z"
        },
        {
          "tag": "v0.8.38",
          "kind": "patch",
          "published_at": "2026-05-27T18:37:24Z"
        },
        {
          "tag": "v0.8.37",
          "kind": "patch",
          "published_at": "2026-05-27T13:56:22Z"
        },
        {
          "tag": "v0.8.36",
          "kind": "patch",
          "published_at": "2026-05-27T01:47:14Z"
        },
        {
          "tag": "v0.8.35",
          "kind": "patch",
          "published_at": "2026-05-26T21:20:41Z"
        },
        {
          "tag": "v0.8.34",
          "kind": "patch",
          "published_at": "2026-05-23T17:34:41Z"
        },
        {
          "tag": "v0.8.33",
          "kind": "patch",
          "published_at": "2026-05-23T14:42:42Z"
        },
        {
          "tag": "v0.8.32",
          "kind": "patch",
          "published_at": "2026-05-23T14:13:34Z"
        },
        {
          "tag": "v0.8.31",
          "kind": "patch",
          "published_at": "2026-05-23T04:13:40Z"
        },
        {
          "tag": "v0.8.30",
          "kind": "patch",
          "published_at": "2026-05-23T03:05:09Z"
        },
        {
          "tag": "v0.8.29",
          "kind": "patch",
          "published_at": "2026-05-22T22:12:38Z"
        },
        {
          "tag": "v0.8.28",
          "kind": "patch",
          "published_at": "2026-05-22T21:48:47Z"
        },
        {
          "tag": "v0.8.27",
          "kind": "patch",
          "published_at": "2026-05-22T19:39:39Z"
        },
        {
          "tag": "v0.8.26",
          "kind": "patch",
          "published_at": "2026-05-18T15:46:49Z"
        },
        {
          "tag": "v0.8.25",
          "kind": "patch",
          "published_at": "2026-05-18T12:30:45Z"
        },
        {
          "tag": "v0.8.24",
          "kind": "patch",
          "published_at": "2026-05-18T12:01:47Z"
        },
        {
          "tag": "v0.8.23",
          "kind": "patch",
          "published_at": "2026-05-18T11:50:37Z"
        },
        {
          "tag": "v0.8.22",
          "kind": "patch",
          "published_at": "2026-05-18T11:21:25Z"
        },
        {
          "tag": "v0.8.21",
          "kind": "patch",
          "published_at": "2026-05-18T10:42:14Z"
        },
        {
          "tag": "v0.8.20",
          "kind": "patch",
          "published_at": "2026-05-18T09:35:23Z"
        },
        {
          "tag": "v0.8.19",
          "kind": "patch",
          "published_at": "2026-05-16T08:08:54Z"
        },
        {
          "tag": "v0.8.18",
          "kind": "patch",
          "published_at": "2026-05-16T07:19:34Z"
        },
        {
          "tag": "v0.8.17",
          "kind": "patch",
          "published_at": "2026-05-15T19:25:11Z"
        },
        {
          "tag": "v0.8.16",
          "kind": "patch",
          "published_at": "2026-05-14T19:36:46Z"
        },
        {
          "tag": "v0.8.15",
          "kind": "patch",
          "published_at": "2026-05-14T18:14:50Z"
        },
        {
          "tag": "v0.8.14",
          "kind": "patch",
          "published_at": "2026-05-14T12:52:06Z"
        },
        {
          "tag": "v0.8.13",
          "kind": "patch",
          "published_at": "2026-05-13T07:03:46Z"
        },
        {
          "tag": "v0.8.12",
          "kind": "patch",
          "published_at": "2026-05-13T06:34:20Z"
        },
        {
          "tag": "v0.8.11",
          "kind": "patch",
          "published_at": "2026-05-12T03:47:54Z"
        },
        {
          "tag": "v0.8.10",
          "kind": "patch",
          "published_at": "2026-05-11T14:47:26Z"
        },
        {
          "tag": "v0.8.9",
          "kind": "patch",
          "published_at": "2026-05-11T05:12:10Z"
        },
        {
          "tag": "v0.8.8",
          "kind": "patch",
          "published_at": "2026-04-30T17:14:42Z"
        },
        {
          "tag": "v0.8.7",
          "kind": "patch",
          "published_at": "2026-04-29T22:24:02Z"
        },
        {
          "tag": "v0.8.6",
          "kind": "patch",
          "published_at": "2026-04-29T01:05:04Z"
        },
        {
          "tag": "v0.8.5",
          "kind": "patch",
          "published_at": "2026-04-28T23:35:16Z"
        },
        {
          "tag": "v0.8.4",
          "kind": "patch",
          "published_at": "2026-04-28T20:53:13Z"
        },
        {
          "tag": "v0.8.3",
          "kind": "patch",
          "published_at": "2026-04-28T07:00:21Z"
        },
        {
          "tag": "v0.8.2",
          "kind": "patch",
          "published_at": "2026-04-27T23:03:37Z"
        },
        {
          "tag": "v0.8.1",
          "kind": "patch",
          "published_at": "2026-04-27T16:55:26Z"
        },
        {
          "tag": "v0.8.0",
          "kind": "minor",
          "published_at": "2026-04-26T20:39:52Z"
        },
        {
          "tag": "v0.7.26-dev",
          "kind": "prerelease",
          "published_at": "2026-04-04T06:55:22Z"
        },
        {
          "tag": "v0.7.25",
          "kind": "patch",
          "published_at": "2026-04-01T15:42:09Z"
        },
        {
          "tag": "v0.7.23",
          "kind": "patch",
          "published_at": "2026-03-21T22:16:07Z"
        },
        {
          "tag": "v0.7.22",
          "kind": "patch",
          "published_at": "2026-03-20T19:42:23Z"
        },
        {
          "tag": "v0.7.20",
          "kind": "patch",
          "published_at": "2026-03-18T03:15:16Z"
        },
        {
          "tag": "v0.7.19",
          "kind": "patch",
          "published_at": "2026-03-14T14:11:18Z"
        },
        {
          "tag": "v0.7.18",
          "kind": "patch",
          "published_at": "2026-03-14T10:29:29Z"
        },
        {
          "tag": "v0.7.14",
          "kind": "patch",
          "published_at": "2026-03-08T06:37:55Z"
        },
        {
          "tag": "v0.7.11",
          "kind": "patch",
          "published_at": "2026-03-04T18:51:16Z"
        },
        {
          "tag": "v0.7.1",
          "kind": "patch",
          "published_at": "2026-03-04T04:19:32Z"
        },
        {
          "tag": "v0.6.5",
          "kind": "patch",
          "published_at": "2026-02-26T07:20:24Z"
        },
        {
          "tag": "v0.6.4",
          "kind": "patch",
          "published_at": "2026-02-25T11:52:18Z"
        },
        {
          "tag": "v0.6.3",
          "kind": "patch",
          "published_at": "2026-02-24T12:51:16Z"
        },
        {
          "tag": "v0.6.0",
          "kind": "minor",
          "published_at": "2026-02-18T20:02:51Z"
        },
        {
          "tag": "v0.5.2",
          "kind": "patch",
          "published_at": "2026-02-14T05:54:49Z"
        },
        {
          "tag": "v0.4.0",
          "kind": "minor",
          "published_at": "2026-02-12T07:20:16Z"
        },
        {
          "tag": "v0.3.7",
          "kind": "patch",
          "published_at": "2026-01-23T15:21:34Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "ca216a626106015fcc6624e800641b71c0f2e61f",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.6",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-25T18:37:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "767316e2f733a5b68e5b5151d79b2e65ba784477",
          "body": "Release 0.9.6: notice level vocabulary + same-day expiry fix",
          "is_bot": false,
          "headline": "Merge pull request #1028 from nemarOrg/dev",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-25T18:37:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d31c87bb322666ce174f4750b70345abcae6e575",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.6-dev3",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-25T18:31:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "429e6d2ea46e90018335c05b1bf36e449b7d30dd",
          "body": "Guard against unparseable notice expiry",
          "is_bot": false,
          "headline": "Merge pull request #1029 from nemarOrg/fix/notice-expiry-roundtrip-guard",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-25T18:30:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "18baa0b1b28e4a3878fe950bdc757f9ef3dd39e4",
          "body": null,
          "is_bot": false,
          "headline": "Guard against unparseable notice expiry",
          "author_name": "Seyed Yahya Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-25T18:26:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e8f4ff5edbb83d70797ade130bfc9fc50494542c",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.6-dev2",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-25T17:33:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a93d3303bc982d54032951069d72415c7abdd571",
          "body": "Fix same-day notice expiry",
          "is_bot": false,
          "headline": "Merge pull request #1027 from nemarOrg/fix/issue-1024-notice-expiry",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-25T17:32:58Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "257addfd16911192d5a5be0cdc1b57417ea4f01e",
          "body": null,
          "is_bot": false,
          "headline": "Normalize notice expiry timestamps",
          "author_name": "Seyed Yahya Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-25T17:22:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b343bcba15342539798329df4c40f3a204a66750",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.6-dev1",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-25T15:54:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d1fb0099109eaa916f6713697d2ad1080ab0726b",
          "body": "Widen the notice level vocabulary",
          "is_bot": false,
          "headline": "Merge pull request #1026 from nemarOrg/feature/issue-1025-notice-levels",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-25T15:54:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8fadda4573cae2390a16ebcd0c5bb81c1f0d34bb",
          "body": null,
          "is_bot": false,
          "headline": "Pin NOTICE_LEVELS in the api export surface",
          "author_name": "Seyed Yahya Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-25T15:51:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "67cc056405994a96085ed5a9726ffa32a1f7df5b",
          "body": null,
          "is_bot": false,
          "headline": "Widen notice level vocabulary",
          "author_name": "Seyed Yahya Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-25T15:44:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1ba479052897afe57549dbce63e611a28c083990",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.6-dev0",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-24T22:14:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "784f57cea99c53c20aba71057c46b8b967d76273",
          "body": null,
          "is_bot": false,
          "headline": "chore: sync dev with main after v0.9.5",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-24T22:14:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "810f214c59a28b2ca568028a91458e7c9f6ce949",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.5",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-24T22:13:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "50588f1be9bee4eca8e1601dfbb52dc34545eb10",
          "body": "Promote dev to main: tiered access + /auth/me profile fields",
          "is_bot": false,
          "headline": "Merge pull request #1020 from nemarOrg/dev",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-24T22:13:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f03b67b62b6851661c84385b27a6eff9915ff8c6",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.5-dev7",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-24T22:09:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0324da8a551e78c8b12e26001f28439b0e445814",
          "body": "Fix flaky validate CI: valid BIDS fixture (#1010)",
          "is_bot": false,
          "headline": "Merge pull request #1021 from nemarOrg/fix/issue-1010-validate-fixture",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-24T22:08:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d4697a2767e4a2b3832ab928be28756e1d2597f5",
          "body": null,
          "is_bot": false,
          "headline": "Fix validator npm-dep resolution: --node-modules-dir=none (#1010)",
          "author_name": "Seyed Yahya Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-24T22:04:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6f751847bdfa53e6440ed86013ebe4c0837c6710",
          "body": null,
          "is_bot": false,
          "headline": "diag: log validator output on validate failure (#1010)",
          "author_name": "Seyed Yahya Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-24T21:57:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "43b957e9961ad16653240aa0d8697eb012d59f06",
          "body": null,
          "is_bot": false,
          "headline": "Fix flaky validate tests: use a valid BIDS fixture (#1010)",
          "author_name": "Seyed Yahya Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-24T21:49:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bb930956d16db7e2bc9868cfc762df58cb22e1a4",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.5-dev6",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-24T21:06:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "962476970755ee22da75483977983c4c2fef920d",
          "body": null,
          "is_bot": false,
          "headline": "Document staging ORCID uses prod app via secrets (#1011)",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-24T21:06:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "510e55011f7421717514086109e1c19407cdbb49",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.5-dev5",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-24T20:29:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "35ce141aa6cbb4af421eac8706b5a780844d3274",
          "body": "…verage\n\ntest: cover migration 0062 unstick (verified-ORCID web signups)",
          "is_bot": false,
          "headline": "Merge pull request #1017 from nemarOrg/test/service-access-unstick-co…",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-24T20:29:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8794d0d643ad6401e716fbb067f6d1da26ac0f05",
          "body": null,
          "is_bot": false,
          "headline": "Test the pending-ORCID unstick in migration 0062",
          "author_name": "Seyed Yahya Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-24T20:26:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "825214a6d4a662788231006567cee38ca895b36a",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.5-dev4",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-24T20:15:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c0922a0e8d16697dbe9ff00a13645295f6c29a15",
          "body": "…ice-access\n\nTiered access phase 1: auto-approve base, gate upload (#1013)",
          "is_bot": false,
          "headline": "Merge pull request #1015 from nemarOrg/feature/issue-1013-phase1-serv…",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-24T20:15:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f3bb209f7db52a4a93c6ae8c4e2bb82c302040c7",
          "body": null,
          "is_bot": false,
          "headline": "Gate byte-flow uploads on service access; unstick pending",
          "author_name": "Seyed Yahya Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-24T20:11:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "dd81ca6e1c010d59aae186284ba01de1b99fd096",
          "body": "…o (#1006)\n\n* Add research on BIDS EEG/iEEG/MEG/EMG/motion archives beyond OpenNeuro\n\n* Add architecture RFC for multi-archive importer\n\n* Add EEGDash findings: EEGManyLabs archive, corrections, coordination recommendation\n\n---------\n\nCo-authored-by: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Add research on BIDS EEG/iEEG/MEG/EMG/motion archives beyond OpenNeur…",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-24T20:09:17Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "2148c4e58c978f4e106539828dc1a45f98abff32",
          "body": null,
          "is_bot": false,
          "headline": "Tiered access phase 1: auto-approve base, gate upload",
          "author_name": "Seyed Yahya Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-24T19:38:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a311db0af4f07bd1a26ef0ecff312a1dc36791a9",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.5-dev3",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-24T16:54:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "47595239c2acb6d38a27cffc9071d4a4779f15c1",
          "body": "…ile-fields\n\nauth: expose profile fields on /auth/me (#910)",
          "is_bot": false,
          "headline": "Merge pull request #1007 from nemarOrg/feature/issue-910-auth-me-prof…",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-24T16:54:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ae01c9bcecbe04e68b70c14b12f8e558938deb49",
          "body": null,
          "is_bot": false,
          "headline": "Review: profile fixture seed + populated test",
          "author_name": "Seyed Yahya Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-24T16:47:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "085a8352dc491873c0571eda593841bb1b1d5338",
          "body": null,
          "is_bot": false,
          "headline": "Expose profile fields on /auth/me (#910)",
          "author_name": "Seyed Yahya Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-24T16:46:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1d9b4b8ac52f51bb3391524fc57f6f3c2aabd17f",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.5-dev2",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-24T16:46:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8f8e2854e308eff54de5646f1379a9b0bb3b86a5",
          "body": "…nin-gate\n\nauth: gate non-prod email-code sign-in to admins + test accounts (#1008)",
          "is_bot": false,
          "headline": "Merge pull request #1009 from nemarOrg/feature/issue-1008-staging-sig…",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-24T16:46:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "df76f028cbe8fdcf6916dbe3decc7d1501743954",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.5-dev1",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-24T16:27:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "76a0376545f7856615db2dfc30d43b2f9385b5dd",
          "body": "Post-0.9.0 fast-follows: fail-closed guard, shared/ deploy trigger, display polish",
          "is_bot": false,
          "headline": "Merge pull request #965 from nemarOrg/fix/seed-web-user-failopen",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-24T16:27:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f49447d3f587438b8eaf4f88a7989f1ed3a16632",
          "body": null,
          "is_bot": false,
          "headline": "Gate non-prod email-code sign-in (#1008)",
          "author_name": "Seyed Yahya Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-24T16:16:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c48e65e9f5fdcce7b172b338ed339d56b5ac4326",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.5-dev0",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-23T00:37:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f8291c7ab857ccd26606b3355c5898b6dbf8a8c0",
          "body": null,
          "is_bot": false,
          "headline": "chore: sync dev with main after v0.9.4",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-23T00:37:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6cf28c3b6654338fb92adde15272c101cf8edca1",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.4",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-23T00:37:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6e8b622ca4b7da12cfbfd2d10d355e4b3c39d25d",
          "body": "Release 0.9.4: per-dataset availability report + full-corpus backfill (#999)",
          "is_bot": false,
          "headline": "Merge pull request #1005 from nemarOrg/dev",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-23T00:36:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a2d0ad8e0dbbf6e42240608c2ce8daa1db0d0244",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.4-dev1",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-23T00:26:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1bd6ecdb32d96ff212037e75fbd696ae460afe0c",
          "body": "…ility-report\n\nPer-dataset availability report (.nemar/availability-report.json) + full backfill",
          "is_bot": false,
          "headline": "Merge pull request #1004 from nemarOrg/feature/issue-999-epic-availab…",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-23T00:26:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "64951c529772894742a6dbb293e25250bf932004",
          "body": "* Phase 2: Backfill availability-report sweep (#1001)\n\nAdd POST /admin/datasets/availability-report-sweep to generate and\ncommit .nemar/availability-report.json across every managed dataset,\nmirroring the hed-sweep candidate/stamp/remaining shape. Migration\n0061 adds availability_report_at as the sw\n[…]\na rate-limited write just errors and stays a candidate for\nthe next invocation. Add CLI validation rejecting --all/--reset/\n--missing-only combined with a dataset id instead of silently\nignoring them.",
          "is_bot": false,
          "headline": "Phase 2: Backfill availability-report across the full corpus (#1003)",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-22T23:59:32Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "5461f9ea2155149cc1f1ebffa99854fb94d69459",
          "body": "* Add per-dataset availability report (#1000)\n\nGenerate .nemar/availability-report.json recording how much of a\ndataset's declared version manifest is present in S3 and exactly\nwhich files are missing (+ why: absent vs zero-byte). Reuses the\ncompleteness math from verifyDatasetVersionS3 (import-inte\n[…]\ncorrect the pct_bytes doc (null whenever bytes_declared is not\n> 0, manifest or not -- not just the no-manifest case), and fix an\ninaccurate \"enrich-dataset tests\" comment reference in the route\ntest.",
          "is_bot": false,
          "headline": "Phase 1: Generate + write .nemar/availability-report.json (#1002)",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-22T23:28:36Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "2a0a1dac70e029332e9e5fac37ebf8b6456e1dc7",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.4-dev0",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-22T22:22:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "98904712d8f2576b5a7983644afc4b0932469a38",
          "body": null,
          "is_bot": false,
          "headline": "chore: sync dev with main after v0.9.3",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-22T22:22:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fa074e7b69731702fda139135a0da0bb32023da7",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.3",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-22T22:21:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "99eb540072be8c37199e2e0e523018d020ca9baa",
          "body": "Release 0.9.3: OpenNeuro import stability (#989) + auto-file import failures (#988)",
          "is_bot": false,
          "headline": "Merge pull request #997 from nemarOrg/dev",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-22T22:21:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "644b323fa09d3561ece0f9c068e1386c680ec890",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.3-dev2",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-22T21:44:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8340acd0e0d40fb904da0973251887c66b98d014",
          "body": "…tability\n\nOpenNeuro import stability follow-ups (#967 tail)",
          "is_bot": false,
          "headline": "Merge pull request #996 from nemarOrg/feature/issue-989-epic-import-s…",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-22T21:43:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b30e3ca6637d9a7911748bdf4eea8baee190bd82",
          "body": null,
          "is_bot": false,
          "headline": "Cool down all cron-eligible statuses on recover dispatch",
          "author_name": "Seyed Yahya Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-22T21:37:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f12063ec552cc2848d3bc83f2c1b8f00f251dee1",
          "body": "The Step 4c re-import tests fetch/reset origin/main explicitly; the harness inited repos with the runner's git default branch (master on GitHub Actions, main on many dev machines), so git fetch origin main returned 128 and the third-clone commit count was 0 on CI while passing locally. Force -b main on both the working repos and the bare origin. Production nemarDatasets repos are always main, so this matches reality. Verified under a simulated init.defaultBranch=master.",
          "is_bot": false,
          "headline": "Pin test git default branch to main (CI determinism)",
          "author_name": "Seyed Yahya Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-22T21:32:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c54e6ffc2f624737d8d5fbe6a5b59b4eca941858",
          "body": "…, batch cap) (#995)\n\n* Fix exemplar-clone presence-only S3 verification (#982)\n\ncopySubPrefix's resume filter and finalizeExemplar's verify gate only\nchecked object presence, the same #967 bug: a 0-byte or truncated\nleftover from a failed run was mistaken for a completed copy. Reuse\nexpectedSizesFr\n[…]\ning\nincomplete/complete rows and assert it is left alone and does not\ncount toward `updated`, pinning the WHERE status = 'incomplete'\nscoping against a generic caller (not just the recover code path).",
          "is_bot": false,
          "headline": "Phase 3: Import hardening bundle (exemplar #982, double-dispatch #981…",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-22T21:23:24Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "8d379c8cd389f33409cccc770008b44fd4e31119",
          "body": "* Fix re-import push failure onto an already-published repo (#990)\n\nRe-importing an OpenNeuro dataset onto an already-published\nnemarDatasets repo always makes a fresh clone whose main shares no\nmetadata history with origin. Step 6's new metadata commit then\ncollides with the first import's metadata\n[…]\nnd the block is skipped entirely, leaving\n  the ordinary first-import push untouched.\n\nAlso references the tracked follow-up (#993) for new-version drift\ndetection in the Step 4c out-of-scope comment.",
          "is_bot": false,
          "headline": "Phase 2: Fix git-divergence on OpenNeuro re-import (#994)",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-22T20:48:57Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "a85616beb88b0a512b4ccdc4cc10bf89afa6fe29",
          "body": "* Stamp data_complete at verify/recover/sweep seams\n\nExtract stampDatasetIntegrity (shared source of truth for the sweep, the forced-verify route, and the retry engine's reclassify/recover/blocklist-recheck paths). verify + retry previously computed per-key completeness but never wrote datasets.data\n[…]\nr-row failures\n\n* Make verify-route stamp best-effort, non-fatal\n\n* Log dataset_versions/datasets stamp divergence\n\n* Remove unused verifyImportS3 delegate\n\n* Extract testable reaudit convergence loop",
          "is_bot": false,
          "headline": "Phase 1: Completeness stamp + sweep convergence (#992)",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-22T18:56:06Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "bc177c4f69d7920506e3b0172e707faa073acc86",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.3-dev1",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-22T17:31:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1d6e9517831e31ec49f1a76eb4ddcf4c147ece46",
          "body": "…(#988)\n\n* feat: add GitHub issues API helpers (list/create/comment)\n\n* feat: add import-failure issue gate and content builders\n\n* feat: auto-file GitHub issues on genuine import failures\n\n* Harden issue dedup: cap pagination + document race/invariant\n\n* ci: pin bun-version to 1.3.11 (1.3.14 instal\n[…]\nctory\nbut not a symlink of that name, so git add -A picked them up.\n\nUntrack both symlinks, ignore the symlink form, and revert the\nunrelated bun-version pin (that was a misdiagnosis of this failure).",
          "is_bot": false,
          "headline": "Auto-file import-failure GitHub issues from the import-state webhook …",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-22T17:31:29Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "a044ab2890f75235fc8eb84b466a90ea12f3184d",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.3-dev0",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-22T00:45:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4e2d2a2f41d5a284ea700ccfd3619be00108d07f",
          "body": null,
          "is_bot": false,
          "headline": "chore: sync dev with main after v0.9.2",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-22T00:45:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a40547bdcccf2ccc4002cb8849fe15cdea10512a",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.2",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-22T00:44:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4cbe8fb1c017b5eb1f001d0b1d989c5ca5856f22",
          "body": "Release 0.9.2: fix prod bugs #984 (version DOI prefix) + #985 (finalize idempotency)",
          "is_bot": false,
          "headline": "Merge pull request #987 from nemarOrg/dev",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-22T00:44:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "434aedd679cf8973cff1a5e4f7896cc9294edfe5",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.2-dev1",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-22T00:36:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "de9ec36af692219e416fee4f7dfa73231cdab677",
          "body": "… (#986)\n\n* fix: prefix version DOIs with doi: scheme in withdraw/restore (#984)\n\ndataset_versions.doi is stored without the doi: scheme prefix, unlike\ndatasets.ezid_identifier which has it. EZID rejected the unprefixed\nidentifier as invalid, so withdraw --all tombstoned every concept DOI\nbut failed\n[…]\ny-published dataset failed after verifying data was\npresent. Check live visibility first and skip publish/request and\npublish/approve when already public, instead of hard-failing on the\nbackend's 409.",
          "is_bot": false,
          "headline": "Fix prod bugs #984 (version DOI prefix) + #985 (finalize idempotency)…",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-22T00:36:41Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "620ae33a82f516f5233612725d1e5a11139ff929",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.2-dev0",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-21T23:19:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c008792623179f68c37b953a387ba41ffdae3544",
          "body": null,
          "is_bot": false,
          "headline": "chore: sync dev with main after v0.9.1",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-21T23:19:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ef40f84f9f4066fa41bbcf2394a2975820b0598e",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.1",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-21T23:18:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3c39893fbf697938479c4bdd3f2a0b71a9155ba2",
          "body": "Release 0.9.1: OpenNeuro import integrity epic #967 + auto-import disable",
          "is_bot": false,
          "headline": "Merge pull request #983 from nemarOrg/dev",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-21T23:18:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7ec896f0f60b5480b928387fca414cde4d29e660",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.1-dev3",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-21T22:45:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "46d83c46a4b93aaf28b7f6501a7edce74f01591c",
          "body": "…o-integrity\n\nEpic #967: OpenNeuro import integrity & recovery",
          "is_bot": false,
          "headline": "Merge pull request #979 from nemarOrg/feature/issue-967-epic-openneur…",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-21T22:45:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6aaa930723b3313cb257d6b408ab1d6bfa24bf26",
          "body": "* Phase 5: recover-datasets list + loader (epic #967, #972)\n\n45 checked-in on###### targets whose OpenNeuro upstream is accessible,\ndisjoint from the 11 withdrawn in Phase 4 (45 + 11 = 56). Mirrors\nwithdrawn-datasets.json/parseWithdrawnDatasets exactly.\n\n* Phase 5: nemar admin recover [status] comma\n[…]\nan explicit DANGER note that verify\nwould reclassify a real row on any environment that has one, and a\nreminder that a quarantined/blocklisted target needs import retry, not\njust recover's reclassify.",
          "is_bot": false,
          "headline": "Phase 5: Remediate recoverable corpus (re-copy the 45 + audit) (#978)",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-21T22:30:40Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "6cb602f3963110ae2a61ebe1aa01d917da871e4b",
          "body": "…ilable) (#977)\n\n* Add withdrawal columns migration (0060)\n\n* Add checked-in withdrawn-datasets list + loader\n\n* Extract applyDatasetVisibility from fleet route\n\n* Add dataset withdraw/restore service\n\n* Add withdraw/restore admin routes\n\n* Add reconcile-stickiness + EZID sandbox restore tests\n\n* Ad\n[…]\nult now renders the resumed flag,\nthe full visibility failure detail (stage/revert info), and the\naudit-log warning field. Notes the #937 shared-contract follow-up\ninline (GROUP 5, not acted on here).",
          "is_bot": false,
          "headline": "Phase 4: Withdraw broken published datasets (private + EZID DOI unava…",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-21T15:41:19Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "75e6e7e7501cc591e3490dd5957b2ca1535f24bd",
          "body": "* Add migration 0059: file_size/bytes_present/data_complete columns\n\n* Add verifyDatasetVersionS3 + computeVersionIntegrity primitive\n\n* Add bytes_present/data_complete column helpers + writeVersionSize\n\n* Wire honest size into reindex; stop enrich clobbering it with S3 sum\n\n* Surface honest size + \n[…]\nble objects\n\n* Add real-route test for the data-integrity-sweep endpoint\n\n* Use shared D1 helpers; add enrich-clobber regression guard test\n\n* Add manifest-null fallback test for data_summary sourcing",
          "is_bot": false,
          "headline": "Phase 3: Honest size + data_complete surfacing + integrity audit (#976)",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-21T13:58:47Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "aacff6fe712ba8f081f15e0e1093fc7d5ea014fd",
          "body": "…eport (#975)\n\n* Add migration 0058 + incomplete status (epic #967 Phase 2, #969)\n\nRetry-engine + blocklist columns on import_jobs (recovery_attempts,\nfirst_incomplete_at, next_retry_at, blocklisted, blocklist_reason,\nmaintainer_notified_at, integrity_checked_at) and a new non-terminal\n`incomplete` \n[…]\n- two\n  synthetic ListBucketResult pages merge into one Map, a key repeated\n  across pages keeps the later page's size, out-of-prefix keys and the\n  bare-prefix placeholder are still ignored per-page.",
          "is_bot": false,
          "headline": "Phase 2: Consistent retry engine + blocklist + OpenNeuro maintainer r…",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-21T06:52:09Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "de81b548d3af5008210464bb3401f9c3b41bd421",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.1-dev2",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-21T05:52:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a29b67a1e7134cebc0b041bb68ca7e42000d0ded",
          "body": "Disable auto-import (incident: OpenNeuro imports published empty datasets)",
          "is_bot": false,
          "headline": "Merge pull request #966 from nemarOrg/fix/disable-auto-import-incident",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-21T05:51:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e13eabef201b16aaf2c5e9c483ab8d378205c099",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.1-dev1",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-21T05:43:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7dbf3e550aadf1912bc41b1bf1001b25fc50bdb1",
          "body": "…sets\n\nThe OpenNeuro auto-import silently published datasets with 0-byte S3 objects:\nthe copy fallback `curl -sfL <url> | aws s3 cp - <dst>` PUT an empty object\nwhen curl 403'd (OpenNeuro stopped serving anonymously), and every verification\ngate checked key-presence not size, so it passed. 56 datasets / ~680GB affected.\nAlready flipped in prod via manual deploy; this commits it so a future dev->main\nrelease keeps AUTO_IMPORT_ENABLED off until the copy contract + per-key size\nverification land.",
          "is_bot": false,
          "headline": "Disable auto-import (incident): OpenNeuro import published empty data…",
          "author_name": "Seyed Yahya Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-21T05:43:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "453826f454af2c61177f257b66bd56c917eab062",
          "body": null,
          "is_bot": false,
          "headline": "test: move NLM MeSH tests to integration tier (#974)",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-21T05:43:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4d07f39566e97d491f2b93e375480fab495b2df0",
          "body": "…973)\n\n* Verify object size before/after copy\n\n* Gate finalize + resume on per-key size\n\n* Add unit tests for copy size-integrity gates\n\n* Fix 0-byte-declared gate and fallback disk exhaustion\n\n* Add direct curlStreamCopy integrity-gate tests",
          "is_bot": false,
          "headline": "Phase 1: Copy hardening + publish gate (per-key size verification) (#…",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-21T03:02:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "36702c1bbff195adcdf14e137e1e4320c1b0b73a",
          "body": "…isplay polish\n\n- admin/users.ts seed-web-user: fail-OPEN ENVIRONMENT===production -> fail-closed\n  !isNonProductionEnv (an unset/typo'd binding no longer leaves it reachable in prod).\n- deploy-backend.yml: add shared/** to the trigger paths so a contract-only\n  change to shared/contract actually re\n[…]\n + PR body read as consistent bare semvers.\n- admin reindex --help: drop stale 'nemar.org sync' wording (#837 retired it);\n  the --skip-sync flag now describes the D1 metadata-column refresh it gates.",
          "is_bot": false,
          "headline": "Post-0.9.0 fast-follows: fail-closed guard, shared/ deploy trigger, d…",
          "author_name": "Seyed Yahya Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-21T01:12:29Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "f79d16ae50e44b5aed417d26ae972f00729767e5",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.1-dev0",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-21T00:59:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8d6aafcde8072b7b50ae7e0bd2bb21e9d770bfce",
          "body": null,
          "is_bot": false,
          "headline": "chore: sync dev with main after v0.9.0",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-21T00:59:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "13f5bfe6c8d42d09b0556224896f4da8a26807b3",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.0",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-21T00:58:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "529c286bb8ac016921773aaf874f14d5f11bbb90",
          "body": "Release: dev -> main (staging env, contract, mega-file decomposition, HED, legacy separation)",
          "is_bot": false,
          "headline": "Merge pull request #961 from nemarOrg/dev",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-21T00:58:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "01b2d4974149ecc3d311457b6123746f8392beb8",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.9.0-dev0 (#964)",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-21T00:20:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "04af058d1a3f03eac5b59afb026258e1a922fc60",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.8.76-dev10",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-20T23:53:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ebc8467d1f8b3274e61bd9b120b87ece549a7479",
          "body": "test/doi-orcid-discovery.test.ts mixed deterministic offline tests with\nqueryDataCiteDoi/discoverOrcidsFromReferencedDois tests that hit the live\nDataCite/Crossref APIs. The pure-tier classifier only excluded files matching\ntestRequest|TEST_API_URL|runCli, so these network tests ran in unit-pure wit\n[…]\na *.integration.test.ts convention: excluded from the\nrequired pure tier, run in the integration tier (--retry=2 --timeout 30000).\nOffline tests (24) stay pure; network tests (11) pass in integration.",
          "is_bot": false,
          "headline": "Move live-network DOI/ORCID tests out of the pure tier (#963)",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-20T23:53:37Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "6d43e554f9e3a355e5e937723918743e4e32584a",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.8.76-dev9",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-20T23:37:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d02222fa5cfe842dcdf82fd72b718c385f6dfd0d",
          "body": "…ook (#962)\n\n* Add post-deploy /health version smoke to backend deploys\n\nwrangler deploy exiting 0 does not prove the new code is serving. Dev ran\nstale code for 11 days (#958) because nothing asserted the running Worker.\nPoll {dev,prod}/health after each deploy and require the reported pkg.version\n\n[…]\nok\n\nDocuments the feature -> dev -> prod path, how to exercise a feature on\nstaging before prod, the dev->main go/no-go checklist, the post-merge watch,\nthe rollback plan, and the known pipeline gaps.",
          "is_bot": false,
          "headline": "Release-safety hardening: post-deploy /health smoke + promotion playb…",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-20T23:37:11Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "255fb95894384b463c16b4fccd129d2e2f16d62e",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.8.76-dev8",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-20T22:53:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "20b886bdf1fc4dfc86ee3e86056e831339ecd1d9",
          "body": "Dev D1 (nemar-db-dev) was a stale full copy of prod, so staging listed\n~190 real nm + ~30 legacy ds phantom rows. Policy: the test/dev catalog is\nthe curated exemplar fleet only (7 xx0999NN + private nm099999), never a\nprod mirror. Document this in AGENTS.md and make the data-route catalog\nindex assertion env-aware (nm links on prod, xx0999 links off-prod).",
          "is_bot": false,
          "headline": "Purge dev D1 to exemplars-only; env-aware catalog test (#960)",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-20T22:52:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9a379cf254cccf84f9221d69416ee23159c46a7f",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.8.76-dev7",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-18T10:14:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cbd69d1e32e94eeb721619bb9c20436f022c979e",
          "body": null,
          "is_bot": false,
          "headline": "Install root deps in deploy so shared/ typechecks (#959)",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-18T10:14:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1ae52efd6a61dfe189644568c8d22a39599ab76d",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 0.8.76-dev6",
          "author_name": "nemar-bot",
          "author_login": null,
          "committed_at": "2026-07-18T10:08:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2206f273bb90d77a5e2c8bd716732bf125935272",
          "body": "…ging\n\nEpic #923: Staging environment (test.nemar.org) + exemplar fleet",
          "is_bot": false,
          "headline": "Merge pull request #956 from nemarOrg/feature/issue-923-epic-test-sta…",
          "author_name": "Seyed (Yahya) Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-18T10:07:58Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6dc6c74b13901ad4a51919cafe64ca12bd8dad2a",
          "body": null,
          "is_bot": false,
          "headline": "Make catalog xx assertions environment-aware",
          "author_name": "Seyed Yahya Shirazi",
          "author_login": "neuromechanist",
          "committed_at": "2026-07-18T10:04:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 100,
      "commits_last_year": 1465,
      "latest_release_at": "2026-07-25T18:37:42Z",
      "latest_release_tag": "v0.9.6",
      "releases_from_tags": false,
      "days_since_last_push": 3,
      "active_weeks_last_year": 27,
      "days_since_latest_release": 3,
      "mean_days_between_releases": 2.9
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": false,
      "health_percentage": 50,
      "has_issue_template": false,
      "has_code_of_conduct": false,
      "has_pull_request_template": false
    },
    "ecosystem": {
      "packages": [
        {
          "name": "nemar-cli",
          "exists": true,
          "license": "CC-BY-NC-ND-4.0",
          "keywords": [
            "nemar",
            "bids",
            "neuroimaging",
            "eeg",
            "emg",
            "datalad",
            "cli"
          ],
          "ecosystem": "npm",
          "matches_repo": true,
          "registry_url": "https://www.npmjs.com/package/nemar-cli",
          "is_deprecated": false,
          "latest_version": "0.9.6",
          "repository_url": "https://github.com/nemarOrg/nemar-cli",
          "versions_count": 1376,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": 1,
          "monthly_downloads": 40080,
          "first_published_at": "2026-01-15T20:30:23.819000Z",
          "latest_published_at": "2026-07-25T18:38:04.665000Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 3
        }
      ]
    },
    "popularity": {
      "forks": 1,
      "stars": 0,
      "watchers": 0,
      "fork_history": {
        "days": [
          {
            "date": "2026-06-21",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 1,
        "total_forks": 1
      },
      "star_history": {
        "days": [],
        "complete": true,
        "collected": 0,
        "total_stars": 0,
        "collected_at": null
      },
      "open_issues_and_prs": 78
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [
        "examples"
      ],
      "has_llms_txt": false,
      "has_dockerfile": false,
      "has_mcp_signal": false,
      "bootstrap_files": [],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [
        "backend/tsconfig.json",
        "tsconfig.json"
      ],
      "toolchain_manifests": [],
      "largest_source_bytes": 220138,
      "source_files_sampled": 417,
      "oversized_source_files": 7,
      "agent_instruction_files": [
        "AGENTS.md",
        "CLAUDE.md"
      ],
      "agent_instruction_max_bytes": 30651
    },
    "dependencies": {
      "manifests": [
        "backend/package.json",
        "package.json"
      ],
      "advisories": {
        "error": null,
        "scope": "published_package",
        "source": "osv",
        "findings": [],
        "collected": true,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 86,
        "malicious_count": 0,
        "assessed_package": "npm:nemar-cli@0.9.6",
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "npm"
      ],
      "dependencies": [
        {
          "name": "hono",
          "manifest": "backend/package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.6.0"
        },
        {
          "name": "zod",
          "manifest": "backend/package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.23.0"
        },
        {
          "name": "@hono/zod-validator",
          "manifest": "backend/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.4.0"
        },
        {
          "name": "bcryptjs",
          "manifest": "backend/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.4.3"
        },
        {
          "name": "aws4fetch",
          "manifest": "backend/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.0.20"
        },
        {
          "name": "chalk",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^5.3.0"
        },
        {
          "name": "commander",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^12.1.0"
        },
        {
          "name": "conf",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^13.0.1"
        },
        {
          "name": "fuse.js",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^7.1.0"
        },
        {
          "name": "inquirer",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^9.2.15"
        },
        {
          "name": "ora",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^8.0.1"
        },
        {
          "name": "zod",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.23.8"
        }
      ],
      "all_dependencies": {
        "error": "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
        "source": null,
        "packages": [],
        "collected": false,
        "truncated": false,
        "total_count": null,
        "direct_count": null,
        "indirect_count": null
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 0,
        "merged_prs": 530,
        "open_issues": 78,
        "closed_ratio": 0.844,
        "closed_issues": 423,
        "closed_unmerged_prs": 6
      },
      "bus_factor": 1,
      "bot_contributors": 1,
      "top_contributors": [
        {
          "type": "User",
          "login": "neuromechanist",
          "commits": 1065,
          "avatar_url": "https://avatars.githubusercontent.com/u/44906843?v=4"
        },
        {
          "type": "User",
          "login": "bruAristimunha",
          "commits": 2,
          "avatar_url": "https://avatars.githubusercontent.com/u/42702466?v=4"
        }
      ],
      "contributors_sampled": 2,
      "top_contributor_share": 0.998
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "auto-bump-dev.yml",
        "auto-tag.yml",
        "bump-validator.yml",
        "check-summary-drift.yml",
        "deploy-backend.yml",
        "nightly-tests.yml",
        "npm-publish.yml",
        "sync-dev.yml",
        "test.yml"
      ],
      "has_docs_dir": false,
      "linter_configs": [
        "biome.json"
      ],
      "has_editorconfig": false,
      "has_linter_config": true,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 3,
            "reason": "branch protection is not maximal on development and all release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": 10,
            "reason": "10 out of 10 merged PRs checked by a CI test -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 0/12 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 10,
            "reason": "project has 13 contributing companies or organizations",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 0,
            "reason": "no update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 9,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 10,
            "reason": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": 10,
            "reason": "packaging workflow detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 0,
            "reason": "dependency not pinned by hash detected -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "SAST tool is not run on all commits -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 0,
            "reason": "security policy file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": null,
            "reason": "no releases found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 0,
            "reason": "56 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "ca216a626106015fcc6624e800641b71c0f2e61f",
        "ran_at": "2026-07-29T16:32:34Z",
        "aggregate_score": 4.1,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": false
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-29T11:06:27Z",
      "oldest_open_prs": [],
      "last_merged_pr_at": "2026-07-25T23:31:18Z",
      "ci_last_conclusion": "FAILURE",
      "oldest_open_issues": [
        {
          "number": 1,
          "created_at": "2026-01-15T05:25:56Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 20,
          "created_at": "2026-01-16T17:48:56Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 23,
          "created_at": "2026-01-16T18:13:05Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 283,
          "created_at": "2026-03-13T09:54:55Z",
          "last_comment_at": "2026-03-14T19:05:30Z",
          "last_comment_author": "bruAristimunha"
        },
        {
          "number": 300,
          "created_at": "2026-03-16T16:19:55Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 308,
          "created_at": "2026-03-19T06:08:26Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 349,
          "created_at": "2026-04-24T03:35:21Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 350,
          "created_at": "2026-04-24T03:45:36Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 376,
          "created_at": "2026-04-28T01:36:57Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 427,
          "created_at": "2026-05-11T13:43:45Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 440,
          "created_at": "2026-05-11T15:18:48Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 448,
          "created_at": "2026-05-12T16:46:16Z",
          "last_comment_at": "2026-05-15T21:11:08Z",
          "last_comment_author": "neuromechanist"
        },
        {
          "number": 520,
          "created_at": "2026-05-16T06:34:38Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 522,
          "created_at": "2026-05-16T07:26:28Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 526,
          "created_at": "2026-05-18T06:31:14Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 529,
          "created_at": "2026-05-18T08:09:09Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 530,
          "created_at": "2026-05-18T08:14:17Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 544,
          "created_at": "2026-05-18T11:57:12Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 583,
          "created_at": "2026-05-22T19:28:35Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 626,
          "created_at": "2026-05-26T20:45:58Z",
          "last_comment_at": null,
          "last_comment_author": null
        }
      ]
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/nemarOrg/nemar-cli",
    "host": "github.com",
    "name": "nemar-cli",
    "owner": "nemarOrg"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 62,
      "inputs": {
        "security": 52,
        "vitality": 90,
        "community": 35,
        "governance": 55,
        "engineering": 72
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "excellent",
        "name": "Vitality",
        "value": 90,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "good",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 83,
            "inputs": {
              "commits_last_year": 1465,
              "human_commit_share": 1,
              "days_since_last_push": 3,
              "active_weeks_last_year": 27
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 3 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 3
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "27/52 weeks with commits",
                "points": 18.7,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 27
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "1465 commits in the last year",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 1465
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "releases_count": 100,
              "latest_release_tag": "v0.9.6",
              "releases_from_tags": false,
              "days_since_latest_release": 3,
              "mean_days_between_releases": 2.9
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "100 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 100
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 3 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 3
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~2.9 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 2.9
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "maintained",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": null,
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": 3,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "last human commit 3 days ago",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_maintained",
                    "params": {
                      "days": 3
                    }
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "at_risk",
        "name": "Community & Adoption",
        "value": 35,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "critical",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 1,
            "inputs": {
              "forks": 1,
              "stars": 0,
              "watchers": 0,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "0 stars",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "1 forks",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "0 watchers",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "at_risk",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 44,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": false,
              "has_issue_template": false,
              "has_code_of_conduct": false,
              "has_pull_request_template": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file present, not a recognized license",
                "points": 16.9,
                "status": "partial",
                "details": [
                  {
                    "code": "license_custom",
                    "params": {}
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.3
              }
            ]
          },
          {
            "key": "ecosystem_adoption",
            "band": "good",
            "name": "Ecosystem adoption (downloads)",
            "note": "Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "registry_dependents"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 77,
            "inputs": {
              "packages": [
                "nemar-cli"
              ],
              "dependents": null,
              "ecosystems": "npm",
              "total_downloads": null,
              "monthly_downloads": 40080
            },
            "components": [
              {
                "key": "monthly_downloads",
                "name": "Monthly downloads",
                "detail": "40,080 downloads/month across npm",
                "points": 61.4,
                "status": "partial",
                "details": [
                  {
                    "code": "downloads_monthly",
                    "params": {
                      "count": 40080,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 80
              },
              {
                "key": "registry_dependents",
                "name": "Registry dependents",
                "detail": "not reported by this ecosystem",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_reported_by_this_ecosystem",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "moderate",
        "name": "Sustainability & Governance",
        "value": 55,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "critical",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 22,
            "inputs": {
              "bus_factor": 1,
              "contributors_sampled": 2,
              "top_contributor_share": 0.998
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "1 contributor(s) cover half of all commits",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 100% of commits",
                "points": 0,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 100
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "2 contributors",
                "points": 2.7,
                "status": "partial",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 2
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 13 contributing companies or organizations",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "good",
            "name": "Issue & PR responsiveness",
            "note": null,
            "notes": [],
            "value": 77,
            "inputs": {
              "merged_prs": 530,
              "open_issues": 78,
              "closed_issues": 423,
              "issue_closed_ratio": 0.844,
              "closed_unmerged_prs": 6
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "84% of issues closed",
                "points": 39.5,
                "status": "partial",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 84
                    }
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "530/536 decided PRs merged",
                "points": 37.8,
                "status": "partial",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 530,
                      "decided": 536
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 0/12 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "at_risk",
            "name": "Ownership & stewardship",
            "note": null,
            "notes": [],
            "value": 38,
            "inputs": {
              "followers": 0,
              "owner_type": "Organization",
              "is_verified": null,
              "owner_login": "nemarOrg",
              "public_repos": 7,
              "account_age_days": 169
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "organization-owned",
                "points": 30,
                "status": "met",
                "details": [
                  {
                    "code": "owner_organization",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "0 followers of nemarOrg",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 0,
                      "login": "nemarOrg"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "7 public repos, account ~0 yr old",
                "points": 7.5,
                "status": "partial",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 7
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 0
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "excellent",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "nemar-cli"
              ],
              "ecosystems": "npm",
              "any_deprecated": false,
              "min_days_since_publish": 3
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on npm",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 3 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 3
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "1376 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 1376
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "good",
        "name": "Engineering Quality",
        "value": 72,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "good",
            "name": "Engineering practices",
            "note": null,
            "notes": [],
            "value": 84,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": true,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "9 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 9
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": "biome.json",
                "points": 16,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "biome.json"
                    }
                  }
                ],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "10 out of 10 merged PRs checked by a CI test -- score normalized to 10",
                "points": 20,
                "status": "met",
                "details": [],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "moderate",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 55,
            "inputs": {
              "topics": [],
              "has_wiki": false,
              "homepage": "https://docs.nemar.org",
              "has_readme": true,
              "has_docs_dir": false,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": "https://docs.nemar.org",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "moderate",
        "name": "Security",
        "value": 52,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "at_risk",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 40,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 17,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 1,
              "scorecard_aggregate": 4.1
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection is not maximal on development and all release branches",
                "points": 2.2,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "10 out of 10 merged PRs checked by a CI test -- score normalized to 10",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 0/12 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 13 contributing companies or organizations",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "no update tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.2,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool is not run on all commits -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "56 existing vulnerabilities detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "dependency_advisories",
            "band": "excellent",
            "name": "Dependency advisories",
            "note": "Excluded from scoring (no data or not applicable): No advisories left outstanding. Remaining weights renormalized. Matched the npm:nemar-cli@0.9.6 runtime dependency closure — what installing the published package pulls in — 86 packages. Reachability is not analyzed.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "no_advisories_left_outstanding"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              },
              {
                "code": "advisories_scope_published",
                "params": {
                  "package": "npm:nemar-cli@0.9.6",
                  "assessed": 86
                }
              },
              {
                "code": "advisories_reachability",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "source": "osv",
              "advisories": 0,
              "affected_packages": 0,
              "assessed_packages": 86,
              "unassessed_packages": 0,
              "affected_by_severity": "none",
              "direct_affected_packages": 0
            },
            "components": [
              {
                "key": "direct_dependencies_free_of_known_advisories",
                "name": "Direct dependencies free of known advisories",
                "detail": "no direct dependency carries a known advisory",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "no_direct_advisories",
                    "params": {}
                  }
                ],
                "max_points": 35
              },
              {
                "key": "indirect_dependencies_free_of_known_advisories",
                "name": "Indirect dependencies free of known advisories",
                "detail": "no indirect dependency carries a known advisory",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "no_indirect_advisories",
                    "params": {}
                  }
                ],
                "max_points": 25
              },
              {
                "key": "no_advisories_left_outstanding",
                "name": "No advisories left outstanding",
                "detail": "no advisory carries a publication date",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_no_publication_date",
                    "params": {}
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "malicious_dependencies",
            "band": "excellent",
            "name": "Malicious dependencies",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "source": "osv",
              "meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
              "packages": [],
              "red_flag": false,
              "assessed_packages": 86,
              "malicious_packages": 0,
              "direct_malicious_packages": 0,
              "withdrawn_malicious_packages": 0,
              "installable_malicious_packages": 0
            },
            "components": [
              {
                "key": "no_dependency_reported_as_a_malicious_package",
                "name": "No dependency reported as a malicious package",
                "detail": "no dependency is reported as a malicious package",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "no_malicious_dependencies",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 5
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "moderate",
        "name": "AI Readiness",
        "value": 65,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "excellent",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.9,
              "agent_instruction_files": [
                "AGENTS.md",
                "CLAUDE.md"
              ],
              "agent_instruction_max_bytes": 30651
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "AGENTS.md, CLAUDE.md",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "AGENTS.md, CLAUDE.md"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "90 of 100 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 90,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "at_risk",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 46,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [],
              "has_dockerfile": false,
              "typed_language": true,
              "bootstrap_files": [],
              "has_devcontainer": false,
              "has_linter_config": true,
              "typecheck_configs": [
                "backend/tsconfig.json",
                "tsconfig.json"
              ],
              "agent_commit_share": 0.01,
              "toolchain_manifests": [],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": "biome.json",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "biome.json"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "backend/tsconfig.json, tsconfig.json",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "backend/tsconfig.json, tsconfig.json"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "1 of the last 100 commits agent-authored or agent-credited",
                "points": 2,
                "status": "partial",
                "details": [
                  {
                    "code": "agent_authored_commits",
                    "params": {
                      "count": 1,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "no automated dependency updates observed",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_dependency_automation",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 99,
            "inputs": {
              "primary_language": "TypeScript",
              "largest_source_bytes": 220138,
              "source_files_sampled": 417,
              "oversized_source_files": 7
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "TypeScript (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "TypeScript"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "7/417 source files over 60KB",
                "points": 54.1,
                "status": "partial",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 417,
                      "oversized": 7
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          },
          {
            "key": "ai_interfaces",
            "band": "at_risk",
            "name": "Machine-readable interfaces",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "example_dirs": [
                "examples"
              ],
              "has_mcp_signal": false,
              "api_schema_files": []
            },
            "components": [
              {
                "key": "api_schema_openapi_graphql_proto",
                "name": "API schema (OpenAPI/GraphQL/proto)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 40
              },
              {
                "key": "mcp_server",
                "name": "MCP server",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "runnable_examples",
                "name": "Runnable examples",
                "detail": "examples",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "examples"
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-29T16:32:52.725714Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/n/nemarOrg/nemar-cli.svg",
  "full_name": "nemarOrg/nemar-cli",
  "license_state": "custom",
  "license_spdx": null
}

评分是信号,而非担保。 评分反映的是 GitHub 上公开可见的实践——不是代码审计,也不是安全保证。

缺失数据将被剔除并重新归一化权重,绝不按零分计。方法论已版本化并公开:指标 v1.13.0、模式 v0.27.0—— 完整方法论 · 指标知识库.

单项结果在整体记录中的位置: 汇总统计npm.