公开记录
软件健康报告模式 0.26.0 · 指标 1.13.0 · 2026-07-22 07:44 UTC

proticom / gnosys

Persistent memory for AI agents

TypeScriptMIT★ 4 星标⑂ 0 复刻始于 2026年3月在 GitHub 上查看 ↗

proticom/gnosys 的健康指数为 100 分中的 65 分,处于「中等」区间。 其得分最高的类别是Engineering Quality(86/100),最低的是Sustainability & Governance(42/100)。 最近一次更新在 1 天前。 近期的大部分工作由 1 位贡献者完成。

65
总分 / 100
中等

软件健康指数

指标归入加权类别,统一采用 1–100 量表。总体分先取类别加权平均;当公开证据触发高风险司法辖区政策时,评级会按政策调整,并设置 49(有风险)的上限。AI 就绪度不计入总体分。

65
优秀85-100堪称典范;基本满足所有检验标准
良好70-84健康;仅有轻微不足
中等50-69可接受,但存在明显不足;建议进行审查
存在风险30-49存在重大薄弱环节;采用时应保持审慎
危急1-29问题严重(项目被弃置、仅有单一维护者、缺乏基本工程规范)
活力社区与采用可持续性与治理工程质量安全AI 就绪度

评分画像

每条轴代表一个类别。形状比平均值更重要——健康的对象会填满整个图形,而“一峰一谷”式画像意味着某一维度的优势正掩盖另一维度的风险。

所有权

1 关注者2 个公开仓库始于 2015年2月

该仓库由组织支持——共同承担、可问责的托管责任,可延续于任何单一维护者之后。

软件包生态系统

按类别列示的指标

活力

项目是否仍有生命——是否仍在编写代码,是否仍在发布版本?

80良好 · 占总体的 22%
评分方式
36/36推送新近度 — 最近一次推送于 1 天前
11.1/36提交节奏 — 52 周中有 16 周有提交
18/18提交量 — 最近一年 500 次提交
10/10OpenSSF Scorecard:Maintained — 30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
所用输入
commits_last_year500
human_commit_share0.99
days_since_last_push1
active_weeks_last_year16

发布纪律

88优秀
评分方式
16.2/27有发布版本 — 90 个版本标签(无 GitHub 发布版本)
36/36发布时效 — 最近一次发布版本于 4 天前
27/27发布节奏 — 约每 1.6 天发布一次
0/10OpenSSF Scorecard:Signed-Releases — 无数据
所用输入
releases_count90
latest_release_tagv6.2.1
releases_from_tags
days_since_latest_release4
mean_days_between_releases1.6
已排除计分(无数据或不适用):OpenSSF Scorecard:Signed-Releases。 其余权重已重新归一化。

社区与采用

项目是否拥有用户、下载量与关注度,并具备欢迎贡献者参与的配置?

50中等 · 占总体的 18%
评分方式
7.7/60星标 — 4 个星标
0/25复刻 — 0 个复刻
0/15关注者 — 0 位关注者
所用输入
forks0
stars4
watchers0
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonbelow_threshold

社区健康

92优秀
评分方式
22.5/22.5README
22.5/22.5许可证 — 可识别的许可证(MIT)
18/18CONTRIBUTING 指南
13.5/13.5行为准则
0/7.2议题模板
6.3/6.3PR 模板
所用输入
has_readme
has_license
has_contributing
has_issue_template
has_code_of_conduct
has_pull_request_template
评分方式
47.3/80月度下载量 — npm 合计每月 3,501 次下载
0/20注册表被依赖数 — 该生态系统不报告此项
所用输入
packagesgnosys
dependents
ecosystemsnpm
total_downloads
monthly_downloads3,501
已排除计分(无数据或不适用):注册表被依赖数。 其余权重已重新归一化。

可持续性与治理

项目能否在其成员之外延续——巴士系数、响应能力、由谁支持,以及软件包的维护状况?

42存在风险 · 占总体的 24%
评分方式
9/54巴士系数 — 1 位贡献者贡献了半数提交
0/22.5提交分布 — 头号贡献者编写了 100% 的提交
1.4/13.5贡献者广度 — 1 位贡献者
0/10OpenSSF Scorecard:Contributors — project has 0 contributing companies or organizations -- score normalized to 0
所用输入
bus_factor1
contributors_sampled1
top_contributor_share1
评分方式
0/46.8议题解决 — 0% 的议题已关闭
25.5/38.3PR 接受 — 已裁定的 PR 中 4/6 已合并
0/15OpenSSF Scorecard:Code-Review — Found 0/28 approved changesets -- score normalized to 0
所用输入
merged_prs4
open_issues2
closed_issues0
issue_closed_ratio0
closed_unmerged_prs2
评分方式
30/30所有权背书 — 组织持有
0/20已验证域名
2.2/25所有者影响力 — proticom 有 1 位关注者
15.5/25既往记录 — 2 个公开仓库,账户约 11 年
所用输入
followers1
owner_typeOrganization
is_verified
owner_loginproticom
public_repos2
account_age_days4,171
评分方式
25/25已发布且可解析 — npm 上有 1 个软件包
35/35发布时效 — 最近一次发布于 4 天前
20/20版本历史 — 87 个已发布版本
20/20未被弃用 — 活跃,未被弃用或撤回
所用输入
packagesgnosys
ecosystemsnpm
any_deprecated
min_days_since_publish4

工程质量

基础的工程与文档实践是否到位?

86优秀 · 占总体的 20%

工程实践

84良好
评分方式
24/24CI 工作流 — 3 个工作流
24/24存在测试
16/16Linter 配置 — biome.json
0/9.6Pre-commit 钩子
0/6.4.editorconfig
20/20OpenSSF Scorecard:CI-Tests — 1 out of 1 merged PRs checked by a CI test -- score normalized to 10
所用输入
has_ci
has_tests
has_editorconfig
has_linter_config
has_precommit_config

文档

90优秀
评分方式
30/30README
25/25文档目录
15/15文档 / 主页站点 — https://gnosys.ai
10/10仓库描述
10/10主题标签 — 18 个主题标签
0/10Wiki
所用输入
topicsai, ai-agents, ai-tools, developer-tools, knowledge-management, llm, mcp, mcp-server, memory, model-context-protocol, obsidian, persistent-memory, typescript, agent-memory, claude, cursor, sqlite, grok-build
has_wiki
homepagehttps://gnosys.ai
has_readme
has_docs_dir
has_description

安全

可见的安全与供应链实践是否稳固,且不存在未解决的高风险司法辖区暴露?

69中等 · 占总体的 16%

安全态势

61中等
评分方式
7.5/7.5Binary-Artifacts — no binaries found in the repo
2.2/7.5Branch-Protection — branch protection is not maximal on development and all release branches
2.5/2.5CI-Tests — 1 out of 1 merged PRs checked by a CI test -- score normalized to 10
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 0/28 approved changesets -- score normalized to 0
0/2.5Contributors — project has 0 contributing companies or organizations -- score normalized to 0
10/10Dangerous-Workflow — no dangerous workflow patterns detected
7.5/7.5Dependency-Update-Tool — update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5许可证 — license file detected
7.5/7.5Maintained — 30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
0/5Packaging — 无数据
3/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 6
0/5SAST — SAST tool is not run on all commits -- score normalized to 0
5/5Security-Policy — security policy file detected
0/7.5Signed-Releases — 无数据
6.8/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
2.2/7.5Vulnerabilities — 7 existing vulnerabilities detected
所用输入
sourceopenssf_scorecard
checks_evaluated16
scorecard_versionv5.5.0
checks_inconclusive2
scorecard_aggregate6.1
已排除计分(无数据或不适用):packaging, signed_releases。 其余权重已重新归一化。
评分方式
35/35直接依赖不含已知公告 — 没有直接依赖携带已知公告
0/25间接依赖不含已知公告 — 在此范围内,传递依赖集合无法与开发和测试依赖区分
0/40没有长期未处理的公告 — 没有公告带有发布日期
所用输入
sourceosv
advisories7
affected_packages4
assessed_packages438
unassessed_packages0
affected_by_severityhigh 2, moderate 2
direct_affected_packages0
已排除计分(无数据或不适用):间接依赖不含已知公告, 没有长期未处理的公告。 其余权重已重新归一化。 已将 438 个已解析依赖与 OSV 比对。 该仓库未发布任何索引可解析的软件包,因此改为评估仓库依赖图。该图将开发与测试版本固定同交付的依赖混在一起,因此仅对声明的运行时依赖计分;传递性发现仅作为背景信息列出,不计入评分。 未对可达性进行分析。

AI 就绪度

该仓库在多大程度上具备与 AI 编码代理协同开发与维护的条件?这是一枚独立的实验性徽章——权重为 0.0,因此单独呈现,不影响总体健康评分。

74良好 · 占总体的 0%
评分方式
45/45代理指令 — AGENTS.md, src/test/fixtures/ide-init/claude.md
0/15机器可读文档(llms.txt)
40/40可读的提交历史 — 99 次人类提交中有 84 次说明了意图(结构化标题或解释性正文)
所用输入
has_llms_txt
legible_history_share0.848
agent_instruction_filesAGENTS.md, src/test/fixtures/ide-init/claude.md
agent_instruction_max_bytes4,665
评分方式
0/18一条命令的引导启动
22/22自动化测试
11/11Lint / 格式化配置 — biome.json
11/11静态类型检查 — tsconfig.json
10/10可复现环境 — Dockerfile, lockfile
10/10已体现的代理实践 — 最近 100 次提交中有 26 次由代理编写或署名代理
5/8自动化维护 — 已配置依赖自动化,但在抽样提交中未观察到
6/10OpenSSF Scorecard:Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 6
所用输入
has_nix
has_tests
lockfilespackage-lock.json
has_dockerfile
typed_language
bootstrap_files
has_devcontainer
has_linter_config
typecheck_configstsconfig.json
agent_commit_share0.26
toolchain_manifests
dependency_bot_commit_share0
评分方式
45/45可类型检查的代码 — TypeScript(静态类型)
54.7/55可控的文件大小 — 采样的 537 个源文件中有 3 个超过 60KB
所用输入
primary_languageTypeScript
largest_source_bytes185,029
source_files_sampled537
oversized_source_files3
评分方式
0/40API 模式(OpenAPI/GraphQL/proto)
20/20MCP 服务器
0/40可运行示例
所用输入
example_dirs
has_mcp_signal
api_schema_files

关键数据

4GitHub 星标
1贡献者
500最近 12 个月提交数
1距最近推送天数
90发布版本数
1巴士系数(bus factor)
2开放议题
npm软件包生态系统数

数据采集警告

  • deps.dev does not index npm:gnosys@6.2.1; advisories assessed against the repository dependency graph instead

更多细节

Star 与 Fork 历史 4 ★ / 0 ⇿
4Star
37发布

每颗 star 和每个 fork 的添加时间,来自 GitHub 并按天汇总。累计增长位于其构成来源——每日新增——的正上方,二者可相互对照:稳定的自然增长与短暂的突增形态截然不同。当这一差别可被衡量时,它会作为增长真实性予以报告。

1223344412026-052026-062026-07
主版本 1次版本 11修订 25
OpenSSF Scorecard 6.1 / 10
6.1综合

来自开源项目 OpenSSF Scorecard 的独立、工具无关的安全评估。每项检查奖励的是安全实践本身,而非特定供应商的工具。Scorecard 无法判定的检查项标记为 不适用,并从安全评分中剔除(绝不按零分计)。Scorecard v5.5.0 · 2026-07-22 07:43 UTC

10Binary-Artifactsno binaries found in the repo
3Branch-Protectionbranch protection is not maximal on development and all release branches
10CI-Tests1 out of 1 merged PRs checked by a CI test -- score normalized to 10
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 0/28 approved changesets -- score normalized to 0
0Contributorsproject has 0 contributing companies or organizations -- score normalized to 0
10Dangerous-Workflowno dangerous workflow patterns detected
10Dependency-Update-Toolupdate tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
10Maintained30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
不适用Packagingpackaging workflow not detected
6Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 6
0SASTSAST tool is not run on all commits -- score normalized to 0
10Security-Policysecurity policy file detected
不适用Signed-Releasesno releases found
9Token-Permissionsdetected GitHub workflow tokens with excessive permissions
3Vulnerabilities7 existing vulnerabilities detected
直接依赖 13
注册表软件包版本约束清单文件
npm@anthropic-ai/sdk^0.78.0package.json
npm@modelcontextprotocol/sdk^1.12.1package.json
npmcommander^13.1.0package.json
npmcsv-parse^6.1.0package.json
npmdotenv^17.3.1package.json
npmglob^13.0.6package.json
npmgray-matter^4.0.3package.json
npmjszip^3.10.1package.json
npmmammoth^1.12.0package.json
npmpdf-parse^2.4.5package.json
npmturndown^7.2.2package.json
npmulidx^2.4.1package.json
npmzod^4.3.6package.json
全部依赖 438

来自 GitHub 依赖图的完整解析依赖集合:13 个直接依赖与 425 个间接(传递)软件包。仓库提交锁文件时,传递闭包才是完整的。

注册表软件包版本关系
npm@anthropic-ai/sdk0.78.0直接
npm@modelcontextprotocol/sdk1.29.0直接
npmcommander13.1.0直接
npmcsv-parse6.2.1直接
npmdotenv17.4.2直接
npmglob13.0.6直接
npmgray-matter4.0.3直接
npmjszip3.10.1直接
npmmammoth1.12.0直接
npmpdf-parse2.4.5直接
npmturndown7.2.4直接
npmulidx2.4.1直接
npmzod4.4.3直接
npm@babel/helper-string-parser7.29.7间接
npm@babel/helper-validator-identifier7.29.7间接
npm@babel/parser7.29.7间接
npm@babel/runtime7.29.7间接
npm@babel/types7.29.7间接
npm@bcoe/v8-coverage1.0.2间接
npm@biomejs/biome2.5.0间接
npm@biomejs/cli-darwin-arm642.5.0间接
npm@biomejs/cli-darwin-x642.5.0间接
npm@biomejs/cli-linux-arm642.5.0间接
npm@biomejs/cli-linux-arm64-musl2.5.0间接
npm@biomejs/cli-linux-x642.5.0间接
npm@biomejs/cli-linux-x64-musl2.5.0间接
npm@biomejs/cli-win32-arm642.5.0间接
npm@biomejs/cli-win32-x642.5.0间接
npm@emnapi/core1.10.0间接
npm@emnapi/runtime1.10.0间接
npm@emnapi/wasi-threads1.2.1间接
npm@esbuild/aix-ppc640.28.1间接
npm@esbuild/android-arm0.28.1间接
npm@esbuild/android-arm640.28.1间接
npm@esbuild/android-x640.28.1间接
npm@esbuild/darwin-arm640.28.1间接
npm@esbuild/darwin-x640.28.1间接
npm@esbuild/freebsd-arm640.28.1间接
npm@esbuild/freebsd-x640.28.1间接
npm@esbuild/linux-arm0.28.1间接
npm@esbuild/linux-arm640.28.1间接
npm@esbuild/linux-ia320.28.1间接
npm@esbuild/linux-loong640.28.1间接
npm@esbuild/linux-mips64el0.28.1间接
npm@esbuild/linux-ppc640.28.1间接
npm@esbuild/linux-riscv640.28.1间接
npm@esbuild/linux-s390x0.28.1间接
npm@esbuild/linux-x640.28.1间接
npm@esbuild/netbsd-arm640.28.1间接
npm@esbuild/netbsd-x640.28.1间接
npm@esbuild/openbsd-arm640.28.1间接
npm@esbuild/openbsd-x640.28.1间接
npm@esbuild/openharmony-arm640.28.1间接
npm@esbuild/sunos-x640.28.1间接
npm@esbuild/win32-arm640.28.1间接
npm@esbuild/win32-ia320.28.1间接
npm@esbuild/win32-x640.28.1间接
npm@hono/node-server1.19.14间接
npm@huggingface/jinja0.5.9间接
npm@huggingface/tokenizers0.1.3间接
npm@huggingface/transformers4.2.0间接
npm@img/colour1.1.0间接
npm@img/sharp-darwin-arm640.34.5间接
npm@img/sharp-darwin-x640.34.5间接
npm@img/sharp-libvips-darwin-arm641.2.4间接
npm@img/sharp-libvips-darwin-x641.2.4间接
npm@img/sharp-libvips-linux-arm1.2.4间接
npm@img/sharp-libvips-linux-arm641.2.4间接
npm@img/sharp-libvips-linux-ppc641.2.4间接
npm@img/sharp-libvips-linux-riscv641.2.4间接
npm@img/sharp-libvips-linux-s390x1.2.4间接
npm@img/sharp-libvips-linux-x641.2.4间接
npm@img/sharp-libvips-linuxmusl-arm641.2.4间接
npm@img/sharp-libvips-linuxmusl-x641.2.4间接
npm@img/sharp-linux-arm0.34.5间接
npm@img/sharp-linux-arm640.34.5间接
npm@img/sharp-linux-ppc640.34.5间接
npm@img/sharp-linux-riscv640.34.5间接
npm@img/sharp-linux-s390x0.34.5间接
npm@img/sharp-linux-x640.34.5间接
npm@img/sharp-linuxmusl-arm640.34.5间接
npm@img/sharp-linuxmusl-x640.34.5间接
npm@img/sharp-wasm320.34.5间接
npm@img/sharp-win32-arm640.34.5间接
npm@img/sharp-win32-ia320.34.5间接
npm@img/sharp-win32-x640.34.5间接
npm@jridgewell/resolve-uri3.1.2间接
npm@jridgewell/sourcemap-codec1.5.5间接
npm@jridgewell/trace-mapping0.3.31间接
npm@mixmark-io/domino2.2.0间接
npm@napi-rs/canvas0.1.80间接
npm@napi-rs/canvas-android-arm640.1.80间接
npm@napi-rs/canvas-darwin-arm640.1.80间接
npm@napi-rs/canvas-darwin-x640.1.80间接
npm@napi-rs/canvas-linux-arm-gnueabihf0.1.80间接
npm@napi-rs/canvas-linux-arm64-gnu0.1.80间接
npm@napi-rs/canvas-linux-arm64-musl0.1.80间接
npm@napi-rs/canvas-linux-riscv64-gnu0.1.80间接
npm@napi-rs/canvas-linux-x64-gnu0.1.80间接
npm@napi-rs/canvas-linux-x64-musl0.1.80间接
npm@napi-rs/canvas-win32-x64-msvc0.1.80间接
npm@napi-rs/wasm-runtime1.1.5间接
npm@oxc-parser/binding-android-arm-eabi0.133.0间接
npm@oxc-parser/binding-android-arm640.133.0间接
npm@oxc-parser/binding-darwin-arm640.133.0间接
npm@oxc-parser/binding-darwin-x640.133.0间接
npm@oxc-parser/binding-freebsd-x640.133.0间接
npm@oxc-parser/binding-linux-arm-gnueabihf0.133.0间接
npm@oxc-parser/binding-linux-arm-musleabihf0.133.0间接
npm@oxc-parser/binding-linux-arm64-gnu0.133.0间接
npm@oxc-parser/binding-linux-arm64-musl0.133.0间接
npm@oxc-parser/binding-linux-ppc64-gnu0.133.0间接
npm@oxc-parser/binding-linux-riscv64-gnu0.133.0间接
npm@oxc-parser/binding-linux-riscv64-musl0.133.0间接
npm@oxc-parser/binding-linux-s390x-gnu0.133.0间接
npm@oxc-parser/binding-linux-x64-gnu0.133.0间接
npm@oxc-parser/binding-linux-x64-musl0.133.0间接
npm@oxc-parser/binding-openharmony-arm640.133.0间接
npm@oxc-parser/binding-wasm32-wasi0.133.0间接
npm@oxc-parser/binding-win32-arm64-msvc0.133.0间接
npm@oxc-parser/binding-win32-ia32-msvc0.133.0间接
npm@oxc-parser/binding-win32-x64-msvc0.133.0间接
npm@oxc-project/types0.133.0间接
npm@oxc-resolver/binding-android-arm-eabi11.20.0间接
npm@oxc-resolver/binding-android-arm6411.20.0间接
npm@oxc-resolver/binding-darwin-arm6411.20.0间接
npm@oxc-resolver/binding-darwin-x6411.20.0间接
npm@oxc-resolver/binding-freebsd-x6411.20.0间接
npm@oxc-resolver/binding-linux-arm-gnueabihf11.20.0间接
npm@oxc-resolver/binding-linux-arm-musleabihf11.20.0间接
npm@oxc-resolver/binding-linux-arm64-gnu11.20.0间接
npm@oxc-resolver/binding-linux-arm64-musl11.20.0间接
npm@oxc-resolver/binding-linux-ppc64-gnu11.20.0间接
npm@oxc-resolver/binding-linux-riscv64-gnu11.20.0间接
npm@oxc-resolver/binding-linux-riscv64-musl11.20.0间接
npm@oxc-resolver/binding-linux-s390x-gnu11.20.0间接
npm@oxc-resolver/binding-linux-x64-gnu11.20.0间接
npm@oxc-resolver/binding-linux-x64-musl11.20.0间接
npm@oxc-resolver/binding-openharmony-arm6411.20.0间接
npm@oxc-resolver/binding-wasm32-wasi11.20.0间接
npm@oxc-resolver/binding-win32-arm64-msvc11.20.0间接
npm@oxc-resolver/binding-win32-x64-msvc11.20.0间接
npm@protobufjs/aspromise1.1.2间接
npm@protobufjs/base641.1.2间接
npm@protobufjs/codegen2.0.5间接
npm@protobufjs/eventemitter1.1.1间接
npm@protobufjs/fetch1.1.1间接
npm@protobufjs/float1.0.2间接
npm@protobufjs/path1.1.2间接
npm@protobufjs/pool1.1.0间接
npm@protobufjs/utf81.1.1间接
npm@rolldown/binding-android-arm641.0.3间接
npm@rolldown/binding-darwin-arm641.0.3间接
npm@rolldown/binding-darwin-x641.0.3间接
npm@rolldown/binding-freebsd-x641.0.3间接
npm@rolldown/binding-linux-arm-gnueabihf1.0.3间接
npm@rolldown/binding-linux-arm64-gnu1.0.3间接
npm@rolldown/binding-linux-arm64-musl1.0.3间接
npm@rolldown/binding-linux-ppc64-gnu1.0.3间接
npm@rolldown/binding-linux-s390x-gnu1.0.3间接
npm@rolldown/binding-linux-x64-gnu1.0.3间接
npm@rolldown/binding-linux-x64-musl1.0.3间接
npm@rolldown/binding-openharmony-arm641.0.3间接
npm@rolldown/binding-wasm32-wasi1.0.3间接
npm@rolldown/binding-win32-arm64-msvc1.0.3间接
npm@rolldown/binding-win32-x64-msvc1.0.3间接
npm@rolldown/pluginutils1.0.1间接
npm@standard-schema/spec1.1.0间接
npm@tybys/wasm-util0.10.2间接
npm@types/better-sqlite37.6.13间接
npm@types/chai5.2.3间接
npm@types/deep-eql4.0.2间接
npm@types/estree1.0.9间接
npm@types/node22.19.21间接
npm@types/turndown5.0.6间接
npm@vitest/coverage-v84.1.9间接
npm@vitest/expect4.1.9间接
npm@vitest/mocker4.1.9间接
npm@vitest/pretty-format4.1.9间接
npm@vitest/runner4.1.9间接
npm@vitest/snapshot4.1.9间接
npm@vitest/spy4.1.9间接
npm@vitest/utils4.1.9间接
npm@xmldom/xmldom0.8.13间接
npmaccepts2.0.0间接
npmadm-zip0.6.0间接
npmajv8.20.0间接
npmajv-formats3.0.1间接
npmargparse1.0.10间接
npmassertion-error2.0.1间接
npmast-v8-to-istanbul1.0.4间接
npmbalanced-match4.0.4间接
npmbase64-js1.5.1间接
npmbetter-sqlite311.10.0间接
npmbindings1.5.0间接
npmbl4.1.0间接
npmbluebird3.4.7间接
npmbody-parser2.3.0间接
npmboolean3.2.0间接
npmbrace-expansion5.0.7间接
npmbuffer5.7.1间接
npmbytes3.1.2间接
npmcall-bind-apply-helpers1.0.2间接
npmcall-bound1.0.4间接
npmchai6.2.2间接
npmchownr1.1.4间接
npmcontent-disposition1.1.0间接
npmcontent-type1.0.5间接
npmcontent-type2.0.0间接
npmconvert-source-map2.0.0间接
npmcookie0.7.2间接
npmcookie-signature1.2.2间接
npmcore-util-is1.0.3间接
npmcors2.8.6间接
npmcross-spawn7.0.6间接
npmdebug4.4.3间接
npmdecompress-response6.0.0间接
npmdeep-extend0.6.0间接
npmdefine-data-property1.1.4间接
npmdefine-properties1.2.1间接
npmdepd2.0.0间接
npmdetect-libc2.1.2间接
npmdetect-node2.1.0间接
npmdingbat-to-unicode1.0.1间接
npmduck0.1.12间接
npmdunder-proto1.0.1间接
npmee-first1.1.1间接
npmencodeurl2.0.0间接
npmend-of-stream1.4.5间接
npmes-define-property1.0.1间接
npmes-errors1.3.0间接
npmes-module-lexer2.1.0间接
npmes-object-atoms1.1.2间接
npmes6-error4.1.1间接
npmesbuild0.28.1间接
npmescape-html1.0.3间接
npmescape-string-regexp4.0.0间接
npmesprima4.0.1间接
npmestree-walker3.0.3间接
npmetag1.8.1间接
npmeventsource3.0.7间接
npmeventsource-parser3.1.0间接
npmexpand-template2.0.3间接
npmexpect-type1.3.0间接
npmexpress5.2.1间接
npmexpress-rate-limit8.5.2间接
npmextend-shallow2.0.1间接
npmfast-deep-equal3.1.3间接
npmfast-uri3.1.2间接
npmfd-package-json2.0.0间接
npmfdir6.5.0间接
npmfile-uri-to-path1.0.0间接
npmfinalhandler2.1.1间接
npmflatbuffers25.9.23间接
npmformatly0.3.0间接
npmforwarded0.2.0间接
npmfresh2.0.0间接
npmfs-constants1.0.0间接
npmfsevents2.3.3间接
npmfunction-bind1.1.2间接
npmget-intrinsic1.3.0间接
npmget-proto1.0.1间接
npmget-tsconfig4.14.0间接
npmgithub-from-package0.0.0间接
npmglobal-agent3.0.0间接
npmglobalthis1.0.4间接
npmgopd1.2.0间接
npmguid-typescript1.0.9间接
npmhas-flag4.0.0间接
npmhas-property-descriptors1.0.2间接
npmhas-symbols1.1.0间接
npmhasown2.0.4间接
npmhono4.12.25间接
npmhtml-escaper2.0.2间接
npmhttp-errors2.0.1间接
npmiconv-lite0.7.2间接
npmieee7541.2.1间接
npmimmediate3.0.6间接
npminherits2.0.4间接
npmini1.3.8间接
npmip-address10.2.0间接
npmipaddr.js1.9.1间接
npmis-extendable0.1.1间接
npmis-promise4.0.0间接
npmisarray1.0.0间接
npmisexe2.0.0间接
npmistanbul-lib-coverage3.2.2间接
npmistanbul-lib-report3.0.1间接
npmistanbul-reports3.2.0间接
npmjiti2.7.0间接
npmjose6.2.3间接
npmjs-tokens10.0.0间接
npmjs-yaml3.15.0间接
npmjson-schema-to-ts3.1.1间接
npmjson-schema-traverse1.0.0间接
npmjson-schema-typed8.0.2间接
npmjson-stringify-safe5.0.1间接
npmkind-of6.0.3间接
npmknip6.16.1间接
npmlayerr3.0.0间接
npmlie3.3.0间接
npmlightningcss1.32.0间接
npmlightningcss-android-arm641.32.0间接
npmlightningcss-darwin-arm641.32.0间接
npmlightningcss-darwin-x641.32.0间接
npmlightningcss-freebsd-x641.32.0间接
npmlightningcss-linux-arm-gnueabihf1.32.0间接
npmlightningcss-linux-arm64-gnu1.32.0间接
npmlightningcss-linux-arm64-musl1.32.0间接
npmlightningcss-linux-x64-gnu1.32.0间接
npmlightningcss-linux-x64-musl1.32.0间接
npmlightningcss-win32-arm64-msvc1.32.0间接
npmlightningcss-win32-x64-msvc1.32.0间接
npmlong5.3.2间接
npmlop0.4.2间接
npmlru-cache11.5.1间接
npmmagic-string0.30.21间接
npmmagicast0.5.3间接
npmmake-dir4.0.0间接
npmmatcher3.0.0间接
npmmath-intrinsics1.1.0间接
npmmedia-typer1.1.0间接
npmmerge-descriptors2.0.0间接
npmmime-db1.54.0间接
npmmime-types3.0.2间接
npmmimic-response3.1.0间接
npmminimatch10.2.5间接
npmminimist1.2.8间接
npmminipass7.1.3间接
npmmkdirp-classic0.5.3间接
npmms2.1.3间接
npmnanoid3.3.12间接
npmnapi-build-utils2.0.0间接
npmnegotiator1.0.0间接
npmnode-abi3.92.0间接
npmobject-assign4.1.1间接
npmobject-inspect1.13.4间接
npmobject-keys1.1.1间接
npmobug2.1.3间接
npmon-finished2.4.1间接
npmonce1.4.0间接
npmonnxruntime-common1.24.0-dev.20251116-b39e144322间接
npmonnxruntime-common1.24.3间接
npmonnxruntime-node1.24.3间接
npmonnxruntime-web1.26.0-dev.20260416-b7804b056c间接
npmoption0.2.4间接
npmoxc-parser0.133.0间接
npmoxc-resolver11.20.0间接
npmpako1.0.11间接
npmparseurl1.3.3间接
npmpath-is-absolute1.0.1间接
npmpath-key3.1.1间接
npmpath-scurry2.0.2间接
npmpath-to-regexp8.4.2间接
npmpathe2.0.3间接
npmpdfjs-dist5.4.296间接
npmpicocolors1.1.1间接
npmpicomatch4.0.4间接
npmpkce-challenge5.0.1间接
npmplatform1.3.6间接
npmpostcss8.5.15间接
npmprebuild-install7.1.3间接
npmprocess-nextick-args2.0.1间接
npmprotobufjs7.6.5间接
npmproxy-addr2.0.7间接
npmpump3.0.4间接
npmqs6.15.2间接
npmrange-parser1.2.1间接
npmraw-body3.0.2间接
npmrc1.2.8间接
npmreadable-stream2.3.8间接
npmreadable-stream3.6.2间接
npmrequire-from-string2.0.2间接
npmresolve-pkg-maps1.0.0间接
npmroarr2.15.4间接
npmrolldown1.0.3间接
npmrouter2.2.0间接
npmsafe-buffer5.1.2间接
npmsafer-buffer2.1.2间接
npmsection-matter1.0.0间接
npmsemver7.8.4间接
npmsemver-compare1.0.0间接
npmsend1.2.1间接
npmserialize-error7.0.1间接
npmserve-static2.2.1间接
npmsetimmediate1.0.5间接
npmsetprototypeof1.2.0间接
npmsharp0.34.5间接
npmshebang-command2.0.0间接
npmshebang-regex3.0.0间接
npmside-channel1.1.1间接
npmside-channel-list1.0.1间接
npmside-channel-map1.0.1间接
npmside-channel-weakmap1.0.2间接
npmsiginfo2.0.0间接
npmsimple-concat1.0.1间接
npmsimple-get4.0.1间接
npmsmol-toml1.6.1间接
npmsource-map-js1.2.1间接
npmsprintf-js1.0.3间接
npmsprintf-js1.1.3间接
npmstackback0.0.2间接
npmstatuses2.0.2间接
npmstd-env4.1.0间接
npmstring_decoder1.1.1间接
npmstrip-bom-string1.0.0间接
npmstrip-json-comments2.0.1间接
npmstrip-json-comments5.0.3间接
npmsupports-color7.2.0间接
npmtar-fs2.1.4间接
npmtar-stream2.2.0间接
npmtinybench2.9.0间接
npmtinyexec1.2.4间接
npmtinyglobby0.2.17间接
npmtinyrainbow3.1.0间接
npmtoidentifier1.0.1间接
npmts-algebra2.0.0间接
npmtslib2.8.1间接
npmtsx4.22.4间接
npmtunnel-agent0.6.0间接
npmtype-fest0.13.1间接
npmtype-is2.1.0间接
npmtypescript5.9.3间接
npmunbash3.0.0间接
npmunderscore1.13.8间接
npmundici-types6.21.0间接
npmunpipe1.0.0间接
npmutil-deprecate1.0.2间接
npmvary1.1.2间接
npmvite8.0.16间接
npmvitest4.1.9间接
npmwalk-up-path4.0.0间接
npmwhich2.0.2间接
npmwhy-is-node-running2.3.0间接
npmwrappy1.0.2间接
npmxmlbuilder10.1.1间接
npmyaml2.9.0间接
npmzod-to-json-schema3.25.2间接
依赖安全公告 4

该仓库未发布可被索引解析的包,因此评估的是其自身的依赖图——共 438 个包,其中也包含从不交付的开发与测试版本固定:4 个存在已知公告,0 个为直接依赖。

软件包版本关系严重程度公告数修复版本
fast-uri3.1.2间接24.1.1
sharp0.34.5间接10.35.0
@hono/node-server1.19.14间接12.0.5
hono4.12.25间接34.12.27

公告表示依赖图中记录的版本落入某条公告的受影响范围。可达性未经分析,且依赖图包含开发与测试的版本固定——某项发现可能只涉及工具链而非交付的软件。

原始 JSON 报告 机器可读
{
  "data": {
    "repo": {
      "topics": [
        "ai",
        "ai-agents",
        "ai-tools",
        "developer-tools",
        "knowledge-management",
        "llm",
        "mcp",
        "mcp-server",
        "memory",
        "model-context-protocol",
        "obsidian",
        "persistent-memory",
        "typescript",
        "agent-memory",
        "claude",
        "cursor",
        "sqlite",
        "grok-build"
      ],
      "is_fork": false,
      "size_kb": 8140,
      "has_wiki": false,
      "homepage": "https://gnosys.ai",
      "languages": {
        "Shell": 3808,
        "Dockerfile": 2998,
        "JavaScript": 230901,
        "TypeScript": 2910457
      },
      "pushed_at": "2026-07-21T04:42:53Z",
      "created_at": "2026-03-07T21:09:04Z",
      "owner_type": "Organization",
      "updated_at": "2026-07-21T07:45:50Z",
      "description": "Persistent memory for AI agents",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "MIT",
      "default_branch": "master",
      "license_spdx_raw": "MIT",
      "primary_language": "TypeScript",
      "significant_languages": [
        "TypeScript"
      ]
    },
    "owner": {
      "blog": "www.proticom.com",
      "name": "Proticom - IT Intelligence",
      "type": "Organization",
      "login": "proticom",
      "company": null,
      "location": "United States of America",
      "followers": 1,
      "avatar_url": "https://avatars.githubusercontent.com/u/11068368?v=4",
      "created_at": "2015-02-19T01:08:09Z",
      "is_verified": null,
      "public_repos": 2,
      "account_age_days": 4171
    },
    "license": {
      "state": "standard",
      "spdx_id": "MIT",
      "raw_spdx": "MIT",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v6.2.1",
          "kind": "patch",
          "published_at": "2026-07-17T09:38:30Z"
        },
        {
          "tag": "v6.2.0",
          "kind": "minor",
          "published_at": "2026-07-15T03:19:09Z"
        },
        {
          "tag": "v6.1.0",
          "kind": "minor",
          "published_at": "2026-07-15T02:47:21Z"
        },
        {
          "tag": "v6.0.1",
          "kind": "patch",
          "published_at": "2026-07-13T03:10:51Z"
        },
        {
          "tag": "v6.0.0",
          "kind": "major",
          "published_at": "2026-07-13T02:57:23Z"
        },
        {
          "tag": "v5.17.0",
          "kind": "minor",
          "published_at": "2026-07-09T01:05:53Z"
        },
        {
          "tag": "v5.16.0",
          "kind": "minor",
          "published_at": "2026-07-05T15:08:24Z"
        },
        {
          "tag": "v5.15.3",
          "kind": "patch",
          "published_at": "2026-07-04T08:40:43Z"
        },
        {
          "tag": "v5.15.2",
          "kind": "patch",
          "published_at": "2026-07-04T08:23:37Z"
        },
        {
          "tag": "v5.15.1",
          "kind": "patch",
          "published_at": "2026-07-03T01:07:38Z"
        },
        {
          "tag": "v5.15.0",
          "kind": "minor",
          "published_at": "2026-07-03T00:59:28Z"
        },
        {
          "tag": "v5.14.0",
          "kind": "minor",
          "published_at": "2026-07-02T22:48:06Z"
        },
        {
          "tag": "v5.13.1",
          "kind": "patch",
          "published_at": "2026-07-02T21:21:57Z"
        },
        {
          "tag": "v5.13.0",
          "kind": "minor",
          "published_at": "2026-07-02T14:20:43Z"
        },
        {
          "tag": "v5.12.3",
          "kind": "patch",
          "published_at": "2026-07-02T05:38:16Z"
        },
        {
          "tag": "v5.12.2",
          "kind": "patch",
          "published_at": "2026-06-12T03:18:54Z"
        },
        {
          "tag": "v5.12.1",
          "kind": "patch",
          "published_at": "2026-06-12T00:14:00Z"
        },
        {
          "tag": "v5.11.4",
          "kind": "patch",
          "published_at": "2026-05-27T03:13:42Z"
        },
        {
          "tag": "v5.11.3",
          "kind": "patch",
          "published_at": "2026-05-27T02:48:20Z"
        },
        {
          "tag": "v5.11.2",
          "kind": "patch",
          "published_at": "2026-05-27T02:45:02Z"
        },
        {
          "tag": "v5.11.1",
          "kind": "patch",
          "published_at": "2026-05-27T02:28:15Z"
        },
        {
          "tag": "v5.11.0",
          "kind": "minor",
          "published_at": "2026-05-26T19:29:57Z"
        },
        {
          "tag": "v5.10.0",
          "kind": "minor",
          "published_at": "2026-05-24T07:07:48Z"
        },
        {
          "tag": "v5.9.5",
          "kind": "patch",
          "published_at": "2026-05-21T14:48:21Z"
        },
        {
          "tag": "v5.9.4",
          "kind": "patch",
          "published_at": "2026-05-21T02:12:05Z"
        },
        {
          "tag": "v5.9.3",
          "kind": "patch",
          "published_at": "2026-05-20T21:51:42Z"
        },
        {
          "tag": "v5.9.2",
          "kind": "patch",
          "published_at": "2026-05-19T21:40:54Z"
        },
        {
          "tag": "v5.9.1",
          "kind": "patch",
          "published_at": "2026-05-18T02:51:59Z"
        },
        {
          "tag": "v5.9.0",
          "kind": "minor",
          "published_at": "2026-05-17T23:35:41Z"
        },
        {
          "tag": "v5.8.6",
          "kind": "patch",
          "published_at": "2026-05-16T04:59:25Z"
        },
        {
          "tag": "v5.8.5",
          "kind": "patch",
          "published_at": "2026-05-16T04:53:35Z"
        },
        {
          "tag": "v5.8.4",
          "kind": "patch",
          "published_at": "2026-05-16T02:59:09Z"
        },
        {
          "tag": "v5.8.3",
          "kind": "patch",
          "published_at": "2026-05-16T00:22:06Z"
        },
        {
          "tag": "v5.8.2",
          "kind": "patch",
          "published_at": "2026-05-14T06:43:25Z"
        },
        {
          "tag": "v5.8.1",
          "kind": "patch",
          "published_at": "2026-05-14T04:44:29Z"
        },
        {
          "tag": "v5.8.0",
          "kind": "minor",
          "published_at": "2026-05-14T03:47:49Z"
        },
        {
          "tag": "v5.7.1",
          "kind": "patch",
          "published_at": "2026-05-12T23:50:57Z"
        },
        {
          "tag": "v5.7.0",
          "kind": "minor",
          "published_at": "2026-05-05T15:57:08Z"
        },
        {
          "tag": "v5.6.0",
          "kind": "minor",
          "published_at": "2026-05-05T01:20:41Z"
        },
        {
          "tag": "v5.5.0",
          "kind": "minor",
          "published_at": "2026-05-03T14:41:32Z"
        },
        {
          "tag": "v5.4.3",
          "kind": "patch",
          "published_at": "2026-05-03T02:02:28Z"
        },
        {
          "tag": "v5.4.2",
          "kind": "patch",
          "published_at": "2026-05-03T00:04:23Z"
        },
        {
          "tag": "v5.4.1",
          "kind": "patch",
          "published_at": "2026-05-01T11:25:31Z"
        },
        {
          "tag": "v5.4.0",
          "kind": "minor",
          "published_at": "2026-04-30T13:36:24Z"
        },
        {
          "tag": "v5.3.3",
          "kind": "patch",
          "published_at": "2026-04-26T05:33:21Z"
        },
        {
          "tag": "v5.3.2",
          "kind": "patch",
          "published_at": "2026-04-26T05:06:40Z"
        },
        {
          "tag": "v5.3.1",
          "kind": "patch",
          "published_at": "2026-04-26T01:38:55Z"
        },
        {
          "tag": "v5.3.0",
          "kind": "minor",
          "published_at": "2026-04-26T01:13:19Z"
        },
        {
          "tag": "v5.2.24",
          "kind": "patch",
          "published_at": "2026-04-07T03:15:55Z"
        },
        {
          "tag": "v5.2.23",
          "kind": "patch",
          "published_at": "2026-04-07T02:32:46Z"
        },
        {
          "tag": "v5.2.22",
          "kind": "patch",
          "published_at": "2026-04-06T23:15:23Z"
        },
        {
          "tag": "v5.2.21",
          "kind": "patch",
          "published_at": "2026-04-06T22:24:00Z"
        },
        {
          "tag": "v5.2.20",
          "kind": "patch",
          "published_at": "2026-04-06T01:10:25Z"
        },
        {
          "tag": "v5.2.19",
          "kind": "patch",
          "published_at": "2026-04-06T00:37:52Z"
        },
        {
          "tag": "v5.2.18",
          "kind": "patch",
          "published_at": "2026-04-05T02:01:11Z"
        },
        {
          "tag": "v5.2.17",
          "kind": "patch",
          "published_at": "2026-04-05T00:55:37Z"
        },
        {
          "tag": "v5.2.16",
          "kind": "patch",
          "published_at": "2026-04-05T00:43:56Z"
        },
        {
          "tag": "v5.2.15",
          "kind": "patch",
          "published_at": "2026-04-05T00:21:50Z"
        },
        {
          "tag": "v5.2.14",
          "kind": "patch",
          "published_at": "2026-04-04T21:10:48Z"
        },
        {
          "tag": "v5.2.13",
          "kind": "patch",
          "published_at": "2026-04-04T20:17:37Z"
        },
        {
          "tag": "v5.2.12",
          "kind": "patch",
          "published_at": "2026-04-04T19:24:03Z"
        },
        {
          "tag": "v5.2.11",
          "kind": "patch",
          "published_at": "2026-04-04T19:03:13Z"
        },
        {
          "tag": "v5.2.10",
          "kind": "patch",
          "published_at": "2026-04-04T17:07:18Z"
        },
        {
          "tag": "v5.2.9",
          "kind": "patch",
          "published_at": "2026-04-04T17:03:24Z"
        },
        {
          "tag": "v5.2.8",
          "kind": "patch",
          "published_at": "2026-04-04T16:51:42Z"
        },
        {
          "tag": "v3.1.0",
          "kind": "minor",
          "published_at": "2026-03-15T15:55:38Z"
        },
        {
          "tag": "v3.0.1",
          "kind": "patch",
          "published_at": "2026-03-13T01:46:05Z"
        },
        {
          "tag": "v3.0.0",
          "kind": "major",
          "published_at": "2026-03-13T01:20:21Z"
        },
        {
          "tag": "v2.7.2",
          "kind": "patch",
          "published_at": "2026-03-12T19:15:54Z"
        },
        {
          "tag": "v2.7.1",
          "kind": "patch",
          "published_at": "2026-03-12T03:58:39Z"
        },
        {
          "tag": "v2.7.0",
          "kind": "minor",
          "published_at": "2026-03-12T03:35:48Z"
        },
        {
          "tag": "v2.6.0",
          "kind": "minor",
          "published_at": "2026-03-12T03:18:55Z"
        },
        {
          "tag": "v2.5.0",
          "kind": "minor",
          "published_at": "2026-03-12T03:13:42Z"
        },
        {
          "tag": "v2.4.0",
          "kind": "minor",
          "published_at": "2026-03-12T03:01:41Z"
        },
        {
          "tag": "v2.3.0",
          "kind": "minor",
          "published_at": "2026-03-12T02:47:45Z"
        },
        {
          "tag": "v2.2.0",
          "kind": "minor",
          "published_at": "2026-03-12T02:39:29Z"
        },
        {
          "tag": "v2.1.0",
          "kind": "minor",
          "published_at": "2026-03-12T01:52:16Z"
        },
        {
          "tag": "v2.0.1",
          "kind": "patch",
          "published_at": "2026-03-11T22:37:00Z"
        },
        {
          "tag": "v2.0.0",
          "kind": "major",
          "published_at": "2026-03-11T22:27:23Z"
        },
        {
          "tag": "v1.4.0",
          "kind": "minor",
          "published_at": "2026-03-11T19:01:07Z"
        },
        {
          "tag": "v1.3.1",
          "kind": "patch",
          "published_at": "2026-03-11T05:35:00Z"
        },
        {
          "tag": "v1.3.0",
          "kind": "minor",
          "published_at": "2026-03-11T05:32:22Z"
        },
        {
          "tag": "v1.2.0",
          "kind": "minor",
          "published_at": "2026-03-11T04:52:01Z"
        },
        {
          "tag": "v1.1.1",
          "kind": "patch",
          "published_at": "2026-03-11T03:04:40Z"
        },
        {
          "tag": "v1.1.0",
          "kind": "minor",
          "published_at": "2026-03-10T06:15:29Z"
        },
        {
          "tag": "v0.3.3",
          "kind": "patch",
          "published_at": "2026-03-09T07:24:20Z"
        },
        {
          "tag": "v0.3.2",
          "kind": "patch",
          "published_at": "2026-03-09T05:08:55Z"
        },
        {
          "tag": "v0.3.1",
          "kind": "patch",
          "published_at": "2026-03-09T05:00:42Z"
        },
        {
          "tag": "v0.3.0",
          "kind": "minor",
          "published_at": "2026-03-09T04:27:30Z"
        },
        {
          "tag": "v0.2.0",
          "kind": "minor",
          "published_at": "2026-03-09T02:36:36Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "f49863150d00a4ac7f18c9e3ba735d46df6ae5e3",
          "body": "chore(security): OSS hybrid hardening",
          "is_bot": false,
          "headline": "Merge pull request #13 from proticom/chore/oss-security-hardening",
          "author_name": "edtadros",
          "author_login": "edtadros",
          "committed_at": "2026-07-21T04:38:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "76cfa0d42fac44522a55e5b3e4acc5bfb44275c5",
          "body": "CI was failing npm audit --audit-level=high on optional\n@huggingface/transformers → onnxruntime-node → adm-zip <0.6.0.\nForce-fix would downgrade transformers; pin adm-zip >=0.6.0 via overrides\ninstead. npm audit is clean at high.",
          "is_bot": false,
          "headline": "fix(ci): clear high npm audit via adm-zip override",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-21T03:22:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8cb3a1589b384a3a95fb59e5e796cdd8aae5cfc6",
          "body": "…vilege)\n\nAlign gnosys with small-OSS best practice plus a few OpenClaw-inspired\nsafeguards: Dependabot + CODEOWNERS, SHA-pinned Actions, least-privilege\nworkflow permissions, a single ci-gate required check, npm deployment\nenvironment for OIDC publishes, and sanitize real machine paths from\ndocs/CLI/tests. GitHub settings (secret scanning, rulesets, etc.) are\napplied separately on the proticom/gnosys repo.",
          "is_bot": false,
          "headline": "chore(security): OSS hybrid hardening (Dependabot, CI gate, least pri…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-21T03:13:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "203c4e7e488cea66bfd9a3ad687d9d1dda309d16",
          "body": null,
          "is_bot": false,
          "headline": "6.2.1",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-17T09:38:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "36bf5e96223ebd234c9870214a4b3e0ccd91fb19",
          "body": "No behavior change (adversarially reviewed, ACCEPT): byte-identical\n--help surface (85,103 chars) across all 111 commands, docs/cli.md\nregenerates unchanged, 127/127 lazy imports preserved, registration\norder identical. 100 test files updated to readCliSource()\n(path-reference-only, annotated). New runtime wiring test + explicit\nsetup-lookup guard close the reviewer's two findings.",
          "is_bot": false,
          "headline": "refactor(cli): split cli.ts into per-domain registration modules",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-17T09:38:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b628800ea50adc158fcca33eb17d21dc08012cbd",
          "body": null,
          "is_bot": false,
          "headline": "6.2.0",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-15T03:19:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "494cf176e448a05d51633c5cfd758a2dfe3ea2fb",
          "body": "…nosys_toolset\n\nEvery agent session starts on core (19 tools, ~3.7k tokens vs 10.2k full)\nand can move to standard/full AND back down via the gnosys_toolset tool;\nswitching fires notifications/tools/list_changed so clients refresh.\nTier state is per agent session (per McpServer instance) — proven by\nmcp-toolset-isolation.test.ts. GNOSYS_MCP_TOOLSET still pins a start tier.",
          "is_bot": false,
          "headline": "feat(mcp): default core toolset with in-session self-escalation via g…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-15T03:19:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "74b1f9c0cfaafafdb013d3346c9bb8e171d11ce3",
          "body": null,
          "is_bot": false,
          "headline": "6.1.0",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-15T02:47:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "eb19b8818366c69cbd7eb82838c876b2847a1621",
          "body": "…t reduction)\n\n- gnosys_trace / gnosys_reflect / gnosys_traverse promoted from CLI-only\n  to MCP tools (library-layer, no shell-outs)\n- GNOSYS_MCP_TOOLSET=core|standard|full (default full): core = 18 tools\n  / ~3.6k tokens vs previous 52 tools / ~11.3k. projectRoot description\n  deduplicated; five fattest schemas trimmed (full tier now ~10.1k even\n  with 3 more tools). Budget-guard test prevents re-bloat.",
          "is_bot": false,
          "headline": "feat(mcp): trace/reflect/traverse tools + toolset tiers (context-bloa…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-15T02:47:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "12be6df4f158958b27027d16f89b4146fb318c9f",
          "body": null,
          "is_bot": false,
          "headline": "ci: run isolated setup-UI e2e suite (Docker) on every push",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-13T13:24:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b13f15632689874d9b0d80535b5d49d2481e5b33",
          "body": "…/Node24 ENOTEMPTY flake on .git/objects/pack",
          "is_bot": false,
          "headline": "test(helpers): retry temp-dir removal in cleanupTestEnv — fixes macOS…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-13T03:18:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ed2f8c597b0985488afcff831e549eaf6cf2a741",
          "body": null,
          "is_bot": false,
          "headline": "6.0.1",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-13T03:10:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "343d64d88206f140d646898b0c3a61ad847bbe56",
          "body": "….0.0 removal (knip)",
          "is_bot": false,
          "headline": "chore(deps): drop cli-highlight and marked — chat-only, orphaned by 6…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-13T03:10:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "364cd2ebc15f2e1716ae7425df89b71001b5629a",
          "body": null,
          "is_bot": false,
          "headline": "6.0.0",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-13T02:57:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c2f77d08ddf3ededd9ce648429db055b1f4d18ea",
          "body": "BREAKING CHANGE: llm.defaultProvider no longer defaults to 'anthropic'.\nLLM-requiring commands without a configured provider now fail with a\nclear 'run gnosys setup' error; display commands show 'not set'. Existing\nconfigs (which carry the field since v5.9.2) are unaffected.\n\nCloses the last layer of the settings-revert-to-anthropic bug family\n(deci-045/046/049). Suite: 291 files / 1,781 green; setup e2e 6/6.",
          "is_bot": false,
          "headline": "feat!: remove implicit anthropic default provider (deci-049)",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-13T02:57:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7325018979a0121018fe3906f4ce39240fddd01a",
          "body": "…ct deps)\n\nBREAKING CHANGE: 'gnosys chat' and 'gnosys setup chat' are removed. Chat\nlives in the Gnosys apps and Gnosys Enterprise going forward; the\ngnosys-chat TUI repo is retained for Enterprise reuse. Old gnosys.json\nfiles with chat/taskModels.chat keys load fine (keys stripped, one-time\nstderr \n[…]\narning; regression test added). Drops ink + react entirely.\n\nSuite: 290 files / 1,774 tests green; isolated setup e2e 6/6; tsc clean.\nExisting-test edits flagged in-line with '// v6.0.0 chat removed'.",
          "is_bot": false,
          "headline": "feat!: remove OSS chat (gnosys chat, setup chat, chat config, ink/rea…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-13T02:31:26Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "341ea0301d6e0780d075d5f0dc8388f1086c1a43",
          "body": "…eo ingestion\n\nTool description, README table, and generated docs/mcp-tools.md aligned.",
          "is_bot": false,
          "headline": "docs: gnosys_ingest_file description reflects shipped image/audio/vid…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-13T01:19:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2b8cdc6afa74f7f42be60d6c96b2684850809179",
          "body": "… shipped\n\nThe 'Phase 3/4 will add them' comment predated the implemented handlers\nand caused a false audit finding that the marketing site overclaims.",
          "is_bot": false,
          "headline": "docs(code): fix stale multimodalIngest header — image/audio/video ARE…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-13T00:47:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f0c29ea17c237bbc869c60bd585fcad2f66a30d2",
          "body": null,
          "is_bot": false,
          "headline": "docs(security): add security@gnosys.ai private reporting address",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-10T09:52:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2db128502360687216f706049f8084913929603e",
          "body": "- e2e-setup/: expect-driven tests for gnosys init, setup wizard (render +\n  graceful Ctrl+C), setup --non-interactive, web init wizard, plus an\n  isolation audit — all inside a no-network Docker container installing\n  the npm-pack tarball as a non-root user. npm run test:e2e-setup.\n- src/test/docs-w\n[…]\ns: documented web-command flags must exist\n  in src/cli.ts (doc drift guard).\n- README: add missing gnosys_attach / gnosys_get_attachment to tool table.\n\nSuite: 1,948 tests green; e2e-setup 6/6 green.",
          "is_bot": false,
          "headline": "test(e2e): isolated Docker setup-UI test suite + docs drift guard",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-09T08:45:07Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "8e2a75e55fd058b0f991365d43e7b1a3bc1f2d17",
          "body": null,
          "is_bot": false,
          "headline": "5.17.0",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-09T01:05:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "524f0ee908faa65b68a38a3146a1ab57f78f47f5",
          "body": "…HANGELOG\n\nTask 1.5 review_passed (reviewer: sonnet).",
          "is_bot": false,
          "headline": "docs(web): semantic search docs — command pages, explainer, README, C…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-09T00:30:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "061a620bbe087372c35f973b15bff30669783400",
          "body": "…l/--no-expansions, status vectors reporting\n\nTask 1.4 review_passed (reviewer: sonnet). web build/build-index gain embedding\nflags; web status reports vectors model/dims/count/size; init wizard tip added.",
          "is_bot": false,
          "headline": "feat(web): CLI wiring for semantic search — --embeddings/--embed-mode…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-09T00:21:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ec6080c32d4c3056beee809065d445aa7fba6301",
          "body": "…xpansion with 0.5x discount\n\nTask 1.3 review_passed (reviewer: sonnet). Expansions attach only under LLM\nenrichment; loadIndex accepts v1 and v2; v1 behavior unchanged; opt-out supported.",
          "is_bot": false,
          "headline": "feat(web): concept expansion — index v2 expansions map + query-time e…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-08T23:41:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "155a12e4e18775f0bb6022fa2ed84af6ce1bb596",
          "body": "…, RRF fusion, model-mismatch fail-safe\n\nTask 1.2 review_passed (reviewer: sonnet). search() gains optional queryVector/vectors;\nabsent inputs preserve exact lexical behavior (30 existing tests untouched, 47 total green).\nstaticSearch still imports only node builtins.",
          "is_bot": false,
          "headline": "feat(web): hybrid semantic search in gnosys/web — loadVectors, cosine…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-08T23:08:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a4550a31f44ffffce1248de1678209c239b3f1a4",
          "body": "…ize, emit gnosys-vectors.json\n\nTask 1.1 review_passed (reviewer: sonnet; artifacts in run root reviews/1.1/).\nProviders: openai/voyage via fetch, local via existing embeddings pipeline.\nNo new runtime deps.",
          "is_bot": false,
          "headline": "feat(web): vector build module webVectors.ts — embed docs, int8 quant…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-08T22:34:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "66477f49bdc00044f7afe4d1111b3355bc6b8c09",
          "body": null,
          "is_bot": false,
          "headline": "5.16.0",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-05T15:08:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a62634dc0329e0670483bb0e0febd3fbcfc60a79",
          "body": null,
          "is_bot": false,
          "headline": "docs(changelog): 5.16.0 entry",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-05T15:07:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "112404813db20cd068934175919508a224500b93",
          "body": "Advisory wording in the tool description and generated IDE rules was\nnot enough — agents still called gnosys_add. Enforce the 2026-07-04\ndecision (deci-01KWP25KKJYP7M3YCPFRPWEEYN) server-side:\n\n- gnosys_add over MCP now returns an error unless\n  GNOSYS_ALLOW_FREEFORM_ADD=1 (genuine non-agent scripts\n[…]\nirrors the template —\n  required to keep golden tests truthful).\n- docs/mcp-tools.md regenerated; new src/test/freeform-add-gate.test.ts.\n\nCLI 'gnosys add' is unaffected. Full suite: 1897 tests green.",
          "is_bot": false,
          "headline": "feat(mcp): hard-reject freeform gnosys_add for MCP callers",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-05T15:00:37Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "0719cf69803d711b397074b9c9e5eebc035fe0d1",
          "body": "Root cause of 'syncing 543 registered projects': tests spawn the CLI\nwith GNOSYS_HOME (isolating ~/.gnosys), but the project registry at\n~/.config/gnosys/projects.json only honored GNOSYS_CONFIG_DIR, so every\ntest run leaked hundreds of /var/folders temp entries into the user's\nreal registry — and '\n[…]\n from the central DB projects table\n- new regression tests in src/test/registry-temp-pollution.test.ts\n\nFull suite: 298 files / 1894 tests green; two full runs added zero\nentries to the real registry.",
          "is_bot": false,
          "headline": "fix(registry): stop test runs polluting the real project registry",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-05T14:41:29Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "5793dc4a6acce08cd944a359d479ef730a50330e",
          "body": null,
          "is_bot": false,
          "headline": "5.15.3",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-04T08:40:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "966d6e676cc88cd86928ea5be3849eb6b46bb278",
          "body": "Previously bare sync used identity.agentRulesTarget — the single IDE\nrecorded at first setup — so a project that later added Claude Code, Codex,\netc. only ever refreshed the original IDE's rules; the others silently went\nstale. Default to \"all\" instead: detectAllTargets only touches rule files\nthat \n[…]\n so sync now\nkeeps every present IDE current and self-heals as IDEs are added. Matches\nthe upgrade-time 'sync registered projects' path, which already used \"all\".\nUse --target <ide> for a single file.",
          "is_bot": false,
          "headline": "fix(sync): bare 'gnosys sync' refreshes all present IDE rule files",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-04T08:38:53Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "3ab20d1fabfd425151626149a613de1d9e9f57e1",
          "body": null,
          "is_bot": false,
          "headline": "5.15.2",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-04T08:23:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "697afbbd0c16d2d23e0b58ca9fd0826532dda356",
          "body": "Adds a 'Keeping these instructions current' section to the generated IDE\nrules so users/agents know to run gnosys sync after an upgrade to\nregenerate the block (picking up guidance changes like the add_structured\ndefault). Regenerated ide-init golden fixtures.",
          "is_bot": false,
          "headline": "feat(rules): document gnosys sync for refreshing generated instructions",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-04T08:21:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f20f76a039ce8c2a801518415d2507570d7a6750",
          "body": "@huggingface/transformers v4 does not honor HF_HOME/TRANSFORMERS_CACHE for\nits on-disk model cache (that's the Python huggingface_hub convention) — it\nuses its own `env.cacheDir`. gnosys only set those env vars, so the ~80 MB\nMiniLM model was cached into the package's node_modules/.cache (wiped on\ne\n[…]\nked module without `env` doesn't throw). Verified the\nmodel now downloads to ~/.cache/gnosys and embeds a 384-dim unit vector.\nUpdated the optional-dep mock to include `env` to mirror the real module.",
          "is_bot": false,
          "headline": "fix(embeddings): set transformers env.cacheDir so GNOSYS_CACHE_DIR works",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-04T08:13:48Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "24cfe91d035b83310d4d324e817f22f82b4097fe",
          "body": "… tool descriptions\n\nFull-consistency follow-up to the rulesGen change. The runtime MCP tool\ndescriptions (src/index.ts) now tell agents gnosys_add is for non-agent\ncallers and to prefer gnosys_add_structured (no server-side LLM call);\nREADME and the generated docs/mcp-tools.md reflect the same. Regenerated\nmcp-tools.md from source via npm run docs:mcp-tools.",
          "is_bot": false,
          "headline": "docs: steer agents to gnosys_add_structured across README, mcp-tools,…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-04T08:05:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ae85a0d706420d2a075768774785cdfb5294aa41",
          "body": "The generated IDE instructions told agents to write memories with the\nfreeform gnosys_add, which makes the Gnosys server run a second, redundant\nLLM call to structure the text and introduces an external provider-key\ndependency that can fail silently (observed as an OpenRouter 401 breaking\nmemory wri\n[…]\ngs remain).\n\nFreeform gnosys_add stays in the product for non-agent callers (cron jobs,\nscripts). Only the agent-facing guidance in rulesGen changes; regenerated\nthe ide-init golden fixtures to match.",
          "is_bot": false,
          "headline": "feat(rules): instruct agents to always use gnosys_add_structured",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-04T07:59:55Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "af612d679cb879e2fef2849da0076d3cb8f8ece0",
          "body": null,
          "is_bot": false,
          "headline": "5.15.1",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-03T01:07:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6dba1afb15df2c07d711b94bc22fcf7ed3e37375",
          "body": "The v5.15 non-TTY guard exits 1 with a friendly message before a SIGINT\ncan land when stdin is piped — deterministically on CI (this broke the\nv5.15.0 publish; that tag never reached npm, same precedent as 5.12.1).\nThe tests' real invariant (no AbortError stack on interrupt) is still\nasserted via noAbortTrace. Flagged: existing test file edited — the\nguard intentionally changed the behavior these assertions pinned.",
          "is_bot": false,
          "headline": "fix(test): accept the non-TTY guard exit in setup Ctrl+C smoke tests",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-03T01:07:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "53f2431f1e55af61361cf5d7eaf2e9e11370315f",
          "body": null,
          "is_bot": false,
          "headline": "5.15.0",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-03T00:59:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b1e1fb50b3186e1ede90cd1620ce1e6494ecbc59",
          "body": "… + auto-repair\n\nWire chat.systemPromptPrefix and chat.toolsEnabled (documented, prompted\nfor in setup, never read) and importConcurrency (parallel LLM structuring\nin bulk imports). Remove bulkIngestionBatchSize (fossil of the removed\ngit-batch-commit design) and chat.autoSummarizeAfterTurns (featur\n[…]\norts agent health; 'gnosys upgrade'\nauto-repairs a broken agent.\n\n14 new tests across 4 new files; no existing test files edited.\n\nRefs: sprint findings 11-15 (artifacts/sprint-2026-07-02-findings.md)",
          "is_bot": false,
          "headline": "feat(config,dream): every knob works or is gone; launchd health-check…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-03T00:59:28Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "cb37f122a65ec603fa9719f4208355ef29f625b8",
          "body": "…sprint)\n\nPriority 3 wiring-test conversion: 21 new test files / 53 tests invoking\n22 command handlers in-process against temp GNOSYS_HOME (real seeding via\nGnosysDB/GnosysStore/GnosysResolver), replacing reliance on readFileSync\nstring assertions for these paths. Existing wiring tests untouched;\ncoverage exclusion untouched (supervised decision). webAddCommand skipped\n(real HTTP fetch in happy path).",
          "is_bot": false,
          "headline": "cleanup: CLI surface — in-process invoke tests for command handlers (…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-02T23:44:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1d2e82ccacd27d76b616be9f7215d8971d29469c",
          "body": "…int)\n\nThree trivially isomorphic stderr additions (pre-approved class):\n- ask.ts dearchiveUsedMemories: hard dearchive failure no longer\n  indistinguishable from 'no archive hits'\n- askCommand.ts + hybridSearchCommand.ts: fire-and-forget reinforceBatch\n  no longer fully silent on rejection\n\nAll other silent-failure/dead-wire findings recorded mention-only in\nartifacts/sprint-2026-07-02-findings.md (workspace root, not committed).",
          "is_bot": false,
          "headline": "cleanup: silent-failure hunt — stderr traces on swallowed errors (spr…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-02T23:35:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4eb8428efa561579296f36371c0f5fdf8ebc23db",
          "body": "- Priority 4 (pre-approved): non-TTY guard at entry of interactive flows\n  (runSetup, runModelsSetup, runDreamSetup, runKeysSetup) via new\n  src/lib/interactiveGuard.ts — friendly one-line error + exit 1 instead\n  of ERR_USE_AFTER_CLOSE stack when stdin is closed.\n- Priority 5 (pre-approved): gnosys\n[…]\nmoval)\n  so scheduled dream runs activate immediately; result reported in the\n  setup summary. Pure helpers + 10 new tests in\n  src/test/dream-launchctl.test.ts and src/test/interactive-guard.test.ts.",
          "is_bot": false,
          "headline": "cleanup: setup wizard + dream launchd (sprint)",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-02T23:30:50Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "d6363e8823be5c57517680311ace589bc503b2ec",
          "body": null,
          "is_bot": false,
          "headline": "5.14.0",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-02T22:48:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7f1d6818f8f45741c1878ddad9c00ed4ce654add",
          "body": "New 'gnosys recall-hook' command: reads the hook event JSON from stdin\n(UserPromptSubmit prompt / SessionStart wildcard), recalls from the\ncentral DB, prints a <gnosys-recall> block that Claude Code adds to the\nmodel context (~120ms, always exit 0, empty stdout = no injection,\ncapped under the 10k h\n[…]\ntore deps optional for DB-only callers.\n\nReviewed by mcp-tool-reviewer (approved; docs truncation + matcher\ntightening applied).\n\nRefs: deci-01KWJBDD9BRS0N4SVQPGW1RSB2, deci-01KWJFTSK5M8JTTT4TWBWHA4NT",
          "is_bot": false,
          "headline": "feat(recall): true automatic memory injection via Claude Code hooks",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-02T22:48:05Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "6e671385188fa36a4acb4af2db143025eb7ee735",
          "body": null,
          "is_bot": false,
          "headline": "5.13.1",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-02T21:21:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d0b67d28cce8c50183560bb5d169ccbf4e50f531",
          "body": "…heduled-Dream defects\n\n- gnosys://recall passed '*' to FTS5 (a syntax error, silently caught),\n  so automatic memory injection returned zero memories since the day it\n  shipped. Term-less queries now serve top active memories by\n  reinforcement/confidence/recency via db.getTopActiveMemories.\n- 'gno\n[…]\nintentional rename; annotated inline.\n\nReviewed by sqlite-migration-reviewer (no DDL; designation gate\nprecedes engine writes, single central designation value).\n\nRefs: deci-01KWGNMK9Z61V7V169M5JZYN05",
          "is_bot": false,
          "headline": "fix(recall,dream): wildcard recall was a no-op since v4.0.0; three sc…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-02T21:21:56Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "e33d81346e7361a1e112865f51464e56c26cea4e",
          "body": null,
          "is_bot": false,
          "headline": "5.13.0",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-02T14:20:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3f31d7c0edea245f3322b26c3b0f4b61186ca67d",
          "body": "…ite-time queue, Dream health phase\n\nReindex now (re)builds the central-DB memories.embedding column that\nDB-mode hybrid/semantic search actually reads (new embedDb.ts); before\nthis nothing ever wrote it, so semantic search could never activate.\nThe semantic-leg gate (embedQuery/canRunSemantic) keys\n[…]\nd by sqlite-migration-reviewer (no DDL, trigger parity verified\nprogrammatically) and mcp-tool-reviewer (stdout-clean verified).\n\nRefs: deci-01KWGNMK9Z61V7V169M5JZYN05, deci-01KWGNSACJATA0BN84GX9DTJG2",
          "is_bot": false,
          "headline": "feat(embeddings): make semantic search work in DB mode — backfill, wr…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-02T14:20:32Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "6f74da07cfdec6a018868f93889f03d0ec28c573",
          "body": null,
          "is_bot": false,
          "headline": "5.12.3",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-02T05:38:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e353d91ae975c31a1d6015ae353995346e2959b0",
          "body": "…rade warnings\n\nFTS5 treats space-separated terms as implicit AND, so the long\ndescriptive queries the tool docs encourage returned zero results\nunless every term matched one memory. All FTS surfaces (central-DB\nsearchFts/discoverFts — which also feed recall and federated search —\nthe per-store inde\n[…]\n\nDream Mode embedding-health check.\n\nReviewed by mcp-tool-reviewer and sqlite-migration-reviewer agents\n(no schema impact; corruption-escape semantics preserved).\n\nRef: deci-01KWGKYY7MATJ4E2AJHKZN8FD1",
          "is_bot": false,
          "headline": "fix(search): OR-fallback for multi-word FTS queries + loud hybrid-deg…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-02T05:38:08Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b135419666461f2549b97b936ec013d6610d0b31",
          "body": "…ct so projectRoot doesn't disable cross-project memory\n\nresolveForProject() — used by every MCP tool that passes projectRoot, which all\nguidance tells callers to ALWAYS do — built a resolver with ONLY the project\nstore. That silently disabled the cross-project tier system: store:\"global\" /\n\"persona\n[…]\nesent under a projectRoot, getWriteTarget('global')\nresolves, global dir auto-created, project stays default write target, personal\nfallback when no project store. Full suite: 1733 passed / 1 skipped.",
          "is_bot": false,
          "headline": "fix(resolver): load personal/global/optional tiers in resolveForProje…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-02T05:17:49Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "f00b7aa1bc10b6f1d9c4d2d1045a4839af1203cf",
          "body": "Co-authored-by: edtadros <4167177+edtadros@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore: refresh lockfile (transitive dep bumps) (#11)",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-24T13:11:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1e6a80200138f4282c07400e5dc47f34015d8974",
          "body": null,
          "is_bot": false,
          "headline": "chore(release): 5.12.2 — production-readiness overhaul",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-12T03:18:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ca7a48b1dc1ee15784e1abe3fafeaed8435aa7a4",
          "body": "… published — build failed on the type error fixed here)",
          "is_bot": false,
          "headline": "docs: move production-overhaul changelog to 5.12.2 (v5.12.1 tag never…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-12T03:18:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "138870800312c4f12a0727e951871c6cf7164c25",
          "body": "…gelog for the production overhaul\n\nProduction-readiness overhaul Phases 7+8 (final):\n\nTests (+10, new files only per house rules):\n- dream-lock-recovery.test.ts: behavioral matrix for acquireDreamLock —\n  clean acquire/release, live-pid refusal, dead-pid stale recovery, and\n  corrupt-lock-treated-a\n[…]\n corrected to\n  1700+; quick reference documents the typecheck/lint/knip gates\n\nFinal gate: tsc clean, biome 0/500 files, knip 0,\n260 test files / 1728 tests passed (baseline at overhaul start: 1700).",
          "is_bot": false,
          "headline": "test+docs: hardening regression tests, regenerated CLI/MCP docs, chan…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-12T03:12:47Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "84550920c5b7e57a57990d6c5e06dfbdeea791d1",
          "body": "…w, pinned Docker base, test-free dist\n\nProduction-readiness overhaul Phase 6 (packaging/Docker/DX, audit-driven):\n\n- CI: typecheck job now also runs biome lint and knip (both were configured\n  but never enforced — knip added as devDependency, scripts 'lint' existed,\n  new 'knip' + 'typecheck' scrip\n[…]\nated\nto builder, postinstall offline + fail-safe, publish tarball excludes\ntests/sourcemaps (572KB packed).\n\nGates: tsc clean (tests still typechecked), biome 0, knip 0,\n258 files / 1718 tests passed.",
          "is_bot": false,
          "headline": "chore(packaging): CI lint+knip gates, publish-config build in workflo…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-12T03:05:52Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "4c41e0fe4d26486b38df3656788b80ae88e49ade",
          "body": "…r path\n\nProduction-readiness overhaul Phase 5:\n\n- withContextRelease (the wrapper every tool passes through) now provides a\n  last-resort error envelope: 19 of 52 tools had no catch at all, so a\n  thrown error reached the SDK as a raw JSON-RPC error with no\n  corruption-recovery guidance. Escaped t\n[…]\n\ncommented graceful degradation (FTS fallbacks, best-effort fs ops, lock\ncleanup); CLI exit-code convention (errors -> 1) already consistent.\n\nGates: tsc clean, biome 0, 258 files / 1718 tests passed.",
          "is_bot": false,
          "headline": "feat(observability): central MCP error envelope + CLI parseAsync erro…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-12T02:57:07Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "282bc34f8c6263d40e5e502bef3c958ff11c1d1b",
          "body": "…arch release\n\nProduction-readiness overhaul Phase 4 (measured-first):\n\n- GnosysDB.prep(): prepared-statement cache keyed by SQL for fixed-SQL hot\n  paths (insertMemory, getMemory, searchFts, discoverFts, scoped/category\n  lists). Cache invalidated on reopen()/close() so recovery re-prepares on\n  th\n[…]\ndominates,\n  prepare cost negligible), CLI startup (~110ms, v5.9.1 lazy-load already\n  optimal), embedding batching (batches of 32 in place).\n\nGates: tsc clean, biome 0, 258 files / 1717 tests passed.",
          "is_bot": false,
          "headline": "perf(db): prepared-statement cache + lean list projection + scoped-se…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-12T02:50:36Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "d2b9e8c4366d807010dcf8d593131f8ebb3d6a7c",
          "body": "…d verified local copies\n\nProduction-readiness overhaul Phase 3 batch D. publishMasterSnapshot,\nacceptClientSnapshot and compareSnapshotVersion were fully implemented in\nthe 5.12.0 sync work but had no production caller: masters never published\nsnapshots, so reachable clients opened the live gnosys.\n[…]\n read\n(source 'snapshot', accepted manifest recorded), refresh on newer seq.\n\nknip is now at ZERO findings (wire-or-kill list fully resolved).\nGates: tsc clean, biome 0, 258 files / 1717 tests passed.",
          "is_bot": false,
          "headline": "feat(sync): complete v13 snapshot flow — masters publish, clients rea…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-12T02:34:30Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "295d002fa12197a28b30043ef941f1be466e7025",
          "body": "… dream crash-safety, cleanup --rules\n\nProduction-readiness overhaul Phase 3 batches A/B/C/E (audit-driven):\n\nMCP server (3A):\n- regTool now wraps every tool handler in withContextRelease(): contexts\n  opened via resolveToolContext are tracked per-call (AsyncLocalStorage)\n  and released when the han\n[…]\nwires the orphaned removeRulesBlock:\n  strips GNOSYS blocks from CLAUDE.md/.cursor/.codex rules files.\n  New cleanup-rules.test.ts (4 tests).\n\nGates: tsc clean, biome 0, 257 files / 1712 tests passed.",
          "is_bot": false,
          "headline": "fix(reliability): central MCP context release, withRecovery coverage,…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-12T02:27:00Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "299653ea45d4460baf184eaebf919577fc85fc50",
          "body": "…mmand, strip relic casts\n\nProduction-readiness overhaul Phase 2 (type & lint hardening):\n\n- Enable noUnusedLocals, noImplicitOverride, noFallthroughCasesInSwitch\n  (publish config inherits); noUncheckedIndexedAccess (562 errs),\n  exactOptionalPropertyTypes (138), noPropertyAccessFromIndexSignature \n[…]\nmoryFrontmatter already declares the fields)\n- Strip stale eslint-disable comments from 18 files (biome-only project)\n\nGates: tsc clean with new flags, biome 0 warnings, 255 files / 1704 tests passed.",
          "is_bot": false,
          "headline": "chore: enable stricter tsconfig flags, delete v5.4.2 legacy models co…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-12T02:07:59Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "46d2840a7530887c9743f5c8298f1aef65f6aed2",
          "body": "… to lint-zero\n\nProduction-readiness overhaul Phase 1 (loose ends sweep):\n\n- Fix DbMemory literals missing v5.12 attachment fields (clientReadOverlay +\n  syncClientRead fixture) — restores the red CI typecheck job on master\n- Wire 'gnosys read <id>' through the client read overlay so pending offline\n[…]\nupdated under approved standing policy (annotated inline):\n  read-command-handler (overlay wiring), 5 parseInt-radix markers\n\nGates: tsc --noEmit clean, biome 0 warnings, 255 test files / 1704 passed.",
          "is_bot": false,
          "headline": "fix: restore tsc-clean master, wire read-overlay gap, purge dead code…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-12T01:53:15Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "cc019dd4aa63e1d92e45438970b27a77560d7cd6",
          "body": "- Version 5.12.1 for the menu improvements and setup flow refinements (global default path made first-class and obvious in both providers and routing screens).\n- Updated CHANGELOG with 5.12.1 section.\n- Follows user feedback on the 'What would you like to do?' menu and providers flow.\n- All prior Option B coverage work, test fixes, and previous 5.12.0 changes remain in the history.",
          "is_bot": false,
          "headline": "chore(release): bump to 5.12.1 with task routing / providers UX polish",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-12T00:14:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1b7a68e38c30ad381a55a9499868b7f5adbf491e",
          "body": "- Added explicit 'Edit tasks — set the same provider + model for all tasks (simple global default)' option.\n- Clarified reset option: 'to the current default (the one shown in the main setup summary)'.\n- Added explicit print of what the current default provider/model is before the reset confirmation\n[…]\n 'change all to one provider' a first-class, clearly labeled option in the 'What would you like to do?' menu, and explains the 'Default' in reset.\n\nMatches user request exactly for the routing screen.",
          "is_bot": false,
          "headline": "fix(setup): improve task routing menu verbiage per user feedback",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-12T00:11:23Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "e8c5370227103d5734188d0f7d35f85a90b902e1",
          "body": "…for everything' as first choice in task routing\n\n- In providers detail (after selecting a provider with a key): new prominent action 'Use this provider as default for everything + pick model' (defaults to this choice when you have a key).\n- In dedicated task routing: first option is now the simple \n[…]\nflow: 'once I pick the provider it should allow me to choose to make it a default' and 'within task routing one option should be set one model for everything'.\n\nAll Option B coverage tests still pass.",
          "is_bot": false,
          "headline": "fix(setup): make global default easy from providers + add 'one model …",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-10T05:49:31Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "8b657ee66ef756b848729f1e5ef8895115f1f095",
          "body": "…0 release (combine v5.12 attachments + sync tables from feat; keep updated asserts)",
          "is_bot": false,
          "headline": "merge: resolve conflicts in db.ts and migration matrix test for 5.12.…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-10T04:43:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6f742c384244caa073c5345c8f642be388a33529",
          "body": "…s for subcommand wiring (fixes CI for 5.12.0)\n\n- Updated assertions to match actual code in cli.ts for .command('show'), descriptions, and dynamic imports.\n- This was one of the Option B coverage additions for ungrouped machine commands.\n- All other Option B tests/docs/UPG changes already committed in prior steps.",
          "is_bot": false,
          "headline": "fix(test): correct machine-show-command-handler.test.ts source string…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-10T04:40:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "15a0d9f4696c53973380e94cde995dc4b4895629",
          "body": "…ers/remote-doctor (5.12.0)",
          "is_bot": false,
          "headline": "chore(release): include Option B docs and tests for setup-keys/provid…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-10T03:42:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ad59e968d229a8ada7db466e1916b03ef9be12e1",
          "body": "…ntralize/machine-show ungrouped, enhanced platform docs, UPG polish note in upgrade, Docker/Tailscale validation steps)",
          "is_bot": false,
          "headline": "chore(release): finalize 5.12.0 Option B loose ends (new tests for ce…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-10T03:41:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ad97ff537cb4b265d8a7afade4bc575b3cc7542f",
          "body": "…rvised edits)\n\n- v595 test now properly isolates legacy meta heal path (mock readMachineConfig for v5.11+ machine.json precedence).\n- list handler test pruned outdated source-grep expectations after logging + clientReadResolve changes (kept as minimal wiring guard).\n\n(Phase 2 fix per approved plan; only new/supervised test edits.)",
          "is_bot": false,
          "headline": "test: update machine-id self-heal and list-command wiring tests (supe…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-10T03:01:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5441febcd9d7ab43bdd83f7b66f363b7ab35f83f",
          "body": "…t foundation on feat/network-mcp)\n\nSee gnosys-network-mcp-build-plan.md for version decision context and semver memory road-01KSX3PPPBJ99YGGBPP8TTQQ0R.",
          "is_bot": false,
          "headline": "chore(release): bump to 5.12.0 (setup overhaul + network MCP transpor…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-10T03:01:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "300f4cf4dd79cdfe3d01e2506213888c7128f700",
          "body": "…hs + supporting test/doc updates\n\n- New openrouterTiers.ts with :free models and recommended tiers for setup wizard.\n- New taskRoutingEditor.ts (comma-list per-task provider+model assignment).\n- New providerGlyphs.ts for terminal brand marks in setup UI.\n- Updates to routing, modelValidation, confi\n[…]\n into existing setup keys/models flows and key vault.\n\n(implements remaining pieces of the setup overhaul on feat/network-mcp; see gnosys-network-mcp-build-plan.md and gnosys-command-coverage-plan.md)",
          "is_bot": false,
          "headline": "feat(setup): add OpenRouter tiers, task routing editor, provider glyp…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-10T02:56:54Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "ea5407474d8274b40195fd7a0d8929da3885c9e5",
          "body": "Adds 14 unit tests for key management UI covering:\n- listProviders with all 11 providers (cloud/local/custom)\n- Multi-location key detection (env/keychain/.env independently scanned)\n- copyToKeychain flow (success, validation failure, already-in-keychain)\n- deleteKey flow (dotenv-only, keychain-only\n[…]\nper to distinguish env vars from secure store\nfor accurate multi-location detection in tests.\n\nTask 5 of setup-keys-table-redesign plan (14 tests pass)\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "test(setup): add comprehensive setupKeys test coverage",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-04T02:19:36Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "bbc9719b29a80908575aa3de8c8f2104f9b3adeb",
          "body": "Integrates setupKeys.ts into the CLI and setup routing:\n- setup.ts routes section=\"keys\" to runKeysSetup()\n- cli.ts adds \"gnosys setup keys\" subcommand via Commander\n- Manual verification: table displays and exits on 'q'\n\nTask 4 of setup-keys-table-redesign plan\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(setup): wire gnosys setup keys command to CLI",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-04T02:11:04Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "adb5b3c6a03f8df9b5d4dbabb1d03ba85478778f",
          "body": "Adds full interactive key management UI to setupKeys.ts:\n- Provider detail view showing key status, storage location, and masked value\n- Copy to Keychain: validate, confirm with env precedence warning, migrate from .env\n- Update key: hidden input, validate, choose destination (Keychain/.env/manual)\n\n[…]\nently for complete visibility.\nExtended writeApiKey with global scope support for GNOSYS_GLOBAL_*_KEY naming.\n\nTask 3 of setup-keys-table-redesign plan\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(setup): implement provider detail view and key actions",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-04T02:07:21Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "cbcd3c7bf0dcee979b4f7a995a21cba84230b041",
          "body": "Implements provider list discovery and formatted table rendering for key management.\nLists all cloud providers (anthropic, openrouter, openai, xai, google, cohere,\nmistral, groq), local providers (ollama, lmstudio), and custom with key status\ndetection via detectKeyLocation.\n\n- Interactive loop with\n[…]\ny: Keychain, .env, Env Var (NAME), or —\n- Exported setup helpers (askInput, printInfo, printStatus) for reuse\n\nTask 2 of setup-keys-table-redesign plan\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(setup): add setupKeys.ts with provider table UI",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-04T01:56:10Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "a4318ba3383021b55742de92f8c97b10594dfa2a",
          "body": "Implements tier-first precedence detection (global → provider → legacy → generic)\nwith env → keychain → .env checks within each tier. Returns key location, service\nname, env var name, and masked value for display.\n\n- Keychain service names use actual env var format (GNOSYS_GLOBAL_*_KEY)\n- Handles lo\n[…]\nllama, lmstudio) as no-key-needed\n- 16 tests covering keychain, precedence, legacy, generic, and dotenv tiers\n\nTask 1 of setup-keys-table-redesign plan\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(setup): add detectKeyLocation helper for key management UI",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-04T01:51:48Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "397629a6dae4c2c696963e5805b1fd73539b2d47",
          "body": "Tier-4 generic fallback was gated to custom only; readFirstInChain and\nlistStoredKeySlots now honor GNOSYS_LLM_API_KEY after legacy env vars.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "fix(keys): apply GNOSYS_LLM_API_KEY fallback for all providers",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-03T23:50:34Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "1954f3ba20cf539f01faddf76bc17969b83528e4",
          "body": "Remove per-task key strategy from setup models routing and drop the\ntask tier from apiKeyLookupChain. Task routing collects one shared\nGNOSYS_GLOBAL_<PROVIDER>_KEY per provider; lookup is global → provider\n→ legacy → generic.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "refactor(keys): global-only API key scoping",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-03T23:44:54Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "00b2ebe57ac834826c3fa2cb7700ef5be747622a",
          "body": "Split interactive setup into default-only vs task-routing branches so\nper-task assignment never writes llm.defaultProvider or provider model.\nAdd per-task model/key/validate loop, in-memory keys until validation,\nvalidateTaskCombo, key-destination prompt, and regression tests.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(setup): redesign setup models routing and key flow",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-03T02:42:27Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "48ca922ef6d79a9bd7a5da68c7fa01a812862bd6",
          "body": "Wire always-on master ingest sweeps via MCP startup hook, macOS launchd\nand Linux systemd timers, and doctor/timer CLI with quiet JSON modes.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(sync): add v13 ingest automation (Gap A)",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T23:01:56Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "669e5f8d84cf45af2ae3fd9c0117541e3c75ed9c",
          "body": "Codex Gap B review: gnosys_federated_search and --federated CLI paths\nopened the local DB on client-role machines instead of master/snapshot.\nWrap all federated entry points with resolveClientRead / resolveToolContext\nand release handles in finally blocks.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "fix(sync): route federated search through client read context",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T22:55:25Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "d8b5a0b4dce20bafe1c5342cf74fd9796820d30a",
          "body": "Clients on the staging role now read through openClientReadContext:\nmaster when reachable, accepted snapshot when offline, with pending-adds\nmerged and receipt-filtered. MCP discover/search/list/read/recall and\nmatching CLI commands share the same path and close snapshot handles per call.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(sync): wire v13 client read path with overlay and receipts",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T15:25:25Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "c5823141ec19fc953bb4ac68e878d7562b7c895f",
          "body": "When the user disables automatic master backups, show the design-exact\ndecline prompt and require typing BACKUP_RISK_PHRASE before continuing.\nAdds renderBackupDeclineAckPrompt() and explicit test coverage for the\nv13 backup acknowledgement requirement.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "fix(setup): v13 master backup decline typed acknowledgement",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T14:40:46Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "6aebb98c85f2c86dd5ce9f534e4004c472d0bffd",
          "body": "Co-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "test(sync): ingest sweep integration test; v13 MCP remote status",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T14:25:37Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "eb068b5b61965f96f3cba68983a76debc9cfa260",
          "body": "Master path rejects network mounts; unknown paths need LOCAL DISK ONLY ack.\nClient wizard opens Tailscale guide with inline fallback. Adds\ngnosys setup remote doctor and v13 status output.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(setup): local-disk check, Tailscale guide, sync doctor, v13 status",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T14:25:21Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "9297f95e4411e58f89c4bac92ffe5102487a8b21",
          "body": "Hide snapshot reads when master is unreachable; surface waiting/failed\ncounts and pending-add overlay via getV13SyncStatus.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(sync): client reachability, offline snapshot rule, status lines",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T14:24:48Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "a01d744256febed9064a01f49b2a023337f705d9",
          "body": "Process staged JSON into gnosys.db with ULID dedup, read-back verify,\nreceipt files, and lease epoch checks before each batch.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(sync): master ingest sweep with single-writer lock",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T14:24:48Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "464789d40beee6e679547ffcba7df5f77dc1fa25",
          "body": "Epoch-fenced master.json, SQLite backup snapshots with manifest,\nclient snapshot copy with checksum verify, and local ingest lock.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(sync): master lease marker and snapshot publication (v13)",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T14:24:48Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "111649982c8809e79a8cb5efd0504897659b5f59",
          "body": "Atomic tmp+rename, checksum validation, read-back verify, quarantine\nfailed/, presence-based clone detection, and ledger-ordered queue.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(sync): add hardened v13 JSON staging for client writes",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T14:24:48Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "3d3564399170c7e150935e5be5fe2c97ab0e1ddb",
          "body": "Schema v5 adds staging ledger, processed ULIDs, pending-adds overlay,\nand snapshot manifest tables with migration from older versions.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(db): add v13 multi-machine sync schema and accessors",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T06:37:03Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "e29c77aa3c28fb508910c9edc9183fc2909586d4",
          "body": "Centralize master-unreachable, waiting-to-sync, failed-to-sync, and\noffline overlay copy for CLI/MCP panels per MMS design v13.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(sync): add v13 multi-machine sync status message helpers",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T06:31:59Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "0be5c24a8fdba84f2ee2138b5f36c340956de786",
          "body": "Add explanation gate, master vs client paths, backup and duplicate-risk\nacknowledgements, presence-based clone detection, master.json marker, and\npre-master-backup rename. Persist master/client role in machine.json.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(remote): rewrite multi-machine setup wizard for v13 flows",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T06:29:52Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "841870188efa8b645166694a205ce7e57e1857fc",
          "body": "Settings panel row 4 uses getConfiguredRemotePath and displays\n\"NA (single-machine only)\" when no master is configured (v13 MMS design).\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(setup): show NA for unconfigured multi-machine sync in summary",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T06:08:08Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "d0392b3ede85f1d60a95476868cad8cb859cc749",
          "body": "Add an inline attachment path that stores small binary assets (logos,\ndiagrams, screenshots) as bytes in the memory row's new attachment_data\nBLOB column, alongside attachment_mime / attachment_name. Because remote\nsync copies whole rows via insertMemory() (the same rail the embedding\nBLOB already u\n[…]\nt <id>.\n- tests: new attachments-inline.test.ts incl. machine-to-machine row copy;\n  required-field/schema-version growth applied to existing fixtures.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(attachments): store small files inline in the memory row (DB blob)",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-05-31T14:25:12Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "67f3fa9a773edc56e893eac861048030843317bb",
          "body": "Use runtime-only typing for the optional transformers import so tsc and CI\njobs without the package installed still build. Update shell-injection test\nto assert execFile usage in statusCommand after the status refactor.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "fix(build): compile when optional @huggingface/transformers is absent",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-05-30T18:07:12Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "19dcf783e8d546c6b4ec67980d46bbd515906bdf",
          "body": "…stall\n\nStream the npm install with stderr piped through a line filter that drops\nonly the known-harmless prebuild-install and boolean deprecation warnings\nfrom optional native deps. Other npm output still passes through live.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "fix(upgrade): filter benign npm deprecation warnings during global in…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-05-30T18:07:12Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "275d36bd2adc1678cc9c7a5b9fdd4f65a8ca193e",
          "body": "Phantom \"connected machines\" appeared after a host rename because the\nregistry (the `machines` key in central gnosys_meta) was keyed solely by\nos.hostname(): a renamed machine started recording under its new name and\norphaned the old entry forever, with nothing to prune it.\n\n- New src/lib/machineReg\n[…]\ne current machine) for viewing/removing stale entries.\n\nTests: src/test/machine-registry.test.ts and a rename-trail case in\nv511-machineConfig.test.ts.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "fix(machine): self-heal connected-machines registry on hostname rename",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-05-30T17:18:44Z",
          "body_truncated": true,
          "is_coding_agent": true
        }
      ],
      "releases_count": 90,
      "commits_last_year": 500,
      "latest_release_at": "2026-07-17T09:38:30Z",
      "latest_release_tag": "v6.2.1",
      "releases_from_tags": true,
      "days_since_last_push": 1,
      "active_weeks_last_year": 16,
      "days_since_latest_release": 4,
      "mean_days_between_releases": 1.6
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": true,
      "health_percentage": 100,
      "has_issue_template": false,
      "has_code_of_conduct": true,
      "has_pull_request_template": true
    },
    "ecosystem": {
      "packages": [
        {
          "name": "gnosys",
          "exists": true,
          "license": "MIT",
          "keywords": [
            "gnosys",
            "memory",
            "llm",
            "mcp",
            "knowledge",
            "persistent-memory",
            "agent",
            "ai",
            "ai-memory",
            "claude",
            "cursor",
            "obsidian",
            "sqlite",
            "semantic-search",
            "hybrid-search",
            "embeddings",
            "chatbot",
            "serverless",
            "knowledge-base",
            "model-context-protocol",
            "agent-memory"
          ],
          "ecosystem": "npm",
          "matches_repo": true,
          "registry_url": "https://www.npmjs.com/package/gnosys",
          "is_deprecated": false,
          "latest_version": "6.2.1",
          "repository_url": "https://github.com/proticom/gnosys",
          "versions_count": 87,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": 1,
          "monthly_downloads": 3501,
          "first_published_at": "2026-03-23T04:44:39.729000Z",
          "latest_published_at": "2026-07-17T09:42:48.588000Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 4
        }
      ]
    },
    "popularity": {
      "forks": 0,
      "stars": 4,
      "watchers": 0,
      "fork_history": {
        "days": [],
        "complete": true,
        "collected": 0,
        "total_forks": 0
      },
      "star_history": {
        "days": [
          {
            "date": "2026-05-12",
            "count": 1
          },
          {
            "date": "2026-05-30",
            "count": 1
          },
          {
            "date": "2026-07-16",
            "count": 1
          },
          {
            "date": "2026-07-21",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 4,
        "total_stars": 4
      },
      "open_issues_and_prs": 11
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [],
      "has_llms_txt": false,
      "has_dockerfile": true,
      "has_mcp_signal": true,
      "bootstrap_files": [],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [
        "tsconfig.json"
      ],
      "toolchain_manifests": [],
      "largest_source_bytes": 185029,
      "source_files_sampled": 537,
      "oversized_source_files": 3,
      "agent_instruction_files": [
        "AGENTS.md",
        "src/test/fixtures/ide-init/claude.md"
      ],
      "agent_instruction_max_bytes": 4665
    },
    "dependencies": {
      "manifests": [
        "package.json"
      ],
      "advisories": {
        "error": null,
        "scope": "repository_graph",
        "source": "osv",
        "findings": [
          {
            "name": "fast-uri",
            "direct": false,
            "version": "3.1.2",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-4c8g-83qw-93j6",
              "GHSA-v2hh-gcrm-f6hx"
            ],
            "fixed_version": "4.1.1",
            "advisory_count": 2,
            "oldest_advisory_days": 0
          },
          {
            "name": "sharp",
            "direct": false,
            "version": "0.34.5",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.3,
            "advisory_ids": [
              "GHSA-f88m-g3jw-g9cj"
            ],
            "fixed_version": "0.35.0",
            "advisory_count": 1,
            "oldest_advisory_days": 0
          },
          {
            "name": "@hono/node-server",
            "direct": false,
            "version": "1.19.14",
            "severity": "moderate",
            "ecosystem": "npm",
            "cvss_score": 5.9,
            "advisory_ids": [
              "GHSA-frvp-7c67-39w9"
            ],
            "fixed_version": "2.0.5",
            "advisory_count": 1,
            "oldest_advisory_days": 0
          },
          {
            "name": "hono",
            "direct": false,
            "version": "4.12.25",
            "severity": "moderate",
            "ecosystem": "npm",
            "cvss_score": 6.5,
            "advisory_ids": [
              "GHSA-hvrm-45r6-mjfj",
              "GHSA-w62v-xxxg-mg59",
              "GHSA-xgm2-5f3f-mvvc"
            ],
            "fixed_version": "4.12.27",
            "advisory_count": 3,
            "oldest_advisory_days": 0
          }
        ],
        "collected": true,
        "malicious": [],
        "truncated": false,
        "by_severity": {
          "high": 2,
          "moderate": 2
        },
        "advisory_count": 7,
        "affected_count": 4,
        "assessed_count": 438,
        "malicious_count": 0,
        "assessed_package": null,
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "npm"
      ],
      "dependencies": [
        {
          "name": "@anthropic-ai/sdk",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.78.0"
        },
        {
          "name": "@modelcontextprotocol/sdk",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.12.1"
        },
        {
          "name": "commander",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^13.1.0"
        },
        {
          "name": "csv-parse",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^6.1.0"
        },
        {
          "name": "dotenv",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^17.3.1"
        },
        {
          "name": "glob",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^13.0.6"
        },
        {
          "name": "gray-matter",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.0.3"
        },
        {
          "name": "jszip",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.10.1"
        },
        {
          "name": "mammoth",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.12.0"
        },
        {
          "name": "pdf-parse",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.4.5"
        },
        {
          "name": "turndown",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^7.2.2"
        },
        {
          "name": "ulidx",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.4.1"
        },
        {
          "name": "zod",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.3.6"
        }
      ],
      "all_dependencies": {
        "error": null,
        "source": "github-sbom",
        "packages": [
          {
            "name": "@anthropic-ai/sdk",
            "direct": true,
            "version": "0.78.0",
            "ecosystem": "npm"
          },
          {
            "name": "@modelcontextprotocol/sdk",
            "direct": true,
            "version": "1.29.0",
            "ecosystem": "npm"
          },
          {
            "name": "commander",
            "direct": true,
            "version": "13.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "csv-parse",
            "direct": true,
            "version": "6.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "dotenv",
            "direct": true,
            "version": "17.4.2",
            "ecosystem": "npm"
          },
          {
            "name": "glob",
            "direct": true,
            "version": "13.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "gray-matter",
            "direct": true,
            "version": "4.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "jszip",
            "direct": true,
            "version": "3.10.1",
            "ecosystem": "npm"
          },
          {
            "name": "mammoth",
            "direct": true,
            "version": "1.12.0",
            "ecosystem": "npm"
          },
          {
            "name": "pdf-parse",
            "direct": true,
            "version": "2.4.5",
            "ecosystem": "npm"
          },
          {
            "name": "turndown",
            "direct": true,
            "version": "7.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "ulidx",
            "direct": true,
            "version": "2.4.1",
            "ecosystem": "npm"
          },
          {
            "name": "zod",
            "direct": true,
            "version": "4.4.3",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-string-parser",
            "direct": false,
            "version": "7.29.7",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-validator-identifier",
            "direct": false,
            "version": "7.29.7",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/parser",
            "direct": false,
            "version": "7.29.7",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/runtime",
            "direct": false,
            "version": "7.29.7",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/types",
            "direct": false,
            "version": "7.29.7",
            "ecosystem": "npm"
          },
          {
            "name": "@bcoe/v8-coverage",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@biomejs/biome",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@biomejs/cli-darwin-arm64",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@biomejs/cli-darwin-x64",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@biomejs/cli-linux-arm64",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@biomejs/cli-linux-arm64-musl",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@biomejs/cli-linux-x64",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@biomejs/cli-linux-x64-musl",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@biomejs/cli-win32-arm64",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@biomejs/cli-win32-x64",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@emnapi/core",
            "direct": false,
            "version": "1.10.0",
            "ecosystem": "npm"
          },
          {
            "name": "@emnapi/runtime",
            "direct": false,
            "version": "1.10.0",
            "ecosystem": "npm"
          },
          {
            "name": "@emnapi/wasi-threads",
            "direct": false,
            "version": "1.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/aix-ppc64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/android-arm",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/android-arm64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/android-x64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/darwin-arm64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/darwin-x64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/freebsd-arm64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/freebsd-x64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-arm",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-arm64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-ia32",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-loong64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-mips64el",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-ppc64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-riscv64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-s390x",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-x64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/netbsd-arm64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/netbsd-x64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/openbsd-arm64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/openbsd-x64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/openharmony-arm64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/sunos-x64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/win32-arm64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/win32-ia32",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/win32-x64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@hono/node-server",
            "direct": false,
            "version": "1.19.14",
            "ecosystem": "npm"
          },
          {
            "name": "@huggingface/jinja",
            "direct": false,
            "version": "0.5.9",
            "ecosystem": "npm"
          },
          {
            "name": "@huggingface/tokenizers",
            "direct": false,
            "version": "0.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "@huggingface/transformers",
            "direct": false,
            "version": "4.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "@img/colour",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-darwin-arm64",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-darwin-x64",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-libvips-darwin-arm64",
            "direct": false,
            "version": "1.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-libvips-darwin-x64",
            "direct": false,
            "version": "1.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-libvips-linux-arm",
            "direct": false,
            "version": "1.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-libvips-linux-arm64",
            "direct": false,
            "version": "1.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-libvips-linux-ppc64",
            "direct": false,
            "version": "1.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-libvips-linux-riscv64",
            "direct": false,
            "version": "1.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-libvips-linux-s390x",
            "direct": false,
            "version": "1.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-libvips-linux-x64",
            "direct": false,
            "version": "1.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-libvips-linuxmusl-arm64",
            "direct": false,
            "version": "1.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-libvips-linuxmusl-x64",
            "direct": false,
            "version": "1.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-linux-arm",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-linux-arm64",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-linux-ppc64",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-linux-riscv64",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-linux-s390x",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-linux-x64",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-linuxmusl-arm64",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-linuxmusl-x64",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-wasm32",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-win32-arm64",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-win32-ia32",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-win32-x64",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@jridgewell/resolve-uri",
            "direct": false,
            "version": "3.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "@jridgewell/sourcemap-codec",
            "direct": false,
            "version": "1.5.5",
            "ecosystem": "npm"
          },
          {
            "name": "@jridgewell/trace-mapping",
            "direct": false,
            "version": "0.3.31",
            "ecosystem": "npm"
          },
          {
            "name": "@mixmark-io/domino",
            "direct": false,
            "version": "2.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "@napi-rs/canvas",
            "direct": false,
            "version": "0.1.80",
            "ecosystem": "npm"
          },
          {
            "name": "@napi-rs/canvas-android-arm64",
            "direct": false,
            "version": "0.1.80",
            "ecosystem": "npm"
          },
          {
            "name": "@napi-rs/canvas-darwin-arm64",
            "direct": false,
            "version": "0.1.80",
            "ecosystem": "npm"
          },
          {
            "name": "@napi-rs/canvas-darwin-x64",
            "direct": false,
            "version": "0.1.80",
            "ecosystem": "npm"
          },
          {
            "name": "@napi-rs/canvas-linux-arm-gnueabihf",
            "direct": false,
            "version": "0.1.80",
            "ecosystem": "npm"
          },
          {
            "name": "@napi-rs/canvas-linux-arm64-gnu",
            "direct": false,
            "version": "0.1.80",
            "ecosystem": "npm"
          },
          {
            "name": "@napi-rs/canvas-linux-arm64-musl",
            "direct": false,
            "version": "0.1.80",
            "ecosystem": "npm"
          },
          {
            "name": "@napi-rs/canvas-linux-riscv64-gnu",
            "direct": false,
            "version": "0.1.80",
            "ecosystem": "npm"
          },
          {
            "name": "@napi-rs/canvas-linux-x64-gnu",
            "direct": false,
            "version": "0.1.80",
            "ecosystem": "npm"
          },
          {
            "name": "@napi-rs/canvas-linux-x64-musl",
            "direct": false,
            "version": "0.1.80",
            "ecosystem": "npm"
          },
          {
            "name": "@napi-rs/canvas-win32-x64-msvc",
            "direct": false,
            "version": "0.1.80",
            "ecosystem": "npm"
          },
          {
            "name": "@napi-rs/wasm-runtime",
            "direct": false,
            "version": "1.1.5",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-android-arm-eabi",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-android-arm64",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-darwin-arm64",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-darwin-x64",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-freebsd-x64",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-linux-arm-gnueabihf",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-linux-arm-musleabihf",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-linux-arm64-gnu",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-linux-arm64-musl",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-linux-ppc64-gnu",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-linux-riscv64-gnu",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-linux-riscv64-musl",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-linux-s390x-gnu",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-linux-x64-gnu",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-linux-x64-musl",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-openharmony-arm64",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-wasm32-wasi",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-win32-arm64-msvc",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-win32-ia32-msvc",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-win32-x64-msvc",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-project/types",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-android-arm-eabi",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-android-arm64",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-darwin-arm64",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-darwin-x64",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-freebsd-x64",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-linux-arm-gnueabihf",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-linux-arm-musleabihf",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-linux-arm64-gnu",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-linux-arm64-musl",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-linux-ppc64-gnu",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-linux-riscv64-gnu",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-linux-riscv64-musl",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-linux-s390x-gnu",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-linux-x64-gnu",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-linux-x64-musl",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-openharmony-arm64",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-wasm32-wasi",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-win32-arm64-msvc",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-win32-x64-msvc",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/aspromise",
            "direct": false,
            "version": "1.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/base64",
            "direct": false,
            "version": "1.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/codegen",
            "direct": false,
            "version": "2.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/eventemitter",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/fetch",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/float",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/path",
            "direct": false,
            "version": "1.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/pool",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/utf8",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-android-arm64",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-darwin-arm64",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-darwin-x64",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-freebsd-x64",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-linux-arm-gnueabihf",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-linux-arm64-gnu",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-linux-arm64-musl",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-linux-ppc64-gnu",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-linux-s390x-gnu",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-linux-x64-gnu",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-linux-x64-musl",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-openharmony-arm64",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-wasm32-wasi",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-win32-arm64-msvc",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-win32-x64-msvc",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/pluginutils",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "@standard-schema/spec",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tybys/wasm-util",
            "direct": false,
            "version": "0.10.2",
            "ecosystem": "npm"
          },
          {
            "name": "@types/better-sqlite3",
            "direct": false,
            "version": "7.6.13",
            "ecosystem": "npm"
          },
          {
            "name": "@types/chai",
            "direct": false,
            "version": "5.2.3",
            "ecosystem": "npm"
          },
          {
            "name": "@types/deep-eql",
            "direct": false,
            "version": "4.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@types/estree",
            "direct": false,
            "version": "1.0.9",
            "ecosystem": "npm"
          },
          {
            "name": "@types/node",
            "direct": false,
            "version": "22.19.21",
            "ecosystem": "npm"
          },
          {
            "name": "@types/turndown",
            "direct": false,
            "version": "5.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/coverage-v8",
            "direct": false,
            "version": "4.1.9",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/expect",
            "direct": false,
            "version": "4.1.9",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/mocker",
            "direct": false,
            "version": "4.1.9",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/pretty-format",
            "direct": false,
            "version": "4.1.9",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/runner",
            "direct": false,
            "version": "4.1.9",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/snapshot",
            "direct": false,
            "version": "4.1.9",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/spy",
            "direct": false,
            "version": "4.1.9",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/utils",
            "direct": false,
            "version": "4.1.9",
            "ecosystem": "npm"
          },
          {
            "name": "@xmldom/xmldom",
            "direct": false,
            "version": "0.8.13",
            "ecosystem": "npm"
          },
          {
            "name": "accepts",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "adm-zip",
            "direct": false,
            "version": "0.6.0",
            "ecosystem": "npm"
          },
          {
            "name": "ajv",
            "direct": false,
            "version": "8.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "ajv-formats",
            "direct": false,
            "version": "3.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "argparse",
            "direct": false,
            "version": "1.0.10",
            "ecosystem": "npm"
          },
          {
            "name": "assertion-error",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "ast-v8-to-istanbul",
            "direct": false,
            "version": "1.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "balanced-match",
            "direct": false,
            "version": "4.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "base64-js",
            "direct": false,
            "version": "1.5.1",
            "ecosystem": "npm"
          },
          {
            "name": "better-sqlite3",
            "direct": false,
            "version": "11.10.0",
            "ecosystem": "npm"
          },
          {
            "name": "bindings",
            "direct": false,
            "version": "1.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "bl",
            "direct": false,
            "version": "4.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "bluebird",
            "direct": false,
            "version": "3.4.7",
            "ecosystem": "npm"
          },
          {
            "name": "body-parser",
            "direct": false,
            "version": "2.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "boolean",
            "direct": false,
            "version": "3.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "brace-expansion",
            "direct": false,
            "version": "5.0.7",
            "ecosystem": "npm"
          },
          {
            "name": "buffer",
            "direct": false,
            "version": "5.7.1",
            "ecosystem": "npm"
          },
          {
            "name": "bytes",
            "direct": false,
            "version": "3.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "call-bind-apply-helpers",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "call-bound",
            "direct": false,
            "version": "1.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "chai",
            "direct": false,
            "version": "6.2.2",
            "ecosystem": "npm"
          },
          {
            "name": "chownr",
            "direct": false,
            "version": "1.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "content-disposition",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "content-type",
            "direct": false,
            "version": "1.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "content-type",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "convert-source-map",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "cookie",
            "direct": false,
            "version": "0.7.2",
            "ecosystem": "npm"
          },
          {
            "name": "cookie-signature",
            "direct": false,
            "version": "1.2.2",
            "ecosystem": "npm"
          },
          {
            "name": "core-util-is",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "cors",
            "direct": false,
            "version": "2.8.6",
            "ecosystem": "npm"
          },
          {
            "name": "cross-spawn",
            "direct": false,
            "version": "7.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "debug",
            "direct": false,
            "version": "4.4.3",
            "ecosystem": "npm"
          },
          {
            "name": "decompress-response",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "deep-extend",
            "direct": false,
            "version": "0.6.0",
            "ecosystem": "npm"
          },
          {
            "name": "define-data-property",
            "direct": false,
            "version": "1.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "define-properties",
            "direct": false,
            "version": "1.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "depd",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "detect-libc",
            "direct": false,
            "version": "2.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "detect-node",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "dingbat-to-unicode",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "duck",
            "direct": false,
            "version": "0.1.12",
            "ecosystem": "npm"
          },
          {
            "name": "dunder-proto",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "ee-first",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "encodeurl",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "end-of-stream",
            "direct": false,
            "version": "1.4.5",
            "ecosystem": "npm"
          },
          {
            "name": "es-define-property",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "es-errors",
            "direct": false,
            "version": "1.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "es-module-lexer",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "es-object-atoms",
            "direct": false,
            "version": "1.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "es6-error",
            "direct": false,
            "version": "4.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "esbuild",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "escape-html",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "escape-string-regexp",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "esprima",
            "direct": false,
            "version": "4.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "estree-walker",
            "direct": false,
            "version": "3.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "etag",
            "direct": false,
            "version": "1.8.1",
            "ecosystem": "npm"
          },
          {
            "name": "eventsource",
            "direct": false,
            "version": "3.0.7",
            "ecosystem": "npm"
          },
          {
            "name": "eventsource-parser",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "expand-template",
            "direct": false,
            "version": "2.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "expect-type",
            "direct": false,
            "version": "1.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "express",
            "direct": false,
            "version": "5.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "express-rate-limit",
            "direct": false,
            "version": "8.5.2",
            "ecosystem": "npm"
          },
          {
            "name": "extend-shallow",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "fast-deep-equal",
            "direct": false,
            "version": "3.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "fast-uri",
            "direct": false,
            "version": "3.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "fd-package-json",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "fdir",
            "direct": false,
            "version": "6.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "file-uri-to-path",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "finalhandler",
            "direct": false,
            "version": "2.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "flatbuffers",
            "direct": false,
            "version": "25.9.23",
            "ecosystem": "npm"
          },
          {
            "name": "formatly",
            "direct": false,
            "version": "0.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "forwarded",
            "direct": false,
            "version": "0.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "fresh",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "fs-constants",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "fsevents",
            "direct": false,
            "version": "2.3.3",
            "ecosystem": "npm"
          },
          {
            "name": "function-bind",
            "direct": false,
            "version": "1.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "get-intrinsic",
            "direct": false,
            "version": "1.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "get-proto",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "get-tsconfig",
            "direct": false,
            "version": "4.14.0",
            "ecosystem": "npm"
          },
          {
            "name": "github-from-package",
            "direct": false,
            "version": "0.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "global-agent",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "globalthis",
            "direct": false,
            "version": "1.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "gopd",
            "direct": false,
            "version": "1.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "guid-typescript",
            "direct": false,
            "version": "1.0.9",
            "ecosystem": "npm"
          },
          {
            "name": "has-flag",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "has-property-descriptors",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "has-symbols",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "hasown",
            "direct": false,
            "version": "2.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "hono",
            "direct": false,
            "version": "4.12.25",
            "ecosystem": "npm"
          },
          {
            "name": "html-escaper",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "http-errors",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "iconv-lite",
            "direct": false,
            "version": "0.7.2",
            "ecosystem": "npm"
          },
          {
            "name": "ieee754",
            "direct": false,
            "version": "1.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "immediate",
            "direct": false,
            "version": "3.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "inherits",
            "direct": false,
            "version": "2.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "ini",
            "direct": false,
            "version": "1.3.8",
            "ecosystem": "npm"
          },
          {
            "name": "ip-address",
            "direct": false,
            "version": "10.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "ipaddr.js",
            "direct": false,
            "version": "1.9.1",
            "ecosystem": "npm"
          },
          {
            "name": "is-extendable",
            "direct": false,
            "version": "0.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "is-promise",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "isarray",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "isexe",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "istanbul-lib-coverage",
            "direct": false,
            "version": "3.2.2",
            "ecosystem": "npm"
          },
          {
            "name": "istanbul-lib-report",
            "direct": false,
            "version": "3.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "istanbul-reports",
            "direct": false,
            "version": "3.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "jiti",
            "direct": false,
            "version": "2.7.0",
            "ecosystem": "npm"
          },
          {
            "name": "jose",
            "direct": false,
            "version": "6.2.3",
            "ecosystem": "npm"
          },
          {
            "name": "js-tokens",
            "direct": false,
            "version": "10.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "js-yaml",
            "direct": false,
            "version": "3.15.0",
            "ecosystem": "npm"
          },
          {
            "name": "json-schema-to-ts",
            "direct": false,
            "version": "3.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "json-schema-traverse",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "json-schema-typed",
            "direct": false,
            "version": "8.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "json-stringify-safe",
            "direct": false,
            "version": "5.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "kind-of",
            "direct": false,
            "version": "6.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "knip",
            "direct": false,
            "version": "6.16.1",
            "ecosystem": "npm"
          },
          {
            "name": "layerr",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "lie",
            "direct": false,
            "version": "3.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-android-arm64",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-darwin-arm64",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-darwin-x64",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-freebsd-x64",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-linux-arm-gnueabihf",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-linux-arm64-gnu",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-linux-arm64-musl",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-linux-x64-gnu",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-linux-x64-musl",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-win32-arm64-msvc",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-win32-x64-msvc",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "long",
            "direct": false,
            "version": "5.3.2",
            "ecosystem": "npm"
          },
          {
            "name": "lop",
            "direct": false,
            "version": "0.4.2",
            "ecosystem": "npm"
          },
          {
            "name": "lru-cache",
            "direct": false,
            "version": "11.5.1",
            "ecosystem": "npm"
          },
          {
            "name": "magic-string",
            "direct": false,
            "version": "0.30.21",
            "ecosystem": "npm"
          },
          {
            "name": "magicast",
            "direct": false,
            "version": "0.5.3",
            "ecosystem": "npm"
          },
          {
            "name": "make-dir",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "matcher",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "math-intrinsics",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "media-typer",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "merge-descriptors",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "mime-db",
            "direct": false,
            "version": "1.54.0",
            "ecosystem": "npm"
          },
          {
            "name": "mime-types",
            "direct": false,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "mimic-response",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "minimatch",
            "direct": false,
            "version": "10.2.5",
            "ecosystem": "npm"
          },
          {
            "name": "minimist",
            "direct": false,
            "version": "1.2.8",
            "ecosystem": "npm"
          },
          {
            "name": "minipass",
            "direct": false,
            "version": "7.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "mkdirp-classic",
            "direct": false,
            "version": "0.5.3",
            "ecosystem": "npm"
          },
          {
            "name": "ms",
            "direct": false,
            "version": "2.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "nanoid",
            "direct": false,
            "version": "3.3.12",
            "ecosystem": "npm"
          },
          {
            "name": "napi-build-utils",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "negotiator",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "node-abi",
            "direct": false,
            "version": "3.92.0",
            "ecosystem": "npm"
          },
          {
            "name": "object-assign",
            "direct": false,
            "version": "4.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "object-inspect",
            "direct": false,
            "version": "1.13.4",
            "ecosystem": "npm"
          },
          {
            "name": "object-keys",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "obug",
            "direct": false,
            "version": "2.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "on-finished",
            "direct": false,
            "version": "2.4.1",
            "ecosystem": "npm"
          },
          {
            "name": "once",
            "direct": false,
            "version": "1.4.0",
            "ecosystem": "npm"
          },
          {
            "name": "onnxruntime-common",
            "direct": false,
            "version": "1.24.0-dev.20251116-b39e144322",
            "ecosystem": "npm"
          },
          {
            "name": "onnxruntime-common",
            "direct": false,
            "version": "1.24.3",
            "ecosystem": "npm"
          },
          {
            "name": "onnxruntime-node",
            "direct": false,
            "version": "1.24.3",
            "ecosystem": "npm"
          },
          {
            "name": "onnxruntime-web",
            "direct": false,
            "version": "1.26.0-dev.20260416-b7804b056c",
            "ecosystem": "npm"
          },
          {
            "name": "option",
            "direct": false,
            "version": "0.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "oxc-parser",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "oxc-resolver",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "pako",
            "direct": false,
            "version": "1.0.11",
            "ecosystem": "npm"
          },
          {
            "name": "parseurl",
            "direct": false,
            "version": "1.3.3",
            "ecosystem": "npm"
          },
          {
            "name": "path-is-absolute",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "path-key",
            "direct": false,
            "version": "3.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "path-scurry",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "path-to-regexp",
            "direct": false,
            "version": "8.4.2",
            "ecosystem": "npm"
          },
          {
            "name": "pathe",
            "direct": false,
            "version": "2.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "pdfjs-dist",
            "direct": false,
            "version": "5.4.296",
            "ecosystem": "npm"
          },
          {
            "name": "picocolors",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "picomatch",
            "direct": false,
            "version": "4.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "pkce-challenge",
            "direct": false,
            "version": "5.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "platform",
            "direct": false,
            "version": "1.3.6",
            "ecosystem": "npm"
          },
          {
            "name": "postcss",
            "direct": false,
            "version": "8.5.15",
            "ecosystem": "npm"
          },
          {
            "name": "prebuild-install",
            "direct": false,
            "version": "7.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "process-nextick-args",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "protobufjs",
            "direct": false,
            "version": "7.6.5",
            "ecosystem": "npm"
          },
          {
            "name": "proxy-addr",
            "direct": false,
            "version": "2.0.7",
            "ecosystem": "npm"
          },
          {
            "name": "pump",
            "direct": false,
            "version": "3.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "qs",
            "direct": false,
            "version": "6.15.2",
            "ecosystem": "npm"
          },
          {
            "name": "range-parser",
            "direct": false,
            "version": "1.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "raw-body",
            "direct": false,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "rc",
            "direct": false,
            "version": "1.2.8",
            "ecosystem": "npm"
          },
          {
            "name": "readable-stream",
            "direct": false,
            "version": "2.3.8",
            "ecosystem": "npm"
          },
          {
            "name": "readable-stream",
            "direct": false,
            "version": "3.6.2",
            "ecosystem": "npm"
          },
          {
            "name": "require-from-string",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "resolve-pkg-maps",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "roarr",
            "direct": false,
            "version": "2.15.4",
            "ecosystem": "npm"
          },
          {
            "name": "rolldown",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "router",
            "direct": false,
            "version": "2.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "safe-buffer",
            "direct": false,
            "version": "5.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "safer-buffer",
            "direct": false,
            "version": "2.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "section-matter",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "semver",
            "direct": false,
            "version": "7.8.4",
            "ecosystem": "npm"
          },
          {
            "name": "semver-compare",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "send",
            "direct": false,
            "version": "1.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "serialize-error",
            "direct": false,
            "version": "7.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "serve-static",
            "direct": false,
            "version": "2.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "setimmediate",
            "direct": false,
            "version": "1.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "setprototypeof",
            "direct": false,
            "version": "1.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "sharp",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "shebang-command",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "shebang-regex",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "side-channel",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "side-channel-list",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "side-channel-map",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "side-channel-weakmap",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "siginfo",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "simple-concat",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "simple-get",
            "direct": false,
            "version": "4.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "smol-toml",
            "direct": false,
            "version": "1.6.1",
            "ecosystem": "npm"
          },
          {
            "name": "source-map-js",
            "direct": false,
            "version": "1.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "sprintf-js",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "sprintf-js",
            "direct": false,
            "version": "1.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "stackback",
            "direct": false,
            "version": "0.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "statuses",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "std-env",
            "direct": false,
            "version": "4.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "string_decoder",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "strip-bom-string",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "strip-json-comments",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "strip-json-comments",
            "direct": false,
            "version": "5.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "supports-color",
            "direct": false,
            "version": "7.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "tar-fs",
            "direct": false,
            "version": "2.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "tar-stream",
            "direct": false,
            "version": "2.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "tinybench",
            "direct": false,
            "version": "2.9.0",
            "ecosystem": "npm"
          },
          {
            "name": "tinyexec",
            "direct": false,
            "version": "1.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "tinyglobby",
            "direct": false,
            "version": "0.2.17",
            "ecosystem": "npm"
          },
          {
            "name": "tinyrainbow",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "toidentifier",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "ts-algebra",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "tslib",
            "direct": false,
            "version": "2.8.1",
            "ecosystem": "npm"
          },
          {
            "name": "tsx",
            "direct": false,
            "version": "4.22.4",
            "ecosystem": "npm"
          },
          {
            "name": "tunnel-agent",
            "direct": false,
            "version": "0.6.0",
            "ecosystem": "npm"
          },
          {
            "name": "type-fest",
            "direct": false,
            "version": "0.13.1",
            "ecosystem": "npm"
          },
          {
            "name": "type-is",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "typescript",
            "direct": false,
            "version": "5.9.3",
            "ecosystem": "npm"
          },
          {
            "name": "unbash",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "underscore",
            "direct": false,
            "version": "1.13.8",
            "ecosystem": "npm"
          },
          {
            "name": "undici-types",
            "direct": false,
            "version": "6.21.0",
            "ecosystem": "npm"
          },
          {
            "name": "unpipe",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "util-deprecate",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "vary",
            "direct": false,
            "version": "1.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "vite",
            "direct": false,
            "version": "8.0.16",
            "ecosystem": "npm"
          },
          {
            "name": "vitest",
            "direct": false,
            "version": "4.1.9",
            "ecosystem": "npm"
          },
          {
            "name": "walk-up-path",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "which",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "why-is-node-running",
            "direct": false,
            "version": "2.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "wrappy",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "xmlbuilder",
            "direct": false,
            "version": "10.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "yaml",
            "direct": false,
            "version": "2.9.0",
            "ecosystem": "npm"
          },
          {
            "name": "zod-to-json-schema",
            "direct": false,
            "version": "3.25.2",
            "ecosystem": "npm"
          }
        ],
        "collected": true,
        "truncated": false,
        "total_count": 438,
        "direct_count": 13,
        "indirect_count": 425
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 9,
        "merged_prs": 4,
        "open_issues": 2,
        "closed_ratio": 0,
        "closed_issues": 0,
        "closed_unmerged_prs": 2
      },
      "bus_factor": 1,
      "bot_contributors": 1,
      "top_contributors": [
        {
          "type": "User",
          "login": "edtadros",
          "commits": 498,
          "avatar_url": "https://avatars.githubusercontent.com/u/4167177?v=4"
        }
      ],
      "contributors_sampled": 1,
      "top_contributor_share": 1
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "ci.yml",
        "lockfile-refresh.yml",
        "publish.yml"
      ],
      "has_docs_dir": true,
      "linter_configs": [
        "biome.json"
      ],
      "has_editorconfig": false,
      "has_linter_config": true,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [
        "package-lock.json"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 3,
            "reason": "branch protection is not maximal on development and all release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": 10,
            "reason": "1 out of 1 merged PRs checked by a CI test -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 0/28 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 0,
            "reason": "project has 0 contributing companies or organizations -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 10,
            "reason": "update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 10,
            "reason": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": null,
            "reason": "packaging workflow not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 6,
            "reason": "dependency not pinned by hash detected -- score normalized to 6",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "SAST tool is not run on all commits -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 10,
            "reason": "security policy file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": null,
            "reason": "no releases found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 9,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 3,
            "reason": "7 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "f49863150d00a4ac7f18c9e3ba735d46df6ae5e3",
        "ran_at": "2026-07-22T07:43:54Z",
        "aggregate_score": 6.1,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": true,
      "has_dependabot_config": true
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-21T04:39:03Z",
      "oldest_open_prs": [
        {
          "number": 12,
          "created_at": "2026-07-06T07:28:46Z",
          "last_comment_at": "2026-07-21T04:43:13Z",
          "last_comment_author": "edtadros"
        },
        {
          "number": 14,
          "created_at": "2026-07-21T04:39:02Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 15,
          "created_at": "2026-07-21T04:39:11Z",
          "last_comment_at": "2026-07-21T04:39:49Z",
          "last_comment_author": "socket-security"
        },
        {
          "number": 16,
          "created_at": "2026-07-21T04:39:45Z",
          "last_comment_at": "2026-07-21T04:40:27Z",
          "last_comment_author": "socket-security"
        },
        {
          "number": 17,
          "created_at": "2026-07-21T04:39:51Z",
          "last_comment_at": "2026-07-21T04:40:34Z",
          "last_comment_author": "socket-security"
        },
        {
          "number": 18,
          "created_at": "2026-07-21T04:40:04Z",
          "last_comment_at": "2026-07-21T04:41:31Z",
          "last_comment_author": "socket-security"
        },
        {
          "number": 19,
          "created_at": "2026-07-21T04:40:14Z",
          "last_comment_at": "2026-07-21T04:41:04Z",
          "last_comment_author": "socket-security"
        },
        {
          "number": 20,
          "created_at": "2026-07-21T04:40:19Z",
          "last_comment_at": "2026-07-21T04:40:51Z",
          "last_comment_author": "socket-security"
        },
        {
          "number": 21,
          "created_at": "2026-07-21T04:40:26Z",
          "last_comment_at": "2026-07-21T04:41:15Z",
          "last_comment_author": "socket-security"
        }
      ],
      "last_merged_pr_at": "2026-07-21T04:38:10Z",
      "ci_last_conclusion": "SUCCESS",
      "oldest_open_issues": [
        {
          "number": 5,
          "created_at": "2026-05-03T15:52:45Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 9,
          "created_at": "2026-05-30T17:16:41Z",
          "last_comment_at": null,
          "last_comment_author": null
        }
      ]
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/proticom/gnosys",
    "host": "github.com",
    "name": "gnosys",
    "owner": "proticom"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 65,
      "inputs": {
        "security": 69,
        "vitality": 80,
        "community": 50,
        "governance": 42,
        "engineering": 86
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "good",
        "name": "Vitality",
        "value": 80,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "good",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 75,
            "inputs": {
              "commits_last_year": 500,
              "human_commit_share": 0.99,
              "days_since_last_push": 1,
              "active_weeks_last_year": 16
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 1 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 1
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "16/52 weeks with commits",
                "points": 11.1,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 16
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "500 commits in the last year",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 500
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 88,
            "inputs": {
              "releases_count": 90,
              "latest_release_tag": "v6.2.1",
              "releases_from_tags": true,
              "days_since_latest_release": 4,
              "mean_days_between_releases": 1.6
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "90 version tags (no GitHub releases)",
                "points": 16.2,
                "status": "partial",
                "details": [
                  {
                    "code": "version_tags_no_releases",
                    "params": {
                      "count": 90
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 4 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 4
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~1.6 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 1.6
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "unverified",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": "repository_too_young",
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": null,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "maintenance record not established from the collected data",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_unverified",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "moderate",
        "name": "Community & Adoption",
        "value": 50,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "critical",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 8,
            "inputs": {
              "forks": 0,
              "stars": 4,
              "watchers": 0,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "below_threshold"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "4 stars",
                "points": 7.7,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 4
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "0 forks",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "0 watchers",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "excellent",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 92,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": true,
              "has_issue_template": false,
              "has_code_of_conduct": true,
              "has_pull_request_template": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (MIT)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "MIT"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 18,
                "status": "met",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 13.5,
                "status": "met",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 6.3,
                "status": "met",
                "details": [],
                "max_points": 6.3
              }
            ]
          },
          {
            "key": "ecosystem_adoption",
            "band": "moderate",
            "name": "Ecosystem adoption (downloads)",
            "note": "Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "registry_dependents"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 59,
            "inputs": {
              "packages": [
                "gnosys"
              ],
              "dependents": null,
              "ecosystems": "npm",
              "total_downloads": null,
              "monthly_downloads": 3501
            },
            "components": [
              {
                "key": "monthly_downloads",
                "name": "Monthly downloads",
                "detail": "3,501 downloads/month across npm",
                "points": 47.3,
                "status": "partial",
                "details": [
                  {
                    "code": "downloads_monthly",
                    "params": {
                      "count": 3501,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 80
              },
              {
                "key": "registry_dependents",
                "name": "Registry dependents",
                "detail": "not reported by this ecosystem",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_reported_by_this_ecosystem",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "at_risk",
        "name": "Sustainability & Governance",
        "value": 42,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "critical",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 10,
            "inputs": {
              "bus_factor": 1,
              "contributors_sampled": 1,
              "top_contributor_share": 1
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "1 contributor(s) cover half of all commits",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 100% of commits",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 100
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "1 contributors",
                "points": 1.4,
                "status": "partial",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 0 contributing companies or organizations -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "critical",
            "name": "Issue & PR responsiveness",
            "note": null,
            "notes": [],
            "value": 26,
            "inputs": {
              "merged_prs": 4,
              "open_issues": 2,
              "closed_issues": 0,
              "issue_closed_ratio": 0,
              "closed_unmerged_prs": 2
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "0% of issues closed",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 0
                    }
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "4/6 decided PRs merged",
                "points": 25.5,
                "status": "partial",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 4,
                      "decided": 6
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 0/28 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "at_risk",
            "name": "Ownership & stewardship",
            "note": null,
            "notes": [],
            "value": 48,
            "inputs": {
              "followers": 1,
              "owner_type": "Organization",
              "is_verified": null,
              "owner_login": "proticom",
              "public_repos": 2,
              "account_age_days": 4171
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "organization-owned",
                "points": 30,
                "status": "met",
                "details": [
                  {
                    "code": "owner_organization",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "1 followers of proticom",
                "points": 2.2,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 1,
                      "login": "proticom"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "2 public repos, account ~11 yr old",
                "points": 15.5,
                "status": "partial",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 2
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 11
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "excellent",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "gnosys"
              ],
              "ecosystems": "npm",
              "any_deprecated": false,
              "min_days_since_publish": 4
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on npm",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 4 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 4
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "87 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 87
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "excellent",
        "name": "Engineering Quality",
        "value": 86,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "good",
            "name": "Engineering practices",
            "note": null,
            "notes": [],
            "value": 84,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": true,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "3 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 3
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": "biome.json",
                "points": 16,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "biome.json"
                    }
                  }
                ],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "1 out of 1 merged PRs checked by a CI test -- score normalized to 10",
                "points": 20,
                "status": "met",
                "details": [],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "excellent",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "topics": [
                "ai",
                "ai-agents",
                "ai-tools",
                "developer-tools",
                "knowledge-management",
                "llm",
                "mcp",
                "mcp-server",
                "memory",
                "model-context-protocol",
                "obsidian",
                "persistent-memory",
                "typescript",
                "agent-memory",
                "claude",
                "cursor",
                "sqlite",
                "grok-build"
              ],
              "has_wiki": false,
              "homepage": "https://gnosys.ai",
              "has_readme": true,
              "has_docs_dir": true,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": "https://gnosys.ai",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": "18 topics",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "topics_count",
                    "params": {
                      "count": 18
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "moderate",
        "name": "Security",
        "value": 69,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "moderate",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): Packaging, Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "packaging",
                    "signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 61,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 16,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 2,
              "scorecard_aggregate": 6.1
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection is not maximal on development and all release branches",
                "points": 2.2,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "1 out of 1 merged PRs checked by a CI test -- score normalized to 10",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 0/28 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 0 contributing companies or organizations -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "update tool detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow not detected",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 6",
                "points": 3,
                "status": "partial",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool is not run on all commits -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 6.8,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "7 existing vulnerabilities detected",
                "points": 2.2,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "dependency_advisories",
            "band": "excellent",
            "name": "Dependency advisories",
            "note": "Excluded from scoring (no data or not applicable): Indirect dependencies free of known advisories, No advisories left outstanding. Remaining weights renormalized. Matched 438 resolved dependencies against OSV. This repository publishes no package the index resolves, so the repository dependency graph was assessed instead. That graph mixes development and test pins with shipped dependencies, so only the declared runtime dependencies are scored; transitive findings are reported as context and excluded from the score. Reachability is not analyzed.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "indirect_dependencies_free_of_known_advisories",
                    "no_advisories_left_outstanding"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              },
              {
                "code": "advisories_scope_repository",
                "params": {
                  "assessed": 438
                }
              },
              {
                "code": "advisories_repo_graph_caveat",
                "params": {}
              },
              {
                "code": "advisories_reachability",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "source": "osv",
              "advisories": 7,
              "affected_packages": 4,
              "assessed_packages": 438,
              "unassessed_packages": 0,
              "affected_by_severity": "high 2, moderate 2",
              "direct_affected_packages": 0
            },
            "components": [
              {
                "key": "direct_dependencies_free_of_known_advisories",
                "name": "Direct dependencies free of known advisories",
                "detail": "no direct dependency carries a known advisory",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "no_direct_advisories",
                    "params": {}
                  }
                ],
                "max_points": 35
              },
              {
                "key": "indirect_dependencies_free_of_known_advisories",
                "name": "Indirect dependencies free of known advisories",
                "detail": "transitive set not separable from development and test dependencies in this scope",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_scope_not_separable",
                    "params": {}
                  }
                ],
                "max_points": 25
              },
              {
                "key": "no_advisories_left_outstanding",
                "name": "No advisories left outstanding",
                "detail": "no advisory carries a publication date",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_no_publication_date",
                    "params": {}
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "malicious_dependencies",
            "band": "excellent",
            "name": "Malicious dependencies",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "source": "osv",
              "meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
              "packages": [],
              "red_flag": false,
              "assessed_packages": 438,
              "malicious_packages": 0,
              "direct_malicious_packages": 0,
              "withdrawn_malicious_packages": 0,
              "installable_malicious_packages": 0
            },
            "components": [
              {
                "key": "no_dependency_reported_as_a_malicious_package",
                "name": "No dependency reported as a malicious package",
                "detail": "no dependency is reported as a malicious package",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "no_malicious_dependencies",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 1
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "good",
        "name": "AI Readiness",
        "value": 74,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "excellent",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.848,
              "agent_instruction_files": [
                "AGENTS.md",
                "src/test/fixtures/ide-init/claude.md"
              ],
              "agent_instruction_max_bytes": 4665
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "AGENTS.md, src/test/fixtures/ide-init/claude.md",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "AGENTS.md, src/test/fixtures/ide-init/claude.md"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "84 of 99 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 84,
                      "sampled": 99
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "good",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 75,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [
                "package-lock.json"
              ],
              "has_dockerfile": true,
              "typed_language": true,
              "bootstrap_files": [],
              "has_devcontainer": false,
              "has_linter_config": true,
              "typecheck_configs": [
                "tsconfig.json"
              ],
              "agent_commit_share": 0.26,
              "toolchain_manifests": [],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": "biome.json",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "biome.json"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "tsconfig.json",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "tsconfig.json"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "Dockerfile, lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Dockerfile, lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "26 of the last 100 commits agent-authored or agent-credited",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "agent_authored_commits",
                    "params": {
                      "count": 26,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "dependency automation configured, none observed in the sampled commits",
                "points": 5,
                "status": "partial",
                "details": [
                  {
                    "code": "dependency_bot_config_only",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 6",
                "points": 6,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "primary_language": "TypeScript",
              "largest_source_bytes": 185029,
              "source_files_sampled": 537,
              "oversized_source_files": 3
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "TypeScript (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "TypeScript"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "3/537 source files over 60KB",
                "points": 54.7,
                "status": "partial",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 537,
                      "oversized": 3
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          },
          {
            "key": "ai_interfaces",
            "band": "critical",
            "name": "Machine-readable interfaces",
            "note": null,
            "notes": [],
            "value": 20,
            "inputs": {
              "example_dirs": [],
              "has_mcp_signal": true,
              "api_schema_files": []
            },
            "components": [
              {
                "key": "api_schema_openapi_graphql_proto",
                "name": "API schema (OpenAPI/GraphQL/proto)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 40
              },
              {
                "key": "mcp_server",
                "name": "MCP server",
                "detail": null,
                "points": 20,
                "status": "met",
                "details": [],
                "max_points": 20
              },
              {
                "key": "runnable_examples",
                "name": "Runnable examples",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 40
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "deps.dev does not index npm:gnosys@6.2.1; advisories assessed against the repository dependency graph instead"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-22T07:44:00.637773Z",
  "schema_version": "0.26.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/p/proticom/gnosys.svg",
  "full_name": "proticom/gnosys",
  "license_state": "standard",
  "license_spdx": "MIT"
}

评分是信号,而非担保。 评分反映的是 GitHub 上公开可见的实践——不是代码审计,也不是安全保证。

缺失数据将被剔除并重新归一化权重,绝不按零分计。方法论已版本化并公开:指标 v1.13.0、模式 v0.26.0—— 完整方法论 · 指标知识库.

单项结果在整体记录中的位置: 汇总统计npm.