原始 JSON 报告 机器可读
{
"data": {
"repo": {
"topics": [],
"is_fork": false,
"size_kb": 2479,
"has_wiki": false,
"homepage": null,
"languages": {
"PHP": 1593684,
"Shell": 1873
},
"pushed_at": "2026-07-30T18:57:34Z",
"created_at": "2025-09-06T15:01:11Z",
"owner_type": "Organization",
"updated_at": "2026-05-27T22:02:36Z",
"description": "Data Liberation component for WordPress.",
"is_archived": false,
"is_disabled": false,
"license_spdx": "GPL-2.0",
"default_branch": "trunk",
"license_spdx_raw": "GPL-2.0",
"primary_language": "PHP",
"significant_languages": [
"PHP"
]
},
"owner": {
"blog": null,
"name": null,
"type": "Organization",
"login": "wp-php-toolkit",
"company": null,
"location": null,
"followers": 0,
"avatar_url": "https://avatars.githubusercontent.com/u/230693839?v=4",
"created_at": "2025-09-06T08:22:23Z",
"is_verified": null,
"public_repos": 20,
"account_age_days": 327
},
"license": {
"state": "standard",
"spdx_id": "GPL-2.0",
"raw_spdx": "GPL-2.0",
"file_present": true,
"scorecard_found": true,
"profile_has_license": true
},
"activity": {
"releases": [
{
"tag": "v0.9.0",
"kind": "minor",
"published_at": "2026-07-30T18:55:37Z"
},
{
"tag": "v0.8.1",
"kind": "patch",
"published_at": "2026-05-27T22:01:51Z"
},
{
"tag": "v0.8.0",
"kind": "minor",
"published_at": "2026-05-19T19:53:55Z"
},
{
"tag": "v0.7.9",
"kind": "patch",
"published_at": "2026-05-18T15:07:34Z"
},
{
"tag": "v0.7.8",
"kind": "patch",
"published_at": "2026-05-18T14:57:45Z"
},
{
"tag": "v0.7.7",
"kind": "patch",
"published_at": "2026-05-18T14:47:41Z"
},
{
"tag": "v0.7.6",
"kind": "patch",
"published_at": "2026-05-17T00:17:07Z"
},
{
"tag": "v0.7.5",
"kind": "patch",
"published_at": "2026-05-12T23:10:07Z"
},
{
"tag": "v0.7.4",
"kind": "patch",
"published_at": "2026-05-11T13:20:52Z"
},
{
"tag": "v0.7.3",
"kind": "patch",
"published_at": "2026-05-04T13:39:30Z"
},
{
"tag": "v0.7.2",
"kind": "patch",
"published_at": "2026-04-30T22:24:20Z"
},
{
"tag": "v0.7.1",
"kind": "patch",
"published_at": "2026-04-30T18:11:45Z"
},
{
"tag": "v0.7.0",
"kind": "minor",
"published_at": "2026-04-29T23:59:06Z"
},
{
"tag": "v0.6.2",
"kind": "patch",
"published_at": "2026-04-27T14:15:30Z"
},
{
"tag": "v0.6.1",
"kind": "patch",
"published_at": "2026-04-27T13:50:33Z"
},
{
"tag": "v0.6.0",
"kind": "minor",
"published_at": "2026-04-10T20:16:27Z"
},
{
"tag": "v0.5.1",
"kind": "patch",
"published_at": "2026-04-02T14:37:51Z"
},
{
"tag": "v0.5.0",
"kind": "minor",
"published_at": "2026-04-02T13:46:43Z"
},
{
"tag": "v0.4.1",
"kind": "patch",
"published_at": "2025-11-20T12:10:18Z"
},
{
"tag": "v0.4.0",
"kind": "minor",
"published_at": "2025-11-20T12:04:55Z"
},
{
"tag": "v0.3.1",
"kind": "patch",
"published_at": "2025-11-03T09:47:33Z"
},
{
"tag": "v0.3.0",
"kind": "minor",
"published_at": "2025-11-03T09:47:33Z"
},
{
"tag": "v0.2.0",
"kind": "minor",
"published_at": "2025-11-03T09:47:33Z"
},
{
"tag": "v0.1.5",
"kind": "patch",
"published_at": "2025-10-16T08:12:07Z"
},
{
"tag": "v0.1.4",
"kind": "patch",
"published_at": "2025-09-16T13:41:52Z"
},
{
"tag": "v0.1.3",
"kind": "patch",
"published_at": "2025-09-08T13:41:53Z"
},
{
"tag": "v0.1.2",
"kind": "patch",
"published_at": "2025-09-08T13:09:17Z"
},
{
"tag": "v0.1.1",
"kind": "patch",
"published_at": "2025-09-08T12:50:57Z"
},
{
"tag": "v0.1.0",
"kind": "minor",
"published_at": "2025-09-08T12:31:38Z"
},
{
"tag": "0.0.19",
"kind": "patch",
"published_at": "2025-09-08T11:11:01Z"
},
{
"tag": "0.0.18",
"kind": "patch",
"published_at": "2025-09-08T11:01:58Z"
},
{
"tag": "0.0.17",
"kind": "patch",
"published_at": "2025-09-08T10:56:32Z"
},
{
"tag": "0.0.16",
"kind": "patch",
"published_at": "2025-09-08T09:45:19Z"
},
{
"tag": "0.0.15",
"kind": "patch",
"published_at": "2025-09-08T09:41:45Z"
},
{
"tag": "v0.0.15",
"kind": "patch",
"published_at": "2025-09-08T12:31:37Z"
},
{
"tag": "v0.0.15-alpha",
"kind": "prerelease",
"published_at": "2025-09-08T09:45:21Z"
},
{
"tag": "0.0.14",
"kind": "patch",
"published_at": "2025-09-08T09:33:48Z"
},
{
"tag": "0.0.13",
"kind": "patch",
"published_at": "2025-09-08T09:24:30Z"
},
{
"tag": "0.0.12",
"kind": "patch",
"published_at": "2025-09-08T08:42:41Z"
},
{
"tag": "0.0.11",
"kind": "patch",
"published_at": "2025-09-06T23:42:37Z"
},
{
"tag": "0.0.10",
"kind": "patch",
"published_at": "2025-09-06T23:06:20Z"
},
{
"tag": "0.0.9",
"kind": "patch",
"published_at": "2025-09-06T23:05:34Z"
},
{
"tag": "0.0.8",
"kind": "patch",
"published_at": "2025-09-06T23:04:38Z"
},
{
"tag": "v0.0.8-alpha",
"kind": "prerelease",
"published_at": "2025-09-08T11:11:03Z"
},
{
"tag": "0.0.7",
"kind": "patch",
"published_at": "2025-09-06T23:01:09Z"
},
{
"tag": "v0.0.7-alpha",
"kind": "prerelease",
"published_at": "2025-09-08T11:01:59Z"
},
{
"tag": "0.0.6",
"kind": "patch",
"published_at": "2025-09-06T23:00:23Z"
},
{
"tag": "v0.0.6-alpha",
"kind": "prerelease",
"published_at": "2025-09-08T10:56:34Z"
},
{
"tag": "0.0.6-alpha",
"kind": "prerelease",
"published_at": "2025-09-06T20:54:30Z"
},
{
"tag": "v0.0.5-alpha",
"kind": "prerelease",
"published_at": "2025-06-04T14:48:14Z"
},
{
"tag": "v0.0.4-alpha",
"kind": "prerelease",
"published_at": "2025-06-04T14:48:14Z"
},
{
"tag": "v0.0.3-alpha",
"kind": "prerelease",
"published_at": "2025-06-04T14:48:14Z"
},
{
"tag": "v0.0.2-alpha",
"kind": "prerelease",
"published_at": "2025-06-02T22:33:35Z"
},
{
"tag": "v0.0.1-alpha",
"kind": "prerelease",
"published_at": "2025-06-02T22:33:35Z"
}
],
"recent_commits": [
{
"oid": "20c8d4269f8ca41c839c48bd50477bf6667be4c4",
"body": null,
"is_bot": true,
"headline": "open 0.10-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-07-30T18:56:54Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2bc03a21f92443af798d7942ec9918aafd112db7",
"body": "…(#299)\n\nReplacing a URL before CSS closing delimiters could consume them. The\nstored replacement span came from the regular-expression candidate\nbefore its trailing `)` was excluded, and quoted `url()` candidates\nretained the quote exposed after that parenthesis was removed.\n\nStore the length of th\n[…]\nTextProcessorTest.php`\n- `docker compose run --rm sandbox vendor/bin/phpcs\ncomponents/DataLiberation/URL/PHP/class-phpurlintextprocessor.php\ncomponents/DataLiberation/Tests/URLInTextProcessorTest.php`",
"is_bot": false,
"headline": "URLInTextProcessor: Preserve trailing punctuation during replacement …",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2026-07-30T18:55:37Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "5d9fc78fd2eb98715cdec1db0ff585b4ceae5c5a",
"body": "## Summary\n\n- Implements the CSS Syntax Level 3 \"type flag\" (`\"integer\"` or\n`\"number\"`) for `<number-token>` and `<dimension-token>`, resolving the\n`@TODO` in `consume_numeric()`\n- Adds `get_token_number_type()` accessor returning `\"integer\"`,\n`\"number\"`, or `null`\n- `<percentage-token>` returns `nu\n[…]\nCo-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com>\nCo-authored-by: sirreal <841763+sirreal@users.noreply.github.com>\nCo-authored-by: Adam Zieliński <adam@adamziel.com>",
"is_bot": false,
"headline": "CSS: Add numeric flag to number, dimension tokens. (#233)",
"author_name": "Jon Surrell",
"author_login": "sirreal",
"committed_at": "2026-07-15T14:07:46Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "378e6ae8ccac787c2a45c04db37b340990d39f05",
"body": "- **The token_value is never float**\n- **Improve caching of computed token values**",
"is_bot": false,
"headline": "CSS: Improve token value compute cache (#230)",
"author_name": "Jon Surrell",
"author_login": "sirreal",
"committed_at": "2026-07-15T11:29:23Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c7c5dfa31ccc13fb37d669898a8283e9fca8938c",
"body": "## Summary\n\nAdds CSS Syntax hash-token type flag support to `CSSProcessor`.\n\nHash tokens now expose whether they are `id` or `unrestricted` via new\nconstants and `get_token_type_flag()`, matching the spec more closely\nand giving downstream consumers the information they need to distinguish\nhash-toke\n[…]\n hash-token type flags, delimiter fallback, and\nclearing the flag between tokens.\n\nThe token type flag can likely be re-used for the number type, see\nhttps://github.com/WordPress/php-toolkit/pull/233.",
"is_bot": false,
"headline": "CSS: Add hash token type flag (#297)",
"author_name": "Jon Surrell",
"author_login": "sirreal",
"committed_at": "2026-07-15T11:27:11Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "6921b5b546c0f2eafe062866a882c063913f458b",
"body": "decode_string_or_url() and decode_escape_at() called strcspn()/strspn()\nwithout a length argument, scanning the entire remaining CSS string instead\nof stopping at the token boundary. A trailing min() clamp corrected the\nresult but left the over-scan in place.\n\nPass the length as the fourth argument instead — `$end - $at` for the\nstring scan and `6` (the CSS hex-escape maximum) for the escape scan — and\ndrop the now-redundant min() clamps.\n\nAdd tests covering both boundaries.",
"is_bot": false,
"headline": "CSS: Pass length bound to strcspn/strspn in CSS token decoding (#232)",
"author_name": "Copilot",
"author_login": "Copilot",
"committed_at": "2026-06-30T11:46:12Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c05c91a0f7dfc4cd64ea11a90a82e510be13da7a",
"body": "Scrub normal text segments in the escaped-token slow path, matching the\nfast path behavior. Replace invalid escaped UTF-8 bytes inside\n`decode_escape_at()` so decoded token values never expose raw invalid bytes.\n\nAdd regression tests for invalid bytes in slow-path segments and escaped\ncharacters.",
"is_bot": false,
"headline": "CSS: Normalize invalid UTF-8 in escaped token values (#229)",
"author_name": "Copilot",
"author_login": "Copilot",
"committed_at": "2026-06-30T10:47:29Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "7fe3f382f2f3f5845479fda9cd287b7401982b5f",
"body": "The canonical WordPress Importer\n[skips](https://github.com/WordPress/wordpress-importer/blob/b37d462c0f4540d4fc4b42afb1935879a0a3ff14/src/class-wp-import.php#L1726)\na few predefined post meta keys (`_wp_attached_file`,\n`_wp_attachment_metadata`, and `_edit_lock`). The php-toolkit\nimplementation doe\n[…]\nBLUEPRINT_JSON` is the path to the `blueprint.json` file in the\nblueprint bundle you extracted before, `PATH_TO_SITE` is the path to the\nsite you created in Studio, and `PORT` is the port of the site)",
"is_bot": false,
"headline": "Skip predefined meta keys in WXR import (#281)",
"author_name": "Fredrik Rombach Ekelund",
"author_login": "fredrikekelund",
"committed_at": "2026-06-08T11:54:53Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "0d1e22d279348101337094bedfb64bd8b6d7cb99",
"body": null,
"is_bot": true,
"headline": "open 0.9-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-05-27T22:01:54Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "63e2035a5d9ef069d13b0285150e1cbc72fab407",
"body": null,
"is_bot": true,
"headline": "prepare release",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-05-27T22:01:51Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "215a173f5356d8291d897ad6d0eb242a5b6fec5b",
"body": null,
"is_bot": true,
"headline": "open 0.9-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-05-19T20:24:21Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "6eaab346858777b197a5e530157b7388cf3e9cc7",
"body": "Use the native URL-in-text scanner when available and add bounded caches for parsed URL candidates and rewrite results.",
"is_bot": false,
"headline": "Speed up native URL rewriting",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2026-05-19T19:53:55Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "dce2765b02bf7810122c2c154c0c2d5d6bd25397",
"body": null,
"is_bot": true,
"headline": "open 0.8-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-05-18T15:07:36Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ee553c24a84f0669fd7d71b3a9d5122cc374fff1",
"body": null,
"is_bot": true,
"headline": "prepare release",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-05-18T15:07:34Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f87afef73433cbb0f06312b9c7c82a62b7e86c86",
"body": null,
"is_bot": false,
"headline": "Expose PHP fallback APIs from native wrappers",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2026-05-18T15:06:45Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ffd01cb7746efe9e8b8ba19f595d2db899c9469c",
"body": null,
"is_bot": true,
"headline": "open 0.8-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-05-18T14:57:48Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "34539095b63163a41908c68683296294c26553ec",
"body": null,
"is_bot": true,
"headline": "prepare release",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-05-18T14:57:45Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "6b730b8cb7ca91ad69f13b1c1c7adf3dfc655c78",
"body": null,
"is_bot": false,
"headline": "Fix native wrapper autoload without extension",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2026-05-18T14:56:59Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2c4b49f0b8b844506482539cbd69310cd0ba08bd",
"body": null,
"is_bot": true,
"headline": "open 0.8-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-05-18T14:47:44Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "e032fbabc99e0f80061a6d144d3b6a474f92e119",
"body": null,
"is_bot": true,
"headline": "prepare release",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-05-18T14:47:41Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b0760981d76f9263763be87422c2dc04195b63ac",
"body": "## What it does\n\nChanges the public PHP classes to progressively use the native extension\nwith no API-consumer burden.\n\nWhen the extension is installed and the native class advertises\n`supports_public_api()`, the public PHP class resolves to the native\nimplementation. Otherwise it falls back to the \n[…]\nomponents/XML/Tests/NativeXMLConformanceTest.php\ngit diff --check\n```\n\nGitHub Actions is the authoritative extension build/load check for this\nPR because this local machine does not have `php-config`.",
"is_bot": false,
"headline": "Use native API classes from PHP wrappers (#271)",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2026-05-17T10:24:32Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "735d694667c2e0915cd95adb8cb113ec7f50bb7d",
"body": null,
"is_bot": true,
"headline": "open 0.8-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-05-17T00:17:09Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "5ec9e7fc72ec2ab0b91079a90e6ca20ca88cfc4a",
"body": null,
"is_bot": true,
"headline": "prepare release",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-05-17T00:17:07Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2036a6aa7aedf250c19a4aef28f728eeeb7496a0",
"body": "## What it does\n\nMoves the existing public API implementation files to `*php*` sidecar\nfilenames with no line changes.\n\nThis is intentionally only a file-move PR. It does not add public\nloaders, native wrapper classes, or behavior changes; those stay in the\nstacked PR #271.\n\n## Rationale\n\nThis gives\n[…]\n/MarkupProcessorConsumerTest.php components/DataLiberation/Tests/HTMLEntityReaderTest.php\nvendor/bin/phpunit components/Markdown/Tests/MarkdownConsumerTest.php\ngit diff origin/trunk...HEAD --check\n```",
"is_bot": false,
"headline": "Move public API implementation files (#273)",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2026-05-16T16:47:25Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "adb19e69c7344beac3b2464b04a4667e70f0a9d0",
"body": null,
"is_bot": false,
"headline": "Fix documentation accuracy issues",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2026-05-14T14:42:57Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "7f94b34bffbcf313346d174c06bde595d7a6db36",
"body": null,
"is_bot": false,
"headline": "Use root toolkit path in docs snippets",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2026-05-14T13:12:03Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2d6fbe0a1b72ffd238b62ac5b46ae87ff3cd6302",
"body": null,
"is_bot": true,
"headline": "open 0.8-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-05-12T23:10:09Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "63ddf39e82015a65819cf2012c5ab08a6b93aa0e",
"body": null,
"is_bot": true,
"headline": "prepare release",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-05-12T23:10:07Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0da3b5692947ed56ff1ebdf08d78285b0c6c0e34",
"body": null,
"is_bot": true,
"headline": "open 0.8-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-05-11T13:20:54Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "78c88ce723b0862cfad023db0cb2b5f0e65a9ab7",
"body": null,
"is_bot": true,
"headline": "prepare release",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-05-11T13:20:52Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "80dd09e0c30f31fdc853c61a47fe08d4375107fc",
"body": null,
"is_bot": true,
"headline": "open 0.8-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-05-04T13:39:32Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "791a54f89b6540b7ef25f9f518a92f0631c81335",
"body": null,
"is_bot": true,
"headline": "prepare release",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-05-04T13:39:30Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "87f3e130e70a016d614ca283f1d82d8bb9966765",
"body": "## Summary\n\nThe nightly\n[smoke-test-published-packages](https://github.com/WordPress/php-toolkit/actions/workflows/smoke-published.yml)\nworkflow has been failing on v0.7.2 against six packages — each for a\ndifferent reason. None of these are caught by the in-monorepo PHPUnit\nsuite because the bug on\n[…]\nmerge, manual `Publish` workflow run cuts a new tag — the\nchained `smoke-published-packages` job should pass against the\nfreshly-cut tag\n\n🤖 Generated with [Claude Code](https://claude.com/claude-code)",
"is_bot": false,
"headline": "fix: published Packagist packages pass the smoke test (#264)",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2026-05-04T13:38:12Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "105ee0b5a17f64c216799efd469ce35ca96ce9a5",
"body": "## Summary\n\nThe toolkit now documents itself using only its own runtime *and* its\nown structured-data parsers. No Python in CI; no hand-rolled regex over\nmarkdown or HTML.\n\n## What changed\n\n| Was | Now |\n| --- | --- |\n| `bin/_docs_components.py` (200 lines, dead-code dicts) | *deleted* |\n| `bin/_loa\n[…]\nd-docs-bundle.sh && php\nbin/serve-docs.php` — http://localhost:8787 renders all reference pages\nwith snippets.\n- [ ] `php bin/run-snippets.php --update` (no-op, no drift) leaves all\nREADMEs untouched.",
"is_bot": false,
"headline": "docs: rewrite tooling in PHP, drop Python dependency (#263)",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2026-05-03T23:19:57Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "ab8f69dc45f75d1ff378544324cadf80fb501bf2",
"body": "## Summary\n\nConsolidates the catalog's per-component markdown into each component's\n`README.md` and retires `bin/_docs_components/` entirely.\n\n| Before | After |\n| --- | --- |\n| `components/<Name>/README.md` (Composer/Packagist surface) |\n`components/<Name>/README.md` — **both** Composer/Packagist s\n[…]\nded back as new sections in the README in a\nfollow-up — they'll then appear on the docs site too, since the README\n*is* the docs source.\n\n🤖 Generated with [Claude Code](https://claude.com/claude-code)",
"is_bot": false,
"headline": "docs: components/<Name>/README.md is the catalog source (#261)",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2026-05-03T21:17:13Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "7e33b1d7600986cbff3c5b19323e9da6f3370c7f",
"body": "## Summary\n\nThe runnable docs site at https://wordpress.github.io/php-toolkit/\nshipped in #244 and the markdown sources behind it landed in #254. This\nPR makes it easy to find from every place a reader is likely to land.\n\n## What changed\n\n**`github.com/WordPress/php-toolkit`** — Repo description and\n[…]\nr\n\"Homepage\" and \"Documentation\".\n- [ ] Component READMEs render the banner cleanly on github.com\n(HTML-comment markers stay invisible).\n\n🤖 Generated with [Claude Code](https://claude.com/claude-code)",
"is_bot": false,
"headline": "docs: surface the runnable docs site from every entry point (#256)",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2026-05-03T19:38:46Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "95bf0cbfd6429f1ba1e2bee39359984d8260712c",
"body": null,
"is_bot": true,
"headline": "open 0.8-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-04-30T22:24:22Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "24feba2fc83c4ebcf4e50ebfddd19625d154ddba",
"body": null,
"is_bot": true,
"headline": "prepare release",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-04-30T22:24:20Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "792af4cdda8419d3d40500402aede799346904d3",
"body": null,
"is_bot": true,
"headline": "open 0.8-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-04-30T18:11:47Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "85e527f644bbf66789a4200f093b835ff3abcfd8",
"body": null,
"is_bot": true,
"headline": "prepare release",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-04-30T18:11:45Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "4e64e715086ee6cebe0a6792fafde821c30f0ad7",
"body": null,
"is_bot": true,
"headline": "open 0.8-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-04-29T23:59:48Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "25f3385ae145b9befcc53cfbeeb71264d82f3df1",
"body": "Components publish to Packagist through per-component split repos\ncreated by `git filter-repo` in `bin/split-code.sh`. Packagist then\nbuilds dist tarballs with `git archive`, which honors `.gitattributes`\n`export-ignore` and ignores the `archive.exclude` blocks our\n`composer.json` files relied on. S\n[…]\nady has\n`\"exclude-from-classmap\": [\"/Tests/\"]` in its autoload, so dropping\n`Tests/` from the dist tarball can't break consumers.\n\nCut a release after merge to flush the smaller tarballs to Packagist.",
"is_bot": false,
"headline": "Stop shipping tests to Packagist (#247)",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2026-04-29T23:59:06Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "f9a88cf5f165bf70702197c0f03b9dee848b4f7d",
"body": "The new PHP 8.5 CI job surfaced two\n`ZipFilesystemTest::testReadRemoteZip` errors that boil down to one\nmissing piece in the WHATWG URL adapter.\n\nWhen #241 swapped Rowbot for the native `Uri\\WhatWg\\Url` parser on PHP\n8.5+, the new `WPWhatwgUrl` adapter mirrored everything the rest of the\ncodebase to\n[…]\nion/x-www-form-urlencoded` to match the WHATWG stringifier.\n\n## Test plan\n- [ ] `vendor/bin/phpunit components/Zip/Tests/ZipFilesystemTest.php`\npasses on PHP 8.5\n- [ ] CI green on the 8.4 / 8.5 matrix",
"is_bot": false,
"headline": "Fix ZipFilesystem remote-read failures on PHP 8.5 (#243)",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2026-04-27T14:30:10Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "167f668ccc0542138dab4df0894719812aabb7a7",
"body": null,
"is_bot": true,
"headline": "open 0.7-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-04-27T14:15:32Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3502454cd1c760b929329cb4f744ada6eb08ba73",
"body": null,
"is_bot": true,
"headline": "prepare release",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-04-27T14:15:30Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "64443f866a1e95dc7977f177c0b2c3e5d7d53d3a",
"body": "…#241)\n\nPHP 8.5 ships a native `Uri\\WhatWg\\Url` class that implements the same\nspec the bundled `rowbot/url` library does. When the runtime can do the\nwork for us, we should let it.\n\nThis PR adds a thin `WPWhatwgUrl` adapter under\n`components/DataLiberation/URL/` that wraps the native parser and\nexp\n[…]\nant cost.\n\n## Test plan\n\n- [x] All 2,314 DataLiberation tests pass on PHP 8.5 (native path)\n- [x] All 2,314 DataLiberation tests pass on PHP 8.1 (rowbot fallback)\n- [x] Lint clean (`vendor/bin/phpcs`)",
"is_bot": false,
"headline": "DataLiberation: use PHP 8.5 native WHATWG URL parser when available (…",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2026-04-27T13:50:33Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "31c271f08bc1e43170e4e770b02b9cfdc0322a57",
"body": "Fix backslash-newline and backslash-EOF handling in CSS string token values.\nString tokens have special handling for these escape sequences.\n\nRename private method `decode_string_or_url()` to `decode_range()`.\nAdd `bool $string_escapes` parameter to apply CSS string token rules.",
"is_bot": false,
"headline": "CSS: Fix string token value on special string escapes (#227)",
"author_name": "Jon Surrell",
"author_login": "sirreal",
"committed_at": "2026-04-21T16:45:36Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "35fcb5327c4bdc48e6aec2e88328e8d934110a7b",
"body": "## Summary\n\nEvery component in the toolkit now ships a README that follows the same\nstructure used by well-known PHP libraries like Guzzle, Flysystem, and\nSymfony Console:\n\n- **Description** — what the component does and why you'd reach for it\n- **Installation** — the `composer require` one-liner\n- \n[…]\n()` methods).\n\n## Test plan\n\n- [ ] Verify each README renders correctly on GitHub\n- [ ] Spot-check code examples against actual component APIs\n- [ ] Confirm no PHP 7.2+ incompatible syntax in examples",
"is_bot": false,
"headline": "Add README documentation for all 18 components (#234)",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2026-04-10T20:16:27Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "4765c6e098aa014a23053c61a6272812d0d8310e",
"body": "Per the [CSS tokenization\nspec](https://www.w3.org/TR/css-syntax-3/#tokenization),\n`bad-string-token` carries no associated data.\n`CSSProcessor::get_token_value()` was incorrectly returning the partial\nstring content up to the breaking codepoint instead of `null`.\n\nFixes #225.\n\n## Changes\n\n- **`CSS/\n[…]\nng_agent)\n(admins only)\n>\n> </details>\n\n---------\n\nCo-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com>\nCo-authored-by: sirreal <841763+sirreal@users.noreply.github.com>",
"is_bot": false,
"headline": "Fix bad-string-token to return null from get_token_value() (#226)",
"author_name": "Copilot",
"author_login": "Copilot",
"committed_at": "2026-04-08T16:03:26Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "545e84cf7f84abc356a91f1d0b55cbbc6e7887cc",
"body": null,
"is_bot": true,
"headline": "open 0.6-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-04-02T14:37:53Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b42d4b045a3a0b124ec361de3b5873d85c9bb549",
"body": null,
"is_bot": true,
"headline": "prepare release",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-04-02T14:37:51Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "cba85e777963a2d6988afcffacb174b9185a149d",
"body": null,
"is_bot": true,
"headline": "open 0.6-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2026-04-02T13:58:34Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "398c3bfae89f0b1c5dc7fef18978bc15e05cc89f",
"body": "## Summary\n\n`WPURL::replace_base_url()` relies on the WHATWG URL parser, which\nnormalises an empty path to `/`. When an origin-only URL like\n`https://example.com` (no trailing slash) went through\n`replace_base_url()`, its parsed pathname was `/`, and the existing\ntrailing-slash logic explicitly skip\n[…]\nthout trailing slash\n- [x] New integration tests in `RewriteUrlsTest` for origin-only URLs in\nblock attributes and HTML attributes\n- [x] All 2298 existing DataLiberation tests pass\n- [x] Linter passes",
"is_bot": false,
"headline": "WPURL: Preserve trailing-slash style for origin-only URLs (#220)",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2026-04-02T13:46:43Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "5c4da70b6bef5b79c669eca33eca2f76f2ce1846",
"body": "Fixes out-of-bounds string offset access when the input string ends\nwhile consuming an ident start.",
"is_bot": false,
"headline": "CSS Processor: Fix consume_ident_start_codepoint bounds check (#219)",
"author_name": "Jon Surrell",
"author_login": "sirreal",
"committed_at": "2026-03-12T15:11:33Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ec4e87707f3f13486df9ea4d4494b90970168c07",
"body": null,
"is_bot": true,
"headline": "open 0.5-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2025-11-20T12:10:18Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0725ddef6a5fddef634e964147485827f6f72de7",
"body": null,
"is_bot": true,
"headline": "open 0.4-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2025-11-20T12:04:55Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "5f19d0c1c599784bd97317e9f297a9b576f2e0b9",
"body": "## Description\n\nAdds support for migrating URLs within CSS syntax in the `style` HTML\nattribute during WXR imports. For example, this markup:\n\n\n```html\n<div style=\"background-image:url(https://oldsite.com/image.png)\">\n```\n\nWould be rewritten as:\n\n```html\n<div style=\"background-image:url(https://news\n[…]\ng' );\n}\n\necho $processor->get_updated_html();\n// Output: <div style=\"background: url("/new.jpg")\">Content</div>\n```\n\n\n## Testing instructions\n\n* Review thoroughly\n* Confirm the CI tests pass",
"is_bot": false,
"headline": "[BlockMarkupURLProcessor] Support URLs in CSS (#195)",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-11-03T09:47:33Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "b1d3212d40fbba1857b19c95e8053b77f801b8cf",
"body": "Replaces the `utf8_codepoint_at()` call in `CSSProcessor` with\n`utf8_ord()`. This removes the last reference to `utf8_codepoint_at()`\nfrom the codebase so the next PR will remove that function, see\nhttps://github.com/WordPress/php-toolkit/pull/200 for prior context.\n\ncc @dmsnell",
"is_bot": false,
"headline": "[CSSProcessor] Replace utf8_codepoint_at with utf8_ord (#202)",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-11-01T22:33:21Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1809d355e2c71d5dfd36d8f8024fa0a2202bbcfc",
"body": "…der (#200)\n\nReplaces two instances of the old UTF-8 decoding utilities with the new\nutf-8.php toolkit by @dmsnell:\n\n*\nhttps://github.com/WordPress/wordpress-develop/blob/trunk/src/wp-includes/compat-utf8.php\n*\nhttps://github.com/WordPress/wordpress-develop/blob/trunk/src/wp-includes/utf8.php\n\nThis \n[…]\ngithub.com/WordPress/php-toolkit/pull/199 and\nhttps://github.com/WordPress/php-toolkit/pull/197.\n\n## Testing instructions\n\nIf the CI passes, we're good. Unicode-related scenarios are covered by\ntests.",
"is_bot": false,
"headline": "Use wp_is_valid_utf8() and wp_scrub_utf8() from the new utf8.php deco…",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-11-01T18:41:11Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "3b06474269fd3fbb5796b82f9c25d387049511ba",
"body": null,
"is_bot": false,
"headline": "remove css tokenizer now that cssprocessor is merged",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-10-31T00:23:39Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "6caebff7189b0fc33301bfd400bbbdef1a2c371f",
"body": "Follows up on https://github.com/WordPress/php-toolkit/pull/197 by\nadding a `set_token_value( $new_value )` method to allow rewriting CSS.\nAt the moment, it only supports updating the URL token value.\n\n```php\n$css = 'background: url(old.jpg);';\n$processor = CSSProcessor::create( $css );\n\nwhile ( $pr\n[…]\n only escapes quotes newline characters,\nbackslashes, and double quotes. All other bytes are preserved as-is.\n\nPR #198 was supposed to merge this into trunk, but I never updated the\nbase.\n\ncc @dmsnell",
"is_bot": false,
"headline": "CSSProcessor::set_token_value( $new_value ) (#199)",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-10-31T00:22:58Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "f4f1ab9ac3609c92a3a51c46e602433127574e21",
"body": "## Overview\n\nShips a CSSTokenizer class that tokenizes CSS syntax. It follows the\n[CSS Syntax Level 3 spec](https://www.w3.org/TR/css-syntax-3/), giving\nData Liberation tooling a reliable foundation for discovering and\nrewriting URLs without leaning on brittle regular expressions or partial\nparsers.\n[…]\nurn false:\n\n```php\n$css = 'width: 10px;';\n$processor = CSSProcessor::create( $css );\nwhile ( $processor->next_token() ) {\n echo $processor->get_normalized_token();\n}\n// Outputs:\n// width: 10px;\n```",
"is_bot": false,
"headline": "CSSTokenizer (#197)",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-10-30T20:19:48Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "e623851ba86dd3ea787fd755fb247cc4ff9fa700",
"body": null,
"is_bot": true,
"headline": "open 0.2-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2025-10-16T08:12:08Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b917b3cf7acce53513a41d3fc24b6103c113a2a9",
"body": null,
"is_bot": true,
"headline": "prepare release",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2025-10-16T08:12:07Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "6472f00e7cd154829e84c02523a9612b8d260249",
"body": "Removes files and directories starting with a dot (`.`) from the\n`components` directory.\n\nAs @marcusconnor noted in\nhttps://github.com/WordPress/php-toolkit/issues/193, some spam/malware\nscanners are alerted by files and directories starting with a dot, e.g.\n`.github`, `.gitattributes`, etc. While there's nothing inherently wrong\nwith those files, we also don't need them in the repository – they're a\npart of inlined vendor dependencies.\n\nFixes #193",
"is_bot": false,
"headline": "Remove files and directories starting with a dot (#194)",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-10-16T08:11:24Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "e755c2278728c16ae5b05360dbe15e2014e3f731",
"body": "…ng URLs (#191)\n\nBefore this PR, `BlockMarkupProcessor` (and `BlockMarkupUrlProcessor`)\nwould lose the self-closing solidus when rewriting block attributes:\n\n```php\n$p = new BlockMarkupUrlProcessor(\n\t'<!-- wp:navigation-link {\"url\": \"https://w.org\"} /-->'\n);\n$p->next_url();\n$p->set_url('https://new-\n[…]\nttps://new-site.org'));\necho $p->__toString();\n// <!-- wp:navigation-link {\"url\": \"https://new-site.org\"} /-->\n```\n\n## Testing instructions\n\nCI – I've added two more test cases to prevent regressions.",
"is_bot": false,
"headline": "[BlockMarkupProcessor] Preserve self-closing block style when rewriti…",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-10-10T16:06:11Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "fc64303e62685a0f106b557f365bb1d97fbd95b4",
"body": "Moves the base URL replacement logic from\n`BlockMarkupUrlProcessor::replace_base_url()` to\n`WPURL::replace_base_url()`. This way it can be used on any URL without\ninvolving the markup parser.",
"is_bot": false,
"headline": "Extract WPURL::replace_base_url() from BlockMarkupUrlProcessor (#190)",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-09-26T17:33:17Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d5674916ea65f0b46c3ef0b82f5d4036d54d103d",
"body": "Gives `BlockMarkupUrlProcessor` knowledge about which block attributes\nare designed to contain a relative URL.\n\nKnown URL attributes can be assumed to hold a URL and be parsed with the\nbase URL. For example, a `/about-us` value in a `wp:navigation-link`\nblock’s url attribute is a relative URL to the\n[…]\nWITH_SUBSYNTAX_TO_ACCEPT_RELATIVE_URLS_FROM`\n* `URL_CONTAINING_TAGS_WITH_SUBSYNTAX` ->\n`HTML_TAGS_WITH_SUBSYNTAX_TO_ACCEPT_RELATIVE_URLS_FROM`\n\n## Testing\n\nCI – see the new tests shipped with this PR.",
"is_bot": false,
"headline": "Detect relative URLs in known block attributes (#188)",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-09-18T09:57:27Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "c255d83955c56c4ffc933c06b8593c7c30855c53",
"body": null,
"is_bot": true,
"headline": "open 0.2-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2025-09-16T13:41:53Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "7369f0a13d6b20a4ac68eb0208f827f1c7b8978e",
"body": null,
"is_bot": true,
"headline": "prepare release",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2025-09-16T13:41:52Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "625d887f0afb9d1915749205b3ce1effc6a3b994",
"body": "Removes the `WP_Block_Parser_Error` that is not a part of WordPress core\nand was invented in php-toolkit. Referencing it resulted in a crash in\nhttps://github.com/WordPress/wordpress-importer/pull/207.",
"is_bot": false,
"headline": "Remove WP Block parser error (#187)",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-09-16T10:04:32Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2b5bd159e00d42ca4ec0655f1ec64034b3330724",
"body": null,
"is_bot": false,
"headline": "Unindent a comment",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-09-12T09:39:40Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "e2e769e8c0ee2e567c7baae02948aeb193213fa0",
"body": "Updated the class docblock to clarify it implements both the thick and\nthe fine sieve.",
"is_bot": false,
"headline": "Document fine sieve in URLInTextProcessor doc string (#186)",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-09-11T22:22:52Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "286d93cbe01426f110a4556b852a7372df14c8de",
"body": "I've made a script to autofix all PHPCS complaints related to \"all\ncomments must end with a full stop\" since the sniff complains but does\nnot autofix. It seems like I haven't considered multiline comments :-)\nThis PR removes a bunch of end-of-line full stops from places where they\ndon't make any sense.",
"is_bot": false,
"headline": "Remove stray full stops from end of lines in inline comments (#185)",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-09-11T22:22:31Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "57d4856e3f256a572d82bf4e233e49659eb56d9e",
"body": null,
"is_bot": false,
"headline": "Short-circuit in urldecode_n if there are no % symbols",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-09-10T16:50:58Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ed7e6f85a5d127484144703d19f4ec7666d06e2b",
"body": "> @dmsnell raised a good question in\n[https://github.com/WordPress/wordpress-importer/pull/202/](https://github.com/WordPress/wordpress-importer/pull/202/):\n>\n> > Have we audited against the WHATWG spec to see if we accept things\nwe should reject, or reject things we should accept? Off the top of my\n[…]\nhe WHATWG URL test suite is copied and adapted for “URL-in-text”\nmatching, with additional cases covering credentials, schemes,\npunctuation, malformed ports, and whitespace. CI exercises the full set.",
"is_bot": false,
"headline": "URLInTextProcessor: Test against the WHATWG URL test suite (#179)",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-09-10T16:43:50Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "baed4e965ad0a2fb31504f936083a8d655064485",
"body": "Removes the special exclusion in `next_url_attribute()`, apparently\nmeant to target `<input type=\"image\" src=\"\">`. I no longer understand\nwhy we had it in the first place – it doesn't seem necessary at all.",
"is_bot": false,
"headline": "BlockMarkupProcessor: Remove special rule for the INPUT tags (#182)",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-09-10T16:43:26Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "bf4c4c88a02f4c2825ad44336cc2991a682c1dcf",
"body": "… indices (#181)\n\n@dmsnell\n[noted](https://github.com/WordPress/wordpress-importer/pull/202#discussion_r2334173254):\n\n> the passing around of the index with the `-1` sentinel value is hard\nfor me to follow. did you consider setting something like\n`$this->currently_examined_attribute_name = null;`?\n\n\n[…]\n functions?\n\nBlock markup parser is not re-entrant. We should never need to process\nblock markup that blows up the memory so I didn't bother implementing\nre-entrancy there.\n\n# Testing instructions\n\nCI",
"is_bot": false,
"headline": "BlockMarkupUrlProcessor: Iterate over the attributes using names, not…",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-09-10T16:30:57Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "d333b5e0ca416e486a189528b822c36695fe9292",
"body": "…t will now be accepted using the general list of tags and URL attributes\"\n\nThis reverts commit ccc1e8af6e812cde476fe6f3ea87033fc50a735a.",
"is_bot": false,
"headline": "Revert \"BlockMarkupUrlProcessor: Remove special rule for INPUT src. I…",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-09-10T15:40:25Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ccc1e8af6e812cde476fe6f3ea87033fc50a735a",
"body": "…ow be accepted using the general list of tags and URL attributes",
"is_bot": false,
"headline": "BlockMarkupUrlProcessor: Remove special rule for INPUT src. It will n…",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-09-10T15:06:46Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "794a01868b0c32eafcaa74b15c4a9abe534bd462",
"body": null,
"is_bot": false,
"headline": "Simplify URLInTextProcessor::get_raw_url()",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-09-10T15:02:06Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d689908a0be6ed22b6ec1273eaa1f08cd7d80d1e",
"body": "Abstract the public suffix list check inside the WPURL class. This will\nhelp us swap it for a database lookup in the future – @dmsnell noted in\nhttps://github.com/WordPress/wordpress-importer/pull/202 the PSL list\nchanges and shipping a hardcoded one with the plugin may not be enough\nto keep up in the long term.\n\n ## Testing instructions\n\nCI",
"is_bot": false,
"headline": "Move public suffix list check to WPURL::is_known_public_domain (#180)",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-09-10T15:00:42Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b53f9c971bf347b8136c734a13fd2cc266990411",
"body": null,
"is_bot": false,
"headline": "Rephrase the urldecode_n inline comment",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-09-10T14:29:51Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0a7b97b558babc745279036036c89195c0d22eb5",
"body": null,
"is_bot": false,
"headline": "Document the decoding in urldecode_n function",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-09-10T14:29:10Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "412452fb3b1dbae38d767a81f74dd205dbac2fe7",
"body": null,
"is_bot": false,
"headline": "Document the whitespace note in URL/functions.php",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-09-10T14:24:06Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "9e8b91cfe72168c6e8b7d2fa844c7137925d66f4",
"body": "Lints a few more files as a part of the ongoing #157 effort",
"is_bot": false,
"headline": "PHPCS – fix more warnings (#178)",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-09-09T21:29:28Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f6151dde3304a1f091c24a24142a4a339c34c303",
"body": null,
"is_bot": true,
"headline": "open 0.2-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2025-09-08T13:41:55Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "dc57d5dac610dbe6b7c38459d0e5eb5f63d02064",
"body": null,
"is_bot": true,
"headline": "prepare release",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2025-09-08T13:41:53Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ab316effe2434afbeeb06ec269a9180eff30e0f9",
"body": null,
"is_bot": false,
"headline": "Add GPL 2.0 or later to all the composer files",
"author_name": "Adam Zieliński",
"author_login": "adamziel",
"committed_at": "2025-09-08T13:34:24Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "fca0509ef55053eb767d34d91c3f8d6d41b32d6a",
"body": null,
"is_bot": true,
"headline": "open 0.2-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2025-09-08T13:09:18Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "6e9ae67759d13ba2af89cee40276c3b677b97192",
"body": null,
"is_bot": true,
"headline": "prepare release",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2025-09-08T13:09:17Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "eebf15936248efd33fbf57b740088644b77adf63",
"body": null,
"is_bot": true,
"headline": "open 0.2-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2025-09-08T12:50:58Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0d6f3cc230273e98740fa817ba98414d37efb9cf",
"body": null,
"is_bot": true,
"headline": "prepare release",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2025-09-08T12:50:57Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "85742fe9d5e9e8d92af7a6f2a2dd42a76adba631",
"body": null,
"is_bot": true,
"headline": "open 0.2-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2025-09-08T12:44:19Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "fea13a0cf4f0f5144051661fd47b45ae7ba249f6",
"body": null,
"is_bot": true,
"headline": "open 0.1-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2025-09-08T12:31:38Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "12e5170212e2ace6097aaa76e57b450c65ac5efa",
"body": null,
"is_bot": true,
"headline": "prepare release",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2025-09-08T12:31:37Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "af548154d94262ecbe1fa6b6503d0c2e4017a326",
"body": null,
"is_bot": true,
"headline": "open 0.1-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2025-09-08T11:11:03Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "24b916b676ba2aa594d03ecb3e7334774dedfff8",
"body": null,
"is_bot": true,
"headline": "prepare release",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2025-09-08T11:11:01Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "edca955c358543c968e4bec397d1082dfc4263a1",
"body": null,
"is_bot": true,
"headline": "open 0.1-dev",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2025-09-08T11:01:59Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3bbfa655f3d5be90b4ef5bf717570d802cabf6cf",
"body": null,
"is_bot": true,
"headline": "prepare release",
"author_name": "github-actions[bot]",
"author_login": "github-actions[bot]",
"committed_at": "2025-09-08T11:01:58Z",
"body_truncated": false,
"is_coding_agent": false
}
],
"releases_count": 54,
"commits_last_year": 122,
"latest_release_at": "2026-07-30T18:55:37Z",
"latest_release_tag": "v0.9.0",
"releases_from_tags": true,
"days_since_last_push": 0,
"active_weeks_last_year": 22,
"days_since_latest_release": 0,
"mean_days_between_releases": 9.7
},
"community": {
"has_readme": true,
"has_license": true,
"has_description": true,
"has_contributing": false,
"health_percentage": 50,
"has_issue_template": false,
"has_code_of_conduct": false,
"has_pull_request_template": false
},
"ecosystem": {
"packages": [
{
"name": "wp-php-toolkit/data-liberation",
"exists": true,
"license": "GPL-2.0-or-later",
"keywords": [
"wordpress",
"php-toolkit"
],
"ecosystem": "packagist",
"matches_repo": true,
"registry_url": "https://packagist.org/packages/wp-php-toolkit/data-liberation",
"is_deprecated": false,
"latest_version": "v0.9.0",
"repository_url": "https://github.com/wp-php-toolkit/data-liberation",
"versions_count": 49,
"total_downloads": 217358,
"dependents_count": 6,
"deprecation_note": null,
"maintainers_count": null,
"monthly_downloads": 100551,
"first_published_at": null,
"latest_published_at": "2026-07-30T18:55:37Z",
"latest_version_yanked": null,
"days_since_latest_publish": 0
}
]
},
"popularity": {
"forks": 1,
"stars": 0,
"watchers": 0,
"fork_history": {
"days": [
{
"date": "2026-07-29",
"count": 1
}
],
"complete": true,
"collected": 1,
"total_forks": 1
},
"star_history": {
"days": [],
"complete": true,
"collected": 0,
"total_stars": 0,
"collected_at": null
},
"open_issues_and_prs": 0
},
"ai_readiness": {
"has_nix": false,
"example_dirs": [],
"has_llms_txt": false,
"has_dockerfile": false,
"has_mcp_signal": false,
"bootstrap_files": [],
"api_schema_files": [],
"has_devcontainer": false,
"typecheck_configs": [],
"toolchain_manifests": [],
"largest_source_bytes": 104742,
"source_files_sampled": 266,
"oversized_source_files": 5,
"agent_instruction_files": [],
"agent_instruction_max_bytes": null
},
"dependencies": {
"manifests": [
"composer.json"
],
"advisories": {
"error": null,
"scope": null,
"source": null,
"findings": [],
"collected": false,
"malicious": [],
"truncated": false,
"by_severity": {},
"advisory_count": 0,
"affected_count": 0,
"assessed_count": 0,
"malicious_count": 0,
"assessed_package": null,
"unassessed_count": 0,
"direct_affected_count": 0
},
"ecosystems": [
"packagist"
],
"dependencies": [
{
"name": "wp-php-toolkit/bytestream",
"manifest": "composer.json",
"ecosystem": "packagist",
"version_constraint": "^0.10"
},
{
"name": "wp-php-toolkit/filesystem",
"manifest": "composer.json",
"ecosystem": "packagist",
"version_constraint": "^0.10"
},
{
"name": "wp-php-toolkit/html",
"manifest": "composer.json",
"ecosystem": "packagist",
"version_constraint": "^0.10"
},
{
"name": "wp-php-toolkit/http-client",
"manifest": "composer.json",
"ecosystem": "packagist",
"version_constraint": "^0.10"
},
{
"name": "wp-php-toolkit/xml",
"manifest": "composer.json",
"ecosystem": "packagist",
"version_constraint": "^0.10"
}
],
"all_dependencies": {
"error": "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
"source": null,
"packages": [],
"collected": false,
"truncated": false,
"total_count": null,
"direct_count": null,
"indirect_count": null
}
},
"maintainership": {
"issues": {
"open_prs": 0,
"merged_prs": 0,
"open_issues": 0,
"closed_ratio": null,
"closed_issues": 0,
"closed_unmerged_prs": 0
},
"bus_factor": 1,
"bot_contributors": 2,
"top_contributors": [
{
"type": "User",
"login": "adamziel",
"commits": 69,
"avatar_url": "https://avatars.githubusercontent.com/u/205419?v=4"
},
{
"type": "User",
"login": "sirreal",
"commits": 5,
"avatar_url": "https://avatars.githubusercontent.com/u/841763?v=4"
},
{
"type": "User",
"login": "fredrikekelund",
"commits": 1,
"avatar_url": "https://avatars.githubusercontent.com/u/1101677?v=4"
}
],
"contributors_sampled": 3,
"top_contributor_share": 0.92
},
"quality_signals": {
"has_ci": false,
"has_tests": true,
"ci_workflows": [],
"has_docs_dir": false,
"linter_configs": [
"phpstan.neon"
],
"has_editorconfig": false,
"has_linter_config": true,
"has_precommit_config": false
},
"security_signals": {
"lockfiles": [],
"scorecard": {
"checks": [
{
"name": "Binary-Artifacts",
"score": 10,
"reason": "no binaries found in the repo",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
},
{
"name": "Branch-Protection",
"score": 0,
"reason": "branch protection not enabled on development/release branches",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
},
{
"name": "CI-Tests",
"score": null,
"reason": "no pull request found",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
},
{
"name": "CII-Best-Practices",
"score": 0,
"reason": "no effort to earn an OpenSSF best practices badge detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
},
{
"name": "Code-Review",
"score": 0,
"reason": "Found 0/30 approved changesets -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
},
{
"name": "Contributors",
"score": 10,
"reason": "project has 7 contributing companies or organizations",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
},
{
"name": "Dangerous-Workflow",
"score": null,
"reason": "no workflows found",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
},
{
"name": "Dependency-Update-Tool",
"score": 0,
"reason": "no update tool detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
},
{
"name": "Fuzzing",
"score": 0,
"reason": "project is not fuzzed",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
},
{
"name": "License",
"score": 10,
"reason": "license file detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
},
{
"name": "Maintained",
"score": 10,
"reason": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
},
{
"name": "Packaging",
"score": null,
"reason": "packaging workflow not detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
},
{
"name": "Pinned-Dependencies",
"score": null,
"reason": "no dependencies found",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
},
{
"name": "SAST",
"score": 0,
"reason": "no SAST tool detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
},
{
"name": "Security-Policy",
"score": 0,
"reason": "security policy file not detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
},
{
"name": "Signed-Releases",
"score": null,
"reason": "no releases found",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
},
{
"name": "Token-Permissions",
"score": null,
"reason": "No tokens found",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
},
{
"name": "Vulnerabilities",
"score": 10,
"reason": "0 existing vulnerabilities detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
}
],
"commit": "20c8d4269f8ca41c839c48bd50477bf6667be4c4",
"ran_at": "2026-07-30T18:58:56Z",
"aggregate_score": 4.1,
"scorecard_version": "v5.5.0"
},
"has_codeql_workflow": false,
"has_security_policy": false,
"has_dependabot_config": false
},
"contribution_flow": {
"collected": true,
"ci_last_run_at": null,
"oldest_open_prs": [],
"last_merged_pr_at": null,
"ci_last_conclusion": null,
"oldest_open_issues": []
}
},
"config": {
"disabled_metrics": [],
"disabled_categories": [],
"disabled_components": {}
},
"source": {
"url": "https://github.com/wp-php-toolkit/data-liberation",
"host": "github.com",
"name": "data-liberation",
"owner": "wp-php-toolkit"
},
"metrics": {
"overall": {
"key": "overall",
"band": "moderate",
"name": "Overall health",
"note": null,
"notes": [],
"value": 50,
"inputs": {
"security": 41,
"vitality": 83,
"community": 36,
"governance": 38,
"engineering": 46
},
"components": []
},
"categories": [
{
"key": "vitality",
"band": "good",
"name": "Vitality",
"value": 83,
"weight": 0.22,
"metrics": [
{
"key": "development_activity",
"band": "good",
"name": "Development activity",
"note": null,
"notes": [],
"value": 79,
"inputs": {
"commits_last_year": 122,
"human_commit_share": 0.53,
"days_since_last_push": 0,
"active_weeks_last_year": 22
},
"components": [
{
"key": "push_recency",
"name": "Push recency",
"detail": "last push 0 days ago",
"points": 36,
"status": "met",
"details": [
{
"code": "push_recency",
"params": {
"days": 0
}
}
],
"max_points": 36
},
{
"key": "commit_cadence",
"name": "Commit cadence",
"detail": "22/52 weeks with commits",
"points": 15.2,
"status": "partial",
"details": [
{
"code": "commit_cadence_weeks",
"params": {
"weeks": 22
}
}
],
"max_points": 36
},
{
"key": "commit_volume",
"name": "Commit volume",
"detail": "122 commits in the last year",
"points": 18,
"status": "met",
"details": [
{
"code": "commits_last_year",
"params": {
"count": 122
}
}
],
"max_points": 18
},
{
"key": "openssf_scorecard_maintained",
"name": "OpenSSF Scorecard: Maintained",
"detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
"points": 10,
"status": "met",
"details": [],
"max_points": 10
}
]
},
{
"key": "release_discipline",
"band": "excellent",
"name": "Release discipline",
"note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"openssf_scorecard_signed_releases"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 88,
"inputs": {
"releases_count": 54,
"latest_release_tag": "v0.9.0",
"releases_from_tags": true,
"days_since_latest_release": 0,
"mean_days_between_releases": 9.7
},
"components": [
{
"key": "ships_releases",
"name": "Ships releases",
"detail": "54 version tags (no GitHub releases)",
"points": 16.2,
"status": "partial",
"details": [
{
"code": "version_tags_no_releases",
"params": {
"count": 54
}
}
],
"max_points": 27
},
{
"key": "release_recency",
"name": "Release recency",
"detail": "latest release 0 days ago",
"points": 36,
"status": "met",
"details": [
{
"code": "release_recency",
"params": {
"days": 0
}
}
],
"max_points": 36
},
{
"key": "release_cadence",
"name": "Release cadence",
"detail": "a release every ~9.7 days",
"points": 27,
"status": "met",
"details": [
{
"code": "release_cadence",
"params": {
"gap": 9.7
}
}
],
"max_points": 27
},
{
"key": "openssf_scorecard_signed_releases",
"name": "OpenSSF Scorecard: Signed-Releases",
"detail": "no releases found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 10
}
]
},
{
"key": "abandonment",
"band": "excellent",
"name": "Abandonment",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"cap": null,
"state": "maintained",
"guards": [],
"signals": [],
"red_flag": false,
"multiplier_pct": 100,
"declared_reason": null,
"unverified_reason": null,
"unanswered_open_prs": null,
"unanswered_open_issues": null,
"days_since_last_merged_pr": null,
"days_since_last_human_commit": 0,
"days_since_last_human_commit_is_floor": false
},
"components": [
{
"key": "project_is_still_maintained",
"name": "Project is still maintained",
"detail": "last human commit 0 days ago",
"points": 100,
"status": "met",
"details": [
{
"code": "abandonment_maintained",
"params": {
"days": 0
}
}
],
"max_points": 100
}
]
}
],
"description": "Is the project alive — is code being written and are releases shipping?"
},
{
"key": "community",
"band": "at_risk",
"name": "Community & Adoption",
"value": 36,
"weight": 0.18,
"metrics": [
{
"key": "popularity",
"band": "critical",
"name": "Popularity & adoption",
"note": null,
"notes": [],
"value": 1,
"inputs": {
"forks": 1,
"stars": 0,
"watchers": 0,
"growth_state": "unverified",
"growth_factor_pct": 100,
"growth_unverified_reason": "no_history"
},
"components": [
{
"key": "stars",
"name": "Stars",
"detail": "0 stars",
"points": 0,
"status": "missed",
"details": [
{
"code": "stars",
"params": {
"count": 0
}
}
],
"max_points": 60
},
{
"key": "forks",
"name": "Forks",
"detail": "1 forks",
"points": 0,
"status": "missed",
"details": [
{
"code": "forks",
"params": {
"count": 1
}
}
],
"max_points": 25
},
{
"key": "watchers",
"name": "Watchers",
"detail": "0 watchers",
"points": 0,
"status": "missed",
"details": [
{
"code": "watchers",
"params": {
"count": 0
}
}
],
"max_points": 15
}
]
},
{
"key": "community_health",
"band": "moderate",
"name": "Community health",
"note": null,
"notes": [],
"value": 50,
"inputs": {
"has_readme": true,
"has_license": true,
"has_contributing": false,
"has_issue_template": false,
"has_code_of_conduct": false,
"has_pull_request_template": false
},
"components": [
{
"key": "readme",
"name": "README",
"detail": null,
"points": 22.5,
"status": "met",
"details": [],
"max_points": 22.5
},
{
"key": "license",
"name": "License",
"detail": "recognized license (GPL-2.0)",
"points": 22.5,
"status": "met",
"details": [
{
"code": "license_standard",
"params": {}
},
{
"code": "license_spdx",
"params": {
"spdx": "GPL-2.0"
}
}
],
"max_points": 22.5
},
{
"key": "contributing_guide",
"name": "CONTRIBUTING guide",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 18
},
{
"key": "code_of_conduct",
"name": "Code of conduct",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 13.5
},
{
"key": "issue_template",
"name": "Issue template",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.2
},
{
"key": "pr_template",
"name": "PR template",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 6.3
}
]
},
{
"key": "ecosystem_adoption",
"band": "good",
"name": "Ecosystem adoption (downloads)",
"note": null,
"notes": [],
"value": 72,
"inputs": {
"packages": [
"wp-php-toolkit/data-liberation"
],
"dependents": 6,
"ecosystems": "packagist",
"total_downloads": 217358,
"monthly_downloads": 100551
},
"components": [
{
"key": "monthly_downloads",
"name": "Monthly downloads",
"detail": "100,551 downloads/month across packagist",
"points": 66.7,
"status": "partial",
"details": [
{
"code": "downloads_monthly",
"params": {
"count": 100551,
"ecosystems": "packagist"
}
}
],
"max_points": 80
},
{
"key": "registry_dependents",
"name": "Registry dependents",
"detail": "6 packages depend on it",
"points": 5.6,
"status": "partial",
"details": [
{
"code": "registry_dependents",
"params": {
"count": 6
}
}
],
"max_points": 20
}
]
}
],
"description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
},
{
"key": "governance",
"band": "at_risk",
"name": "Sustainability & Governance",
"value": 38,
"weight": 0.24,
"metrics": [
{
"key": "maintainer_resilience",
"band": "critical",
"name": "Maintainer resilience (bus factor)",
"note": null,
"notes": [],
"value": 25,
"inputs": {
"bus_factor": 1,
"contributors_sampled": 3,
"top_contributor_share": 0.92
},
"components": [
{
"key": "bus_factor",
"name": "Bus factor",
"detail": "1 contributor(s) cover half of all commits",
"points": 9,
"status": "partial",
"details": [
{
"code": "bus_factor",
"params": {
"count": 1
}
}
],
"max_points": 54
},
{
"key": "commit_distribution",
"name": "Commit distribution",
"detail": "top contributor authored 92% of commits",
"points": 1.8,
"status": "partial",
"details": [
{
"code": "top_contributor_share",
"params": {
"share": 92
}
}
],
"max_points": 22.5
},
{
"key": "contributor_breadth",
"name": "Contributor breadth",
"detail": "3 contributors",
"points": 4.1,
"status": "partial",
"details": [
{
"code": "contributors_sampled",
"params": {
"count": 3
}
}
],
"max_points": 13.5
},
{
"key": "openssf_scorecard_contributors",
"name": "OpenSSF Scorecard: Contributors",
"detail": "project has 7 contributing companies or organizations",
"points": 10,
"status": "met",
"details": [],
"max_points": 10
}
]
},
{
"key": "responsiveness",
"band": "critical",
"name": "Issue & PR responsiveness",
"note": "Excluded from scoring (no data or not applicable): Issue resolution, PR acceptance. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"issue_resolution",
"pr_acceptance"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 1,
"inputs": {
"merged_prs": 0,
"open_issues": 0,
"closed_issues": 0,
"issue_closed_ratio": null,
"closed_unmerged_prs": 0
},
"components": [
{
"key": "issue_resolution",
"name": "Issue resolution",
"detail": "no issues or no data",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_issues_or_data",
"params": {}
}
],
"max_points": 46.75
},
{
"key": "pr_acceptance",
"name": "PR acceptance",
"detail": "no decided pull requests or no data",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_decided_prs_or_data",
"params": {}
}
],
"max_points": 38.25
},
{
"key": "openssf_scorecard_code_review",
"name": "OpenSSF Scorecard: Code-Review",
"detail": "Found 0/30 approved changesets -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 15
}
]
},
{
"key": "stewardship",
"band": "at_risk",
"name": "Ownership & stewardship",
"note": null,
"notes": [],
"value": 41,
"inputs": {
"followers": 0,
"owner_type": "Organization",
"is_verified": null,
"owner_login": "wp-php-toolkit",
"public_repos": 20,
"account_age_days": 327
},
"components": [
{
"key": "ownership_backing",
"name": "Ownership backing",
"detail": "organization-owned",
"points": 30,
"status": "met",
"details": [
{
"code": "owner_organization",
"params": {}
}
],
"max_points": 30
},
{
"key": "verified_domain",
"name": "Verified domain",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 20
},
{
"key": "owner_reach",
"name": "Owner reach",
"detail": "0 followers of wp-php-toolkit",
"points": 0,
"status": "missed",
"details": [
{
"code": "owner_followers",
"params": {
"count": 0,
"login": "wp-php-toolkit"
}
}
],
"max_points": 25
},
{
"key": "track_record",
"name": "Track record",
"detail": "20 public repos, account ~0 yr old",
"points": 11.4,
"status": "partial",
"details": [
{
"code": "public_repos",
"params": {
"count": 20
}
},
{
"code": "account_age_years",
"params": {
"years": 0
}
}
],
"max_points": 25
}
]
},
{
"key": "package_maintenance",
"band": "excellent",
"name": "Package maintenance",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"packages": [
"wp-php-toolkit/data-liberation"
],
"ecosystems": "packagist",
"any_deprecated": false,
"min_days_since_publish": 0
},
"components": [
{
"key": "published_resolvable",
"name": "Published & resolvable",
"detail": "1 package(s) on packagist",
"points": 25,
"status": "met",
"details": [
{
"code": "packages_published",
"params": {
"count": 1,
"ecosystems": "packagist"
}
}
],
"max_points": 25
},
{
"key": "publish_recency",
"name": "Publish recency",
"detail": "latest publish 0 days ago",
"points": 35,
"status": "met",
"details": [
{
"code": "publish_recency",
"params": {
"days": 0
}
}
],
"max_points": 35
},
{
"key": "version_history",
"name": "Version history",
"detail": "49 published versions",
"points": 20,
"status": "met",
"details": [
{
"code": "published_versions",
"params": {
"count": 49
}
}
],
"max_points": 20
},
{
"key": "not_deprecated",
"name": "Not deprecated",
"detail": "active, not deprecated or yanked",
"points": 20,
"status": "met",
"details": [
{
"code": "package_not_deprecated",
"params": {}
}
],
"max_points": 20
}
]
}
],
"description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
},
{
"key": "engineering",
"band": "at_risk",
"name": "Engineering Quality",
"value": 46,
"weight": 0.2,
"metrics": [
{
"key": "engineering_practices",
"band": "moderate",
"name": "Engineering practices",
"note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: CI-Tests. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"openssf_scorecard_ci_tests"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 50,
"inputs": {
"has_ci": false,
"has_tests": true,
"has_editorconfig": false,
"has_linter_config": true,
"has_precommit_config": false
},
"components": [
{
"key": "ci_workflows",
"name": "CI workflows",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 24
},
{
"key": "tests_present",
"name": "Tests present",
"detail": null,
"points": 24,
"status": "met",
"details": [],
"max_points": 24
},
{
"key": "linter_config",
"name": "Linter config",
"detail": "phpstan.neon",
"points": 16,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "phpstan.neon"
}
}
],
"max_points": 16
},
{
"key": "pre_commit_hooks",
"name": "Pre-commit hooks",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 9.6
},
{
"key": "editorconfig",
"name": ".editorconfig",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 6.4
},
{
"key": "openssf_scorecard_ci_tests",
"name": "OpenSSF Scorecard: CI-Tests",
"detail": "no pull request found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 20
}
]
},
{
"key": "documentation",
"band": "at_risk",
"name": "Documentation",
"note": null,
"notes": [],
"value": 40,
"inputs": {
"topics": [],
"has_wiki": false,
"homepage": null,
"has_readme": true,
"has_docs_dir": false,
"has_description": true
},
"components": [
{
"key": "readme",
"name": "README",
"detail": null,
"points": 30,
"status": "met",
"details": [],
"max_points": 30
},
{
"key": "documentation_directory",
"name": "Documentation directory",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 25
},
{
"key": "documentation_homepage_site",
"name": "Documentation / homepage site",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 15
},
{
"key": "repository_description",
"name": "Repository description",
"detail": null,
"points": 10,
"status": "met",
"details": [],
"max_points": 10
},
{
"key": "topics",
"name": "Topics",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
},
{
"key": "wiki",
"name": "Wiki",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
}
],
"description": "Are baseline engineering and documentation practices in place?"
},
{
"key": "security",
"band": "at_risk",
"name": "Security",
"value": 41,
"weight": 0.16,
"metrics": [
{
"key": "security_posture",
"band": "at_risk",
"name": "Security posture",
"note": "Excluded from scoring (no data or not applicable): CI-Tests, Dangerous-Workflow, Packaging, Pinned-Dependencies, Signed-Releases, Token-Permissions. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"ci_tests",
"dangerous_workflow",
"packaging",
"pinned_dependencies",
"signed_releases",
"token_permissions"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 41,
"inputs": {
"source": "openssf_scorecard",
"checks_evaluated": 12,
"scorecard_version": "v5.5.0",
"checks_inconclusive": 6,
"scorecard_aggregate": 4.1
},
"components": [
{
"key": "binary_artifacts",
"name": "Binary-Artifacts",
"detail": "no binaries found in the repo",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "branch_protection",
"name": "Branch-Protection",
"detail": "branch protection not enabled on development/release branches",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "ci_tests",
"name": "CI-Tests",
"detail": "no pull request found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 2.5
},
{
"key": "cii_best_practices",
"name": "CII-Best-Practices",
"detail": "no effort to earn an OpenSSF best practices badge detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 2.5
},
{
"key": "code_review",
"name": "Code-Review",
"detail": "Found 0/30 approved changesets -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "contributors",
"name": "Contributors",
"detail": "project has 7 contributing companies or organizations",
"points": 2.5,
"status": "met",
"details": [],
"max_points": 2.5
},
{
"key": "dangerous_workflow",
"name": "Dangerous-Workflow",
"detail": "no workflows found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 10
},
{
"key": "dependency_update_tool",
"name": "Dependency-Update-Tool",
"detail": "no update tool detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "fuzzing",
"name": "Fuzzing",
"detail": "project is not fuzzed",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "license",
"name": "License",
"detail": "license file detected",
"points": 2.5,
"status": "met",
"details": [],
"max_points": 2.5
},
{
"key": "maintained",
"name": "Maintained",
"detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "packaging",
"name": "Packaging",
"detail": "packaging workflow not detected",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 5
},
{
"key": "pinned_dependencies",
"name": "Pinned-Dependencies",
"detail": "no dependencies found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 5
},
{
"key": "sast",
"name": "SAST",
"detail": "no SAST tool detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "security_policy",
"name": "Security-Policy",
"detail": "security policy file not detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "signed_releases",
"name": "Signed-Releases",
"detail": "no releases found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 7.5
},
{
"key": "token_permissions",
"name": "Token-Permissions",
"detail": "No tokens found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 7.5
},
{
"key": "vulnerabilities",
"name": "Vulnerabilities",
"detail": "0 existing vulnerabilities detected",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
}
]
},
{
"key": "high_risk_jurisdiction_exposure",
"band": "excellent",
"name": "High-Risk Jurisdiction Exposure",
"note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
"notes": [
{
"code": "jurisdiction_evidence_limits",
"params": {}
}
],
"value": 100,
"inputs": {
"meaning": "self-published location evidence; not nationality or citizenship",
"red_flag": false,
"exposures": [],
"policy_countries": [
"Russia",
"Iran",
"North Korea"
],
"review_only_matches": 0,
"assessed_self_published_locations": 6
},
"components": [
{
"key": "policy_exposure_multiplier",
"name": "Policy exposure multiplier",
"detail": "no confirmed policy-scope location match",
"points": 100,
"status": "met",
"details": [
{
"code": "jurisdiction_no_match",
"params": {}
}
],
"max_points": 100
}
]
}
],
"description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
},
{
"key": "ai_readiness",
"band": "at_risk",
"name": "AI Readiness",
"value": 46,
"weight": 0,
"metrics": [
{
"key": "ai_agent_context",
"band": "at_risk",
"name": "Agent context & guidance",
"note": null,
"notes": [],
"value": 40,
"inputs": {
"has_llms_txt": false,
"legible_history_share": 0.755,
"agent_instruction_files": [],
"agent_instruction_max_bytes": null
},
"components": [
{
"key": "agent_instructions",
"name": "Agent instructions",
"detail": "no CLAUDE.md / AGENTS.md / editor rules",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_agent_instructions",
"params": {}
}
],
"max_points": 45
},
{
"key": "machine_readable_docs_llms_txt",
"name": "Machine-readable docs (llms.txt)",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 15
},
{
"key": "legible_commit_history",
"name": "Legible commit history",
"detail": "40 of 53 human commits state their intent (structured subject or explanatory body)",
"points": 40,
"status": "met",
"details": [
{
"code": "legible_history",
"params": {
"legible": 40,
"sampled": 53
}
}
],
"max_points": 40
}
]
},
{
"key": "ai_verify_loop",
"band": "at_risk",
"name": "Verify loop (build / test / typecheck)",
"note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Pinned-Dependencies. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"openssf_scorecard_pinned_dependencies"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 48,
"inputs": {
"has_nix": false,
"has_tests": true,
"lockfiles": [],
"has_dockerfile": false,
"typed_language": false,
"bootstrap_files": [],
"has_devcontainer": false,
"has_linter_config": true,
"typecheck_configs": [],
"agent_commit_share": 0.05,
"toolchain_manifests": [],
"dependency_bot_commit_share": 0
},
"components": [
{
"key": "one_command_bootstrap",
"name": "One-command bootstrap",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 18
},
{
"key": "automated_tests",
"name": "Automated tests",
"detail": null,
"points": 22,
"status": "met",
"details": [],
"max_points": 22
},
{
"key": "lint_format_config",
"name": "Lint / format config",
"detail": "phpstan.neon",
"points": 11,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "phpstan.neon"
}
}
],
"max_points": 11
},
{
"key": "static_type_checking",
"name": "Static type checking",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 11
},
{
"key": "reproducible_environment",
"name": "Reproducible environment",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
},
{
"key": "demonstrated_agent_practice",
"name": "Demonstrated agent practice",
"detail": "5 of the last 100 commits agent-authored or agent-credited",
"points": 10,
"status": "met",
"details": [
{
"code": "agent_authored_commits",
"params": {
"count": 5,
"sampled": 100
}
}
],
"max_points": 10
},
{
"key": "automated_maintenance",
"name": "Automated maintenance",
"detail": "no automated dependency updates observed",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_dependency_automation",
"params": {}
}
],
"max_points": 8
},
{
"key": "openssf_scorecard_pinned_dependencies",
"name": "OpenSSF Scorecard: Pinned-Dependencies",
"detail": "no dependencies found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 10
}
]
},
{
"key": "ai_code_legibility",
"band": "moderate",
"name": "Code legibility for models",
"note": null,
"notes": [],
"value": 54,
"inputs": {
"primary_language": "PHP",
"largest_source_bytes": 104742,
"source_files_sampled": 266,
"oversized_source_files": 5
},
"components": [
{
"key": "type_checkable_code",
"name": "Type-checkable code",
"detail": "PHP without a type-check config",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_typecheck_config_language",
"params": {
"language": "PHP"
}
}
],
"max_points": 45
},
{
"key": "manageable_file_sizes",
"name": "Manageable file sizes",
"detail": "5/266 source files over 60KB",
"points": 54,
"status": "partial",
"details": [
{
"code": "oversized_source_files",
"params": {
"kb": 60,
"sampled": 266,
"oversized": 5
}
}
],
"max_points": 55
}
]
}
],
"description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
}
],
"metrics_version": "1.13.0"
},
"warnings": [
"GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository"
],
"report_type": "repository",
"generated_at": "2026-07-30T18:59:02.463740Z",
"schema_version": "0.27.0",
"badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/w/wp-php-toolkit/data-liberation.svg",
"full_name": "wp-php-toolkit/data-liberation",
"license_state": "standard",
"license_spdx": "GPL-2.0"
}