{"$schema":"https://json.schemastore.org/sarif-2.1.0.json","version":"2.1.0","runs":[{"tool":{"driver":{"name":"codehealth","informationUri":"https://codehealth.canine.dev","rules":[{"id":"D1","name":"Cyclomatic Complexity","shortDescription":{"text":"Cyclomatic Complexity"},"helpUri":"https://codehealth.canine.dev/dimensions/D1"},{"id":"D2","name":"Cognitive Complexity","shortDescription":{"text":"Cognitive Complexity"},"helpUri":"https://codehealth.canine.dev/dimensions/D2"},{"id":"D4","name":"Code Duplication","shortDescription":{"text":"Code Duplication"},"helpUri":"https://codehealth.canine.dev/dimensions/D4"},{"id":"D5","name":"Coupling","shortDescription":{"text":"Coupling"},"helpUri":"https://codehealth.canine.dev/dimensions/D5"},{"id":"D8","name":"Code Coverage","shortDescription":{"text":"Code Coverage"},"helpUri":"https://codehealth.canine.dev/dimensions/D8"},{"id":"D11","name":"Test Reliability","shortDescription":{"text":"Test Reliability"},"helpUri":"https://codehealth.canine.dev/dimensions/D11"},{"id":"D12","name":"Dependency Hygiene","shortDescription":{"text":"Dependency Hygiene"},"helpUri":"https://codehealth.canine.dev/dimensions/D12"},{"id":"D13","name":"Secret Scanning","shortDescription":{"text":"Secret Scanning"},"helpUri":"https://codehealth.canine.dev/dimensions/D13","relationships":[{"target":{"id":"CWE-798","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-259","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]}],"properties":{"cwe":["CWE-798","CWE-259"]}},{"id":"D14","name":"License Compliance","shortDescription":{"text":"License Compliance"},"helpUri":"https://codehealth.canine.dev/dimensions/D14"},{"id":"D15","name":"Churn \u00D7 Complexity Hotspots","shortDescription":{"text":"Churn \u00D7 Complexity Hotspots"},"helpUri":"https://codehealth.canine.dev/dimensions/D15"},{"id":"D19","name":"Documentation Quality","shortDescription":{"text":"Documentation Quality"},"helpUri":"https://codehealth.canine.dev/dimensions/D19"},{"id":"D20","name":"ADR Quality","shortDescription":{"text":"ADR Quality"},"helpUri":"https://codehealth.canine.dev/dimensions/D20"},{"id":"D21","name":"Naming Consistency","shortDescription":{"text":"Naming Consistency"},"helpUri":"https://codehealth.canine.dev/dimensions/D21"},{"id":"D27","name":"Navigability","shortDescription":{"text":"Navigability"},"helpUri":"https://codehealth.canine.dev/dimensions/D27"},{"id":"D28","name":"Secrets (history)","shortDescription":{"text":"Secrets (history)"},"helpUri":"https://codehealth.canine.dev/dimensions/D28","relationships":[{"target":{"id":"CWE-798","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-259","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]}],"properties":{"cwe":["CWE-798","CWE-259"]}},{"id":"D29","name":"Static Analysis (SAST)","shortDescription":{"text":"Static Analysis (SAST)"},"helpUri":"https://codehealth.canine.dev/dimensions/D29","relationships":[{"target":{"id":"CWE-79","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-89","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-78","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-94","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-77","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]}],"properties":{"cwe":["CWE-79","CWE-89","CWE-78","CWE-94","CWE-77"]}},{"id":"D30","name":"Dependency Vulnerabilities","shortDescription":{"text":"Dependency Vulnerabilities"},"helpUri":"https://codehealth.canine.dev/dimensions/D30","relationships":[{"target":{"id":"CWE-1395","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-937","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]}],"properties":{"cwe":["CWE-1395","CWE-937"]}},{"id":"D31","name":"IaC \u0026 Container Security","shortDescription":{"text":"IaC \u0026 Container Security"},"helpUri":"https://codehealth.canine.dev/dimensions/D31","relationships":[{"target":{"id":"CWE-1032","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-732","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-16","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]}],"properties":{"cwe":["CWE-1032","CWE-732","CWE-16"]}},{"id":"D34","name":"Knowledge Freshness","shortDescription":{"text":"Knowledge Freshness"},"helpUri":"https://codehealth.canine.dev/dimensions/D34"},{"id":"D35","name":"Change Coupling","shortDescription":{"text":"Change Coupling"},"helpUri":"https://codehealth.canine.dev/dimensions/D35"},{"id":"D36","name":"Supply-chain Provenance \u0026 Signing","shortDescription":{"text":"Supply-chain Provenance \u0026 Signing"},"helpUri":"https://codehealth.canine.dev/dimensions/D36","relationships":[{"target":{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-494","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]}],"properties":{"cwe":["CWE-1357","CWE-494"]}},{"id":"D44","name":"Platform End-of-Life","shortDescription":{"text":"Platform End-of-Life"},"helpUri":"https://codehealth.canine.dev/dimensions/D44"},{"id":"AC2","name":"Forms \u0026 labels","shortDescription":{"text":"Forms \u0026 labels"},"helpUri":"https://codehealth.canine.dev/dimensions/AC2"},{"id":"AC3","name":"Page structure","shortDescription":{"text":"Page structure"},"helpUri":"https://codehealth.canine.dev/dimensions/AC3"},{"id":"AC6","name":"Visual \u0026 motion safety","shortDescription":{"text":"Visual \u0026 motion safety"},"helpUri":"https://codehealth.canine.dev/dimensions/AC6"},{"id":"AC7","name":"A11y enforcement","shortDescription":{"text":"A11y enforcement"},"helpUri":"https://codehealth.canine.dev/dimensions/AC7"},{"id":"AX10","name":"Code composition","shortDescription":{"text":"Code composition"},"helpUri":"https://codehealth.canine.dev/dimensions/AX10"},{"id":"AX3","name":"Project dependency cycles","shortDescription":{"text":"Project dependency cycles"},"helpUri":"https://codehealth.canine.dev/dimensions/AX3"},{"id":"AX4","name":"Dependency direction","shortDescription":{"text":"Dependency direction"},"helpUri":"https://codehealth.canine.dev/dimensions/AX4"},{"id":"AX8","name":"Test isolation","shortDescription":{"text":"Test isolation"},"helpUri":"https://codehealth.canine.dev/dimensions/AX8"},{"id":"AXB2","name":"Runtime readiness","shortDescription":{"text":"Runtime readiness"},"helpUri":"https://codehealth.canine.dev/dimensions/AXB2"},{"id":"ED5","name":"Idempotency","shortDescription":{"text":"Idempotency"},"helpUri":"https://codehealth.canine.dev/dimensions/ED5"},{"id":"M1","name":"Documentation (README)","shortDescription":{"text":"Documentation (README)"},"helpUri":"https://codehealth.canine.dev/dimensions/M1"},{"id":"M2","name":"Architecture documentation","shortDescription":{"text":"Architecture documentation"},"helpUri":"https://codehealth.canine.dev/dimensions/M2"},{"id":"M3","name":"Folder \u0026 project structure","shortDescription":{"text":"Folder \u0026 project structure"},"helpUri":"https://codehealth.canine.dev/dimensions/M3"},{"id":"M4","name":"Documentation accuracy","shortDescription":{"text":"Documentation accuracy"},"helpUri":"https://codehealth.canine.dev/dimensions/M4"},{"id":"P1","name":"CI/CD gates","shortDescription":{"text":"CI/CD gates"},"helpUri":"https://codehealth.canine.dev/dimensions/P1"},{"id":"P12","name":"CI test-gate honesty","shortDescription":{"text":"CI test-gate honesty"},"helpUri":"https://codehealth.canine.dev/dimensions/P12"},{"id":"P3","name":"Security \u0026 performance tooling","shortDescription":{"text":"Security \u0026 performance tooling"},"helpUri":"https://codehealth.canine.dev/dimensions/P3"},{"id":"P4","name":"Deployment \u0026 Rollback","shortDescription":{"text":"Deployment \u0026 Rollback"},"helpUri":"https://codehealth.canine.dev/dimensions/P4"},{"id":"P6","name":"Release Hygiene","shortDescription":{"text":"Release Hygiene"},"helpUri":"https://codehealth.canine.dev/dimensions/P6"},{"id":"PF3","name":"Async \u0026 latency hygiene","shortDescription":{"text":"Async \u0026 latency hygiene"},"helpUri":"https://codehealth.canine.dev/dimensions/PF3"},{"id":"R1","name":"Type Safety","shortDescription":{"text":"Type Safety"},"helpUri":"https://codehealth.canine.dev/dimensions/R1"},{"id":"R10","name":"Code Duplication","shortDescription":{"text":"Code Duplication"},"helpUri":"https://codehealth.canine.dev/dimensions/R10"},{"id":"R2","name":"Cyclomatic Complexity","shortDescription":{"text":"Cyclomatic Complexity"},"helpUri":"https://codehealth.canine.dev/dimensions/R2"},{"id":"R3","name":"Large Files","shortDescription":{"text":"Large Files"},"helpUri":"https://codehealth.canine.dev/dimensions/R3"},{"id":"R4","name":"Test Coverage","shortDescription":{"text":"Test Coverage"},"helpUri":"https://codehealth.canine.dev/dimensions/R4"},{"id":"R7","name":"Dead Code","shortDescription":{"text":"Dead Code"},"helpUri":"https://codehealth.canine.dev/dimensions/R7"},{"id":"R9","name":"Circular Imports","shortDescription":{"text":"Circular Imports"},"helpUri":"https://codehealth.canine.dev/dimensions/R9"},{"id":"S1","name":"Web-Security Posture","shortDescription":{"text":"Web-Security Posture"},"helpUri":"https://codehealth.canine.dev/dimensions/S1"},{"id":"SC1","name":"Supply-chain hygiene","shortDescription":{"text":"Supply-chain hygiene"},"helpUri":"https://codehealth.canine.dev/dimensions/SC1"},{"id":"X10","name":"Duplicated predicate","shortDescription":{"text":"Duplicated predicate"},"helpUri":"https://codehealth.canine.dev/dimensions/X10"},{"id":"X6","name":"Hand-rolled structured-format parsing","shortDescription":{"text":"Hand-rolled structured-format parsing"},"helpUri":"https://codehealth.canine.dev/dimensions/X6"},{"id":"X7","name":"Silent fallback defaults","shortDescription":{"text":"Silent fallback defaults"},"helpUri":"https://codehealth.canine.dev/dimensions/X7"},{"id":"X9","name":"Subsumed condition operand","shortDescription":{"text":"Subsumed condition operand"},"helpUri":"https://codehealth.canine.dev/dimensions/X9"}]}},"results":[{"ruleId":"D1","level":"warning","message":{"text":"GeneratorOptionModule.toDict (cyclomatic 29): GeneratorOptionModule.toDict has cyclomatic complexity 29 (threshold 15). To reduce it, keep the dispatch but shrink the arms: move each non-trivial case body into its own named function (or onto the value being matched) so the dispatch reads one line per case, and group related cases into a sub-dispatch. Where every arm is uniform \u2014 the same kind of value, with no behaviour of its own \u2014 a table keyed by the case is the shorter form; wherever the arms carry different data or different behaviour, keep them as cases, because collapsing those trades an explicit, reviewable set of cases for nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.PkgManager/Types.fs"},"region":{"startLine":212}}}],"partialFingerprints":{"codehealthFindingId/v1":"2e3f51b17187a44f21d9b013e3d1259957af5c76d38fb25bab3a49faff70c504"}},{"ruleId":"D1","level":"warning","message":{"text":"TestingServiceModule.Create (cyclomatic 20): TestingServiceModule.Create has cyclomatic complexity 20 (threshold 15). To reduce it, separate the branches: extract each independent case into its own named function so the top-level body reads as a short sequence of named decisions."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Testing.fs"},"region":{"startLine":892}}}],"partialFingerprints":{"codehealthFindingId/v1":"5f62b6f531c0f7ebf6f8267b5aa55bdf290fbea194ed77482ea24f4c581f8371"}},{"ruleId":"D1","level":"warning","message":{"text":"PkgManagerModule.cleanupRemovedPackages (cyclomatic 16): PkgManagerModule.cleanupRemovedPackages has cyclomatic complexity 16 (threshold 15). To reduce it, separate the cases: extract each independent branch into its own named function, and where the body has guards that only reject input, fold those into early returns at the top."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.PkgManager/PkgManager.fs"},"region":{"startLine":476}}}],"partialFingerprints":{"codehealthFindingId/v1":"2b6562688399eeb8296248c70ca855cd03329d8e01b2a4911132e02c35fa0c75"}},{"ruleId":"D1","level":"warning","message":{"text":"ProviderOps.extractFilePath (cyclomatic 16): ProviderOps.extractFilePath has cyclomatic complexity 16 (threshold 15). To reduce it, separate the cases: extract each independent branch into its own named function, and where the body has guards that only reject input, fold those into early returns at the top."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.PkgManager/Provider.fs"},"region":{"startLine":61}}}],"partialFingerprints":{"codehealthFindingId/v1":"2b92652e316f77557b3e13993414625a92f3ce185a82bdfd5464a6d2e166a9ca"}},{"ruleId":"D2","level":"warning","message":{"text":"PkgManagerModule.cleanupRemovedPackages (cognitive 43): PkgManagerModule.cleanupRemovedPackages has cognitive complexity 43 (threshold 15). Drivers by points: if/else 10 (22 pts), error handling 3 (13 pts), loops 2 (4 pts), match/switch 1 (4 pts) (nesting depth added 27). To reduce it, split the body into named stages: move each independent step or branch into its own named function so the body reads as a short sequence of named calls rather than one long body. This file is where this pass\u0027s cognitive complexity CONCENTRATES: src/Perla.PkgManager/PkgManager.fs holds 2 of the 6 methods over the threshold \u2014 including the worst \u2014 and 34 of the 57 points over it (60%), 2.8\u00D7 the next-largest file (src/Perla.PkgManager/Provider.fs at 12). No single row can show this, because each is measured only against the threshold: reducing this one file moves this dimension further than any other file in the repository."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.PkgManager/PkgManager.fs"},"region":{"startLine":476}}}],"partialFingerprints":{"codehealthFindingId/v1":"18f56a228a0576a9daaeafb07593a549bccd9a40902abf3e8cb472abe077f8cf"}},{"ruleId":"D2","level":"warning","message":{"text":"TestingServiceModule.Create (cognitive 25): TestingServiceModule.Create has cognitive complexity 25 (threshold 15). Drivers by points: if/else 6 (8 pts), match/switch 4 (7 pts), error handling 5 (6 pts), loops 2 (4 pts) (nesting depth added 8). To reduce it, split the body into named stages: move each independent step or branch into its own named function so the body reads as a short sequence of named calls rather than one long body."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Testing.fs"},"region":{"startLine":892}}}],"partialFingerprints":{"codehealthFindingId/v1":"971870940ea611aa5da22be917cea94510c6f9a786cee7b331df060445fc33a5"}},{"ruleId":"D2","level":"warning","message":{"text":"ProviderOps.extractFilePath (cognitive 22): ProviderOps.extractFilePath has cognitive complexity 22 (threshold 15). Drivers by points: if/else 12 (18 pts), match/switch 3 (4 pts) (nesting depth added 7). To reduce it, split the body into named stages: move each independent step or branch into its own named function so the body reads as a short sequence of named calls rather than one long body."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.PkgManager/Provider.fs"},"region":{"startLine":61}}}],"partialFingerprints":{"codehealthFindingId/v1":"0c421a69322f5c5be232f61739579732b79885cc8999dbe81e9b6954703b85ef"}},{"ruleId":"D2","level":"warning","message":{"text":"PkgManagerModule.goOffline (cognitive 21): PkgManagerModule.goOffline has cognitive complexity 21 (threshold 15). Drivers by points: if/else 6 (14 pts), match/switch 4 (5 pts), boolean chains 2 (nesting depth added 9). The drivers above price the dispatch low by construction \u2014 a dispatch is charged once however many cases it lists, while each branch inside an arm is charged in full \u2014 so most of this count is what the case bodies hold, and the arms are where it can be reduced. To reduce it, keep the dispatch but shrink the arms: move each non-trivial case body into its own named function (or onto the value being matched) so the dispatch reads one line per case, and group related cases into a sub-dispatch. Keep every case explicit, and make the behaviour for cases you do not list a deliberate choice rather than an accident. This file is where this pass\u0027s cognitive complexity CONCENTRATES: src/Perla.PkgManager/PkgManager.fs holds 2 of the 6 methods over the threshold \u2014 including the worst \u2014 and 34 of the 57 points over it (60%), 2.8\u00D7 the next-largest file (src/Perla.PkgManager/Provider.fs at 12). No single row can show this, because each is measured only against the threshold: reducing this one file moves this dimension further than any other file in the repository."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.PkgManager/PkgManager.fs"},"region":{"startLine":607}}}],"partialFingerprints":{"codehealthFindingId/v1":"b5eec5543c9fa25c28cc63df3a794d7441406a91af1c7e7bdeee14b92d6b44bf"}},{"ruleId":"D2","level":"warning","message":{"text":"ProviderOps.extractPkgAndVersion (cognitive 20): ProviderOps.extractPkgAndVersion has cognitive complexity 20 (threshold 15). Drivers by points: if/else 13 (19 pts), boolean chains 1 (nesting depth added 6). To reduce it, split the body into named stages: move each independent step or branch into its own named function so the body reads as a short sequence of named calls rather than one long body."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.PkgManager/Provider.fs"},"region":{"startLine":155}}}],"partialFingerprints":{"codehealthFindingId/v1":"181e8f1e92bde13a34fe09a3764a9a4baf1863314c88a7c6728ef148b8add020"}},{"ruleId":"D2","level":"warning","message":{"text":"Print.BrowserReport (cognitive 16): Print.BrowserReport has cognitive complexity 16 (threshold 15). Drivers by points: if/else 7 (10 pts), loops 2 (3 pts), match/switch 1 (3 pts) (nesting depth added 6). To reduce it, split the body into named stages: move each independent step or branch into its own named function so the body reads as a short sequence of named calls rather than one long body."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Testing.fs"},"region":{"startLine":215}}}],"partialFingerprints":{"codehealthFindingId/v1":"9ce4c8401b5b7f8f20484c61723e1b6f6388728f4b28e665461ce0f767e6b14c"}},{"ruleId":"D4","level":"warning","message":{"text":"Edited copy of a member (68 corresponding lines): src/Perla/PlatformOps.fs:1-459 | src/Perla/PlatformOps.fsi:1-79 \u2014 These two members are one piece of code written twice and then edited apart: 68 consecutive lines correspond almost exactly, broken only by small local edits. Most of that correspondence is NOT reported as duplicated blocks below \u2014 the edits cut it into fragments and only the largest of them clear the block floor, so the rows below understate it. The repair is at the members\u0027 grain \u2014 factor the shared implementation into one the two call with their differences as parameters or as an injected step, or, where the difference is systematic (an extra return value, one transport against another), generate one from the other. Left alone, the next edit has to be made twice and the two will drift further apart."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/PlatformOps.fs"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"ff9814a3953603ea4c4cc8317906358c3c504b305bb5d070bc54ddf08a43d643"}},{"ruleId":"D4","level":"warning","message":{"text":"Edited copy of a member (37 corresponding lines): src/Perla/Esbuild.fs:1-209 | src/Perla/Esbuild.fsi:1-47 \u2014 These two members are one piece of code written twice and then edited apart: 37 consecutive lines correspond almost exactly, broken only by small local edits. Most of that correspondence is NOT reported as duplicated blocks below \u2014 the edits cut it into fragments and only the largest of them clear the block floor, so the rows below understate it. The repair is at the members\u0027 grain \u2014 factor the shared implementation into one the two call with their differences as parameters or as an injected step, or, where the difference is systematic (an extra return value, one transport against another), generate one from the other. Left alone, the next edit has to be made twice and the two will drift further apart."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Esbuild.fs"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"fd7b3bc4274173419102bedc2c85445f8bc3bbda6d2fa43798b77f899b1dce68"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (120 lines \u00D7 2): src/Perla/Types.fs:98-217 | src/Perla/Types.fsi:102-221 \u2014 before extracting anything, compare \u0060src/Perla/Types.fs\u0060 and \u0060src/Perla/Types.fsi\u0060 as WHOLE FILES: 90% of the shorter file\u0027s lines also appear in the other, so this reads as one file having been copied from the other rather than as a helper waiting to be extracted. The 2 duplicated block(s) this scan matched between them are fragments of that copy, not the extent of it \u2014 treat the file pair as the unit. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Types.fs"},"region":{"startLine":98}}}],"partialFingerprints":{"codehealthFindingId/v1":"7b6adcc0ed6ab298decef8e1be7dc94bac6a76a159a75d7ff4554f523769d0f5"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (94 lines \u00D7 2): src/Perla/Json.fs:26-119 | src/Perla/Json.fsi:12-105 \u2014 the copies sit in sibling files of one directory, so a shared home is within easy reach: extract the block into a single shared function the call sites can all reach \u2014 a file they already depend on, or a new one alongside them \u2014 and call it from both call sites, so a change lands once."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Json.fs"},"region":{"startLine":26}}}],"partialFingerprints":{"codehealthFindingId/v1":"44b163430de9be2d5da6bd240c388efc20bce46789b1e9b97b9e38152e7b5524"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (84\u201386 lines \u00D7 2): src/Perla/Types.fs:5-90 | src/Perla/Types.fsi:6-89 \u2014 before extracting anything, compare \u0060src/Perla/Types.fs\u0060 and \u0060src/Perla/Types.fsi\u0060 as WHOLE FILES: 90% of the shorter file\u0027s lines also appear in the other, so this reads as one file having been copied from the other rather than as a helper waiting to be extracted. The 2 duplicated block(s) this scan matched between them are fragments of that copy, not the extent of it \u2014 treat the file pair as the unit. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Types.fs"},"region":{"startLine":5}}}],"partialFingerprints":{"codehealthFindingId/v1":"8e2a81144c42a704c9800c02db1999f1c979ef954522de0453c7520f34ba1f76"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (79\u201381 lines \u00D7 2): src/Perla.Plugins/Library.fs:1-81 | src/Perla.Plugins/Library.fsi:1-79 \u2014 the copies sit in sibling files of one directory, so a shared home is within easy reach: extract the block into a single shared function the call sites can all reach \u2014 a file they already depend on, or a new one alongside them \u2014 and call it from both call sites, so a change lands once. Read the line range as the matched WINDOW rather than a finished unit: at \u0060src/Perla.Plugins/Library.fs:1\u0060 it does not close everything it opens, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.Plugins/Library.fs"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"cc2a8e9b162cd51eb4d485d1df36257c10a25797c872d35892da7f788d49abd9"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (74\u201375 lines \u00D7 2): src/Perla/Database.fs:96-169 | src/Perla/Database.fsi:78-152 \u2014 the copies sit in sibling files of one directory, so a shared home is within easy reach: extract the block into a single shared function the call sites can all reach \u2014 a file they already depend on, or a new one alongside them \u2014 and call it from both call sites, so a change lands once."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Database.fs"},"region":{"startLine":96}}}],"partialFingerprints":{"codehealthFindingId/v1":"4f76e5c2ed33878a2958ed3ed156ab0f565119694b6c0e370d696c8441960c9c"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (68 lines \u00D7 2): src/Perla/PlatformOps.fs:19-86 | src/Perla/PlatformOps.fsi:11-78 \u2014 before extracting anything, compare \u0060src/Perla/PlatformOps.fs\u0060 and \u0060src/Perla/PlatformOps.fsi\u0060 as WHOLE FILES: 92% of the shorter file\u0027s lines also appear in the other, so this reads as one file having been copied from the other rather than as a helper waiting to be extracted. The 1 duplicated block(s) this scan matched between them are fragments of that copy, not the extent of it \u2014 treat the file pair as the unit. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/PlatformOps.fs"},"region":{"startLine":19}}}],"partialFingerprints":{"codehealthFindingId/v1":"2c06047c1fe8477a19e9b8d3910eb8c59355e72f63ddb79379072acca8ce5ad3"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (56\u201357 lines \u00D7 2): src/Perla/Orchestration.fs:314-369 | src/Perla/Orchestration.fsi:83-139 \u2014 the copies sit in sibling files of one directory, so a shared home is within easy reach: extract the block into a single shared function the call sites can all reach \u2014 a file they already depend on, or a new one alongside them \u2014 and call it from both call sites, so a change lands once."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Orchestration.fs"},"region":{"startLine":314}}}],"partialFingerprints":{"codehealthFindingId/v1":"f098aefeb4d682bc4100cdc388e6d3fc877b803274cd35babf6b92714fb4f847"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (44\u201345 lines \u00D7 2): src/Perla/Build.fs:34-78 | src/Perla/Build.fsi:53-96 \u2014 the copies sit in sibling files of one directory, so a shared home is within easy reach: extract the block into a single shared function the call sites can all reach \u2014 a file they already depend on, or a new one alongside them \u2014 and call it from both call sites, so a change lands once."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Build.fs"},"region":{"startLine":34}}}],"partialFingerprints":{"codehealthFindingId/v1":"ba3af976de57d01c0da287871696a0e32b0247a8ab5dd8ef6d29a56fe591c223"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (37\u201338 lines \u00D7 2): src/Perla/VirtualFileSystem.fs:24-60 | src/Perla/VirtualFileSystem.fsi:14-51 \u2014 the copies sit in sibling files of one directory, so a shared home is within easy reach: extract the block into a single shared function the call sites can all reach \u2014 a file they already depend on, or a new one alongside them \u2014 and call it from both call sites, so a change lands once."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/VirtualFileSystem.fs"},"region":{"startLine":24}}}],"partialFingerprints":{"codehealthFindingId/v1":"6f445bfffee5a526dff414d97d4189a10c25363c1cc7a98b61c5a53bbe942324"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (37 lines \u00D7 2): src/Perla/Esbuild.fs:12-48 | src/Perla/Esbuild.fsi:10-46 \u2014 before extracting anything, compare \u0060src/Perla/Esbuild.fs\u0060 and \u0060src/Perla/Esbuild.fsi\u0060 as WHOLE FILES: 86% of the shorter file\u0027s lines also appear in the other, so this reads as one file having been copied from the other rather than as a helper waiting to be extracted. The 1 duplicated block(s) this scan matched between them are fragments of that copy, not the extent of it \u2014 treat the file pair as the unit. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Esbuild.fs"},"region":{"startLine":12}}}],"partialFingerprints":{"codehealthFindingId/v1":"54fe370ae97a47b604881fa20fe4dc57e269f9361aee972b00e2741b51ba9e5d"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (35 lines \u00D7 2): src/Perla/Handlers.fs:736-770 | src/Perla/Handlers.fs:883-917 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Handlers.fs"},"region":{"startLine":736}}}],"partialFingerprints":{"codehealthFindingId/v1":"7ff4892e0ef03749362e3b28f4ea9ab31d5b6e34e39de233df6ba2c233e9ce7e"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (33\u201334 lines \u00D7 5): src/Perla/Commands.fs:378-410 | src/Perla/Commands.fs:453-486 | src/Perla/Commands.fs:678-711 | src/Perla/Commands.fs:773-806 | src/Perla/Commands.fs:889-921 \u2014 all 5 copies are in the same file, so extract the block into one function there and call it from every one of those sites \u2014 resolving only two of them leaves the rest to drift apart the first time one is edited."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Commands.fs"},"region":{"startLine":378}}}],"partialFingerprints":{"codehealthFindingId/v1":"8c888caa6456c26447c4cb19f7478fce447d6e8338708c718486201454d22fd3"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (31 lines \u00D7 2): src/Perla.Plugins/Registry.fs:50-80 | src/Perla.Plugins/Registry.fsi:24-54 \u2014 before extracting anything, compare \u0060src/Perla.Plugins/Registry.fs\u0060 and \u0060src/Perla.Plugins/Registry.fsi\u0060 as WHOLE FILES: 90% of the shorter file\u0027s lines also appear in the other, so this reads as one file having been copied from the other rather than as a helper waiting to be extracted. The 1 duplicated block(s) this scan matched between them are fragments of that copy, not the extent of it \u2014 treat the file pair as the unit. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.Plugins/Registry.fs"},"region":{"startLine":50}}}],"partialFingerprints":{"codehealthFindingId/v1":"52e33ef8d4a3373d8ed1529faa161043e86282897a9e3af7a016ad7be5e729c3"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (29 lines \u00D7 2): src/Perla/Handlers.fs:66-94 | src/Perla/Handlers.fsi:37-65 \u2014 the copies sit in sibling files of one directory, so a shared home is within easy reach: extract the block into a single shared function the call sites can all reach \u2014 a file they already depend on, or a new one alongside them \u2014 and call it from both call sites, so a change lands once."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Handlers.fs"},"region":{"startLine":66}}}],"partialFingerprints":{"codehealthFindingId/v1":"6c7b4da3529828f06ab73e30efdaea6e34dcf66edef52d2b84d11e543302910a"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (23\u201329 lines \u00D7 2): src/Perla/Scaffolding.fs:82-110 | src/Perla/Scaffolding.fsi:24-46 \u2014 the copies sit in sibling files of one directory, so a shared home is within easy reach: extract the block into a single shared function the call sites can all reach \u2014 a file they already depend on, or a new one alongside them \u2014 and call it from both call sites, so a change lands once. Read the line range as the matched WINDOW rather than a finished unit: at \u0060src/Perla/Scaffolding.fs:82\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Scaffolding.fs"},"region":{"startLine":82}}}],"partialFingerprints":{"codehealthFindingId/v1":"2f86c13edb601f9b634bb0e2762d271b5a699f1458dcdbf1edbd76883e3e6340"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (27 lines \u00D7 2): src/Perla/SuaveService.fs:1641-1667 | src/Perla/SuaveService.fs:1681-1707 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/SuaveService.fs"},"region":{"startLine":1641}}}],"partialFingerprints":{"codehealthFindingId/v1":"b66742c8f00903f4a55777bd3d9767b490339e4b8709aff351547fd11715a191"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (26 lines \u00D7 2): src/Perla/Handlers.fs:778-803 | src/Perla/Handlers.fs:923-948 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. Read the line range as the matched WINDOW rather than a finished unit: at \u0060src/Perla/Handlers.fs:778\u0060 it does not close everything it opens, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Handlers.fs"},"region":{"startLine":778}}}],"partialFingerprints":{"codehealthFindingId/v1":"edcb88783fa0e3803927a601ea6c6a8ec3e312f24c9e3d0edbbfd39fc0b8a435"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (23 lines \u00D7 2): src/Perla/Fable.fs:13-35 | src/Perla/Fable.fsi:12-34 \u2014 the copies sit in sibling files of one directory, so a shared home is within easy reach: extract the block into a single shared function the call sites can all reach \u2014 a file they already depend on, or a new one alongside them \u2014 and call it from both call sites, so a change lands once."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Fable.fs"},"region":{"startLine":13}}}],"partialFingerprints":{"codehealthFindingId/v1":"946d596d99c559c0f759508f7224e919e5e8498c4818265f8b205e043f701bf2"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (22 lines \u00D7 2): src/Perla.PkgManager/PkgManager.fs:389-410 | src/Perla.PkgManager/PkgManager.fs:417-438 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. Read the line range as the matched WINDOW rather than a finished unit: at \u0060src/Perla.PkgManager/PkgManager.fs:389\u0060 it does not close everything it opens, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.PkgManager/PkgManager.fs"},"region":{"startLine":389}}}],"partialFingerprints":{"codehealthFindingId/v1":"b0564d0c930405fac2e82da4905c2981d8aab6c74bcaaca5a3028eab401c0ffc"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (20\u201321 lines \u00D7 2): src/Perla/Configuration.fs:6-25 | src/Perla/Configuration.fsi:6-26 \u2014 the copies sit in sibling files of one directory, so a shared home is within easy reach: extract the block into a single shared function the call sites can all reach \u2014 a file they already depend on, or a new one alongside them \u2014 and call it from both call sites, so a change lands once."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Configuration.fs"},"region":{"startLine":6}}}],"partialFingerprints":{"codehealthFindingId/v1":"612014c21ae155c7be37db738b05c834e2b5b613167095667a008012c7c76fa8"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (21 lines \u00D7 2): src/Perla/Handlers.fs:37-57 | src/Perla/Handlers.fsi:8-28 \u2014 the copies sit in sibling files of one directory, so a shared home is within easy reach: extract the block into a single shared function the call sites can all reach \u2014 a file they already depend on, or a new one alongside them \u2014 and call it from both call sites, so a change lands once."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Handlers.fs"},"region":{"startLine":37}}}],"partialFingerprints":{"codehealthFindingId/v1":"8a702c64add1a90b4e821b966b21879c414d0f60b6b9150dfc1c3ccf206119ee"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (21 lines \u00D7 2): src/Perla/Testing.fs:918-938 | src/Perla/Testing.fs:1024-1044 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. Read the line range as the matched WINDOW rather than a finished unit: at \u0060src/Perla/Testing.fs:918\u0060 it does not close everything it opens, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that. \u2605 These copies have DRIFTED, and that is worth reading before extracting anything: just after the matched lines, \u0060src/Perla/Testing.fs:1047\u0060 calls \u0060Complete\u0060 and \u0060src/Perla/Testing.fs:940\u0060 does not \u2014 after which the two agree again for 3 more lines. One of those two behaviours is the intended one and the other is what a copy-paste left behind, so decide which BEFORE unifying them: extracting the shared part will silently settle it, and if the copy that skips the call is the wrong one, that bug is already live."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Testing.fs"},"region":{"startLine":918}}}],"partialFingerprints":{"codehealthFindingId/v1":"d88db9752ef77399cd15306a506f42e4521f06811f54bf0a8f11a4b4dc271bd1"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (17\u201320 lines \u00D7 2): src/Perla/Configuration.fs:33-52 | src/Perla/Json.fs:689-705 \u2014 before extracting anything, compare \u0060src/Perla/Configuration.fs\u0060 and \u0060src/Perla/Json.fs\u0060 as WHOLE FILES: this scan already matched 3 separate duplicated blocks between them, totalling at least 41 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060src/Perla/Configuration.fs:33\u0060 it runs out through the closing brace of the declaration holding it and carries on into the declaration that follows \u2014 the window is the tail of one member plus the head of the next, so no call can be substituted for those exact lines, and the smallest declaration that contains all of them is the type they sit in. The repeated unit is the member each site sits in: where those members\u0027 bodies are the same, move one whole member to the shared location and have the others delegate to it; where the copies are a run of near-identical overloads or wrappers that differ only in their signatures, the repetition IS the run \u2014 a one-line delegation has no helper inside it to lift \u2014 so generate the run from the set it enumerates, or accept it and keep each member\u0027s own documentation with it."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Configuration.fs"},"region":{"startLine":33}}}],"partialFingerprints":{"codehealthFindingId/v1":"c41ab4ffd199b3af93b86ff6836b1867209d75228b6d5303798692f25d44c449"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (19 lines \u00D7 2): src/Perla/Extensibility.fs:10-28 | src/Perla/Extensibility.fsi:5-23 \u2014 before extracting anything, compare \u0060src/Perla/Extensibility.fs\u0060 and \u0060src/Perla/Extensibility.fsi\u0060 as WHOLE FILES: 82% of the shorter file\u0027s lines also appear in the other, so this reads as one file having been copied from the other rather than as a helper waiting to be extracted. The 1 duplicated block(s) this scan matched between them are fragments of that copy, not the extent of it \u2014 treat the file pair as the unit. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Extensibility.fs"},"region":{"startLine":10}}}],"partialFingerprints":{"codehealthFindingId/v1":"dbed04ea43c7160a67d3f06ed2de9545bde38bc25a70914288a2be7af86dcd58"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (18\u201319 lines \u00D7 2): src/Perla/FileSystem.fs:69-87 | src/Perla/FileSystem.fsi:51-68 \u2014 the copies sit in sibling files of one directory, so a shared home is within easy reach: extract the block into a single shared function the call sites can all reach \u2014 a file they already depend on, or a new one alongside them \u2014 and call it from both call sites, so a change lands once."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/FileSystem.fs"},"region":{"startLine":69}}}],"partialFingerprints":{"codehealthFindingId/v1":"89a2ce8ee42727b6538851069e2cbef411e352ef8363f3fe409374b6efb7b414"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (18\u201319 lines \u00D7 2): src/Perla/SuaveService.fs:209-227 | src/Perla/SuaveService.fsi:15-32 \u2014 the copies sit in sibling files of one directory, so a shared home is within easy reach: extract the block into a single shared function the call sites can all reach \u2014 a file they already depend on, or a new one alongside them \u2014 and call it from both call sites, so a change lands once. Read the line range as the matched WINDOW rather than a finished unit: at \u0060src/Perla/SuaveService.fsi:15\u0060 it runs out through the closing brace of the declaration holding it and carries on into the declaration that follows \u2014 the window is the tail of one member plus the head of the next, so no call can be substituted for those exact lines, and the smallest declaration that contains all of them is the type they sit in. The repeated unit is the member each site sits in: where those members\u0027 bodies are the same, move one whole member to the shared location and have the others delegate to it; where the copies are a run of near-identical overloads or wrappers that differ only in their signatures, the repetition IS the run \u2014 a one-line delegation has no helper inside it to lift \u2014 so generate the run from the set it enumerates, or accept it and keep each member\u0027s own documentation with it."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/SuaveService.fs"},"region":{"startLine":209}}}],"partialFingerprints":{"codehealthFindingId/v1":"746452e616f32225519b487c7070787ca4634fb29de13c8b1443fd87abc986ec"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (15\u201318 lines \u00D7 2): src/Perla.Logger/Library.fs:148-162 | src/Perla.Logger/Library.fs:169-186 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. Read the line range as the matched WINDOW rather than a finished unit: at \u0060src/Perla.Logger/Library.fs:148\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that. Note that the copies do not run to the end of the range shown: their LAST lines are different code, not the same code under different names \u2014 the matched region ends inside that line. Extract the lines above it, and read the last line of each site separately."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.Logger/Library.fs"},"region":{"startLine":148}}}],"partialFingerprints":{"codehealthFindingId/v1":"97e8a19bf90e32bc63eeb33f40d44bb56b02eb879d3ec38f29d0b9d672914c1b"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (18 lines \u00D7 2): src/Perla.PkgManager/RequestHandler.fs:85-102 | src/Perla.PkgManager/RequestHandler.fs:105-122 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. Each matched range is the entire body of the declaration above it, so the region is already a complete unit: move that whole declaration to the shared location and have each site call it, rather than lifting the lines out of their bodies. Any \u0060return\u0060 inside it is the body\u0027s own exit and keeps its meaning in the moved unit."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.PkgManager/RequestHandler.fs"},"region":{"startLine":85}}}],"partialFingerprints":{"codehealthFindingId/v1":"fbefba28b98c3efc0cc92711771fa816504999002731e39bf4d29b77fef632bf"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (16\u201318 lines \u00D7 2): src/Perla/FileSystem.fs:50-65 | src/Perla/FileSystem.fsi:31-48 \u2014 the copies sit in sibling files of one directory, so a shared home is within easy reach: extract the block into a single shared function the call sites can all reach \u2014 a file they already depend on, or a new one alongside them \u2014 and call it from both call sites, so a change lands once. Note that the copies do not run to the end of the range shown: their LAST lines are different code, not the same code under different names \u2014 the matched region ends inside that line. Extract the lines above it, and read the last line of each site separately."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/FileSystem.fs"},"region":{"startLine":50}}}],"partialFingerprints":{"codehealthFindingId/v1":"59d8a23f41e88556b02293db5320f443f5d5105adc2bee4968cbf402a59a7334"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (18 lines \u00D7 2): src/Perla/SuaveService.fs:1510-1527 | src/Perla/SuaveService.fs:1568-1585 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. Read the line range as the matched WINDOW rather than a finished unit: at \u0060src/Perla/SuaveService.fs:1510\u0060 it does not close everything it opens, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/SuaveService.fs"},"region":{"startLine":1510}}}],"partialFingerprints":{"codehealthFindingId/v1":"0bab5b23c197a5c6650981268ba8f54851cb85d62c39344bd8f8ca8638494390"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (17\u201318 lines \u00D7 2): src/Perla/VirtualFileSystem.fs:77-93 | src/Perla/VirtualFileSystem.fsi:56-73 \u2014 the copies sit in sibling files of one directory, so a shared home is within easy reach: extract the block into a single shared function the call sites can all reach \u2014 a file they already depend on, or a new one alongside them \u2014 and call it from both call sites, so a change lands once. Read the line range as the matched WINDOW rather than a finished unit: at \u0060src/Perla/VirtualFileSystem.fs:77\u0060 it runs out through the closing brace of the declaration holding it and carries on into the declaration that follows \u2014 the window is the tail of one member plus the head of the next, so no call can be substituted for those exact lines, and the smallest declaration that contains all of them is the type they sit in. The repeated unit is the member each site sits in: where those members\u0027 bodies are the same, move one whole member to the shared location and have the others delegate to it; where the copies are a run of near-identical overloads or wrappers that differ only in their signatures, the repetition IS the run \u2014 a one-line delegation has no helper inside it to lift \u2014 so generate the run from the set it enumerates, or accept it and keep each member\u0027s own documentation with it."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/VirtualFileSystem.fs"},"region":{"startLine":77}}}],"partialFingerprints":{"codehealthFindingId/v1":"152a81935997b6b0f21eca8897486e2d8704e1766b54420d69deb3ff6f1c68c4"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (17 lines \u00D7 2): src/Perla/RequestHandler.fs:13-29 | src/Perla/RequestHandler.fsi:10-26 \u2014 the copies sit in sibling files of one directory, so a shared home is within easy reach: extract the block into a single shared function the call sites can all reach \u2014 a file they already depend on, or a new one alongside them \u2014 and call it from both call sites, so a change lands once."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/RequestHandler.fs"},"region":{"startLine":13}}}],"partialFingerprints":{"codehealthFindingId/v1":"2671bd25ac9fad27ad609113a483ba008316e141241ba78ed519417cf05b3c8b"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (13\u201316 lines \u00D7 2): src/Perla/SuaveService.fs:351-366 | src/Perla/SuaveService.fs:400-412 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. Read the line range as the matched WINDOW rather than a finished unit: at \u0060src/Perla/SuaveService.fs:351\u0060 it runs out through the closing brace of the declaration holding it and carries on into the declaration that follows \u2014 the window is the tail of one member plus the head of the next, so no call can be substituted for those exact lines, and the smallest declaration that contains all of them is the type they sit in. The repeated unit is the member each site sits in: where those members\u0027 bodies are the same, move one whole member to the shared location and have the others delegate to it; where the copies are a run of near-identical overloads or wrappers that differ only in their signatures, the repetition IS the run \u2014 a one-line delegation has no helper inside it to lift \u2014 so generate the run from the set it enumerates, or accept it and keep each member\u0027s own documentation with it."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/SuaveService.fs"},"region":{"startLine":351}}}],"partialFingerprints":{"codehealthFindingId/v1":"7f2c9507bc9b4f61fee3bd9aa4aa817ab1097626001b8f596e394f633e0a6c9c"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (13\u201315 lines \u00D7 3): src/Perla.PkgManager/RequestHandler.fs:63-77 | src/Perla.PkgManager/RequestHandler.fs:85-97 | src/Perla.PkgManager/RequestHandler.fs:105-117 \u2014 all 3 copies are in the same file, so extract the block into one function there and call it from every one of those sites \u2014 resolving only two of them leaves the rest to drift apart the first time one is edited. Note that the copies do not run to the end of the range shown: their LAST lines are different code, not the same code under different names \u2014 the matched region ends inside that line. Extract the lines above it, and read the last line of each site separately."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.PkgManager/RequestHandler.fs"},"region":{"startLine":63}}}],"partialFingerprints":{"codehealthFindingId/v1":"1b8574d8964e5ba0d7b4476a8713f6a94c34edbe391330f868220e95293fe6e5"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (14 lines \u00D7 2): src/Perla/Directories.fs:8-21 | src/Perla/Directories.fsi:4-17 \u2014 the copies sit in sibling files of one directory, so a shared home is within easy reach: extract the block into a single shared function the call sites can all reach \u2014 a file they already depend on, or a new one alongside them \u2014 and call it from both call sites, so a change lands once."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Directories.fs"},"region":{"startLine":8}}}],"partialFingerprints":{"codehealthFindingId/v1":"80a858d450caa0510e8dc22494f51ca72819618e07db64009d49615c0d817faa"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (14 lines \u00D7 2): src/Perla/SuaveService.fs:1436-1449 | src/Perla/SuaveService.fs:1486-1499 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. Read the line range as the matched WINDOW rather than a finished unit: at \u0060src/Perla/SuaveService.fs:1436\u0060 it runs out through the closing brace of the declaration holding it and carries on into the declaration that follows \u2014 the window is the tail of one member plus the head of the next, so no call can be substituted for those exact lines, and the smallest declaration that contains all of them is the type they sit in. The repeated unit is the member each site sits in: where those members\u0027 bodies are the same, move one whole member to the shared location and have the others delegate to it; where the copies are a run of near-identical overloads or wrappers that differ only in their signatures, the repetition IS the run \u2014 a one-line delegation has no helper inside it to lift \u2014 so generate the run from the set it enumerates, or accept it and keep each member\u0027s own documentation with it."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/SuaveService.fs"},"region":{"startLine":1436}}}],"partialFingerprints":{"codehealthFindingId/v1":"d76a0e6d89e52c6a7b9aa6f9b5bbb7af6e02ae32a150ecc29ea682f3dfec4053"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (10\u201313 lines \u00D7 2): src/Perla/SuaveService.fs:1000-1009 | src/Perla/SuaveService.fs:1121-1133 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. Read the line range as the matched WINDOW rather than a finished unit: at \u0060src/Perla/SuaveService.fs:1000\u0060 it runs out through the closing brace of the declaration holding it \u2014 the window is that declaration\u0027s tail, not a fragment that begins part-way through something, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that. Note that the copies do not run to the end of the range shown: their LAST lines are different code, not the same code under different names \u2014 the matched region ends inside that line. Extract the lines above it, and read the last line of each site separately."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/SuaveService.fs"},"region":{"startLine":1000}}}],"partialFingerprints":{"codehealthFindingId/v1":"6f82f1db7d0566cc758686facef96e84cc24bc0d5b0969e2ac19f1745c835d02"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (9\u201312 lines \u00D7 2): src/Perla/Configuration.fs:68-79 | src/Perla/Json.fs:721-729 \u2014 before extracting anything, compare \u0060src/Perla/Configuration.fs\u0060 and \u0060src/Perla/Json.fs\u0060 as WHOLE FILES: this scan already matched 3 separate duplicated blocks between them, totalling at least 41 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060src/Perla/Configuration.fs:68\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that. Note that the copies do not run to the end of the range shown: their LAST lines are different code, not the same code under different names \u2014 the matched region ends inside that line. Extract the lines above it, and read the last line of each site separately."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Configuration.fs"},"region":{"startLine":68}}}],"partialFingerprints":{"codehealthFindingId/v1":"d610ee5f0a28f93ce2bbb55640b4cc2ea55e6b2b271a413c7ed84d3952cf7435"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (10\u201312 lines \u00D7 2): src/Perla/VirtualFileSystem.fs:635-644 | src/Perla/VirtualFileSystem.fs:660-671 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. Read the line range as the matched WINDOW rather than a finished unit: at \u0060src/Perla/VirtualFileSystem.fs:635\u0060 it does not close everything it opens, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/VirtualFileSystem.fs"},"region":{"startLine":635}}}],"partialFingerprints":{"codehealthFindingId/v1":"0187663eb43c764304460138fa49842893877887c1beabdf1b8af2a05b932c52"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (11 lines \u00D7 2): src/Perla/Json.fs:795-805 | src/Perla/Json.fsi:163-174 \u2014 the copies sit in sibling files of one directory, so a shared home is within easy reach: extract the block into a single shared function the call sites can all reach \u2014 a file they already depend on, or a new one alongside them \u2014 and call it from both call sites, so a change lands once."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Json.fs"},"region":{"startLine":795}}}],"partialFingerprints":{"codehealthFindingId/v1":"40c72de44f0c09958508bf45a8bc925764a598728e82a57f1202c62351ceb84f"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (11 lines \u00D7 2): src/Perla/Library.fs:144-155 | src/Perla/Library.fs:186-196 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Library.fs"},"region":{"startLine":144}}}],"partialFingerprints":{"codehealthFindingId/v1":"b4b4456e71a66759c31b2d434710cca02149d43c49edf4cdfdf4958a92062026"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (10\u201311 lines \u00D7 2): src/Perla/SuaveService.fs:1405-1415 | src/Perla/SuaveService.fs:1456-1465 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. Note that the copies do not run to the end of the range shown: their LAST lines are different code, not the same code under different names \u2014 the matched region ends inside that line. Extract the lines above it, and read the last line of each site separately."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/SuaveService.fs"},"region":{"startLine":1405}}}],"partialFingerprints":{"codehealthFindingId/v1":"b8c89c54cb29a217e6cc9b9183c08a271de915ddce59c0371611e9246e511ce5"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (9\u201310 lines \u00D7 3): src/Perla.Logger/Library.fs:116-125 | src/Perla.Logger/Library.fs:150-158 | src/Perla.Logger/Library.fs:171-179 \u2014 all 3 copies are in the same file, so extract the block into one function there and call it from every one of those sites \u2014 resolving only two of them leaves the rest to drift apart the first time one is edited. Read the line range as the matched WINDOW rather than a finished unit: at \u0060src/Perla.Logger/Library.fs:116\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.Logger/Library.fs"},"region":{"startLine":116}}}],"partialFingerprints":{"codehealthFindingId/v1":"fe1416677bb0070bbff929eaa37e010328326b000a5e6f55537b07f522171765"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (8\u201310 lines \u00D7 2): src/Perla.Fable.Mocha/Library.fs:122-131 | src/Perla.Fable.Mocha/Library.fs:211-218 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.Fable.Mocha/Library.fs"},"region":{"startLine":122}}}],"partialFingerprints":{"codehealthFindingId/v1":"e4d0da2586b4572319de41d877a820822b7b9e8e94cd20767df58603dbe0f0f1"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (9\u201310 lines \u00D7 2): src/Perla/SuaveService.fs:1422-1430 | src/Perla/SuaveService.fs:1473-1482 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. Note that the copies do not run to the end of the range shown: their LAST lines are different code, not the same code under different names \u2014 the matched region ends inside that line. Extract the lines above it, and read the last line of each site separately."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/SuaveService.fs"},"region":{"startLine":1422}}}],"partialFingerprints":{"codehealthFindingId/v1":"f56039263d8f3d9d8674224a3fdd03255ea29cdb1c6df17577f6a1926b7b367f"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (8\u20139 lines \u00D7 2): src/Perla.Fable.QUnit/Library.fs:430-437 | src/Perla.Fable.QUnit/Library.fs:439-447 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. Read the line range as the matched WINDOW rather than a finished unit: at \u0060src/Perla.Fable.QUnit/Library.fs:430\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that. Note that the copies do not run to the end of the range shown: their LAST lines are different code, not the same code under different names \u2014 the matched region ends inside that line. Extract the lines above it, and read the last line of each site separately."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.Fable.QUnit/Library.fs"},"region":{"startLine":430}}}],"partialFingerprints":{"codehealthFindingId/v1":"d99124c1f82d563d826a62e2dd27f9c414abcb7eb6fe41fc17e32bb0eb3e7edc"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (9 lines \u00D7 2): src/Perla/Configuration.fs:54-62 | src/Perla/Json.fs:707-715 \u2014 before extracting anything, compare \u0060src/Perla/Configuration.fs\u0060 and \u0060src/Perla/Json.fs\u0060 as WHOLE FILES: this scan already matched 3 separate duplicated blocks between them, totalling at least 41 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060src/Perla/Configuration.fs:54\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Configuration.fs"},"region":{"startLine":54}}}],"partialFingerprints":{"codehealthFindingId/v1":"db0fe6b2f19c79c31cfd43a0edc488e0ec715278b486ffaed5cdeaa63171c8f5"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (9 lines \u00D7 2): src/Perla/Library.fs:201-209 | src/Perla/Library.fs:266-274 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Library.fs"},"region":{"startLine":201}}}],"partialFingerprints":{"codehealthFindingId/v1":"5fdc894fb406ef438a4bd132392a52d0194f3524481b3901170e7546bedc765d"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (8 lines \u00D7 3): src/Perla/Database.fs:293-300 | src/Perla/Database.fs:323-330 | src/Perla/Database.fs:343-350 \u2014 all 3 copies are in the same file, so extract the block into one function there and call it from every one of those sites \u2014 resolving only two of them leaves the rest to drift apart the first time one is edited."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Database.fs"},"region":{"startLine":293}}}],"partialFingerprints":{"codehealthFindingId/v1":"84907596983d869240d0a9d4932e07a645f01930e17e57fb3c747376c216b9f5"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (8 lines \u00D7 2): src/Perla/Database.fs:353-360 | src/Perla/Database.fs:365-373 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. Note that the copies do not run to the end of the range shown: their LAST lines are different code, not the same code under different names \u2014 the matched region ends inside that line. Extract the lines above it, and read the last line of each site separately."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Database.fs"},"region":{"startLine":353}}}],"partialFingerprints":{"codehealthFindingId/v1":"e898420c4b7cafc1d5d89110bf796096a07910e69d2aa57e89d1c88fb9b11bfa"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (8 lines \u00D7 2): src/Perla/Handlers.fs:255-264 | src/Perla/Handlers.fs:300-307 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Handlers.fs"},"region":{"startLine":255}}}],"partialFingerprints":{"codehealthFindingId/v1":"4a7384821b1cf908a33f25621b72182a4412486fc00badeeba949bafdcfd66b8"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (8 lines \u00D7 2): src/Perla/Json.fs:309-316 | src/Perla/Json.fs:330-337 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. The \u0060return\u0060 at the foot of the matched lines is the enclosing body\u0027s own terminal exit, not an early one: it moves with them unchanged, and each site calls the extracted unit from the position that \u0060return\u0060 occupied \u2014 no decision has to be handed back and re-acted on. \u2605 These copies have DRIFTED, and that is worth reading before extracting anything: just before the matched lines, \u0060src/Perla/Json.fs:307\u0060 calls \u0060get\u0060 and \u0060src/Perla/Json.fs:329\u0060 does not \u2014 after which the two agree again for 3 more lines. One of those two behaviours is the intended one and the other is what a copy-paste left behind, so decide which BEFORE unifying them: extracting the shared part will silently settle it, and if the copy that skips the call is the wrong one, that bug is already live."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Json.fs"},"region":{"startLine":309}}}],"partialFingerprints":{"codehealthFindingId/v1":"67caaebf811d24cbf83544d998bdff1691500d6dfdc122a33b5d7e483e8c8ff8"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (7 lines \u00D7 2): src/Perla.Fable.Mocha/Library.fs:58-64 | src/Perla.Fable.Mocha/Library.fs:230-236 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.Fable.Mocha/Library.fs"},"region":{"startLine":58}}}],"partialFingerprints":{"codehealthFindingId/v1":"b09faf6a283a3cc5664f548d7c501296758eb3cde6367da5fc5b75f3c9645722"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (7 lines \u00D7 2): src/Perla.Fable.Mocha/Library.fs:67-73 | src/Perla.Fable.Mocha/Library.fs:239-245 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.Fable.Mocha/Library.fs"},"region":{"startLine":67}}}],"partialFingerprints":{"codehealthFindingId/v1":"30c10f2a9f7d7cd407186f06c8517a3608d276f19b12a60a9ec37787ee7c3b0e"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (7 lines \u00D7 2): src/Perla.Fable.Mocha/Library.fs:76-82 | src/Perla.Fable.Mocha/Library.fs:248-254 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.Fable.Mocha/Library.fs"},"region":{"startLine":76}}}],"partialFingerprints":{"codehealthFindingId/v1":"ca0197daecdc87638b7291da134d0b1067998f86c9f0eba91d6ab51bf3819a6e"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (7 lines \u00D7 2): src/Perla/Json.fs:246-252 | src/Perla/Json.fs:268-274 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. Read the line range as the matched WINDOW rather than a finished unit: at \u0060src/Perla/Json.fs:246\u0060 it does not close everything it opens, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that. \u2605 These copies have DRIFTED, and that is worth reading before extracting anything: just after the matched lines, \u0060src/Perla/Json.fs:255\u0060 calls \u0060get\u0060 and \u0060src/Perla/Json.fs:276\u0060 does not \u2014 after which the two agree again for 3 more lines. One of those two behaviours is the intended one and the other is what a copy-paste left behind, so decide which BEFORE unifying them: extracting the shared part will silently settle it, and if the copy that skips the call is the wrong one, that bug is already live."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Json.fs"},"region":{"startLine":246}}}],"partialFingerprints":{"codehealthFindingId/v1":"d515a28ab5ebd3dbade40f031f4ff4f86b538c99e42a890eedb2cefbc7d2601e"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (6 lines \u00D7 2): src/Perla.Fable.Mocha/Library.fs:50-55 | src/Perla.Fable.Mocha/Library.fs:222-227 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.Fable.Mocha/Library.fs"},"region":{"startLine":50}}}],"partialFingerprints":{"codehealthFindingId/v1":"33bb9a0b37f2e46bcf924947fb194a8df79aaf561c113c5956b34a8ed18652ae"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (6 lines \u00D7 2): src/Perla/Directories.fs:23-28 | src/Perla/FileSystem.fs:89-94 \u2014 the copies sit in sibling files of one directory, so a shared home is within easy reach: extract the block into a single shared function the call sites can all reach \u2014 a file they already depend on, or a new one alongside them \u2014 and call it from both call sites, so a change lands once."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Directories.fs"},"region":{"startLine":23}}}],"partialFingerprints":{"codehealthFindingId/v1":"9d2d0de49d5d02f8f97b54453811378eb31d32dce85e2173c40465bca9eb081b"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (5 lines \u00D7 2): src/Perla.Logger/Library.fs:130-134 | src/Perla.Logger/Library.fs:354-358 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.Logger/Library.fs"},"region":{"startLine":130}}}],"partialFingerprints":{"codehealthFindingId/v1":"d0a26b3fdcede137d0edb027952abe6b60c5ac93c20d03367d0a2aa2d4cac384"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (14 lines \u00D7 2): src/Perla.PkgManager/PkgManager.fs:158-171 | src/Perla.PkgManager/PkgManager.fs:201-214 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. Read the line range as the matched WINDOW rather than a finished unit: at \u0060src/Perla.PkgManager/PkgManager.fs:158\u0060 it does not close everything it opens, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.PkgManager/PkgManager.fs"},"region":{"startLine":158}}}],"partialFingerprints":{"codehealthFindingId/v1":"c8a8eec8b1fb37ce7529e7e8545dea41ed80ac5cdd2c5ed36f31b8c96d3d8634"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (9 lines \u00D7 2): src/Perla.Fable.Mocha/Library.fs:180-188 | src/Perla.Fable.Mocha/Library.fs:193-201 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.Fable.Mocha/Library.fs"},"region":{"startLine":180}}}],"partialFingerprints":{"codehealthFindingId/v1":"4c87f1a588a30cf671a7a35ba64cb643c5c70dcc876d45b60f1bd88cfac702cb"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (9 lines \u00D7 3): src/Perla.Fable.Mocha/Library.fs:37-45 | src/Perla.Fable.Mocha/Library.fs:180-188 | src/Perla.Fable.Mocha/Library.fs:193-201 \u2014 all 3 copies are in the same file, so extract the block into one function there and call it from every one of those sites \u2014 resolving only two of them leaves the rest to drift apart the first time one is edited."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.Fable.Mocha/Library.fs"},"region":{"startLine":37}}}],"partialFingerprints":{"codehealthFindingId/v1":"56f35ef22f3de6066e36b7bbbb292ea6b1cf138f12852380548e135ed58fcca9"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (5 lines \u00D7 5): src/Perla.Fable.Mocha/Library.fs:28-32 | src/Perla.Fable.Mocha/Library.fs:96-102 | src/Perla.Fable.Mocha/Library.fs:107-113 | src/Perla.Fable.Mocha/Library.fs:127-131 | src/Perla.Fable.Mocha/Library.fs:214-218 \u2014 all 5 copies are in the same file, so extract the block into one function there and call it from every one of those sites \u2014 resolving only two of them leaves the rest to drift apart the first time one is edited."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.Fable.Mocha/Library.fs"},"region":{"startLine":28}}}],"partialFingerprints":{"codehealthFindingId/v1":"ace5d164c66b9fdff3458be77b8e5b3f994473fc6eb850f8ed25a6cc26780e8e"}},{"ruleId":"D8","level":"warning","message":{"text":"Low coverage: src/Perla.PkgManager/Types.fs: 21.8% line coverage (34/156)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.PkgManager/Types.fs"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"a60851fbb1f691983b923fea4e531fde4219b607e0614a5c713f2b1835d32c73"}},{"ruleId":"D8","level":"warning","message":{"text":"Low coverage: src/Perla.PkgManager/RequestHandler.fs: 0.0% line coverage (0/84)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.PkgManager/RequestHandler.fs"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"7db99766f63cd55d8c1789362abe9ed750caa7db5c9bbf05062d0fce073cdf91"}},{"ruleId":"D8","level":"warning","message":{"text":"Low coverage: src/Perla.Logger/Library.fs: 28.0% line coverage (51/182)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.Logger/Library.fs"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"fc6b17e55ba93537f1cbd9aabc6258ac25d4043d80e43ede1d3b2a2dd6e0dfa6"}},{"ruleId":"D8","level":"warning","message":{"text":"Low coverage: src/Perla/SuaveService.fs: 9.1% line coverage (102/1126)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/SuaveService.fs"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"a164899d0be9a2683fadf7dd22c04bf6361c814e0f7e8063350c6f1111081a9f"}},{"ruleId":"D8","level":"warning","message":{"text":"Low coverage: src/Perla/Testing.fs: 0.0% line coverage (0/795)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Testing.fs"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"7a8843ddb184d359fd3ae1bcc41ab576cf304ce80baf0bd6d70fc23ec6a3d0da"}},{"ruleId":"D8","level":"warning","message":{"text":"Low coverage: src/Perla/Commands.fs: 0.0% line coverage (0/564)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Commands.fs"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"165ac55f46745d19d2ecc82ef7b9010221254dbcec2afafa08eb40e911537c18"}},{"ruleId":"D8","level":"warning","message":{"text":"Low coverage: src/Perla/Program.fs: 0.0% line coverage (0/148)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Program.fs"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"ad171b5e453a8947e8353dd4996f998828473ecf758187b5e8e765c43f624855"}},{"ruleId":"D8","level":"warning","message":{"text":"Low coverage: src/Perla/Handlers.fs: 0.0% line coverage (0/1054)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Handlers.fs"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"719b454de1a311d338e65f2b2c3809e4514cecb5ca0d4e4bdec0b2ee795e945c"}},{"ruleId":"D8","level":"warning","message":{"text":"Low coverage: src/Perla/Orchestration.fs: 0.0% line coverage (0/262)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Orchestration.fs"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"1403483833c4961513ce788e354bcb395fc7f7ece1d03eda8e2b320c53012296"}},{"ruleId":"D8","level":"warning","message":{"text":"Low coverage: src/Perla/Configuration.fs: 0.0% line coverage (0/66)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Configuration.fs"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"375e3d4d019f1f022d5c75476f3ed09fc503f504622dcdb7d23bf759e54c3b80"}},{"ruleId":"D8","level":"warning","message":{"text":"Low coverage: src/Perla/Library.fs: 0.0% line coverage (0/176)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Library.fs"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"a007a0b7e09452769d7e93e42b51aedfb333648e377f699a13c19bf9c37c2bb0"}},{"ruleId":"D8","level":"warning","message":{"text":"Low coverage: src/Perla/Scaffolding.fs: 0.0% line coverage (0/105)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Scaffolding.fs"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"c68eddc65ba08d663bbacc845e711a4a89482bebb9f30c6a96eb714638d7275a"}},{"ruleId":"D8","level":"warning","message":{"text":"Low coverage: src/Perla/Build.fs: 22.3% line coverage (84/376)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Build.fs"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"6d5a938f24913e22143c1d8b6f14fa7bbbb2cb2c4c6caa43e9367be6a6c86268"}},{"ruleId":"D8","level":"warning","message":{"text":"Low coverage: src/Perla/Fable.fs: 0.0% line coverage (0/48)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Fable.fs"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"21a48ca41968083a6f1c9175ea51b6d7ab328bdc68a2bda6b3fe34c506070b61"}},{"ruleId":"D8","level":"warning","message":{"text":"Low coverage: src/Perla/Esbuild.fs: 0.0% line coverage (0/131)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Esbuild.fs"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"8bf29157473ec91a9dcbd9857a49a7ff37ededd50aa541b1bfb4c8f88e9afdc4"}},{"ruleId":"D8","level":"warning","message":{"text":"Low coverage: src/Perla/RequestHandler.fs: 0.0% line coverage (0/49)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/RequestHandler.fs"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"8b6e4fde5732796ab60bcb5f747af807ef778ce01b9ff343133df9a6ce769a28"}},{"ruleId":"D8","level":"warning","message":{"text":"Low coverage: src/Perla/Directories.fs: 0.0% line coverage (0/89)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/Directories.fs"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"2a64c76074d86d6d76a265ac86d6ecd73fc4eef5fa2a460bc0d1e999b3c00a02"}},{"ruleId":"D8","level":"warning","message":{"text":"Low coverage: src/Perla/PlatformOps.fs: 26.3% line coverage (81/308)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/PlatformOps.fs"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"01cc5c280e7969569dc45e707fc1d26bd59fdbc0927d250952eba1b4482c0c6c"}},{"ruleId":"D8","level":"warning","message":{"text":"No test project references Perla.Fable.Mocha: No test project in this repository references Perla.Fable.Mocha (1 production source file(s)), so \u0060dotnet test\u0060 never loads it and no coverage tool can measure it \u2014 its code is absent from the 29.6% above rather than counted at zero. This is the whole assembly, not a gap within one: add a test project that references it (or a ProjectReference from an existing suite) and its coverage starts being measured."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.Fable.Mocha/Perla.Fable.Mocha.fsproj"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"a11a9ffe567e43491d8589ba10f7e4b4f14fb56d22f52ed7ecf651e40e4552f7"}},{"ruleId":"D8","level":"warning","message":{"text":"No test project references Perla.Fable.QUnit: No test project in this repository references Perla.Fable.QUnit (1 production source file(s)), so \u0060dotnet test\u0060 never loads it and no coverage tool can measure it \u2014 its code is absent from the 29.6% above rather than counted at zero. This is the whole assembly, not a gap within one: add a test project that references it (or a ProjectReference from an existing suite) and its coverage starts being measured."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla.Fable.QUnit/Perla.Fable.QUnit.fsproj"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"761b936fc2fa4603b494d3b78cec4dcfe6e7abb7e68a01731439041f8512dff1"}},{"ruleId":"D12","level":"error","message":{"text":"Vulnerable: AngleSharp: AngleSharp 1.3.0 \u2014 Moderate severity. https://github.com/advisories/[GHSA redacted]"},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"5348f6452e7815b11b7f4f344ad847b15784212084f7edceb4f1aee8a23b6b57"}},{"ruleId":"D12","level":"error","message":{"text":"Vulnerable: Scriban: Scriban 6.2.1 \u2014 High severity. https://github.com/advisories/[GHSA redacted]"},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"fc74f3fd22f88521ae760ae5a3cfbfd1cc01ebb9038f85f676869f061a7bb070"}},{"ruleId":"D12","level":"warning","message":{"text":"Deprecated: xunit: xunit 2.9.3 \u2014 Legacy \u2014 the publisher\u0027s replacement is \u0060xunit.v3\u0060; that is the next major line under a new package id, so the move is a breaking rename rather than a version bump \u2014 budget for API changes in the code that uses it, not only the reference swap."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"d37c8c0e8046c9e8358e976373216abfb78e9fdef63ed53d3edcaa7d2238edcd"}},{"ruleId":"D12","level":"warning","message":{"text":"Prerelease dependency: Suave: Suave resolves to 2.7.0-beta1, a prerelease build. Prerelease packages carry no support policy, may change breaking between previews and can be unlisted \u2014 pin a stable release before shipping, or record the reason this preview is required."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"ec8ddc5ce884ed02042da5f242421f17d499a3cb2f91383b4fc4cd97bc11fcc2"}},{"ruleId":"D20","level":"note","message":{"text":"No ADRs found: No ADRs found. No recognised ADR directory (\u0060docs/adr/\u0060, \u0060docs/decisions/\u0060, \u0060adr/\u0060, \u0060docs/rfcs/\u0060, an \u0060ADR0001/\u0060 folder, or their siblings) exists anywhere in this tree. What was searched, so you can tell an empty log from a search that missed one: every directory under the tree (build output, dependencies and VCS metadata excepted), for a document that is either any non-index page inside a recognised ADR directory, whatever its name and however deeply nested (\u0060docs/adr/use-postgres.md\u0060, \u0060docs/adr/2024/0001-x.md\u0060); or a file anywhere whose name is ADR-shaped (\u00600001-use-postgres.md\u0060, \u0060adr-012-caching.md\u0060); or, when neither turned anything up, a document carrying the decision-record signature (an \u0022Architecture Decision Record\u0022 heading, or Status / Context / Decision / Consequences as section headings). A decision log that clears none of these \u2014 unnumbered files outside any recognised directory, without those headings \u2014 is not seen by this check and this row is then wrong. If that is your case, say so rather than renaming anything; otherwise, consider recording architectural decisions in \u0060docs/adr/\u0060."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"d2bea044ff79d7d275f5a91a6e2f548586178eaf480274c33960ad020c854631"}},{"ruleId":"D27","level":"note","message":{"text":"Scattered collaborators: 96 % of calls cross a namespace and only 40 % of collaborators are co-located \u2014 group each feature\u0027s code into a vertical slice so a call\u0027s collaborators sit together."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"5aad4a4530bac3928d3a065a664be89d023ecfc865f9bf79ac05754b3bffe322"}},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"8500bd444dd29b22a2b7ee47bd5fb7323de7a5296fca9e95d0d7da12354cfcad"},"taxa":[{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-353","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"7dc31a9cb4781029b8c8959d9c88c82346a5c72537102bdee63a26fbe524accc"},"taxa":[{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-353","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"3950d22791e590d14d58a61fa2966a0204b99b43c6738c656527efe7ed955b98"},"taxa":[{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-353","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"3e9e9d938b2c8da22bea3ca1a54d8a9c4f22108683329559c9cdd3187495ca2c"},"taxa":[{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-353","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"50adbcd711dca68f872cf2be71adcafe71227cad845e99d760eb77a975a1047e"},"taxa":[{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-353","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"2d4a941906ee01744df019fe1d5043e939414ca3b5beab0554d05fa10425b158"},"taxa":[{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-353","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"ce3e9240ab2f04ac758ffe84ab68ebc170702bb48693ce587ea5125a019f3c45"},"taxa":[{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-353","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"60e51c12e3490359f01f8cc76d6edc274287dc727633f543076b5287941e8d63"},"taxa":[{"id":"CWE-494","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"393008cf24272eaf38a25185bdbc1aa351cd1237b5bf5549216855e68dde458f"},"taxa":[{"id":"CWE-494","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"warning","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"63bea608fd98974a5a312ed989a52706c988bfdbb0e401f0928bf7ee4f23d1b9"},"taxa":[{"id":"CWE-522","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-552","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D30","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"acea5e909c99f1e5d6c4e2664b5a5adc3ea7b3780136eb1b6850b46437f7eba9"},"properties":{"dependency":{"package":"Scriban","version":"6.2.1","advisory":"[GHSA redacted]","aliases":["[GHSA redacted]","[GHSA redacted]","[GHSA redacted]","[GHSA redacted]","[GHSA redacted]","[GHSA redacted]","[GHSA redacted]","[GHSA redacted]","[GHSA redacted]","[GHSA redacted]","[GHSA redacted]","[GHSA redacted]","[GHSA redacted]"],"reachability":{"kind":"production","file":"src/Perla/Perla.fsproj","line":109}}}},{"ruleId":"D30","level":"warning","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"fc2a08f6bb107446f4ebd6f664fdf24cc47611e4e06eb0243eba1371f04f6104"},"properties":{"dependency":{"package":"AngleSharp","version":"1.3.0","advisory":"[GHSA redacted]","reachability":{"kind":"production","file":"src/Perla/Perla.fsproj","line":105}}}},{"ruleId":"D31","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"5b38726aef6bf54739467b75cda20d0b5ec3f18d86026ce35c2c4f5cfa3a36ce"}},{"ruleId":"D31","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"8b3dc70137df4a1a3061cb5627aadefc52ea87fc320a6983a140779800862a14"}},{"ruleId":"D31","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"311536edfb8bb5e856ce1770d75d37b59ff5a10367e8fdcb2bfed156f1f37d64"}},{"ruleId":"D31","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"67c41b5b77933eec4e84fff0951ac8290e969ea94b25e57d6153acd47ba906a4"}},{"ruleId":"D31","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"d175eebb66179e93a8c4c5bef4b05bca8117f7af02a48e175fc31baae17fa2f1"}},{"ruleId":"D31","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"5bdb1f363383e92d24ac8134ef0492fdc52083a4cf8b29785c3c81747125e8e7"}},{"ruleId":"D31","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"f4a0e41ce335b21b15885a414a5c09a59cddcf399d38409fffb1368a10782530"}},{"ruleId":"D31","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"ef9cfbd9ae38e2a0ca2b1ddfebdf8c63f3a6a5a8c6fc7895c37be8310d7039cb"}},{"ruleId":"D31","level":"warning","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"a2b42893c02acffe5ac0e8d4ff44d0b41ae8d30163d53134e1336b92f4adddd3"},"taxa":[{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-353","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D31","level":"note","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"3b1568673c97a5ce9b1ec5a08dba083d705b7ca92047378b6f33333438b27491"},"taxa":[{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-353","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D31","level":"note","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"a0253cdb433485d93f1259fe935cad7c5df0486a99bae72ae65dbbacb158f6f3"},"taxa":[{"id":"CWE-494","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D34","level":"note","message":{"text":"Orphaned files with no living knowledge: 15 of 32 analysed file(s) have no living knowledge left \u2014 their last meaningful change has decayed away, so if one breaks, no one currently understands it (counted over production source files of roughly 2,400 bytes or more, excluding vendored, generated and example/demo trees and test files identified by path convention, largest first; 32 of the 36 production source files in this repository met that bar). None is large enough to earn a read-through of its own, so this row stands in for the per-file rows rather than raising one each \u2014 most significant first: src/Perla.Fable.Mocha/Library.fs, src/Perla.Fable.QUnit/Library.fs, src/Perla/Library.fs, src/Perla/Types.fs, src/Perla.PkgManager/Provider.fs, src/Perla.Plugins/Library.fs, src/Perla.Plugins/Registry.fs, src/Perla/Scaffolding.fs (and 7 more). Attach the read to the next change that touches one of them: have a second person review that change, and leave behind a short comment or test recording what the file is for, so the knowledge comes back at the cost of a change you were making anyway."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"ce861fd78f6935114d3a342cb90ad25870f984e1042954fcbbe27c0e23be3658"}},{"ruleId":"D36","level":"note","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"1b213f6eedd4b140d0bc37bdf1496f72811a643f34064f12518b32e9e83bcfc7"}},{"ruleId":"D36","level":"note","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"0e17f71490e4d120a48b2b2881ab866c93b272bef2febb673a3e8e42b2c288ab"}},{"ruleId":"D36","level":"note","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"eb00976a698a5d68999b7ee6d27206fd374e916853e7ff1ead5eed42386f043f"}},{"ruleId":"D36","level":"warning","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"90f83b4fa27db32740afe9540c905f3c0499caed87f61049a8a903ecc95b41c3"}},{"ruleId":"D36","level":"warning","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"0752d0df7434000fcabf1048e2de30a7a1a8b982b3db9a19898c4dec199856b4"}},{"ruleId":"D36","level":"note","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"ace515990e7ee0f17b5c17e44dd168a5bdecf90804a3a3dd845cf05540978013"}},{"ruleId":"D44","level":"warning","message":{"text":"End-of-life runtime: .NET net9.0: sample/tests/App.Tests.fsproj declares .NET net9.0 as this project\u0027s target framework, and .NET 9 STS, support ended 2026-05-12. An unsupported runtime receives no security patches, so every vulnerability disclosed in it since 2026-05-12 is present and unfixable without moving off it. This is a migration rather than an upgrade: there is no newer release of a runtime that has ended."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"cf833dd2e60d7abeaab60bf3ef76eff2806e8ec26408f1f9382eb19e6e5923da"}},{"ruleId":"AC3","level":"warning","message":{"text":"Heading level jumps from h1 to h3: Skipping heading levels breaks the document outline assistive tech relies on. Don\u0027t jump levels \u2014 increase by at most one."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"docs/src/Components/Index.tsx"},"region":{"startLine":130}}}],"partialFingerprints":{"codehealthFindingId/v1":"2b3d4be2b09a7396970b781574b8892c1ee9435be6eb2ce4848c34ab454ede8b"}},{"ruleId":"AC3","level":"error","message":{"text":"\u003Chtml\u003E without a lang: The page declares no language, so assistive tech can\u0027t pick the right pronunciation. Add lang (e.g. lang=\u0022en\u0022)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/offline-templates/fable-feliz/index.html"},"region":{"startLine":2}}}],"partialFingerprints":{"codehealthFindingId/v1":"140acdce959046cf5a26c389f04b21563f44cb4ab7d621687d6facacfcd8548b"}},{"ruleId":"AC6","level":"warning","message":{"text":"Low contrast colour pair in CSS (4.4:1): \u0060blockquote\u0060 sets color: rgb(110, 85, 47) on background-color: rgb(219, 205, 182) \u2014 4.4:1, below the 4.5:1 WCAG AA minimum for normal text. Darken or lighten one of them."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"docs/src/index.css"},"region":{"startLine":46}}}],"partialFingerprints":{"codehealthFindingId/v1":"ad3f45433e113af814d4e40537c1b6e5944113ca4e428950a8b4f9128f026451"}},{"ruleId":"AC7","level":"warning","message":{"text":"Accessibility enforcement below the top rung: No accessibility enforcement found \u2014 no automated accessibility check runs over the HTML your app renders. Assert the accessibility invariants over that HTML in the test suite you already have (parse the output and assert, or drive a browser), and gate that test in CI so a regression blocks the merge. What was searched, so you can tell an absence from a miss: the 15 markup file(s) this pass actually assessed, the linter configuration checked in beside them, and this repository\u0027s test and CI files \u2014 matched by name against the accessibility checkers this dimension carries. An audit run outside the repository, a hosted scanner, or a check whose name is not one of those, is not seen here."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"d46019b86eff5ddad9db289e6802ac158899e980df54c34f67722442787ead62"}},{"ruleId":"M2","level":"note","message":{"text":"No ADRs: No Architecture Decision Records found \u2014 no conventional ADR directory, no numbered \u0060NNNN-title\u0060 documents in any markup this check reads, and nothing ADR-shaped by content. Design rationale recorded elsewhere (a design-notes tree, a mailing list, pull-request discussion) is not visible to this check and is not re-findable per decision, so a future maintainer cannot ask why one choice was made and get an answer."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"670b3d6e36a756d63097d0dfbf90afd5fc761308800b9354894a07c3f4e4aa14"}},{"ruleId":"P3","level":"note","message":{"text":"No SAST: No static application security testing detected. For this repository\u0027s stack, add \u0060semgrep --config=auto\u0060 plus gitleaks for committed secrets (F# is not a CodeQL language and has no language-specific SAST engine) as a CI step. What was searched, so you can tell an absence from a miss: the 3065 CI workflow file(s) in this repository, and the scanner and linter configuration checked in beside them. A scan that runs outside CI, one configured in your forge\u0027s web UI rather than in a committed file, or a tool whose name is none of those this check carries, is not seen \u2014 if that is your case the row is wrong, and saying so is more useful than adding a second scanner."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"6e54424179c892f03ef2fd003130ac4bd43f39bbf3b1ca0a0143e25acb80ec87"}},{"ruleId":"P6","level":"note","message":{"text":"No changelog: No CHANGELOG/HISTORY/RELEASES file \u2014 what shipped when isn\u0027t easy to reconstruct for support or audit. (Versioning/tagging makes releases traceable, but a changelog records the what.)"},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"dda5aa5aed8cbb292c3ef2b733bc138f614293ae6426c85e98bf31ef330d9415"}},{"ruleId":"R10","level":"warning","message":{"text":"Duplicated block (33 lines \u00D7 2 locations): src/Perla/livereload.js:5 \u00B7 src/Perla/testing-helpers.js:91 \u2014 the 2 copies sit in sibling files in one directory, so check first whether one of them (or an existing module there) already owns this behaviour and the others should call it; otherwise extract it into one module in that directory and have each site call it."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/livereload.js"},"region":{"startLine":5}}}],"partialFingerprints":{"codehealthFindingId/v1":"99f24d68c5cbd6219fc5b0d659838412f32ea1d0167f2ccbdb52e7780348e204"}},{"ruleId":"R10","level":"warning","message":{"text":"Duplicated block (16 lines \u00D7 2 locations): src/Perla/qunit-runner.js:68 \u00B7 src/Perla/qunit-runner.js:89 \u2014 all 2 copies are in the same file, and the CITED SPAN is not a self-contained block \u2014 it runs from inside one construct into the next (the tail of a branch plus the head of the following one, a run of switch arms, the end of a declaration plus the list that follows it) rather than covering a whole unit. So do not lift these lines literally: no call can be substituted for a half-open construct. Extract the enclosing repeated UNIT instead \u2014 the whole function, component or branch these lines sit in \u2014 and where the repetition IS the construct (a run of switch arms, a stack of near-identical declarations) replace it with one table or registry looked up by key rather than a helper each arm calls. The copies still drift apart the first time only one of them is edited, which is why this is reported."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/qunit-runner.js"},"region":{"startLine":68}}}],"partialFingerprints":{"codehealthFindingId/v1":"7afc27ecbcb1597085f0ee5eb7e5e437a9b4da754f260e0664c07db039555210"}},{"ruleId":"R10","level":"warning","message":{"text":"Duplicated block (14 lines \u00D7 2 locations): src/Perla/testing-helpers.js:36 \u00B7 src/Perla/testing-helpers.js:65 \u2014 all 2 copies are in the same file, and the CITED SPAN is not a self-contained block \u2014 it runs from inside one construct into the next (the tail of a branch plus the head of the following one, a run of switch arms, the end of a declaration plus the list that follows it) rather than covering a whole unit. So do not lift these lines literally: no call can be substituted for a half-open construct. Extract the enclosing repeated UNIT instead \u2014 the whole function, component or branch these lines sit in \u2014 and where the repetition IS the construct (a run of switch arms, a stack of near-identical declarations) replace it with one table or registry looked up by key rather than a helper each arm calls. The copies still drift apart the first time only one of them is edited, which is why this is reported."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/testing-helpers.js"},"region":{"startLine":36}}}],"partialFingerprints":{"codehealthFindingId/v1":"1bcf119013e4e7887dd8f801793e7d8a60fb900ebd400afb9dba3d2038ebd62d"}},{"ruleId":"R10","level":"warning","message":{"text":"Duplicated block (12 lines \u00D7 2 locations): src/Perla/mocha-runner.js:115 \u00B7 src/Perla/qunit-runner.js:144 \u2014 the 2 copies are spread across 2 files, and the CITED SPAN is not a self-contained block \u2014 it runs from inside one construct into the next (the tail of a branch plus the head of the following one, a run of switch arms, the end of a declaration plus the list that follows it) rather than covering a whole unit. So do not lift these lines literally: no call can be substituted for a half-open construct. Extract the enclosing repeated UNIT instead \u2014 the whole function, component or branch these lines sit in \u2014 and where the repetition IS the construct (a run of switch arms, a stack of near-identical declarations) replace it with one table or registry looked up by key rather than a helper each arm calls. The copies still drift apart the first time only one of them is edited, which is why this is reported."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/mocha-runner.js"},"region":{"startLine":115}}}],"partialFingerprints":{"codehealthFindingId/v1":"dbd8d5ccd62ef8dddda99699ed636f527cb9a1c3a23e75ff1cb3df15ae7d7fc6"}},{"ruleId":"R10","level":"warning","message":{"text":"Duplicated block with local edits (9 matched lines \u00D7 2 locations): src/Perla/offline-templates/basic/src/main.js:1 \u00B7 src/Perla/offline-templates/blocal/src/main.js:1 \u2014 the two spans are one implementation copied and then locally edited \u2014 50 tokens are still identical, in the same order in both files, with only local edits between them. The copies have already begun to drift, which is this row\u0027s finding: an edit made to one and not the other changes behaviour silently. Diff the two spans first to learn what genuinely differs, then extract the shared core into one module both sites use, passing the differences in as parameters \u2014 or, if one copy exists only because the other could not be imported from its context, make one of them the single source the other is generated or re-exported from. If one copy is no longer reachable, delete it rather than letting it shadow the live one."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/offline-templates/basic/src/main.js"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"35c6d71206aaf25358bc2f81c1de00629c0c09318774961b71d58c1e823fc07b"}},{"ruleId":"R4","level":"warning","message":{"text":"No test reaches this file: No test imports this module directly or transitively. Import reachability cannot see a test that executes a file by path instead of importing it, nor one that drives it through a running browser by navigating to a URL \u2014 if neither does, no test reaches this one."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/qunit-runner.js"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"4f791a29e172e43b7ba740c607fcc630d9f3ad4283b07c70da83c7c99c5f5747"}},{"ruleId":"R4","level":"warning","message":{"text":"No test reaches this file: No test imports this module directly or transitively. Import reachability cannot see a test that executes a file by path instead of importing it, nor one that drives it through a running browser by navigating to a URL \u2014 if neither does, no test reaches this one."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/mocha-runner.js"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"b7086433d52c055b8f13cf01a697fb4523e687c16505a1839f65ac9f87979e43"}},{"ruleId":"R4","level":"warning","message":{"text":"No test reaches this file: No test imports this module directly or transitively. Import reachability cannot see a test that executes a file by path instead of importing it, nor one that drives it through a running browser by navigating to a URL \u2014 if neither does, no test reaches this one."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/testing-helpers.js"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"0557d3e3b423ea7ad90dc21db712e686ad5b47a5114c8582092853a526ca9249"}},{"ruleId":"R4","level":"warning","message":{"text":"No test reaches this file: No test imports this module directly or transitively. Import reachability cannot see a test that executes a file by path instead of importing it, nor one that drives it through a running browser by navigating to a URL \u2014 if neither does, no test reaches this one."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/livereload.js"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"62ec75a70fac155b3bffb2f228331879b7f1edcb78919b80d7117093c7bed97d"}},{"ruleId":"R4","level":"warning","message":{"text":"No test reaches this file: No test imports this module directly or transitively. Import reachability cannot see a test that executes a file by path instead of importing it, nor one that drives it through a running browser by navigating to a URL \u2014 if neither does, no test reaches this one."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/worker.js"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"c8e96089b16af875930bb752dcc02048e6c4a6f1a04ac5ba360af35467eeade8"}},{"ruleId":"R7","level":"warning","message":{"text":"Dead file (~164 LoC): no import path from any entry point (3 application, 0 tooling, 3 test roots considered), and no other file in the scanned tree imports it \u2014 nothing in-repo names this module at all, which is the strongest form of this claim the import graph can make"},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/qunit-runner.js"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"4e9480f7691448f81dc39d064f02221c1f51ce9cfc2396e5a075d16ac0724906"}},{"ruleId":"R7","level":"warning","message":{"text":"Dead file (~133 LoC): no import path from any entry point (3 application, 0 tooling, 3 test roots considered), and no other file in the scanned tree imports it \u2014 nothing in-repo names this module at all, which is the strongest form of this claim the import graph can make"},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/mocha-runner.js"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"ba3e711a5acb5b1d17c118e4fff523055c761ce21c52dd5b7f38d7c4735c26a1"}},{"ruleId":"R7","level":"warning","message":{"text":"Dead file (~126 LoC): no import path from any entry point (3 application, 0 tooling, 3 test roots considered), and no other file in the scanned tree imports it \u2014 nothing in-repo names this module at all, which is the strongest form of this claim the import graph can make"},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/testing-helpers.js"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"0aad2fb30b126f295bc21cf2fbece37175f61ce859b49cbd9688719301469845"}},{"ruleId":"R7","level":"warning","message":{"text":"Dead file (~95 LoC): no import path from any entry point (3 application, 0 tooling, 3 test roots considered), and no other file in the scanned tree imports it \u2014 nothing in-repo names this module at all, which is the strongest form of this claim the import graph can make"},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/livereload.js"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"1c5758a8d6a39ef97090eea6e5c1822b3c19b2324183a1da9af26c9682c7954b"}},{"ruleId":"R7","level":"warning","message":{"text":"Dead file (~69 LoC): no import path from any entry point (3 application, 0 tooling, 3 test roots considered), and no other file in the scanned tree imports it \u2014 nothing in-repo names this module at all, which is the strongest form of this claim the import graph can make"},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/worker.js"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"0615fa9e27bd13cd81eba9ff0dfdfd6ae630557557ae97859fd92bda92ee914d"}},{"ruleId":"S1","level":"warning","message":{"text":"Third-party script without Subresource Integrity: \u0060https://ga.jspm.io/npm:es-module-shims@2.6.1/dist/es-module-shims.js\u0060 is executed by this page with no Subresource Integrity. Whoever can answer that request \u2014 the CDN, anyone who compromises it, anyone on the network path \u2014 runs arbitrary script in this page\u0027s origin, with its session. 5 such include(s) across the repository\u0027s markup."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/offline-templates/basic/index.html"},"region":{"startLine":9}}}],"partialFingerprints":{"codehealthFindingId/v1":"951d27b658bc29434fd64e28713399f7ee5fd31e1a37f3ccbf1656ce9e73bac3"}},{"ruleId":"X10","level":"note","message":{"text":"Duplicated predicate: \u0060event \u0026\u0026 event.message \u0026\u0026 event.message.includes(\u0022Failed to resolve module specifier\u0022)\u0060 appears character-identically in 2 files \u2014 src/Perla/livereload.js, src/Perla/testing-helpers.js. It is one line, so the duplication detector\u0027s token window never sees it; the copies drift when only one is corrected. Give the condition a name and one home."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/livereload.js"},"region":{"startLine":25}}}],"partialFingerprints":{"codehealthFindingId/v1":"598a23fafe03577c5cc6b37e473bcdc03031000d66e6665e252e034fe7ef2d3a"}},{"ruleId":"X7","level":"note","message":{"text":"Silent fallback default in catch: \u0060tryParse\u0060 swallows every exception into \u0060return {}\u0060 \u2014 a data error becomes a silent behavior change with no trail. Log the failure or let it raise. If that constant is the correct answer rather than a stand-in for a value that could not be read, say so in a comment on the handler or in the docstring, and the row stops firing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Perla/worker.js"},"region":{"startLine":12}}}],"partialFingerprints":{"codehealthFindingId/v1":"d98ef699b5448ba04255f2f82cfc37e68afa26a4707bb9f7dd177fadb3ecf8e0"}}],"taxonomies":[{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d","organization":"MITRE","informationUri":"https://cwe.mitre.org/","isComprehensive":false,"shortDescription":{"text":"The MITRE Common Weakness Enumeration (CWE)."},"taxa":[{"id":"CWE-1032","guid":"5f21e517-68aa-a650-9a25-5771ef024637","name":"OWASP Top Ten \u2014 Security Misconfiguration category","shortDescription":{"text":"OWASP Top Ten \u2014 Security Misconfiguration category"},"helpUri":"https://cwe.mitre.org/data/definitions/1032.html"},{"id":"CWE-1357","guid":"e4d2e772-757e-0a5c-bd7d-77052949d866","name":"Reliance on Insufficiently Trustworthy Component","shortDescription":{"text":"Reliance on Insufficiently Trustworthy Component"},"helpUri":"https://cwe.mitre.org/data/definitions/1357.html"},{"id":"CWE-1395","guid":"800e09e7-c11a-8654-9fa6-86f398995fed","name":"Dependency on Vulnerable Third-Party Component","shortDescription":{"text":"Dependency on Vulnerable Third-Party Component"},"helpUri":"https://cwe.mitre.org/data/definitions/1395.html"},{"id":"CWE-16","guid":"659db3ea-affc-8453-8add-c1218fbfcb92","name":"Configuration","shortDescription":{"text":"Configuration"},"helpUri":"https://cwe.mitre.org/data/definitions/16.html"},{"id":"CWE-259","guid":"ae9ad959-fbb6-9d5e-892d-3dca66da0b69","name":"Use of Hard-coded Password","shortDescription":{"text":"Use of Hard-coded Password"},"helpUri":"https://cwe.mitre.org/data/definitions/259.html"},{"id":"CWE-353","guid":"09d7e902-d4ee-f05d-ae6c-0a1554d0c18f","name":"CWE-353","shortDescription":{"text":"CWE-353"},"helpUri":"https://cwe.mitre.org/data/definitions/353.html"},{"id":"CWE-494","guid":"b8a65e0d-e459-4a55-a931-fc1136482375","name":"Download of Code Without Integrity Check","shortDescription":{"text":"Download of Code Without Integrity Check"},"helpUri":"https://cwe.mitre.org/data/definitions/494.html"},{"id":"CWE-522","guid":"71fb233e-ce6a-ae57-9419-ef8373540b09","name":"CWE-522","shortDescription":{"text":"CWE-522"},"helpUri":"https://cwe.mitre.org/data/definitions/522.html"},{"id":"CWE-552","guid":"3492436b-eca2-9c54-9ba3-5dade427c903","name":"CWE-552","shortDescription":{"text":"CWE-552"},"helpUri":"https://cwe.mitre.org/data/definitions/552.html"},{"id":"CWE-732","guid":"1da27e8f-b330-7650-ab63-bd61953eae5d","name":"Incorrect Permission Assignment for Critical Resource","shortDescription":{"text":"Incorrect Permission Assignment for Critical Resource"},"helpUri":"https://cwe.mitre.org/data/definitions/732.html"},{"id":"CWE-77","guid":"332c8ade-6612-9f56-a06b-d8d90b1a8750","name":"Command Injection","shortDescription":{"text":"Command Injection"},"helpUri":"https://cwe.mitre.org/data/definitions/77.html"},{"id":"CWE-78","guid":"2e31ceaf-c7ae-2e5e-9661-cfb1362789cf","name":"OS Command Injection","shortDescription":{"text":"OS Command Injection"},"helpUri":"https://cwe.mitre.org/data/definitions/78.html"},{"id":"CWE-79","guid":"fd45580b-e8c4-fc5e-8c2f-aa8fab0b4dbf","name":"Cross-site Scripting (XSS)","shortDescription":{"text":"Cross-site Scripting (XSS)"},"helpUri":"https://cwe.mitre.org/data/definitions/79.html"},{"id":"CWE-798","guid":"5e8f057d-fee3-995a-a0cb-9fc5b0d174d1","name":"Use of Hard-coded Credentials","shortDescription":{"text":"Use of Hard-coded Credentials"},"helpUri":"https://cwe.mitre.org/data/definitions/798.html"},{"id":"CWE-89","guid":"6d08fdad-37eb-c150-bbf0-d7d946863407","name":"SQL Injection","shortDescription":{"text":"SQL Injection"},"helpUri":"https://cwe.mitre.org/data/definitions/89.html"},{"id":"CWE-937","guid":"16f316ae-415c-b354-a59b-1f7905f756e9","name":"Using Components with Known Vulnerabilities","shortDescription":{"text":"Using Components with Known Vulnerabilities"},"helpUri":"https://cwe.mitre.org/data/definitions/937.html"},{"id":"CWE-94","guid":"75e7f50c-6c2f-dd52-bf40-bf6c52b861fd","name":"Code Injection","shortDescription":{"text":"Code Injection"},"helpUri":"https://cwe.mitre.org/data/definitions/94.html"}]}],"properties":{"codehealthPublication":{"public":true,"notice":"This is the PUBLIC form of this artifact. Findings are listed in full, but the details of SECURITY findings \u2014 which rule fired, in which file, on which line, and how to fix it \u2014 are deliberately withheld, and any secret-scanner results are excluded entirely. Where detail is absent here it was REMOVED FOR PUBLICATION; it is not missing from the analysis. The complete artifact is available from the repository owner.","securityFindingsRedacted":29,"secretScannerRunsExcluded":0}},"redactionTokens":["A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."]}]}