# Changelog

> **This is the PUBLIC form of this artifact. Findings are listed in full, but the details of SECURITY findings — which rule fired, in which file, on which line, and how to fix it — are deliberately withheld, and any secret-scanner results are excluded entirely. Where detail is absent here it was REMOVED FOR PUBLICATION; it is not missing from the analysis. The complete artifact is available from the repository owner.**

## Score

- CAI 66 → 68 (+2.1)
- Rubric changed (rubric-2026.09.11 → rubric-2026.09.18) — scores are not directly comparable.

## Lenses

- Code Health 79 → 78 (-0.5)
- Architecture 100 → 96 (-3.8)
- Maturity 57 → 57 (+0.6)
- Readiness 75 → 73 (-2.6)
- Security 65 → 75 (+10.2)
- Event Sourcing 100 → 100 (+0.0)
- Performance 100 (new)

## Resolved (12)

- Documentation: no installation or build instructions (README.md)
- Documentation: no usage examples (README.md)
- High: security finding (details withheld)
- High: security finding (details withheld)
- Hotspot: src/components/favorites.rs (src/components/favorites.rs)
- Hotspot: src/config.rs (src/config.rs)
- Hotspot: src/database/duckdb.rs (src/database/duckdb.rs)
- Hotspot: src/database/mysql.rs (src/database/mysql.rs)
- Hotspot: src/database/postgresql.rs (src/database/postgresql.rs)
- Hotspot: src/database/sqlite.rs (src/database/sqlite.rs)
- Medium: security finding (details withheld)
- Medium: security finding (details withheld)

## New (26)

- High: security finding (details withheld)
- High: security finding (details withheld)
- High: security finding (details withheld)
- High: security finding (details withheld)
- Medium vulnerability: RUSTSEC-2026-0285 (Cargo.lock)
- Medium: security finding (details withheld)
- Outdated: async-trait
- Outdated: chrono
- Outdated: clap
- Outdated: csv
- Outdated: duckdb
- Outdated: futures
- Outdated: human-panic
- Outdated: indexmap
- Outdated: libc
- Outdated: log
- Outdated: rpassword
- Outdated: serde
- Outdated: serde_json
- Outdated: tempfile
- …and 6 more

## Changes since last survey

- 5 commits — 4 feature/other, 1 fixes

## By area

- (root) — 3 commits
- .github/workflows — 1 commit
- src/components — 1 commit

## Notable commits

- fix: fix: highlight consecutive SQL keywords (#344)
- change: Build GNU releases against glibc 2.28 (#341)
- change: bump to v0.4.6 (#343)
- change: shortcut to full screen results (#342)
- change: update database driver information in README (#340)
