{"$schema":"https://json.schemastore.org/sarif-2.1.0.json","version":"2.1.0","runs":[{"tool":{"driver":{"name":"codehealth","informationUri":"https://codehealth.canine.dev","rules":[{"id":"D1","name":"Cyclomatic Complexity","shortDescription":{"text":"Cyclomatic Complexity"},"helpUri":"https://codehealth.canine.dev/dimensions/D1"},{"id":"D2","name":"Cognitive Complexity","shortDescription":{"text":"Cognitive Complexity"},"helpUri":"https://codehealth.canine.dev/dimensions/D2"},{"id":"D4","name":"Code Duplication","shortDescription":{"text":"Code Duplication"},"helpUri":"https://codehealth.canine.dev/dimensions/D4"},{"id":"D6","name":"Cohesion (LCOM4)","shortDescription":{"text":"Cohesion (LCOM4)"},"helpUri":"https://codehealth.canine.dev/dimensions/D6"},{"id":"D12","name":"Dependency Hygiene","shortDescription":{"text":"Dependency Hygiene"},"helpUri":"https://codehealth.canine.dev/dimensions/D12"},{"id":"D13","name":"Secret Scanning","shortDescription":{"text":"Secret Scanning"},"helpUri":"https://codehealth.canine.dev/dimensions/D13","relationships":[{"target":{"id":"CWE-798","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-259","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]}],"properties":{"cwe":["CWE-798","CWE-259"]}},{"id":"D15","name":"Churn \u00D7 Complexity Hotspots","shortDescription":{"text":"Churn \u00D7 Complexity Hotspots"},"helpUri":"https://codehealth.canine.dev/dimensions/D15"},{"id":"D17","name":"Explicit Debt","shortDescription":{"text":"Explicit Debt"},"helpUri":"https://codehealth.canine.dev/dimensions/D17"},{"id":"D19","name":"Documentation Quality","shortDescription":{"text":"Documentation Quality"},"helpUri":"https://codehealth.canine.dev/dimensions/D19"},{"id":"D20","name":"ADR Quality","shortDescription":{"text":"ADR Quality"},"helpUri":"https://codehealth.canine.dev/dimensions/D20"},{"id":"D21","name":"Naming Consistency","shortDescription":{"text":"Naming Consistency"},"helpUri":"https://codehealth.canine.dev/dimensions/D21"},{"id":"D26","name":"Project Cohesion","shortDescription":{"text":"Project Cohesion"},"helpUri":"https://codehealth.canine.dev/dimensions/D26"},{"id":"D28","name":"Secrets (history)","shortDescription":{"text":"Secrets (history)"},"helpUri":"https://codehealth.canine.dev/dimensions/D28","relationships":[{"target":{"id":"CWE-798","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-259","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]}],"properties":{"cwe":["CWE-798","CWE-259"]}},{"id":"D29","name":"Static Analysis (SAST)","shortDescription":{"text":"Static Analysis (SAST)"},"helpUri":"https://codehealth.canine.dev/dimensions/D29","relationships":[{"target":{"id":"CWE-79","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-89","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-78","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-94","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-77","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]}],"properties":{"cwe":["CWE-79","CWE-89","CWE-78","CWE-94","CWE-77"]}},{"id":"D31","name":"IaC \u0026 Container Security","shortDescription":{"text":"IaC \u0026 Container Security"},"helpUri":"https://codehealth.canine.dev/dimensions/D31","relationships":[{"target":{"id":"CWE-1032","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-732","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-16","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]}],"properties":{"cwe":["CWE-1032","CWE-732","CWE-16"]}},{"id":"D34","name":"Knowledge Freshness","shortDescription":{"text":"Knowledge Freshness"},"helpUri":"https://codehealth.canine.dev/dimensions/D34"},{"id":"D35","name":"Change Coupling","shortDescription":{"text":"Change Coupling"},"helpUri":"https://codehealth.canine.dev/dimensions/D35"},{"id":"D36","name":"Supply-chain Provenance \u0026 Signing","shortDescription":{"text":"Supply-chain Provenance \u0026 Signing"},"helpUri":"https://codehealth.canine.dev/dimensions/D36","relationships":[{"target":{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-494","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]}],"properties":{"cwe":["CWE-1357","CWE-494"]}},{"id":"AC1","name":"Text alternatives","shortDescription":{"text":"Text alternatives"},"helpUri":"https://codehealth.canine.dev/dimensions/AC1"},{"id":"AC2","name":"Forms \u0026 labels","shortDescription":{"text":"Forms \u0026 labels"},"helpUri":"https://codehealth.canine.dev/dimensions/AC2"},{"id":"AC3","name":"Page structure","shortDescription":{"text":"Page structure"},"helpUri":"https://codehealth.canine.dev/dimensions/AC3"},{"id":"AC4","name":"Keyboard semantics","shortDescription":{"text":"Keyboard semantics"},"helpUri":"https://codehealth.canine.dev/dimensions/AC4"},{"id":"AC5","name":"ARIA correctness","shortDescription":{"text":"ARIA correctness"},"helpUri":"https://codehealth.canine.dev/dimensions/AC5"},{"id":"AC6","name":"Visual \u0026 motion safety","shortDescription":{"text":"Visual \u0026 motion safety"},"helpUri":"https://codehealth.canine.dev/dimensions/AC6"},{"id":"AC7","name":"A11y enforcement","shortDescription":{"text":"A11y enforcement"},"helpUri":"https://codehealth.canine.dev/dimensions/AC7"},{"id":"AX10","name":"Code composition","shortDescription":{"text":"Code composition"},"helpUri":"https://codehealth.canine.dev/dimensions/AX10"},{"id":"AXB2","name":"Runtime readiness","shortDescription":{"text":"Runtime readiness"},"helpUri":"https://codehealth.canine.dev/dimensions/AXB2"},{"id":"M1","name":"Documentation (README)","shortDescription":{"text":"Documentation (README)"},"helpUri":"https://codehealth.canine.dev/dimensions/M1"},{"id":"M2","name":"Architecture documentation","shortDescription":{"text":"Architecture documentation"},"helpUri":"https://codehealth.canine.dev/dimensions/M2"},{"id":"M3","name":"Folder \u0026 project structure","shortDescription":{"text":"Folder \u0026 project structure"},"helpUri":"https://codehealth.canine.dev/dimensions/M3"},{"id":"M4","name":"Documentation accuracy","shortDescription":{"text":"Documentation accuracy"},"helpUri":"https://codehealth.canine.dev/dimensions/M4"},{"id":"P1","name":"CI/CD gates","shortDescription":{"text":"CI/CD gates"},"helpUri":"https://codehealth.canine.dev/dimensions/P1"},{"id":"P12","name":"CI test-gate honesty","shortDescription":{"text":"CI test-gate honesty"},"helpUri":"https://codehealth.canine.dev/dimensions/P12"},{"id":"P2","name":"Observability","shortDescription":{"text":"Observability"},"helpUri":"https://codehealth.canine.dev/dimensions/P2"},{"id":"P3","name":"Security \u0026 performance tooling","shortDescription":{"text":"Security \u0026 performance tooling"},"helpUri":"https://codehealth.canine.dev/dimensions/P3"},{"id":"P4","name":"Deployment \u0026 Rollback","shortDescription":{"text":"Deployment \u0026 Rollback"},"helpUri":"https://codehealth.canine.dev/dimensions/P4"},{"id":"P6","name":"Release Hygiene","shortDescription":{"text":"Release Hygiene"},"helpUri":"https://codehealth.canine.dev/dimensions/P6"},{"id":"X9","name":"Subsumed condition operand","shortDescription":{"text":"Subsumed condition operand"},"helpUri":"https://codehealth.canine.dev/dimensions/X9"}]}},"results":[{"ruleId":"D1","level":"warning","message":{"text":"TypeValidator.validate (cyclomatic 57): TypeValidator.validate has cyclomatic complexity 57 (threshold 15). To reduce it, keep the dispatch but shrink the arms: move each non-trivial case body into its own named function (or onto the value being matched) so the dispatch reads one line per case, and group related cases into a sub-dispatch. Where every arm is uniform \u2014 the same kind of value, with no behaviour of its own \u2014 a table keyed by the case is the shorter form; wherever the arms carry different data or different behaviour, keep them as cases, because collapsing those trades an explicit, reviewable set of cases for nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"core/app/TypeValidator.scala"},"region":{"startLine":174}}}],"partialFingerprints":{"codehealthFindingId/v1":"a41774af1a4ca859a1fb05963e6a3112802bb64746a7c9de57f18799366ddd9f"}},{"ruleId":"D1","level":"warning","message":{"text":"JsonUtil.validate (cyclomatic 43): JsonUtil.validate has cyclomatic complexity 43 (threshold 15). To reduce it, keep the dispatch but shrink the arms: move each non-trivial case body into its own named function (or onto the value being matched) so the dispatch reads one line per case, and group related cases into a sub-dispatch. Where every arm is uniform \u2014 the same kind of value, with no behaviour of its own \u2014 a table keyed by the case is the shorter form; wherever the arms carry different data or different behaviour, keep them as cases, because collapsing those trades an explicit, reviewable set of cases for nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"core/app/builder/JsonUtil.scala"},"region":{"startLine":14}}}],"partialFingerprints":{"codehealthFindingId/v1":"a89a360baa79ab6c1e26b0f4e25a0bedcd737927f9583203deff5bb27dcd7890"}},{"ruleId":"D1","level":"warning","message":{"text":"Field.specialize (cyclomatic 18): Field.specialize has cyclomatic complexity 18 (threshold 15). To reduce it, keep the dispatch but shrink the arms: move each non-trivial case body into its own named function (or onto the value being matched) so the dispatch reads one line per case, and group related cases into a sub-dispatch. Where every arm is uniform \u2014 the same kind of value, with no behaviour of its own \u2014 a table keyed by the case is the shorter form; wherever the arms carry different data or different behaviour, keep them as cases, because collapsing those trades an explicit, reviewable set of cases for nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"swagger/src/main/scala/io/apibuilder/swagger/translators/Field.scala"},"region":{"startLine":46}}}],"partialFingerprints":{"codehealthFindingId/v1":"e806f1a69ec96e1632eae0c47871d5f784afa46092e331cdbd9e1309a03b9e32"}},{"ruleId":"D1","level":"warning","message":{"text":"InternalOrganizationsDao.validate (cyclomatic 16): InternalOrganizationsDao.validate has cyclomatic complexity 16 (threshold 15). To reduce it, keep the dispatch but shrink the arms: move each non-trivial case body into its own named function (or onto the value being matched) so the dispatch reads one line per case, and group related cases into a sub-dispatch. Where every arm is uniform \u2014 the same kind of value, with no behaviour of its own \u2014 a table keyed by the case is the shorter form; wherever the arms carry different data or different behaviour, keep them as cases, because collapsing those trades an explicit, reviewable set of cases for nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/db/InternalOrganizationsDao.scala"},"region":{"startLine":39}}}],"partialFingerprints":{"codehealthFindingId/v1":"054e8e65bf7a1630e141c7e9f16331957c7cc2e0e5d81adfa091d2c9c6171d34"}},{"ruleId":"D2","level":"warning","message":{"text":"TypeValidator.validate (cognitive 80): TypeValidator.validate has cognitive complexity 80 (threshold 15). Drivers by points: match/switch 21 (67 pts), if/else 7 (13 pts) (nesting depth added 52). To reduce it, keep the dispatch but shrink the arms: move each non-trivial case body into its own named function (or onto the value being matched) so the dispatch reads one line per case, and group related cases into a sub-dispatch. Keep every case explicit, and make the behaviour for cases you do not list a deliberate choice rather than an accident."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"core/app/TypeValidator.scala"},"region":{"startLine":174}}}],"partialFingerprints":{"codehealthFindingId/v1":"5f02730ea962ecd2656fc240cf519e9d2f381ef0ce2d95e5d142ac1414ae5c42"}},{"ruleId":"D2","level":"warning","message":{"text":"Versions.show (cognitive 47): Versions.show has cognitive complexity 47 (threshold 15). Drivers by points: if/else 4 (19 pts), loops 5 (15 pts), match/switch 2 (13 pts) (nesting depth added 36). To reduce it, split the body into named stages: move each independent step or branch into its own named function so the body reads as a short sequence of named calls rather than one long body."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/controllers/Versions.scala"},"region":{"startLine":31}}}],"partialFingerprints":{"codehealthFindingId/v1":"1c7a20a16b92534043fd698823618be0ef610bc467ad6a87a6e12932b8693b4b"}},{"ruleId":"D2","level":"warning","message":{"text":"InternalOrganizationsDao.validate (cognitive 25): InternalOrganizationsDao.validate has cognitive complexity 25 (threshold 15). Drivers by points: if/else 9 (15 pts), match/switch 6 (10 pts) (nesting depth added 10). To reduce it, split the body into named stages: move each independent step or branch into its own named function so the body reads as a short sequence of named calls rather than one long body."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/db/InternalOrganizationsDao.scala"},"region":{"startLine":39}}}],"partialFingerprints":{"codehealthFindingId/v1":"46ec57db5d4cc3cf397af783eb0e6c9cef35c31e6e4d48aed59caea344abaff7"}},{"ruleId":"D2","level":"warning","message":{"text":"JsonUtil.validate (cognitive 20): JsonUtil.validate has cognitive complexity 20 (threshold 15). Drivers by points: match/switch 15 (18 pts), if/else 2 (nesting depth added 3). To reduce it, keep the dispatch but shrink the arms: move each non-trivial case body into its own named function (or onto the value being matched) so the dispatch reads one line per case, and group related cases into a sub-dispatch. Keep every case explicit, and make the behaviour for cases you do not list a deliberate choice rather than an accident."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"core/app/builder/JsonUtil.scala"},"region":{"startLine":14}}}],"partialFingerprints":{"codehealthFindingId/v1":"26f844544513e3dcd7a31f78059cf35e32e08b3465520fddc5bcaadb431f4b76"}},{"ruleId":"D2","level":"warning","message":{"text":"Versions.postByVersion (cognitive 17): Versions.postByVersion has cognitive complexity 17 (threshold 15). Drivers by points: match/switch 5 (15 pts), if/else 2 (nesting depth added 10). To reduce it, keep the dispatch but shrink the arms: move each non-trivial case body into its own named function (or onto the value being matched) so the dispatch reads one line per case, and group related cases into a sub-dispatch. Keep every case explicit, and make the behaviour for cases you do not list a deliberate choice rather than an accident. This shape REPEATS in the file: one other method here (Versions.putByApplicationKeyAndVersion) has the same decision points, in the same order, at the same nesting depths \u2014 so this is one pattern written twice rather than two separate problems. Splitting this body alone leaves the other exactly as it is. Where these are variations on one operation, the change that clears both is the shared one: lift the common shape into a single routine the variants call, parameterised by whatever genuinely differs between them, and keep in each method only the part that is not shared."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/controllers/Versions.scala"},"region":{"startLine":102}}}],"partialFingerprints":{"codehealthFindingId/v1":"53d5670c2ab9337a9f0cfd78f9401f974c1db9848afc7c49ca08b1c9ed131805"}},{"ruleId":"D2","level":"warning","message":{"text":"Versions.putByApplicationKeyAndVersion (cognitive 17): Versions.putByApplicationKeyAndVersion has cognitive complexity 17 (threshold 15). Drivers by points: match/switch 5 (15 pts), if/else 2 (nesting depth added 10). To reduce it, keep the dispatch but shrink the arms: move each non-trivial case body into its own named function (or onto the value being matched) so the dispatch reads one line per case, and group related cases into a sub-dispatch. Keep every case explicit, and make the behaviour for cases you do not list a deliberate choice rather than an accident. This shape REPEATS in the file: one other method here (Versions.postByVersion) has the same decision points, in the same order, at the same nesting depths \u2014 so this is one pattern written twice rather than two separate problems. Splitting this body alone leaves the other exactly as it is. Where these are variations on one operation, the change that clears both is the shared one: lift the common shape into a single routine the variants call, parameterised by whatever genuinely differs between them, and keep in each method only the part that is not shared."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/controllers/Versions.scala"},"region":{"startLine":150}}}],"partialFingerprints":{"codehealthFindingId/v1":"ab734a5af20f2d13d7f87aa64b3d6aeb8bed9d6adf3e7ba8d1b1ac11bf32b11d"}},{"ruleId":"D2","level":"warning","message":{"text":"InternalApplicationsDao.validate (cognitive 17): InternalApplicationsDao.validate has cognitive complexity 17 (threshold 15). Drivers by points: if/else 5 (9 pts), match/switch 5 (8 pts) (nesting depth added 7). The drivers above price the dispatch low by construction \u2014 a dispatch is charged once however many cases it lists, while each branch inside an arm is charged in full \u2014 so most of this count is what the case bodies hold, and the arms are where it can be reduced. To reduce it, keep the dispatch but shrink the arms: move each non-trivial case body into its own named function (or onto the value being matched) so the dispatch reads one line per case, and group related cases into a sub-dispatch. Keep every case explicit, and make the behaviour for cases you do not list a deliberate choice rather than an accident."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/db/InternalApplicationsDao.scala"},"region":{"startLine":57}}}],"partialFingerprints":{"codehealthFindingId/v1":"40a88b55d28117dc6c6a707a80d8ecdf517e9bfc012637bcfc226c02821e0d32"}},{"ruleId":"D2","level":"warning","message":{"text":"Parser.buildModels (cognitive 17): Parser.buildModels has cognitive complexity 17 (threshold 15). Drivers by points: match/switch 5 (11 pts), if/else 4 (6 pts) (nesting depth added 8). To reduce it, keep the dispatch but shrink the arms: move each non-trivial case body into its own named function (or onto the value being matched) so the dispatch reads one line per case, and group related cases into a sub-dispatch. Keep every case explicit, and make the behaviour for cases you do not list a deliberate choice rather than an accident."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"swagger/src/main/scala/io/apibuilder/swagger/Parser.scala"},"region":{"startLine":90}}}],"partialFingerprints":{"codehealthFindingId/v1":"4784e39781bad7203004a194e5a705da5352bc54cb39aa047a4d5caad0cb6ba4"}},{"ruleId":"D2","level":"warning","message":{"text":"DatatypeResolver.parse (cognitive 16): DatatypeResolver.parse has cognitive complexity 16 (threshold 15). Drivers by points: match/switch 4 (11 pts), if/else 2 (5 pts) (nesting depth added 10). To reduce it, keep the dispatch but shrink the arms: move each non-trivial case body into its own named function (or onto the value being matched) so the dispatch reads one line per case, and group related cases into a sub-dispatch. Keep every case explicit, and make the behaviour for cases you do not list a deliberate choice rather than an accident."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"lib/src/main/scala/Kind.scala"},"region":{"startLine":72}}}],"partialFingerprints":{"codehealthFindingId/v1":"4e66c385cb67a51a0c0655f6a52adcc64a92d53b4722e54077acd526f8460250"}},{"ruleId":"D4","level":"warning","message":{"text":"Members sharing a duplicated core (22 members, 50\u002B identical tokens): generated/app/db/ApplicationMovesDao.scala:354-365 | generated/app/db/ApplicationsDao.scala:331-342 | generated/app/db/AttributesDao.scala:271-282 | generated/app/db/ChangesDao.scala:382-393 | generated/app/db/EmailVerificationConfirmationsDao.scala:276-287 | generated/app/db/EmailVerificationsDao.scala:338-349 | generated/app/db/GeneratorInvocationsDao.scala:268-279 | generated/app/db/MembershipRequestsDao.scala:318-329 | generated/app/db/MembershipsDao.scala:318-329 | generated/app/db/OrganizationAttributeValuesDao.scala:336-347 | generated/app/db/OrganizationDomainsDao.scala:307-318 | generated/app/db/OrganizationsDao.scala:293-304 | generated/app/db/PasswordResetsDao.scala:327-338 | generated/app/db/SubscriptionsDao.scala:327-338 | generated/app/db/TokensDao.scala:318-329 | generated/app/db/UserPasswordsDao.scala:309-320 | generated/app/db/UsersDao.scala:304-315 | generated/app/db/VersionsDao.scala:340-351 | generated/app/db/WatchesDao.scala:316-327 | generated/app/db/cache/ServicesDao.scala:300-311 | generated/app/db/generators/GeneratorsDao.scala:306-317 | generated/app/db/generators/ServicesDao.scala:249-260 \u2014 These 22 members share a duplicated core: a run of at least 50 identical tokens appears in every one of them. That run is NOT broken out as duplicated-block rows below \u2014 it is what admitted this row, and the blocks below cover only the part of it that clears the block floor, so they understate the correspondence. Read the members as one construct written 22 times. The repair is at the members\u0027 grain \u2014 factor the shared implementation out once and have all of them call it with their differences as parameters or as an injected step, or, where the difference is systematic, generate them from one template. Extracting the individual blocks below is not the same fix: it leaves every body in place and the next edit still has to be made 22 times."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/ApplicationMovesDao.scala"},"region":{"startLine":354}}}],"partialFingerprints":{"codehealthFindingId/v1":"c33b528dc99ddbe1e7768fb24b462f6b302f7faacb78ed29758d3dd38e6faad8"}},{"ruleId":"D4","level":"warning","message":{"text":"Members sharing a duplicated core (21 members, 50\u002B identical tokens): generated/app/db/ApplicationMovesDao.scala:163-190 | generated/app/db/ApplicationsDao.scala:169-192 | generated/app/db/AttributesDao.scala:137-158 | generated/app/db/ChangesDao.scala:195-220 | generated/app/db/EmailVerificationConfirmationsDao.scala:129-152 | generated/app/db/EmailVerificationsDao.scala:163-188 | generated/app/db/MembershipRequestsDao.scala:149-174 | generated/app/db/MembershipsDao.scala:149-174 | generated/app/db/OrganizationAttributeValuesDao.scala:161-186 | generated/app/db/OrganizationDomainsDao.scala:141-166 | generated/app/db/OrganizationsDao.scala:153-174 | generated/app/db/PasswordResetsDao.scala:155-180 | generated/app/db/SubscriptionsDao.scala:155-180 | generated/app/db/TokensDao.scala:149-174 | generated/app/db/UserPasswordsDao.scala:153-176 | generated/app/db/UsersDao.scala:161-182 | generated/app/db/VersionsDao.scala:165-190 | generated/app/db/WatchesDao.scala:147-172 | generated/app/db/cache/ServicesDao.scala:147-170 | generated/app/db/generators/GeneratorsDao.scala:163-184 | generated/app/db/generators/ServicesDao.scala:121-142 \u2014 These 21 members share a duplicated core: a run of at least 50 identical tokens appears in every one of them. That run is NOT broken out as duplicated-block rows below \u2014 it is what admitted this row, and the blocks below cover only the part of it that clears the block floor, so they understate the correspondence. Read the members as one construct written 21 times. The repair is at the members\u0027 grain \u2014 factor the shared implementation out once and have all of them call it with their differences as parameters or as an injected step, or, where the difference is systematic, generate them from one template. Extracting the individual blocks below is not the same fix: it leaves every body in place and the next edit still has to be made 21 times."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/ApplicationMovesDao.scala"},"region":{"startLine":163}}}],"partialFingerprints":{"codehealthFindingId/v1":"1380112d6fe574eb32e366bb2fdf57fdb77e117396770f6bd0257e5fb1edc972"}},{"ruleId":"D4","level":"warning","message":{"text":"Members sharing a duplicated core (20 members, 50\u002B identical tokens): generated/app/db/ApplicationMovesDao.scala:426-431 | generated/app/db/ApplicationsDao.scala:404-409 | generated/app/db/AttributesDao.scala:344-349 | generated/app/db/ChangesDao.scala:454-459 | generated/app/db/EmailVerificationConfirmationsDao.scala:348-353 | generated/app/db/EmailVerificationsDao.scala:410-415 | generated/app/db/MembershipRequestsDao.scala:390-395 | generated/app/db/MembershipsDao.scala:390-395 | generated/app/db/OrganizationAttributeValuesDao.scala:409-414 | generated/app/db/OrganizationDomainsDao.scala:379-384 | generated/app/db/OrganizationsDao.scala:366-371 | generated/app/db/PasswordResetsDao.scala:399-404 | generated/app/db/SubscriptionsDao.scala:399-404 | generated/app/db/TokensDao.scala:390-395 | generated/app/db/UserPasswordsDao.scala:382-387 | generated/app/db/VersionsDao.scala:412-417 | generated/app/db/WatchesDao.scala:388-393 | generated/app/db/cache/ServicesDao.scala:372-377 | generated/app/db/generators/GeneratorsDao.scala:378-383 | generated/app/db/generators/ServicesDao.scala:321-326 \u2014 These 20 members share a duplicated core: a run of at least 50 identical tokens appears in every one of them. That run is NOT broken out as duplicated-block rows below \u2014 it is what admitted this row, and the blocks below cover only the part of it that clears the block floor, so they understate the correspondence. Read the members as one construct written 20 times. The repair is at the members\u0027 grain \u2014 factor the shared implementation out once and have all of them call it with their differences as parameters or as an injected step, or, where the difference is systematic, generate them from one template. Extracting the individual blocks below is not the same fix: it leaves every body in place and the next edit still has to be made 20 times."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/ApplicationMovesDao.scala"},"region":{"startLine":426}}}],"partialFingerprints":{"codehealthFindingId/v1":"b0a2f6e69ea5b0f4da29753c6b23a91626b56bae2b9208e15aefb83e70aab3b3"}},{"ruleId":"D4","level":"warning","message":{"text":"Members sharing a duplicated core (4 members, 50\u002B identical tokens): generated/app/db/GeneratorInvocationsDao.scala:132-153 | generated/app/db/OriginalsDao.scala:147-170 | generated/app/db/SessionsDao.scala:147-170 | generated/app/db/TasksDao.scala:206-235 \u2014 These 4 members share a duplicated core: a run of at least 50 identical tokens appears in every one of them. That run is NOT broken out as duplicated-block rows below \u2014 it is what admitted this row, and the blocks below cover only the part of it that clears the block floor, so they understate the correspondence. Read the members as one construct written 4 times. The repair is at the members\u0027 grain \u2014 factor the shared implementation out once and have all of them call it with their differences as parameters or as an injected step, or, where the difference is systematic, generate them from one template. Extracting the individual blocks below is not the same fix: it leaves every body in place and the next edit still has to be made 4 times."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/GeneratorInvocationsDao.scala"},"region":{"startLine":132}}}],"partialFingerprints":{"codehealthFindingId/v1":"031feef0fd1588e0f2d1443699288dc57bbb19aefbb3a516715ec003b7fa3075"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (19\u201321 lines \u00D7 2): api/app/controllers/Versions.scala:128-148 | api/app/controllers/Versions.scala:177-195 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. Read the line range as the matched WINDOW rather than a finished unit: at \u0060api/app/controllers/Versions.scala:128\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/controllers/Versions.scala"},"region":{"startLine":128}}}],"partialFingerprints":{"codehealthFindingId/v1":"aa619cc290f629cdb73d0fa3bff1bdf0acdc598ffbe5177c6005372d48b4caf4"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (20 lines \u00D7 2): api/app/controllers/Versions.scala:105-124 | api/app/controllers/Versions.scala:154-173 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. Read the line range as the matched WINDOW rather than a finished unit: at \u0060api/app/controllers/Versions.scala:105\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/controllers/Versions.scala"},"region":{"startLine":105}}}],"partialFingerprints":{"codehealthFindingId/v1":"bb01e8d885b61005fd8ed8997667495d74ce0f42493d925e6763fce1add04c13"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (17 lines \u00D7 2): api/app/processor/SyncGeneratorServiceProcessor.scala:98-114 | api/app/util/GeneratorServiceUtil.scala:92-108 \u2014 before extracting anything, compare \u0060api/app/processor/SyncGeneratorServiceProcessor.scala\u0060 and \u0060api/app/util/GeneratorServiceUtil.scala\u0060 as WHOLE FILES: this scan already matched 4 separate duplicated blocks between them, totalling at least 49 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. The two sit in different directories, so one cannot simply be deleted in favour of the other while both are reached separately: hoist the shared part into a location both already depend on and have each file call it, and retire whichever file turns out to have no caller of its own left. Extracting one helper per block leaves the fork in place. Each matched range is the entire body of the declaration above it, so the region is already a complete unit: move that whole declaration to the shared location and have each site call it, rather than lifting the lines out of their bodies. Any \u0060return\u0060 inside it is the body\u0027s own exit and keeps its meaning in the moved unit."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/processor/SyncGeneratorServiceProcessor.scala"},"region":{"startLine":98}}}],"partialFingerprints":{"codehealthFindingId/v1":"54499bea8e05d0d0e8872958983bf064730b301f12b077850e718c01d776a202"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (14 lines \u00D7 21): generated/app/db/ApplicationMovesDao.scala:177-190 | generated/app/db/ApplicationsDao.scala:179-192 | generated/app/db/AttributesDao.scala:145-158 | generated/app/db/ChangesDao.scala:207-220 | generated/app/db/EmailVerificationConfirmationsDao.scala:139-152 | generated/app/db/EmailVerificationsDao.scala:175-188 | generated/app/db/MembershipRequestsDao.scala:161-174 | generated/app/db/MembershipsDao.scala:161-174 | generated/app/db/OrganizationAttributeValuesDao.scala:173-186 | generated/app/db/OrganizationDomainsDao.scala:153-166 | generated/app/db/OrganizationsDao.scala:161-174 | generated/app/db/PasswordResetsDao.scala:167-180 | generated/app/db/SubscriptionsDao.scala:167-180 | generated/app/db/TokensDao.scala:161-174 | generated/app/db/UserPasswordsDao.scala:163-176 | generated/app/db/UsersDao.scala:169-182 | generated/app/db/VersionsDao.scala:177-190 | generated/app/db/WatchesDao.scala:159-172 | generated/app/db/cache/ServicesDao.scala:157-170 | generated/app/db/generators/GeneratorsDao.scala:171-184 | generated/app/db/generators/ServicesDao.scala:129-142 \u2014 before extracting anything, compare \u0060generated/app/db/ApplicationMovesDao.scala\u0060 and \u0060generated/app/db/ApplicationsDao.scala\u0060 as WHOLE FILES: this scan already matched 6 separate duplicated blocks between them, totalling at least 46 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/ApplicationMovesDao.scala:177\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that. \u2605 These copies have DRIFTED, and that is worth reading before extracting anything: just before the matched lines, \u0060generated/app/db/VersionsDao.scala:175\u0060 calls \u0060optionalIn2\u0060, \u0060Seq\u0060 and \u0060generated/app/db/ApplicationMovesDao.scala:176\u0060 does not \u2014 after which the two agree again for 3 more lines. One of those two behaviours is the intended one and the other is what a copy-paste left behind, so decide which BEFORE unifying them: extracting the shared part will silently settle it, and if the copy that skips the call is the wrong one, that bug is already live."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/ApplicationMovesDao.scala"},"region":{"startLine":177}}}],"partialFingerprints":{"codehealthFindingId/v1":"d44dacb281377aa409e0374a497a707823c9c46fd973c9b55032c51fae50ab27"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (14 lines \u00D7 4): generated/app/db/GeneratorInvocationsDao.scala:140-153 | generated/app/db/OriginalsDao.scala:157-170 | generated/app/db/SessionsDao.scala:157-170 | generated/app/db/TasksDao.scala:222-235 \u2014 before extracting anything, compare \u0060generated/app/db/OriginalsDao.scala\u0060 and \u0060generated/app/db/SessionsDao.scala\u0060 as WHOLE FILES: this scan already matched 6 separate duplicated blocks between them, totalling at least 45 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/GeneratorInvocationsDao.scala:140\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that. \u2605 These copies have DRIFTED, and that is worth reading before extracting anything: just before the matched lines, \u0060generated/app/db/TasksDao.scala:220\u0060 calls \u0060optionalIn2\u0060, \u0060Seq\u0060 and \u0060generated/app/db/GeneratorInvocationsDao.scala:139\u0060 does not \u2014 after which the two agree again for 2 more lines. One of those two behaviours is the intended one and the other is what a copy-paste left behind, so decide which BEFORE unifying them: extracting the shared part will silently settle it, and if the copy that skips the call is the wrong one, that bug is already live."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/GeneratorInvocationsDao.scala"},"region":{"startLine":140}}}],"partialFingerprints":{"codehealthFindingId/v1":"e073404a62e84d6ca70f22cf1ef624228869106f79096ac91c783dd4efc305da"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (14 lines \u00D7 2): api/app/db/InternalMembershipRequestsDao.scala:135-148 | api/app/db/InternalMembershipsDao.scala:168-181 \u2014 the copies sit in sibling files of one directory, so a shared home is within easy reach: extract the block into a single shared function the call sites can all reach \u2014 a file they already depend on, or a new one alongside them \u2014 and call it from both call sites, so a change lands once. Read the line range as the matched WINDOW rather than a finished unit: at \u0060api/app/db/InternalMembershipRequestsDao.scala:135\u0060 it does not close everything it opens, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that. \u2605 These copies have DRIFTED, and that is worth reading before extracting anything: just after the matched lines, \u0060api/app/db/InternalMembershipRequestsDao.scala:149\u0060 calls \u0060Some\u0060, \u0060OrderBy\u0060 and \u0060api/app/db/InternalMembershipsDao.scala:182\u0060 does not \u2014 after which the two agree again for 2 more lines. One of those two behaviours is the intended one and the other is what a copy-paste left behind, so decide which BEFORE unifying them: extracting the shared part will silently settle it, and if the copy that skips the call is the wrong one, that bug is already live."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/db/InternalMembershipRequestsDao.scala"},"region":{"startLine":135}}}],"partialFingerprints":{"codehealthFindingId/v1":"5456ab48ea898ce3e53c40c1b80fd652850ef26ae90286e3158a032d199488ee"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (13 lines \u00D7 2): api/app/processor/SyncGeneratorServiceProcessor.scala:42-54 | api/app/util/GeneratorServiceUtil.scala:34-46 \u2014 before extracting anything, compare \u0060api/app/processor/SyncGeneratorServiceProcessor.scala\u0060 and \u0060api/app/util/GeneratorServiceUtil.scala\u0060 as WHOLE FILES: this scan already matched 4 separate duplicated blocks between them, totalling at least 49 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. The two sit in different directories, so one cannot simply be deleted in favour of the other while both are reached separately: hoist the shared part into a location both already depend on and have each file call it, and retire whichever file turns out to have no caller of its own left. Extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060api/app/processor/SyncGeneratorServiceProcessor.scala:42\u0060 it does not close everything it opens, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/processor/SyncGeneratorServiceProcessor.scala"},"region":{"startLine":42}}}],"partialFingerprints":{"codehealthFindingId/v1":"be39705b467a6996082b8d02804f4f7dfed1245b18a1167c0ae98b8e57b032bd"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (13 lines \u00D7 2): app/app/controllers/Members.scala:120-132 | app/app/controllers/Members.scala:146-158 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. Read the line range as the matched WINDOW rather than a finished unit: at \u0060app/app/controllers/Members.scala:120\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/controllers/Members.scala"},"region":{"startLine":120}}}],"partialFingerprints":{"codehealthFindingId/v1":"4c11706d5ec112191138f6c788786c3b493885ae50aad080249e168f509caa8f"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (13 lines \u00D7 2): app/app/controllers/Versions.scala:79-91 | app/app/controllers/Versions.scala:136-148 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. Read the line range as the matched WINDOW rather than a finished unit: at \u0060app/app/controllers/Versions.scala:79\u0060 it does not close everything it opens, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/controllers/Versions.scala"},"region":{"startLine":79}}}],"partialFingerprints":{"codehealthFindingId/v1":"a95cf62d5b24f6375ef1025453780d74b146b4d87348f94d7853c28bf8350a5f"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (12 lines \u00D7 3): generated/app/db/EmailVerificationsDao.scala:142-153 | generated/app/db/PasswordResetsDao.scala:134-145 | generated/app/db/TokensDao.scala:128-139 \u2014 before extracting anything, compare \u0060generated/app/db/EmailVerificationsDao.scala\u0060 and \u0060generated/app/db/PasswordResetsDao.scala\u0060 as WHOLE FILES: this scan already matched 12 separate duplicated blocks between them, totalling at least 87 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Each matched range is the entire body of the declaration above it, so the region is already a complete unit: move that whole declaration to the shared location and have each site call it, rather than lifting the lines out of their bodies. Any \u0060return\u0060 inside it is the body\u0027s own exit and keeps its meaning in the moved unit."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/EmailVerificationsDao.scala"},"region":{"startLine":142}}}],"partialFingerprints":{"codehealthFindingId/v1":"fc95e89185436c8b17a8bb7c0ae517e5d588e5972fe835823b9db77bfa5dbf2b"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (12 lines \u00D7 3): generated/app/db/MembershipRequestsDao.scala:128-139 | generated/app/db/MembershipsDao.scala:128-139 | generated/app/db/SubscriptionsDao.scala:134-145 \u2014 before extracting anything, compare \u0060generated/app/db/MembershipRequestsDao.scala\u0060 and \u0060generated/app/db/MembershipsDao.scala\u0060 as WHOLE FILES: this scan already matched 14 separate duplicated blocks between them, totalling at least 101 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Each matched range is the entire body of the declaration above it, so the region is already a complete unit: move that whole declaration to the shared location and have each site call it, rather than lifting the lines out of their bodies. Any \u0060return\u0060 inside it is the body\u0027s own exit and keeps its meaning in the moved unit."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/MembershipRequestsDao.scala"},"region":{"startLine":128}}}],"partialFingerprints":{"codehealthFindingId/v1":"922dcff76f860acf195f331f6d83cdcdd13b03dbdbd424636b516ddfc72682f2"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (11 lines \u00D7 2): generated/app/db/TasksDao.scala:177-187 | generated/app/db/TasksDao.scala:211-221 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/TasksDao.scala"},"region":{"startLine":177}}}],"partialFingerprints":{"codehealthFindingId/v1":"fd863fc04eb2904dbbcd6b3171eb2e2da5300278c8453b99501575c12051b312"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (10 lines \u00D7 2): api/app/processor/SyncGeneratorServiceProcessor.scala:86-95 | api/app/util/GeneratorServiceUtil.scala:80-89 \u2014 before extracting anything, compare \u0060api/app/processor/SyncGeneratorServiceProcessor.scala\u0060 and \u0060api/app/util/GeneratorServiceUtil.scala\u0060 as WHOLE FILES: this scan already matched 4 separate duplicated blocks between them, totalling at least 49 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. The two sit in different directories, so one cannot simply be deleted in favour of the other while both are reached separately: hoist the shared part into a location both already depend on and have each file call it, and retire whichever file turns out to have no caller of its own left. Extracting one helper per block leaves the fork in place. Each matched range is the entire body of the declaration above it, so the region is already a complete unit: move that whole declaration to the shared location and have each site call it, rather than lifting the lines out of their bodies. Any \u0060return\u0060 inside it is the body\u0027s own exit and keeps its meaning in the moved unit."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/processor/SyncGeneratorServiceProcessor.scala"},"region":{"startLine":86}}}],"partialFingerprints":{"codehealthFindingId/v1":"90b9b3102ef2818017331a004bccccefc8b3f5a67204f02c6c5a64b37fa38502"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (10 lines \u00D7 2): app/app/controllers/Versions.scala:301-310 | app/app/controllers/Versions.scala:316-325 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. Read the line range as the matched WINDOW rather than a finished unit: at \u0060app/app/controllers/Versions.scala:301\u0060 it runs out through the closing brace of the declaration holding it \u2014 the window is that declaration\u0027s tail, not a fragment that begins part-way through something, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/controllers/Versions.scala"},"region":{"startLine":301}}}],"partialFingerprints":{"codehealthFindingId/v1":"6806e3e65c94feae78a49ca74245fd65f9b8f790cb1e7699098ac53f38463d41"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (9 lines \u00D7 3): app/app/controllers/Versions.scala:82-90 | app/app/controllers/Versions.scala:120-128 | app/app/controllers/Versions.scala:139-147 \u2014 all 3 copies are in the same file, so extract the block into one function there and call it from every one of those sites \u2014 resolving only two of them leaves the rest to drift apart the first time one is edited. Read the line range as the matched WINDOW rather than a finished unit: at \u0060app/app/controllers/Versions.scala:82\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/controllers/Versions.scala"},"region":{"startLine":82}}}],"partialFingerprints":{"codehealthFindingId/v1":"ab06ffddaecff2cb88805822a49f9a6d569f1b7f1d117822cd1e3d7e0aa14c5c"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (9 lines \u00D7 2): generated/app/db/ApplicationMovesDao.scala:138-146 | generated/app/db/ApplicationMovesDao.scala:168-176 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/ApplicationMovesDao.scala"},"region":{"startLine":138}}}],"partialFingerprints":{"codehealthFindingId/v1":"5ec9305153531ba2fcef7c9494a8781f28c0a25b422078755216b56ecf097142"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (8 lines \u00D7 2): api/app/controllers/Applications.scala:50-57 | api/app/controllers/Applications.scala:72-79 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. Read the line range as the matched WINDOW rather than a finished unit: at \u0060api/app/controllers/Applications.scala:50\u0060 it does not close everything it opens, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/controllers/Applications.scala"},"region":{"startLine":50}}}],"partialFingerprints":{"codehealthFindingId/v1":"f0387c77a29984c453bd106a874d3774e2a3161accb0ac8a583f2c99d5becbae"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (8 lines \u00D7 2): api/app/lib/ServiceDiff.scala:519-526 | api/app/lib/ServiceDiff.scala:546-553 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. Read the line range as the matched WINDOW rather than a finished unit: at \u0060api/app/lib/ServiceDiff.scala:519\u0060 it does not close everything it opens, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/lib/ServiceDiff.scala"},"region":{"startLine":519}}}],"partialFingerprints":{"codehealthFindingId/v1":"5ee179745af6f04e250900d93804dca75db8bf4caf846a642bf1a3352d8391c8"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (7 lines \u00D7 2): core/app/builder/api_json/InternalApiJsonForm.scala:831-837 | core/app/builder/api_json/InternalApiJsonForm.scala:908-914 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. \u2605 These copies have DRIFTED, and that is worth reading before extracting anything: just before the matched lines, \u0060core/app/builder/api_json/InternalApiJsonForm.scala:907\u0060 calls \u0060asOptString\u0060 and \u0060core/app/builder/api_json/InternalApiJsonForm.scala:830\u0060 does not \u2014 after which the two agree again for 2 more lines. One of those two behaviours is the intended one and the other is what a copy-paste left behind, so decide which BEFORE unifying them: extracting the shared part will silently settle it, and if the copy that skips the call is the wrong one, that bug is already live."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"core/app/builder/api_json/InternalApiJsonForm.scala"},"region":{"startLine":831}}}],"partialFingerprints":{"codehealthFindingId/v1":"a2ab9bdc61cdddadd3ce8c87a70f677fc2ebae25369aa8eeba985cdf62346fbd"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (7 lines \u00D7 2): generated/app/db/OriginalsDao.scala:295-301 | generated/app/db/SessionsDao.scala:295-301 \u2014 before extracting anything, compare \u0060generated/app/db/OriginalsDao.scala\u0060 and \u0060generated/app/db/SessionsDao.scala\u0060 as WHOLE FILES: this scan already matched 6 separate duplicated blocks between them, totalling at least 45 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/OriginalsDao.scala:295\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/OriginalsDao.scala"},"region":{"startLine":295}}}],"partialFingerprints":{"codehealthFindingId/v1":"843b95aa21ff03e4f6d95329887b06313105227c9c34f894a9f2c109339d8492"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (7 lines \u00D7 2): generated/app/db/VersionsDao.scala:144-150 | generated/app/db/VersionsDao.scala:170-176 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/VersionsDao.scala"},"region":{"startLine":144}}}],"partialFingerprints":{"codehealthFindingId/v1":"cf76412219363e6e9aab93e075c6df52f7b3a45c8fb07ddbc7a01ad84dd7ec8d"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (7 lines \u00D7 2): generated/app/db/cache/ServicesDao.scala:148-154 | generated/app/db/generators/ServicesDao.scala:122-128 \u2014 \u0060generated/app/db/cache/ServicesDao.scala\u0060 and \u0060generated/app/db/generators/ServicesDao.scala\u0060 are one unit implemented once per sibling directory, so they are most likely parallel implementations of one contract rather than a copy of each other \u2014 this scan matched 7 separate duplicated blocks between them, totalling at least 53 lines. If both are selected at run time, neither can be retired in favour of the other, and the lines that DIFFER between them are the reason both exist. The move that pays here is to hoist the identical part into a shared location the whole family can reach and give what differs a parameter or a seam, so a change lands once instead of once per sibling; extracting one helper per block leaves every sibling to drift on its own. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/cache/ServicesDao.scala:148\u0060 it does not close everything it opens, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that. \u2605 These copies have DRIFTED, and that is worth reading before extracting anything: just after the matched lines, \u0060generated/app/db/cache/ServicesDao.scala:155\u0060 calls \u0060equals\u0060, \u0060optionalIn\u0060 and \u0060generated/app/db/generators/ServicesDao.scala:129\u0060 does not \u2014 after which the two agree again for 3 more lines. One of those two behaviours is the intended one and the other is what a copy-paste left behind, so decide which BEFORE unifying them: extracting the shared part will silently settle it, and if the copy that skips the call is the wrong one, that bug is already live."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/cache/ServicesDao.scala"},"region":{"startLine":148}}}],"partialFingerprints":{"codehealthFindingId/v1":"986dadae56a60bc8436f2c0a5d01a4539d3579ff7ad9d34dd088e9276307d461"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (6 lines \u00D7 22): generated/app/db/ApplicationMovesDao.scala:360-365 | generated/app/db/ApplicationsDao.scala:337-342 | generated/app/db/AttributesDao.scala:277-282 | generated/app/db/ChangesDao.scala:388-393 | generated/app/db/EmailVerificationConfirmationsDao.scala:282-287 | generated/app/db/EmailVerificationsDao.scala:344-349 | generated/app/db/GeneratorInvocationsDao.scala:274-279 | generated/app/db/MembershipRequestsDao.scala:324-329 | generated/app/db/MembershipsDao.scala:324-329 | generated/app/db/OrganizationAttributeValuesDao.scala:342-347 | generated/app/db/OrganizationDomainsDao.scala:313-318 | generated/app/db/OrganizationsDao.scala:299-304 | generated/app/db/PasswordResetsDao.scala:333-338 | generated/app/db/SubscriptionsDao.scala:333-338 | generated/app/db/TokensDao.scala:324-329 | generated/app/db/UserPasswordsDao.scala:315-320 | generated/app/db/UsersDao.scala:310-315 | generated/app/db/VersionsDao.scala:346-351 | generated/app/db/WatchesDao.scala:322-327 | generated/app/db/cache/ServicesDao.scala:306-311 | generated/app/db/generators/GeneratorsDao.scala:312-317 | generated/app/db/generators/ServicesDao.scala:255-260 \u2014 before extracting anything, compare \u0060generated/app/db/ApplicationMovesDao.scala\u0060 and \u0060generated/app/db/ApplicationsDao.scala\u0060 as WHOLE FILES: this scan already matched 6 separate duplicated blocks between them, totalling at least 46 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/ApplicationMovesDao.scala:360\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/ApplicationMovesDao.scala"},"region":{"startLine":360}}}],"partialFingerprints":{"codehealthFindingId/v1":"859defeb810aab39298a73fd068fcc05bf8f97e401a6741b464e358ae4415376"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (6 lines \u00D7 2): api/app/lib/ServiceDiff.scala:174-179 | api/app/lib/ServiceDiff.scala:272-277 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/lib/ServiceDiff.scala"},"region":{"startLine":174}}}],"partialFingerprints":{"codehealthFindingId/v1":"f0e94b3b5333518e9bfecae4ab4fbc1b5e5dfff0f08f4f59aa161d40026ceaf0"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (6 lines \u00D7 2): app/app/controllers/Code.scala:32-37 | app/app/controllers/Code.scala:83-88 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. Read the line range as the matched WINDOW rather than a finished unit: at \u0060app/app/controllers/Code.scala:32\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/controllers/Code.scala"},"region":{"startLine":32}}}],"partialFingerprints":{"codehealthFindingId/v1":"d14bd31482d8248aca7c7ed041f71bd8cbda59541caa9f8a7b2206b03af61db6"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (6 lines \u00D7 2): core/app/builder/api_json/ServiceBuilder.scala:134-139 | core/app/builder/api_json/ServiceBuilder.scala:176-181 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. Read the line range as the matched WINDOW rather than a finished unit: at \u0060core/app/builder/api_json/ServiceBuilder.scala:134\u0060 it runs out through the closing brace of the declaration holding it \u2014 the window is that declaration\u0027s tail, not a fragment that begins part-way through something, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"core/app/builder/api_json/ServiceBuilder.scala"},"region":{"startLine":134}}}],"partialFingerprints":{"codehealthFindingId/v1":"9281f394d2976447c7b532a05d2bfaad3737f4309e7d283dcc7836d803407316"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (5 lines \u00D7 20): generated/app/db/ApplicationMovesDao.scala:427-431 | generated/app/db/ApplicationsDao.scala:405-409 | generated/app/db/AttributesDao.scala:345-349 | generated/app/db/ChangesDao.scala:455-459 | generated/app/db/EmailVerificationConfirmationsDao.scala:349-353 | generated/app/db/EmailVerificationsDao.scala:411-415 | generated/app/db/MembershipRequestsDao.scala:391-395 | generated/app/db/MembershipsDao.scala:391-395 | generated/app/db/OrganizationAttributeValuesDao.scala:410-414 | generated/app/db/OrganizationDomainsDao.scala:380-384 | generated/app/db/OrganizationsDao.scala:367-371 | generated/app/db/PasswordResetsDao.scala:400-404 | generated/app/db/SubscriptionsDao.scala:400-404 | generated/app/db/TokensDao.scala:391-395 | generated/app/db/UserPasswordsDao.scala:383-387 | generated/app/db/VersionsDao.scala:413-417 | generated/app/db/WatchesDao.scala:389-393 | generated/app/db/cache/ServicesDao.scala:373-377 | generated/app/db/generators/GeneratorsDao.scala:379-383 | generated/app/db/generators/ServicesDao.scala:322-326 \u2014 before extracting anything, compare \u0060generated/app/db/ApplicationMovesDao.scala\u0060 and \u0060generated/app/db/ApplicationsDao.scala\u0060 as WHOLE FILES: this scan already matched 6 separate duplicated blocks between them, totalling at least 46 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Each matched range is the entire body of the declaration above it, so the region is already a complete unit: move that whole declaration to the shared location and have each site call it, rather than lifting the lines out of their bodies. Any \u0060return\u0060 inside it is the body\u0027s own exit and keeps its meaning in the moved unit."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/ApplicationMovesDao.scala"},"region":{"startLine":427}}}],"partialFingerprints":{"codehealthFindingId/v1":"c40f2cfdd731bdee288796afa19b69e9bb8e3987a02282a13faa7fa800dec026"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (5 lines \u00D7 3): api/app/lib/ServiceDiff.scala:175-179 | api/app/lib/ServiceDiff.scala:273-277 | api/app/lib/ServiceDiff.scala:347-351 \u2014 all 3 copies are in the same file, so extract the block into one function there and call it from every one of those sites \u2014 resolving only two of them leaves the rest to drift apart the first time one is edited."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/lib/ServiceDiff.scala"},"region":{"startLine":175}}}],"partialFingerprints":{"codehealthFindingId/v1":"821f5771fd8be682ad279e92fcd7d007baa2de7c05caab553d760b1b3c15fcf9"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (5 lines \u00D7 2): app/app/controllers/Members.scala:108-112 | app/app/controllers/Members.scala:135-139 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. Read the line range as the matched WINDOW rather than a finished unit: at \u0060app/app/controllers/Members.scala:108\u0060 it does not close everything it opens, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/controllers/Members.scala"},"region":{"startLine":108}}}],"partialFingerprints":{"codehealthFindingId/v1":"9b6a085eb31d3b05672d61a146cbea819befb337174613dff4e6eacaeea57164"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (5 lines \u00D7 2): core/app/builder/api_json/InternalApiJsonForm.scala:515-519 | core/app/builder/api_json/InternalApiJsonForm.scala:537-541 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited. \u2605 These copies have DRIFTED, and that is worth reading before extracting anything: just after the matched lines, \u0060core/app/builder/api_json/InternalApiJsonForm.scala:543\u0060 calls \u0060fromJson\u0060, \u0060getOrElse\u0060 and \u0060core/app/builder/api_json/InternalApiJsonForm.scala:521\u0060 does not \u2014 after which the two agree again for 2 more lines. One of those two behaviours is the intended one and the other is what a copy-paste left behind, so decide which BEFORE unifying them: extracting the shared part will silently settle it, and if the copy that skips the call is the wrong one, that bug is already live."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"core/app/builder/api_json/InternalApiJsonForm.scala"},"region":{"startLine":515}}}],"partialFingerprints":{"codehealthFindingId/v1":"65f54de6945e9069514d33b3fd0d6078a3904a02192adf2ae45c92f88658bade"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (23 lines \u00D7 2): api/app/models/MembershipRequestsModel.scala:19-41 | api/app/models/MembershipsModel.scala:19-41 \u2014 the copies sit in sibling files of one directory, so a shared home is within easy reach: extract the block into a single shared function the call sites can all reach \u2014 a file they already depend on, or a new one alongside them \u2014 and call it from both call sites, so a change lands once."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/models/MembershipRequestsModel.scala"},"region":{"startLine":19}}}],"partialFingerprints":{"codehealthFindingId/v1":"600673be0a637e8c3b229618de4d1cd4c4b6cc6be4410e4c97f1d428abafc665"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (12 lines \u00D7 2): api/app/lib/Config.scala:26-37 | app/app/lib/Config.scala:26-37 \u2014 before extracting anything, compare \u0060api/app/lib/Config.scala\u0060 and \u0060app/app/lib/Config.scala\u0060 as WHOLE FILES: 100% of the shorter file\u0027s lines also appear in the other, so this reads as one file having been copied from the other rather than as a helper waiting to be extracted. The 1 duplicated block(s) this scan matched between them are fragments of that copy, not the extent of it \u2014 treat the file pair as the unit. The two sit in different directories, so one cannot simply be deleted in favour of the other while both are reached separately: hoist the shared part into a location both already depend on and have each file call it, and retire whichever file turns out to have no caller of its own left. Extracting one helper per block leaves the fork in place."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/lib/Config.scala"},"region":{"startLine":26}}}],"partialFingerprints":{"codehealthFindingId/v1":"b9a5def146454dcdc689516aca04882335df80eaa747c600111629810441b1f0"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (9 lines \u00D7 2): api/app/processor/SyncGeneratorServiceProcessor.scala:66-74 | api/app/util/GeneratorServiceUtil.scala:60-68 \u2014 before extracting anything, compare \u0060api/app/processor/SyncGeneratorServiceProcessor.scala\u0060 and \u0060api/app/util/GeneratorServiceUtil.scala\u0060 as WHOLE FILES: this scan already matched 4 separate duplicated blocks between them, totalling at least 49 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. The two sit in different directories, so one cannot simply be deleted in favour of the other while both are reached separately: hoist the shared part into a location both already depend on and have each file call it, and retire whichever file turns out to have no caller of its own left. Extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060api/app/processor/SyncGeneratorServiceProcessor.scala:66\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/processor/SyncGeneratorServiceProcessor.scala"},"region":{"startLine":66}}}],"partialFingerprints":{"codehealthFindingId/v1":"90f3260ea8a4dab3992ebd3c993b73c8d09aff021ef55aeddf244fcfa97faec8"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (5 lines \u00D7 2): avro/src/main/scala/io/apibuilder/avro/Parser.scala:122-126 | swagger/src/main/scala/io/apibuilder/swagger/Util.scala:25-29 \u2014 the copies span different directories, so extracting a shared function means choosing where it lives: put it somewhere both call sites can already reach \u2014 a location they all depend on today, or a new shared one if there is none \u2014 and call it from each site; until then, every change has to be made twice."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"avro/src/main/scala/io/apibuilder/avro/Parser.scala"},"region":{"startLine":122}}}],"partialFingerprints":{"codehealthFindingId/v1":"cd8ff5f59bfb6cf3680b9dc8a722d571b955fca8564bdacc85f9e6184c92cd0a"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (9 lines \u00D7 20): generated/app/db/ApplicationMovesDao.scala:331-339 | generated/app/db/ApplicationsDao.scala:308-316 | generated/app/db/AttributesDao.scala:248-256 | generated/app/db/ChangesDao.scala:359-367 | generated/app/db/EmailVerificationConfirmationsDao.scala:253-261 | generated/app/db/EmailVerificationsDao.scala:315-323 | generated/app/db/MembershipRequestsDao.scala:295-303 | generated/app/db/MembershipsDao.scala:295-303 | generated/app/db/OrganizationAttributeValuesDao.scala:313-321 | generated/app/db/OrganizationDomainsDao.scala:284-292 | generated/app/db/OrganizationsDao.scala:270-278 | generated/app/db/PasswordResetsDao.scala:304-312 | generated/app/db/SubscriptionsDao.scala:304-312 | generated/app/db/TokensDao.scala:295-303 | generated/app/db/UserPasswordsDao.scala:286-294 | generated/app/db/VersionsDao.scala:317-325 | generated/app/db/WatchesDao.scala:293-301 | generated/app/db/cache/ServicesDao.scala:277-285 | generated/app/db/generators/GeneratorsDao.scala:283-291 | generated/app/db/generators/ServicesDao.scala:226-234 \u2014 before extracting anything, compare \u0060generated/app/db/ApplicationMovesDao.scala\u0060 and \u0060generated/app/db/ApplicationsDao.scala\u0060 as WHOLE FILES: this scan already matched 6 separate duplicated blocks between them, totalling at least 46 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/ApplicationMovesDao.scala:331\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/ApplicationMovesDao.scala"},"region":{"startLine":331}}}],"partialFingerprints":{"codehealthFindingId/v1":"da579684070275474a371dbd041b32e4239760c48917126a994302196dea3063"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (6 lines \u00D7 20): generated/app/db/ApplicationMovesDao.scala:467-472 | generated/app/db/ApplicationsDao.scala:445-450 | generated/app/db/AttributesDao.scala:385-390 | generated/app/db/ChangesDao.scala:495-500 | generated/app/db/EmailVerificationConfirmationsDao.scala:389-394 | generated/app/db/EmailVerificationsDao.scala:451-456 | generated/app/db/MembershipRequestsDao.scala:431-436 | generated/app/db/MembershipsDao.scala:431-436 | generated/app/db/OrganizationAttributeValuesDao.scala:450-455 | generated/app/db/OrganizationDomainsDao.scala:420-425 | generated/app/db/OrganizationsDao.scala:407-412 | generated/app/db/PasswordResetsDao.scala:440-445 | generated/app/db/SubscriptionsDao.scala:440-445 | generated/app/db/TokensDao.scala:431-436 | generated/app/db/UserPasswordsDao.scala:423-428 | generated/app/db/VersionsDao.scala:453-458 | generated/app/db/WatchesDao.scala:429-434 | generated/app/db/cache/ServicesDao.scala:413-418 | generated/app/db/generators/GeneratorsDao.scala:419-424 | generated/app/db/generators/ServicesDao.scala:362-367 \u2014 before extracting anything, compare \u0060generated/app/db/ApplicationMovesDao.scala\u0060 and \u0060generated/app/db/ApplicationsDao.scala\u0060 as WHOLE FILES: this scan already matched 6 separate duplicated blocks between them, totalling at least 46 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/ApplicationMovesDao.scala:467\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/ApplicationMovesDao.scala"},"region":{"startLine":467}}}],"partialFingerprints":{"codehealthFindingId/v1":"59dfb48a895d1993b63267e1fbe632d5caedbda7204c3c85d9e8f2b9db7ac51f"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (6 lines \u00D7 20): generated/app/db/ApplicationMovesDao.scala:487-492 | generated/app/db/ApplicationsDao.scala:465-470 | generated/app/db/AttributesDao.scala:405-410 | generated/app/db/ChangesDao.scala:515-520 | generated/app/db/EmailVerificationConfirmationsDao.scala:409-414 | generated/app/db/EmailVerificationsDao.scala:471-476 | generated/app/db/MembershipRequestsDao.scala:451-456 | generated/app/db/MembershipsDao.scala:451-456 | generated/app/db/OrganizationAttributeValuesDao.scala:470-475 | generated/app/db/OrganizationDomainsDao.scala:440-445 | generated/app/db/OrganizationsDao.scala:427-432 | generated/app/db/PasswordResetsDao.scala:460-465 | generated/app/db/SubscriptionsDao.scala:460-465 | generated/app/db/TokensDao.scala:451-456 | generated/app/db/UserPasswordsDao.scala:443-448 | generated/app/db/VersionsDao.scala:473-478 | generated/app/db/WatchesDao.scala:449-454 | generated/app/db/cache/ServicesDao.scala:433-438 | generated/app/db/generators/GeneratorsDao.scala:439-444 | generated/app/db/generators/ServicesDao.scala:382-387 \u2014 before extracting anything, compare \u0060generated/app/db/ApplicationMovesDao.scala\u0060 and \u0060generated/app/db/ApplicationsDao.scala\u0060 as WHOLE FILES: this scan already matched 6 separate duplicated blocks between them, totalling at least 46 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/ApplicationMovesDao.scala:487\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/ApplicationMovesDao.scala"},"region":{"startLine":487}}}],"partialFingerprints":{"codehealthFindingId/v1":"b88de4b69f6a8ac4500afd178d2cf17e8d0d7cf54b2b175f461bf8ce8ce33f37"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (6 lines \u00D7 4): generated/app/db/ApplicationMovesDao.scala:507-512 | generated/app/db/ChangesDao.scala:535-540 | generated/app/db/VersionsDao.scala:493-498 | generated/app/db/WatchesDao.scala:509-514 \u2014 before extracting anything, compare \u0060generated/app/db/ApplicationMovesDao.scala\u0060 and \u0060generated/app/db/ChangesDao.scala\u0060 as WHOLE FILES: this scan already matched 8 separate duplicated blocks between them, totalling at least 58 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/ApplicationMovesDao.scala:507\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/ApplicationMovesDao.scala"},"region":{"startLine":507}}}],"partialFingerprints":{"codehealthFindingId/v1":"1f7140b89c81dd5c315e12270c67d6201ab0b615260b2d99ac0be9f648d819ef"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (6 lines \u00D7 4): generated/app/db/ApplicationMovesDao.scala:527-532 | generated/app/db/ChangesDao.scala:555-560 | generated/app/db/VersionsDao.scala:513-518 | generated/app/db/WatchesDao.scala:529-534 \u2014 before extracting anything, compare \u0060generated/app/db/ApplicationMovesDao.scala\u0060 and \u0060generated/app/db/ChangesDao.scala\u0060 as WHOLE FILES: this scan already matched 8 separate duplicated blocks between them, totalling at least 58 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/ApplicationMovesDao.scala:527\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/ApplicationMovesDao.scala"},"region":{"startLine":527}}}],"partialFingerprints":{"codehealthFindingId/v1":"55ddab989f392a59bcfec22118f1fbff77469f2b80e3019193f838c655381f7b"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (7 lines \u00D7 5): generated/app/db/ApplicationsDao.scala:383-389 | generated/app/db/AttributesDao.scala:323-329 | generated/app/db/OrganizationAttributeValuesDao.scala:388-394 | generated/app/db/OrganizationsDao.scala:345-351 | generated/app/db/UserPasswordsDao.scala:361-367 \u2014 before extracting anything, compare \u0060generated/app/db/ApplicationsDao.scala\u0060 and \u0060generated/app/db/AttributesDao.scala\u0060 as WHOLE FILES: this scan already matched 7 separate duplicated blocks between them, totalling at least 53 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/ApplicationsDao.scala:383\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/ApplicationsDao.scala"},"region":{"startLine":383}}}],"partialFingerprints":{"codehealthFindingId/v1":"00ba0f0dcd8fa09e205895cf53286094b38d8976a2f27da290f3d266340ddd75"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (6 lines \u00D7 6): generated/app/db/ApplicationsDao.scala:485-490 | generated/app/db/MembershipRequestsDao.scala:471-476 | generated/app/db/MembershipsDao.scala:471-476 | generated/app/db/OrganizationAttributeValuesDao.scala:530-535 | generated/app/db/OrganizationDomainsDao.scala:460-465 | generated/app/db/SubscriptionsDao.scala:480-485 \u2014 before extracting anything, compare \u0060generated/app/db/ApplicationsDao.scala\u0060 and \u0060generated/app/db/MembershipRequestsDao.scala\u0060 as WHOLE FILES: this scan already matched 8 separate duplicated blocks between them, totalling at least 58 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/ApplicationsDao.scala:485\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/ApplicationsDao.scala"},"region":{"startLine":485}}}],"partialFingerprints":{"codehealthFindingId/v1":"813d831824edf80228950395da663f42f2f053e17f207b733ba3495623cd66af"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (6 lines \u00D7 6): generated/app/db/ApplicationsDao.scala:505-510 | generated/app/db/MembershipRequestsDao.scala:491-496 | generated/app/db/MembershipsDao.scala:491-496 | generated/app/db/OrganizationAttributeValuesDao.scala:550-555 | generated/app/db/OrganizationDomainsDao.scala:480-485 | generated/app/db/SubscriptionsDao.scala:500-505 \u2014 before extracting anything, compare \u0060generated/app/db/ApplicationsDao.scala\u0060 and \u0060generated/app/db/MembershipRequestsDao.scala\u0060 as WHOLE FILES: this scan already matched 8 separate duplicated blocks between them, totalling at least 58 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/ApplicationsDao.scala:505\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/ApplicationsDao.scala"},"region":{"startLine":505}}}],"partialFingerprints":{"codehealthFindingId/v1":"47614841aedc5f40dfad74e72595e44e5ec03cbdc580e2ea85cdf9df8f140ddb"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (9 lines \u00D7 5): generated/app/db/AttributesDao.scala:123-131 | generated/app/db/OrganizationsDao.scala:139-147 | generated/app/db/UsersDao.scala:147-155 | generated/app/db/generators/GeneratorsDao.scala:149-157 | generated/app/db/generators/ServicesDao.scala:107-115 \u2014 before extracting anything, compare \u0060generated/app/db/AttributesDao.scala\u0060 and \u0060generated/app/db/OrganizationsDao.scala\u0060 as WHOLE FILES: this scan already matched 8 separate duplicated blocks between them, totalling at least 62 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/AttributesDao.scala:123\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/AttributesDao.scala"},"region":{"startLine":123}}}],"partialFingerprints":{"codehealthFindingId/v1":"6f93302d16567d805e212f169fe5f9b86d8da669235bf24683148f99fdbdf66a"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (5 lines \u00D7 3): generated/app/db/EmailVerificationsDao.scala:124-128 | generated/app/db/PasswordResetsDao.scala:116-120 | generated/app/db/TokensDao.scala:110-114 \u2014 before extracting anything, compare \u0060generated/app/db/EmailVerificationsDao.scala\u0060 and \u0060generated/app/db/PasswordResetsDao.scala\u0060 as WHOLE FILES: this scan already matched 12 separate duplicated blocks between them, totalling at least 87 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/EmailVerificationsDao.scala:124\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/EmailVerificationsDao.scala"},"region":{"startLine":124}}}],"partialFingerprints":{"codehealthFindingId/v1":"667149a04108090a0320f327d03677e6c847363717f3a49853f2bfb9fb5a4ebf"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (6 lines \u00D7 3): generated/app/db/EmailVerificationsDao.scala:491-496 | generated/app/db/PasswordResetsDao.scala:480-485 | generated/app/db/TokensDao.scala:471-476 \u2014 before extracting anything, compare \u0060generated/app/db/EmailVerificationsDao.scala\u0060 and \u0060generated/app/db/PasswordResetsDao.scala\u0060 as WHOLE FILES: this scan already matched 12 separate duplicated blocks between them, totalling at least 87 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/EmailVerificationsDao.scala:491\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/EmailVerificationsDao.scala"},"region":{"startLine":491}}}],"partialFingerprints":{"codehealthFindingId/v1":"3253244a8b4d9b0d14277bc591268524175d04b9c276125c6c33c3948ea6700e"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (6 lines \u00D7 3): generated/app/db/EmailVerificationsDao.scala:511-516 | generated/app/db/PasswordResetsDao.scala:500-505 | generated/app/db/TokensDao.scala:491-496 \u2014 before extracting anything, compare \u0060generated/app/db/EmailVerificationsDao.scala\u0060 and \u0060generated/app/db/PasswordResetsDao.scala\u0060 as WHOLE FILES: this scan already matched 12 separate duplicated blocks between them, totalling at least 87 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/EmailVerificationsDao.scala:511\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/EmailVerificationsDao.scala"},"region":{"startLine":511}}}],"partialFingerprints":{"codehealthFindingId/v1":"e7d7f77f32cf45b40c68f1f119c96e7c4052b40828b5394872a523bfed159a31"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (6 lines \u00D7 9): generated/app/db/EmailVerificationsDao.scala:531-536 | generated/app/db/MembershipRequestsDao.scala:511-516 | generated/app/db/MembershipsDao.scala:511-516 | generated/app/db/PasswordResetsDao.scala:520-525 | generated/app/db/SessionsDao.scala:444-449 | generated/app/db/SubscriptionsDao.scala:520-525 | generated/app/db/TokensDao.scala:511-516 | generated/app/db/UserPasswordsDao.scala:463-468 | generated/app/db/WatchesDao.scala:469-474 \u2014 before extracting anything, compare \u0060generated/app/db/EmailVerificationsDao.scala\u0060 and \u0060generated/app/db/MembershipRequestsDao.scala\u0060 as WHOLE FILES: this scan already matched 8 separate duplicated blocks between them, totalling at least 58 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/EmailVerificationsDao.scala:531\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/EmailVerificationsDao.scala"},"region":{"startLine":531}}}],"partialFingerprints":{"codehealthFindingId/v1":"01cc940b2dd8ee3c798b5907b8bb1c91713209f4b2a8a1623d1b5443a2f390e6"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (6 lines \u00D7 9): generated/app/db/EmailVerificationsDao.scala:551-556 | generated/app/db/MembershipRequestsDao.scala:531-536 | generated/app/db/MembershipsDao.scala:531-536 | generated/app/db/PasswordResetsDao.scala:540-545 | generated/app/db/SessionsDao.scala:464-469 | generated/app/db/SubscriptionsDao.scala:540-545 | generated/app/db/TokensDao.scala:531-536 | generated/app/db/UserPasswordsDao.scala:483-488 | generated/app/db/WatchesDao.scala:489-494 \u2014 before extracting anything, compare \u0060generated/app/db/EmailVerificationsDao.scala\u0060 and \u0060generated/app/db/MembershipRequestsDao.scala\u0060 as WHOLE FILES: this scan already matched 8 separate duplicated blocks between them, totalling at least 58 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/EmailVerificationsDao.scala:551\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/EmailVerificationsDao.scala"},"region":{"startLine":551}}}],"partialFingerprints":{"codehealthFindingId/v1":"1a9c96e33f786ddca72b054a26f488337b64b61e1f878f3ab93b1e836643242c"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (7 lines \u00D7 3): generated/app/db/GeneratorInvocationsDao.scala:320-326 | generated/app/db/SessionsDao.scala:342-348 | generated/app/db/TasksDao.scala:482-488 \u2014 the copies sit in sibling files of one directory, so a shared home is within easy reach: extract the block into a single shared function the call sites can all reach \u2014 a file they already depend on, or a new one alongside them \u2014 and call it from all 3 call sites, so a change lands once. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/GeneratorInvocationsDao.scala:320\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/GeneratorInvocationsDao.scala"},"region":{"startLine":320}}}],"partialFingerprints":{"codehealthFindingId/v1":"36be8bba58b7661d942697a7b0c6efc445c8280d353a324c6c6e894309fc04a6"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (5 lines \u00D7 3): generated/app/db/MembershipRequestsDao.scala:110-114 | generated/app/db/MembershipsDao.scala:110-114 | generated/app/db/SubscriptionsDao.scala:116-120 \u2014 before extracting anything, compare \u0060generated/app/db/MembershipRequestsDao.scala\u0060 and \u0060generated/app/db/MembershipsDao.scala\u0060 as WHOLE FILES: this scan already matched 14 separate duplicated blocks between them, totalling at least 101 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/MembershipRequestsDao.scala:110\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/MembershipRequestsDao.scala"},"region":{"startLine":110}}}],"partialFingerprints":{"codehealthFindingId/v1":"531714e3935948113efed6fd714497f413dfdc886aba060365a6481fcacd3e24"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (6 lines \u00D7 2): generated/app/db/MembershipRequestsDao.scala:542-547 | generated/app/db/MembershipsDao.scala:542-547 \u2014 before extracting anything, compare \u0060generated/app/db/MembershipRequestsDao.scala\u0060 and \u0060generated/app/db/MembershipsDao.scala\u0060 as WHOLE FILES: this scan already matched 14 separate duplicated blocks between them, totalling at least 101 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/MembershipRequestsDao.scala:542\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/MembershipRequestsDao.scala"},"region":{"startLine":542}}}],"partialFingerprints":{"codehealthFindingId/v1":"cd0929055755d3059faa16988dbdf682f1ec112186fe872394a0d839eb196732"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (8 lines \u00D7 2): generated/app/db/MembershipRequestsDao.scala:553-560 | generated/app/db/MembershipsDao.scala:553-560 \u2014 before extracting anything, compare \u0060generated/app/db/MembershipRequestsDao.scala\u0060 and \u0060generated/app/db/MembershipsDao.scala\u0060 as WHOLE FILES: this scan already matched 14 separate duplicated blocks between them, totalling at least 101 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/MembershipRequestsDao.scala:553\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/MembershipRequestsDao.scala"},"region":{"startLine":553}}}],"partialFingerprints":{"codehealthFindingId/v1":"475e76278c22340571a42519a21930fa33e866e07ec880b6e0cf6bf92714537e"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (6 lines \u00D7 2): generated/app/db/OriginalsDao.scala:273-278 | generated/app/db/SessionsDao.scala:273-278 \u2014 before extracting anything, compare \u0060generated/app/db/OriginalsDao.scala\u0060 and \u0060generated/app/db/SessionsDao.scala\u0060 as WHOLE FILES: this scan already matched 6 separate duplicated blocks between them, totalling at least 45 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/OriginalsDao.scala:273\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/OriginalsDao.scala"},"region":{"startLine":273}}}],"partialFingerprints":{"codehealthFindingId/v1":"d25b05a770cb7475da2934f40e025ca832a9bc65eac11a82288f747a046d1bd6"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (6 lines \u00D7 3): generated/app/db/OriginalsDao.scala:362-367 | generated/app/db/SessionsDao.scala:363-368 | generated/app/db/TasksDao.scala:503-508 \u2014 before extracting anything, compare \u0060generated/app/db/OriginalsDao.scala\u0060 and \u0060generated/app/db/SessionsDao.scala\u0060 as WHOLE FILES: this scan already matched 6 separate duplicated blocks between them, totalling at least 45 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/OriginalsDao.scala:362\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/OriginalsDao.scala"},"region":{"startLine":362}}}],"partialFingerprints":{"codehealthFindingId/v1":"5375aaeecacc259d5adfb51e8ab84e657b3a84f6d060b78517f7f3f745972c7c"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (6 lines \u00D7 2): generated/app/db/OriginalsDao.scala:403-408 | generated/app/db/SessionsDao.scala:404-409 \u2014 before extracting anything, compare \u0060generated/app/db/OriginalsDao.scala\u0060 and \u0060generated/app/db/SessionsDao.scala\u0060 as WHOLE FILES: this scan already matched 6 separate duplicated blocks between them, totalling at least 45 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/OriginalsDao.scala:403\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/OriginalsDao.scala"},"region":{"startLine":403}}}],"partialFingerprints":{"codehealthFindingId/v1":"bddf87579f1d3a16876512a2ec2e728c71e21eff4471e3cfe47c83161d35a933"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (6 lines \u00D7 2): generated/app/db/OriginalsDao.scala:423-428 | generated/app/db/SessionsDao.scala:424-429 \u2014 before extracting anything, compare \u0060generated/app/db/OriginalsDao.scala\u0060 and \u0060generated/app/db/SessionsDao.scala\u0060 as WHOLE FILES: this scan already matched 6 separate duplicated blocks between them, totalling at least 45 lines, which is the signature of one file having been copied from the other rather than of a helper waiting to be extracted. If that is what happened, the fix is to keep one copy and have the other call it (or delete it), which resolves this row and its siblings together \u2014 extracting one helper per block leaves the fork in place. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/OriginalsDao.scala:423\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/OriginalsDao.scala"},"region":{"startLine":423}}}],"partialFingerprints":{"codehealthFindingId/v1":"75d0d72351402eecec9aee6732ff78fdd18ecd4eae4f8eb71014dcb345ce38a1"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (6 lines \u00D7 2): generated/app/db/OriginalsDao.scala:443-448 | generated/app/db/cache/ServicesDao.scala:453-458 \u2014 the copies span different directories, so extracting a shared function means choosing where it lives: put it somewhere both call sites can already reach \u2014 a location they all depend on today, or a new shared one if there is none \u2014 and call it from each site; until then, every change has to be made twice. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/OriginalsDao.scala:443\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/OriginalsDao.scala"},"region":{"startLine":443}}}],"partialFingerprints":{"codehealthFindingId/v1":"158740d3e2f2dbcaede94895376238efb440b58452d9377af1f01db1e889146e"}},{"ruleId":"D4","level":"warning","message":{"text":"Duplicated block (6 lines \u00D7 2): generated/app/db/OriginalsDao.scala:463-468 | generated/app/db/cache/ServicesDao.scala:473-478 \u2014 the copies span different directories, so extracting a shared function means choosing where it lives: put it somewhere both call sites can already reach \u2014 a location they all depend on today, or a new shared one if there is none \u2014 and call it from each site; until then, every change has to be made twice. Read the line range as the matched WINDOW rather than a finished unit: at \u0060generated/app/db/OriginalsDao.scala:463\u0060 it begins part-way through the construct above it, so those exact lines cannot be lifted as they stand \u2014 widen the region to the smallest complete statement or declaration that contains it, and extract that."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"generated/app/db/OriginalsDao.scala"},"region":{"startLine":463}}}],"partialFingerprints":{"codehealthFindingId/v1":"fe9eaa15da9ccc4f31c5983737429150a67de93785bab5d0732edc86f2a07d23"}},{"ruleId":"D6","level":"warning","message":{"text":"Low cohesion: Organizations (LCOM4 8): Organizations\u0027s methods fall into 8 groups that share no field and call none of each other, against a bar of more than 3 for this run (LCOM4, configurable \u2014 your repository\u0027s bar is the one quoted here). Each group is a set of methods reachable from one another through shared fields or direct calls, so 8 groups means the type has that many internally-connected clusters with nothing tying them together. Types whose shape makes a high count expected \u2014 and which would otherwise dominate this list \u2014 are excluded before this row is raised, so this is a genuine split candidate rather than a metric reading. It is still a shape, not a defect: confirm the groups match responsibilities you can name before splitting."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/controllers/Organizations.scala"},"region":{"startLine":16}}}],"partialFingerprints":{"codehealthFindingId/v1":"71be1a4aa3ce2f91383d9efefcf93306d791f3067b9e03d649e1b32777af6361"}},{"ruleId":"D6","level":"warning","message":{"text":"Low cohesion: Applications (LCOM4 7): Applications\u0027s methods fall into 7 groups that share no field and call none of each other, against a bar of more than 3 for this run (LCOM4, configurable \u2014 your repository\u0027s bar is the one quoted here). Each group is a set of methods reachable from one another through shared fields or direct calls, so 7 groups means the type has that many internally-connected clusters with nothing tying them together. Types whose shape makes a high count expected \u2014 and which would otherwise dominate this list \u2014 are excluded before this row is raised, so this is a genuine split candidate rather than a metric reading. It is still a shape, not a defect: confirm the groups match responsibilities you can name before splitting."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/controllers/Applications.scala"},"region":{"startLine":16}}}],"partialFingerprints":{"codehealthFindingId/v1":"78d2dfd6cf8a40d0bb7db4642a42184937b9054b10684e68f2b69dca896384b9"}},{"ruleId":"D6","level":"warning","message":{"text":"Low cohesion: MembershipRequests (LCOM4 4): MembershipRequests\u0027s methods fall into 4 groups that share no field and call none of each other, against a bar of more than 3 for this run (LCOM4, configurable \u2014 your repository\u0027s bar is the one quoted here). Each group is a set of methods reachable from one another through shared fields or direct calls, so 4 groups means the type has that many internally-connected clusters with nothing tying them together. Types whose shape makes a high count expected \u2014 and which would otherwise dominate this list \u2014 are excluded before this row is raised, so this is a genuine split candidate rather than a metric reading. It is still a shape, not a defect: confirm the groups match responsibilities you can name before splitting."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/controllers/MembershipRequests.scala"},"region":{"startLine":15}}}],"partialFingerprints":{"codehealthFindingId/v1":"b8d8aa2f3c19fc675075f0e00a68fc51aefb99e8b39a0934e5b9a3ad9bc1f646"}},{"ruleId":"D6","level":"warning","message":{"text":"Low cohesion: Tokens (LCOM4 4): Tokens\u0027s methods fall into 4 groups that share no field and call none of each other, against a bar of more than 3 for this run (LCOM4, configurable \u2014 your repository\u0027s bar is the one quoted here). Each group is a set of methods reachable from one another through shared fields or direct calls, so 4 groups means the type has that many internally-connected clusters with nothing tying them together. Types whose shape makes a high count expected \u2014 and which would otherwise dominate this list \u2014 are excluded before this row is raised, so this is a genuine split candidate rather than a metric reading. It is still a shape, not a defect: confirm the groups match responsibilities you can name before splitting."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/controllers/Tokens.scala"},"region":{"startLine":15}}}],"partialFingerprints":{"codehealthFindingId/v1":"7d213c9e363134c44a91ce1653825774551a58ba122ae14a03bc4534d99cea7a"}},{"ruleId":"D6","level":"warning","message":{"text":"Low cohesion: Users (LCOM4 4): Users\u0027s methods fall into 4 groups that share no field and call none of each other, against a bar of more than 3 for this run (LCOM4, configurable \u2014 your repository\u0027s bar is the one quoted here). Each group is a set of methods reachable from one another through shared fields or direct calls, so 4 groups means the type has that many internally-connected clusters with nothing tying them together. Types whose shape makes a high count expected \u2014 and which would otherwise dominate this list \u2014 are excluded before this row is raised, so this is a genuine split candidate rather than a metric reading. It is still a shape, not a defect: confirm the groups match responsibilities you can name before splitting."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/controllers/Users.scala"},"region":{"startLine":20}}}],"partialFingerprints":{"codehealthFindingId/v1":"2e88d051597ab269cd94f20573a95fe26e233c64e44b763f97f3f53ec1193b66"}},{"ruleId":"D6","level":"warning","message":{"text":"Low cohesion: Versions (LCOM4 4): Versions\u0027s methods fall into 4 groups that share no field and call none of each other, against a bar of more than 3 for this run (LCOM4, configurable \u2014 your repository\u0027s bar is the one quoted here). Each group is a set of methods reachable from one another through shared fields or direct calls, so 4 groups means the type has that many internally-connected clusters with nothing tying them together. Types whose shape makes a high count expected \u2014 and which would otherwise dominate this list \u2014 are excluded before this row is raised, so this is a genuine split candidate rather than a metric reading. It is still a shape, not a defect: confirm the groups match responsibilities you can name before splitting."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/controllers/Versions.scala"},"region":{"startLine":17}}}],"partialFingerprints":{"codehealthFindingId/v1":"fb44bfe6445e0b8ceea783e25f2f9beb7b8466ae51af5d356000a3e3d47f01a4"}},{"ruleId":"D6","level":"warning","message":{"text":"Low cohesion: LoginController (LCOM4 4): LoginController\u0027s methods fall into 4 groups that share no field and call none of each other, against a bar of more than 3 for this run (LCOM4, configurable \u2014 your repository\u0027s bar is the one quoted here). Each group is a set of methods reachable from one another through shared fields or direct calls, so 4 groups means the type has that many internally-connected clusters with nothing tying them together. Types whose shape makes a high count expected \u2014 and which would otherwise dominate this list \u2014 are excluded before this row is raised, so this is a genuine split candidate rather than a metric reading. It is still a shape, not a defect: confirm the groups match responsibilities you can name before splitting."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/controllers/LoginController.scala"},"region":{"startLine":14}}}],"partialFingerprints":{"codehealthFindingId/v1":"486d76f79081d41deab43bef0a979a687811eee168e546a970893db3c2110e6a"}},{"ruleId":"D6","level":"warning","message":{"text":"Low cohesion: Organizations (LCOM4 4): Organizations\u0027s methods fall into 4 groups that share no field and call none of each other, against a bar of more than 3 for this run (LCOM4, configurable \u2014 your repository\u0027s bar is the one quoted here). Each group is a set of methods reachable from one another through shared fields or direct calls, so 4 groups means the type has that many internally-connected clusters with nothing tying them together. Types whose shape makes a high count expected \u2014 and which would otherwise dominate this list \u2014 are excluded before this row is raised, so this is a genuine split candidate rather than a metric reading. It is still a shape, not a defect: confirm the groups match responsibilities you can name before splitting."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/controllers/Organizations.scala"},"region":{"startLine":16}}}],"partialFingerprints":{"codehealthFindingId/v1":"5454439a5747393c0c8f672e538515a9df29aff0d8add3ec675a357eaed74b71"}},{"ruleId":"D13","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"2f367d4465018918a1df94ed4996134b37394f19d33cd75bd34ba4f4799d9676"},"taxa":[{"id":"CWE-259","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-798","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D13","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"1f4671682307d185945c286ee0ab0be0a6a3a7f00d7a59b5b1f1ccd17e1b2ad2"},"taxa":[{"id":"CWE-259","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-798","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO: Refactor so we can validate w/out creating first. \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/controllers/GeneratorServices.scala"},"region":{"startLine":61}}}],"partialFingerprints":{"codehealthFindingId/v1":"a7b96aa726a9d43c248e697ecf520d0649eab03f8ee0a54e10c79a5be48bbbe4"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO: Generalize permission check \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/controllers/GeneratorServices.scala"},"region":{"startLine":86}}}],"partialFingerprints":{"codehealthFindingId/v1":"9472a97e5a860b1afd97f8d5d12e9c04d5f177bf2a54e34a47c262af8860cdcf"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO: Should we merge the org attributes into the provided invocation form? I think that \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/controllers/Code.scala"},"region":{"startLine":156}}}],"partialFingerprints":{"codehealthFindingId/v1":"0a52d2713c21d3924804cceb372c756bd5074f080ac266234febea3b62e10514"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO: Decide if we want to support this use case of \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/db/ItemsDao.scala"},"region":{"startLine":148}}}],"partialFingerprints":{"codehealthFindingId/v1":"cfafcf877a59badf0d7bc8257cf95d65160ef7f58d69002584249c2966c2c1fd"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO: Move to inside a transaction \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/db/InternalUsersDao.scala"},"region":{"startLine":124}}}],"partialFingerprints":{"codehealthFindingId/v1":"a376894b782735a2cb773dfb2dc7391fd53c2c911d440d1f4ad2e84140e179f0"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO: Use a bulk insert for this method \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/db/InternalTasksDao.scala"},"region":{"startLine":20}}}],"partialFingerprints":{"codehealthFindingId/v1":"f34cca4595fe3cd7f65b508de193cac234e3f3d5783bba6f779ee4800fed4b71"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO: resolve circular dependency \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/db/InternalOrganizationsDao.scala"},"region":{"startLine":34}}}],"partialFingerprints":{"codehealthFindingId/v1":"9582758db461a9382558b3f4da75755a336a3a7d7b66a112e0137fdf4a6de295"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO: Figure out how we want to handle domains. Best option \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/db/InternalOrganizationsDao.scala"},"region":{"startLine":154}}}],"partialFingerprints":{"codehealthFindingId/v1":"f1a1931c0d4b6f8ed0ac86fcb1eaadbf3233b23fac11dcf16208d8cb3e4c7a90"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO: Wrap in transaction \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/db/InternalMembershipsDao.scala"},"region":{"startLine":74}}}],"partialFingerprints":{"codehealthFindingId/v1":"fae8c17f78bc3792f6fb741023a2057fca8b22eaf5a0b5da346695646943f18b"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO Implement authorization \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/db/InternalMembershipsDao.scala"},"region":{"startLine":167}}}],"partialFingerprints":{"codehealthFindingId/v1":"17d1c694f0903ca7bf05809b7f54e2831576e33ed57d5237ea4d279ce745ebd2"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO Implement authorization \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/db/InternalMembershipRequestsDao.scala"},"region":{"startLine":133}}}],"partialFingerprints":{"codehealthFindingId/v1":"2b58d322907135dfaa802aa3d7133c620438f8fe83dd3b486eceb4b5296b6391"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO: structure this filter \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/db/generators/InternalGeneratorsDao.scala"},"region":{"startLine":141}}}],"partialFingerprints":{"codehealthFindingId/v1":"bc73e1027b191c9327f2f50a225c8da4bd62dcdd0bf742734b2e659152422a10"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO: Should we use filter? \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/app/lib/Emails.scala"},"region":{"startLine":52}}}],"partialFingerprints":{"codehealthFindingId/v1":"6ebc458f5fd54f83ed028e8fc2c00d57557b8d97b572007a6ad18a1165291af7"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO: Switch to REST API. But first need to resolve dependency \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/test/controllers/GeneratorServicesSpec.scala"},"region":{"startLine":21}}}],"partialFingerprints":{"codehealthFindingId/v1":"3c938cea6c08f017b8bc40fb437df0f09572d5684d725eb6cca5c3f1b87bfedf"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO: Change to eventually \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"api/test/db/InternalEmailVerificationsDaoSpec.scala"},"region":{"startLine":21}}}],"partialFingerprints":{"codehealthFindingId/v1":"1837994af945e0c28246f2cf28a06350e42bdaba7c6890a0ccc41c04bc6b3be9"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO: For updates, include application in the template \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/controllers/Versions.scala"},"region":{"startLine":61}}}],"partialFingerprints":{"codehealthFindingId/v1":"f2f8b6f17053e1db30f0a2ff29b7c79379fe8b3384945e92c5ec86a3ce957799"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO: Paginate once we exceed limit \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/controllers/OrganizationAttributesController.scala"},"region":{"startLine":23}}}],"partialFingerprints":{"codehealthFindingId/v1":"27f59f6b7cd3a6dca09ad7f88fe88bc10419539c9ec23b6513fe3fc5f14edb35"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/models/MainTemplate.scala"},"region":{"startLine":16}}}],"partialFingerprints":{"codehealthFindingId/v1":"809ff565ca4e5b01163aa6c012efc548d7cbf3ba5ba93615dca415c3186bbb1f"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"lib/src/test/scala/TextSpec.scala"},"region":{"startLine":225}}}],"partialFingerprints":{"codehealthFindingId/v1":"eed5243619fe1a48917bba9bb77b6470c45d0c3394787c40fd46a4b3b06b1deb"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"swagger/src/main/scala/io/apibuilder/swagger/Parser.scala"},"region":{"startLine":30}}}],"partialFingerprints":{"codehealthFindingId/v1":"d5f719a6066fe34a66b8091b4eb8c5a05a5a0b13c037e9928727bc95dde15c67"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"swagger/src/main/scala/io/apibuilder/swagger/translators/Resolver.scala"},"region":{"startLine":50}}}],"partialFingerprints":{"codehealthFindingId/v1":"3675973022b3fa5d2d471283e8bdd620697698355d69ae438c8c33911c570002"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO: Remove this class and use Option[SettingSection] directly \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/models/MainTemplate.scala"},"region":{"startLine":66}}}],"partialFingerprints":{"codehealthFindingId/v1":"22fa1ddc12fcd8a8ed5c4a300eae8787da260e0c8cb2c1dc039f4a08b71d50e7"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO: Future work to validate the fields from the imported interface \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"core/app/builder/ServiceSpecValidator.scala"},"region":{"startLine":188}}}],"partialFingerprints":{"codehealthFindingId/v1":"61681028dbbb62a02cc351dfd6b9ec6d534a83bb38760a7725e77da6f8dc19b2"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO. need to cache somewhere to avoid a second lookup when parsing later \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"core/app/builder/api_json/ApiJsonServiceValidator.scala"},"region":{"startLine":120}}}],"partialFingerprints":{"codehealthFindingId/v1":"a3f2c84d050506cf6ea299276ddcec379bce46b1b141ee6881b583037c9233c5"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO: placeholder for future work \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"core/app/builder/api_json/upgrades/InterfacesToSupportResources.scala"},"region":{"startLine":7}}}],"partialFingerprints":{"codehealthFindingId/v1":"2e75dbb5cfdc4a9c527a2feb5c7c59c2833dfb8f7412a6d45207ad2a6aa15aa4"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO: Track down why error message is different \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"core/test/core/ServiceMapSpec.scala"},"region":{"startLine":62}}}],"partialFingerprints":{"codehealthFindingId/v1":"686d9cddb79196ed46095628550a8126adaf539fbc7a5c0e4b80ded451c59312"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO: Ideally we can fetch the imported service and get the list of interface fields \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"core/test/core/InterfaceImportsSpec.scala"},"region":{"startLine":45}}}],"partialFingerprints":{"codehealthFindingId/v1":"2959465bf7207c7f2956c41e18ccf45e8a12db36d1c99a2b123ca31a1f707bdd"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO: apidoc needs support for byte \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"swagger/src/main/scala/io/apibuilder/swagger/SchemaType.scala"},"region":{"startLine":21}}}],"partialFingerprints":{"codehealthFindingId/v1":"20ba922768f920f30dcbb8447ba732b8e85593c474a8056112a0a0e1456b17b3"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO: we need a datatype for File \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"swagger/src/main/scala/io/apibuilder/swagger/translators/Field.scala"},"region":{"startLine":95}}}],"partialFingerprints":{"codehealthFindingId/v1":"5f514b8d93beeda2c62fa9d62a8f54230c5f968cfd681df38bb8a7212a951604"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO: p.getAdditionalProperties \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"swagger/src/main/scala/io/apibuilder/swagger/translators/Field.scala"},"region":{"startLine":100}}}],"partialFingerprints":{"codehealthFindingId/v1":"d3a1055e2ca10bfd1353d7cea2ac7bf11d6fcef37792b36aea3f849514c1d6ee"}},{"ruleId":"D17","level":"warning","message":{"text":"TodoComment: // TODO: If we include operations here in the check, it fails even \u2014 source code is not a task system: move the work to your tracker and leave a reference instead (e.g. \u0060// REF: #123\u0060), so the task is planned where tasks live and the ticket links back to the code."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"swagger/src/test/scala/io/apibuilder/swagger/SwaggerServiceValidatorSpec.scala"},"region":{"startLine":40}}}],"partialFingerprints":{"codehealthFindingId/v1":"cd41c4f813d30aa0723ae4e65ab4707562c3a7962783f1c5e4011c865a512206"}},{"ruleId":"D19","level":"note","message":{"text":"Documentation: no project overview: The document begins with a step-by-step \u0027Getting Started\u0027 flow but does not state what the project is for or its main purpose (e.g. API Builder\u0027s role in service creation and documentation). Add an overview paragraph explaining that this guide walks through creating an organization, an API Builder service, uploading an example api.json file, viewing generated docs, and downloading client libraries."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/doc/start.scala.html"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"b6fef22715202239255eefd79404b3af1b3def0f6c9ef1509f880283ae502cd1"}},{"ruleId":"D19","level":"note","message":{"text":"Documentation: no installation or build instructions: The document does not show any installation or build steps. Add a short install/dependency section for the project (e.g. sbt setup, Gradle) and how to run the documentation."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/doc/start.scala.html"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"e0cd8d6aca1c44188ca2485e2ed7c206e97d872efcc596b3fe9db2033aa264f3"}},{"ruleId":"D19","level":"note","message":{"text":"Documentation: no usage examples: The \u0027View your beautiful documentation!\u0027 step is present but there are no usage examples of running the guide. Add a one-line command showing how to start the API Builder docs (e.g. curl or an sbt run) so readers can execute it."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/doc/start.scala.html"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"588d1974c6cee66a83b60226b07b1b0ee95b9067cab3b8bf3dbd7aea090646df"}},{"ruleId":"D20","level":"note","message":{"text":"No ADRs found: No ADRs found. No recognised ADR directory (\u0060docs/adr/\u0060, \u0060docs/decisions/\u0060, \u0060adr/\u0060, \u0060docs/rfcs/\u0060, an \u0060ADR0001/\u0060 folder, or their siblings) exists anywhere in this tree. What was searched, so you can tell an empty log from a search that missed one: every directory under the tree (build output, dependencies and VCS metadata excepted), for a document that is either any non-index page inside a recognised ADR directory, whatever its name and however deeply nested (\u0060docs/adr/use-postgres.md\u0060, \u0060docs/adr/2024/0001-x.md\u0060); or a file anywhere whose name is ADR-shaped (\u00600001-use-postgres.md\u0060, \u0060adr-012-caching.md\u0060); or, when neither turned anything up, a document carrying the decision-record signature (an \u0022Architecture Decision Record\u0022 heading, or Status / Context / Decision / Consequences as section headings). A decision log that clears none of these \u2014 unnumbered files outside any recognised directory, without those headings \u2014 is not seen by this check and this row is then wrong. If that is your case, say so rather than renaming anything; otherwise, consider recording architectural decisions in \u0060docs/adr/\u0060."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"d2bea044ff79d7d275f5a91a6e2f548586178eaf480274c33960ad020c854631"}},{"ruleId":"D26","level":"note","message":{"text":"Projects may be oversized for their cohesion: 1 of 1 project(s) overshoot their size bounds, lowering Project Cohesion to 0.0/10. The most over is \u0060(repository root)\u0060 (41377 LoC, 1390 public types across 34 directories). Review these for cohesion \u2014 draw the boundary inside the module first (group each responsibility into its own package or directory and keep the cross-boundary members non-public), since splitting a published package moves types between packages and breaks consumers."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"d5a94650dc74886a0f1f08eb9fb6775f1fc395279ef7e901c970c9d26f767a72"}},{"ruleId":"D28","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"8d7612322a11f0dfc513197857b18ecdda6be33f19d63f0028cb7c50a3a78964"},"properties":{"commitSha":"1e69132228f7f825bab4002408b13e8dc2c97222"}},{"ruleId":"D28","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"d7918d3a0b382b5c4751e762fe6e55a654a83e26c9d44cbe1a42246faf417363"}},{"ruleId":"D28","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"73ebb8aedb23cb0c09fb9b98522c295fcb9204bdde7f251d4509ec68c2425ca6"},"properties":{"commitSha":"a444c9f383ac66e33b0e64c0105a52bd0c492245"}},{"ruleId":"D28","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"77a03dacea4837356890af6c2bc70ef0631a409ea20005d8227c43c7dddfb105"},"properties":{"commitSha":"c7adff375382a9501d36bdd1a92b8024cf2d19cb"}},{"ruleId":"D28","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"11e93da7511c192635020cb52ecd1e21c4a295ec16b457d0531965721b829e27"},"properties":{"commitSha":"2fb66db327b43a9e1e8d316dbe212219588850cf"}},{"ruleId":"D28","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"dedf1df5a7d5c8f30fa8fa178262a5c354263711465ec1fadd9ffc47af8b1837"},"properties":{"commitSha":"2fb66db327b43a9e1e8d316dbe212219588850cf"}},{"ruleId":"D28","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"0b1cc1b31f7354b8d2bae466aaab493e3390d14277fc7dac00c0a0dbe1208695"},"properties":{"commitSha":"f61ebf4493fdadf141df9171ba57e4dc10383607"}},{"ruleId":"D28","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"599f1d21a5d7e78f8e7218034602ce2834189930c1acf13541943997e0bbc6da"},"properties":{"commitSha":"35822d2d50132f6472616438638918cb7aec9599"}},{"ruleId":"D28","level":"note","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"3cdfd7beb31b791ae18dcb425e21eb157c842e7bbcd522cc330573c1a6538db1"}},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"2b50d6185f231a28fa9959e31861b0be76667502f1a2f794cc5c60d4fa797cb7"},"taxa":[{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-353","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"b084deba18fe695fd181ce54d9bc60c94af417f07daf68e37cdadef3853e8975"},"taxa":[{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-353","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"ece6fb8c1250b91116d39d591455c6a6cb3d348a2231c54206ee82f005ad3ab2"},"taxa":[{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-353","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"3052e672ce374287cddec7a7a0add4074c43cb9e19051b9d5bab08759fbe3f6a"},"taxa":[{"id":"CWE-89","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"a473101330eb0eda31dc70f8550456ff25779c0596182447a66ab19330447592"},"taxa":[{"id":"CWE-89","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"39a6b421664b7ac04ffc8e9340de66aee30c8842a951cd1c4668e1719cb0a80c"},"taxa":[{"id":"CWE-89","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"e006d9ef5c770427b310af120116e942cc3ecd0561c6441ae2c00ad4f9b3cf06"},"taxa":[{"id":"CWE-94","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"e0afa5d2927d7e7c898af82cf3e006ddb0cf1e90269e415c28ab50b795606d21"},"taxa":[{"id":"CWE-94","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"145ed684b66b917848bf1a0d0905fcd8f9e457f86f49c2d15b2f892be7050e69"},"taxa":[{"id":"CWE-94","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"7da9b5e5ccd9ed3791d28f4757b14df985c6d1851a61322595056d395ed276ba"},"taxa":[{"id":"CWE-94","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"warning","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"b5d5719a837c3a6769b02b96a8d12ff76016ed55a042964b899cbe685e527f52"},"taxa":[{"id":"CWE-1104","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-1329","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"warning","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"9e811bef75447baac0c6d898bcc081208bc4aa19abca85ac6f9bf4fdf75d0a41"},"taxa":[{"id":"CWE-1104","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-1329","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"warning","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"894546f93c5f548bf14a46cf9fbf1c408aa7452175495ce703046ed5f600ed29"},"taxa":[{"id":"CWE-1265","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"warning","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"c4ace42a7c2ad8c28f9f6705e6149f1e48497a72dec9e52f16ffa891dec9851d"},"taxa":[{"id":"CWE-1265","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"warning","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"63b335a291e318a176e5bf18e555a0c83dd5c4d4f9f35dc2b6769de5e489651b"},"taxa":[{"id":"CWE-1265","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D31","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"2adcd186881a900714ae40735c9162637f1e1c16c5e916abde65b3c839eb225b"}},{"ruleId":"D31","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"6cb699ff3939e246ec21c58eabf114ac45d869eb3ac06d17505d9b4ae4a91f99"}},{"ruleId":"D31","level":"warning","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"1823870c1349093d61c8b5642b71c073bda2f73b6655631eff76f59029b67496"}},{"ruleId":"D31","level":"warning","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"5c28b4bf7cc79cda25481d34101e95b72215bd1925da51963a2d37a7e1bd94eb"}},{"ruleId":"D31","level":"warning","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"98ecc9c0d09a1df9271858164514ee29f8e99182ac005a62128d9036ee6488d0"}},{"ruleId":"D31","level":"warning","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"9575bfb7bcd68fc304d1f13bd3290cee80c9f2c8e44c510a22531d786b9abd2c"}},{"ruleId":"D31","level":"note","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"ead31837cbe39a7c6a07c34ea43cbacba8126a35cb12d2756da1f65935957196"}},{"ruleId":"D31","level":"note","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"cea628b13e5271c33da104e6e886568e845170eee2a843243d7c2d2d0df9d723"}},{"ruleId":"D34","level":"note","message":{"text":"Orphaned files with no living knowledge: 1 of 91 analysed file(s) have no living knowledge left \u2014 their last meaningful change has decayed away, so if one breaks, no one currently understands it (counted over production source files of roughly 2,400 bytes or more, excluding vendored, generated and example/demo trees and test files identified by path convention, largest first; 91 of the 249 production source files in this repository met that bar). None is large enough to earn a read-through of its own, so this row stands in for the per-file rows rather than raising one each \u2014 most significant first: swagger/src/main/scala/io/apibuilder/swagger/SwaggerData.scala. Attach the read to the next change that touches one of them: have a second person review that change, and leave behind a short comment or test recording what the file is for, so the knowledge comes back at the cost of a change you were making anyway."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"ce861fd78f6935114d3a342cb90ad25870f984e1042954fcbbe27c0e23be3658"}},{"ruleId":"D36","level":"note","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"1b213f6eedd4b140d0bc37bdf1496f72811a643f34064f12518b32e9e83bcfc7"}},{"ruleId":"D36","level":"note","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"eb00976a698a5d68999b7ee6d27206fd374e916853e7ff1ead5eed42386f043f"}},{"ruleId":"D36","level":"warning","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"90f83b4fa27db32740afe9540c905f3c0499caed87f61049a8a903ecc95b41c3"}},{"ruleId":"D36","level":"warning","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"9658270ba49f37ed04e99ab1263b6393cd42aed8bdfb7aafd9fa1070f5491895"}},{"ruleId":"AC2","level":"warning","message":{"text":"\u003Cfieldset\u003E without a \u003Clegend\u003E: A fieldset groups related controls but has no \u003Clegend\u003E to name the group. Add a \u003Clegend\u003E as its first child \u2014 or, if the group already has a visible caption beside it (or the fieldset is there only to disable its subtree and carries no group box), point aria-labelledby at that caption\u0027s id instead, which names the group without rendering a second one."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/account/profile/edit.scala.html"},"region":{"startLine":15}}}],"partialFingerprints":{"codehealthFindingId/v1":"2cfbf29a76d8e0c65178e98b13f077bd48f237cb396208d5bb3df43db6b8e2e5"}},{"ruleId":"AC2","level":"warning","message":{"text":"\u003Cfieldset\u003E without a \u003Clegend\u003E: A fieldset groups related controls but has no \u003Clegend\u003E to name the group. Add a \u003Clegend\u003E as its first child \u2014 or, if the group already has a visible caption beside it (or the fieldset is there only to disable its subtree and carries no group box), point aria-labelledby at that caption\u0027s id instead, which names the group without rendering a second one."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/application_settings/form.scala.html"},"region":{"startLine":11}}}],"partialFingerprints":{"codehealthFindingId/v1":"d9c0072cce2d63b3e5b295dcafc2fef6ef9d9d1160249cd24d3bcde8c95d6c23"}},{"ruleId":"AC2","level":"warning","message":{"text":"\u003Cfieldset\u003E without a \u003Clegend\u003E: A fieldset groups related controls but has no \u003Clegend\u003E to name the group. Add a \u003Clegend\u003E as its first child \u2014 or, if the group already has a visible caption beside it (or the fieldset is there only to disable its subtree and carries no group box), point aria-labelledby at that caption\u0027s id instead, which names the group without rendering a second one."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/application_settings/move_form.scala.html"},"region":{"startLine":11}}}],"partialFingerprints":{"codehealthFindingId/v1":"49b1a07787d569cc07f7a328faea6e68488e89fe06be84b37fc696e7a3902156"}},{"ruleId":"AC2","level":"warning","message":{"text":"\u003Cfieldset\u003E without a \u003Clegend\u003E: A fieldset groups related controls but has no \u003Clegend\u003E to name the group. Add a \u003Clegend\u003E as its first child \u2014 or, if the group already has a visible caption beside it (or the fieldset is there only to disable its subtree and carries no group box), point aria-labelledby at that caption\u0027s id instead, which names the group without rendering a second one."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/attributes/attributeForm.scala.html"},"region":{"startLine":5}}}],"partialFingerprints":{"codehealthFindingId/v1":"3e7be9862f3fbefb960c1d7c8a6789cc21359e631c90f597a3b746d8546e07bb"}},{"ruleId":"AC2","level":"warning","message":{"text":"\u003Cfieldset\u003E without a \u003Clegend\u003E: A fieldset groups related controls but has no \u003Clegend\u003E to name the group. Add a \u003Clegend\u003E as its first child \u2014 or, if the group already has a visible caption beside it (or the fieldset is there only to disable its subtree and carries no group box), point aria-labelledby at that caption\u0027s id instead, which names the group without rendering a second one."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/domains/form.scala.html"},"region":{"startLine":11}}}],"partialFingerprints":{"codehealthFindingId/v1":"c97be7842148c74c0eccf124ca1a81458507802072029f2bd503493f54937b90"}},{"ruleId":"AC2","level":"warning","message":{"text":"\u003Cfieldset\u003E without a \u003Clegend\u003E: A fieldset groups related controls but has no \u003Clegend\u003E to name the group. Add a \u003Clegend\u003E as its first child \u2014 or, if the group already has a visible caption beside it (or the fieldset is there only to disable its subtree and carries no group box), point aria-labelledby at that caption\u0027s id instead, which names the group without rendering a second one."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/generators/generatorForm.scala.html"},"region":{"startLine":5}}}],"partialFingerprints":{"codehealthFindingId/v1":"db0e1296ede8a479f2e263ff5001146c98cef4b45630063efb40f8b56727b8a7"}},{"ruleId":"AC2","level":"warning","message":{"text":"\u003Cfieldset\u003E without a \u003Clegend\u003E: A fieldset groups related controls but has no \u003Clegend\u003E to name the group. Add a \u003Clegend\u003E as its first child \u2014 or, if the group already has a visible caption beside it (or the fieldset is there only to disable its subtree and carries no group box), point aria-labelledby at that caption\u0027s id instead, which names the group without rendering a second one."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/login/forgotPassword.scala.html"},"region":{"startLine":9}}}],"partialFingerprints":{"codehealthFindingId/v1":"7b1a5ca2e22be8f1655dfe27aebf38ab2d7645c26abd2bc123f527918d2ad622"}},{"ruleId":"AC2","level":"warning","message":{"text":"\u003Cfieldset\u003E without a \u003Clegend\u003E: A fieldset groups related controls but has no \u003Clegend\u003E to name the group. Add a \u003Clegend\u003E as its first child \u2014 or, if the group already has a visible caption beside it (or the fieldset is there only to disable its subtree and carries no group box), point aria-labelledby at that caption\u0027s id instead, which names the group without rendering a second one."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/login/legacy.scala.html"},"region":{"startLine":42}}}],"partialFingerprints":{"codehealthFindingId/v1":"8ea7a1df6aaa85576d5a2a95e25a8fb6af5a567c2f356e1416e6f320dc8ea09d"}},{"ruleId":"AC2","level":"warning","message":{"text":"\u003Cfieldset\u003E without a \u003Clegend\u003E: A fieldset groups related controls but has no \u003Clegend\u003E to name the group. Add a \u003Clegend\u003E as its first child \u2014 or, if the group already has a visible caption beside it (or the fieldset is there only to disable its subtree and carries no group box), point aria-labelledby at that caption\u0027s id instead, which names the group without rendering a second one."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/login/resetPassword.scala.html"},"region":{"startLine":15}}}],"partialFingerprints":{"codehealthFindingId/v1":"ef33ffdb97cbfbeba48abe7c665bcb63c7dcc67ef24dfc6fe46ca1e447451605"}},{"ruleId":"AC2","level":"error","message":{"text":"\u003Cinput\u003E without a programmatic label: This control has only a placeholder \u2014 a placeholder is not a label (it vanishes on input and many AT ignore it). Add a \u003Clabel for\u003E, a wrapping \u003Clabel\u003E, or aria-label."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/mainNavbar.scala.html"},"region":{"startLine":18}}}],"partialFingerprints":{"codehealthFindingId/v1":"befbd6311bff1d4e52d4adafb075058a5699eff91e3002c4f9434d52f0475b1f"}},{"ruleId":"AC2","level":"error","message":{"text":"\u003Cbutton\u003E with no accessible text: A button with no text and no aria-label has no accessible name. Add visible text or an aria-label (an icon-only button still needs one)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/mainNavbar.scala.html"},"region":{"startLine":23}}}],"partialFingerprints":{"codehealthFindingId/v1":"4a944fcf384f7f4ac8709848071ca6b871e7dc5426150b7688e765cbea459473"}},{"ruleId":"AC2","level":"warning","message":{"text":"\u003Cfieldset\u003E without a \u003Clegend\u003E: A fieldset groups related controls but has no \u003Clegend\u003E to name the group. Add a \u003Clegend\u003E as its first child \u2014 or, if the group already has a visible caption beside it (or the fieldset is there only to disable its subtree and carries no group box), point aria-labelledby at that caption\u0027s id instead, which names the group without rendering a second one."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/members/add.scala.html"},"region":{"startLine":16}}}],"partialFingerprints":{"codehealthFindingId/v1":"e78bb55b2c259dbd1b4c2dd89d6392a7e0e56f71e11c7caf693d8c6e01da2e54"}},{"ruleId":"AC2","level":"warning","message":{"text":"\u003Cfieldset\u003E without a \u003Clegend\u003E: A fieldset groups related controls but has no \u003Clegend\u003E to name the group. Add a \u003Clegend\u003E as its first child \u2014 or, if the group already has a visible caption beside it (or the fieldset is there only to disable its subtree and carries no group box), point aria-labelledby at that caption\u0027s id instead, which names the group without rendering a second one."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/organization_attributes/edit.scala.html"},"region":{"startLine":15}}}],"partialFingerprints":{"codehealthFindingId/v1":"30ace4c7dd44be8999e96ab5b423654b7933e8f6d027a5b65462957066efbdc2"}},{"ruleId":"AC2","level":"warning","message":{"text":"\u003Cfieldset\u003E without a \u003Clegend\u003E: A fieldset groups related controls but has no \u003Clegend\u003E to name the group. Add a \u003Clegend\u003E as its first child \u2014 or, if the group already has a visible caption beside it (or the fieldset is there only to disable its subtree and carries no group box), point aria-labelledby at that caption\u0027s id instead, which names the group without rendering a second one."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/organizations/orgForm.scala.html"},"region":{"startLine":9}}}],"partialFingerprints":{"codehealthFindingId/v1":"e04f2f135c0350a96dc71e17ce2b08c2a0ddcff95d53d381dccbc230cc6f4db8"}},{"ruleId":"AC2","level":"warning","message":{"text":"\u003Cfieldset\u003E without a \u003Clegend\u003E: A fieldset groups related controls but has no \u003Clegend\u003E to name the group. Add a \u003Clegend\u003E as its first child \u2014 or, if the group already has a visible caption beside it (or the fieldset is there only to disable its subtree and carries no group box), point aria-labelledby at that caption\u0027s id instead, which names the group without rendering a second one."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/tokens/create.scala.html"},"region":{"startLine":14}}}],"partialFingerprints":{"codehealthFindingId/v1":"a63e3758edf4e2e6027f6881dca481db677a642f361f55f5f374bef39a37ec4e"}},{"ruleId":"AC3","level":"warning","message":{"text":"Data table has no header cells: A \u003Ctable\u003E with data cells but no \u003Cth\u003E gives assistive technology no way to associate cells with their headers. Mark the header row/column cells as \u003Cth\u003E (with a scope)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/attributes/index.scala.html"},"region":{"startLine":14}}}],"partialFingerprints":{"codehealthFindingId/v1":"bc2261a8f6324f4e51a60d394b72a2049d6260fcce24a0f9ec4df453186ac4e6"}},{"ruleId":"AC3","level":"warning","message":{"text":"Data table has no header cells: A \u003Ctable\u003E with data cells but no \u003Cth\u003E gives assistive technology no way to associate cells with their headers. Mark the header row/column cells as \u003Cth\u003E (with a scope)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/code/index.scala.html"},"region":{"startLine":18}}}],"partialFingerprints":{"codehealthFindingId/v1":"ef66477352fad7917c47e2a3996ed8fca66750875d9000eada86c96fe93bd584"}},{"ruleId":"AC3","level":"warning","message":{"text":"Data table has no header cells: A \u003Ctable\u003E with data cells but no \u003Cth\u003E gives assistive technology no way to associate cells with their headers. Mark the header row/column cells as \u003Cth\u003E (with a scope)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/history/index.scala.html"},"region":{"startLine":37}}}],"partialFingerprints":{"codehealthFindingId/v1":"54b2d56c54c21a110e7610aa25ead59a42c4bed2394fae2d2ea513c0b3c0215f"}},{"ruleId":"AC3","level":"warning","message":{"text":"Data table has no header cells: A \u003Ctable\u003E with data cells but no \u003Cth\u003E gives assistive technology no way to associate cells with their headers. Mark the header row/column cells as \u003Cth\u003E (with a scope)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/index.scala.html"},"region":{"startLine":32}}}],"partialFingerprints":{"codehealthFindingId/v1":"68f0c1549bdc7ebd735cc84dfebb69f2f6d747fd9b18ba1e9f5560f6300f4f9f"}},{"ruleId":"AC3","level":"warning","message":{"text":"Data table has no header cells: A \u003Ctable\u003E with data cells but no \u003Cth\u003E gives assistive technology no way to associate cells with their headers. Mark the header row/column cells as \u003Cth\u003E (with a scope)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/index.scala.html"},"region":{"startLine":56}}}],"partialFingerprints":{"codehealthFindingId/v1":"3754b7a28a03ed23c542228e994059832514ff6d63697a48c5be1ae267897eec"}},{"ruleId":"AC3","level":"warning","message":{"text":"Data table has no header cells: A \u003Ctable\u003E with data cells but no \u003Cth\u003E gives assistive technology no way to associate cells with their headers. Mark the header row/column cells as \u003Cth\u003E (with a scope)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/index.scala.html"},"region":{"startLine":84}}}],"partialFingerprints":{"codehealthFindingId/v1":"1f6f9f26f7c438a8d20fc061555f66f0dd047c386cd908ba65d9bb4f9d863d5d"}},{"ruleId":"AC3","level":"error","message":{"text":"Document without a \u003Ctitle\u003E: A page with no \u003Ctitle\u003E gives no name in the tab, history or screen-reader page list. Add a descriptive \u003Ctitle\u003E in \u003Chead\u003E."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/main.scala.html"},"region":{"startLine":7}}}],"partialFingerprints":{"codehealthFindingId/v1":"6b0ac90c905323b595ae8ec5b481f0640cae145704df024a38f3cc19786d3ff6"}},{"ruleId":"AC3","level":"warning","message":{"text":"Page without a main landmark: No \u003Cmain\u003E (or role=\u0022main\u0022) means no \u0022skip to content\u0022 target and a weaker landmark map. Wrap the primary content in \u003Cmain\u003E."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/main.scala.html"},"region":{"startLine":7}}}],"partialFingerprints":{"codehealthFindingId/v1":"844d3e388e7f556a66b3b972d912c4c4523218d79b7273a94cd6b27e420f621d"}},{"ruleId":"AC3","level":"warning","message":{"text":"Data table has no header cells: A \u003Ctable\u003E with data cells but no \u003Cth\u003E gives assistive technology no way to associate cells with their headers. Mark the header row/column cells as \u003Cth\u003E (with a scope)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/organization_attributes/index.scala.html"},"region":{"startLine":9}}}],"partialFingerprints":{"codehealthFindingId/v1":"e39d454a050e4c082481ee6cbfc796767e69e4d44e3a598d4abde83385003c3d"}},{"ruleId":"AC3","level":"warning","message":{"text":"Data table has no header cells: A \u003Ctable\u003E with data cells but no \u003Cth\u003E gives assistive technology no way to associate cells with their headers. Mark the header row/column cells as \u003Cth\u003E (with a scope)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/organizations/membershipRequests.scala.html"},"region":{"startLine":10}}}],"partialFingerprints":{"codehealthFindingId/v1":"4b0c961f0754a54fa146c1d2c934842ced3f2d56ae27d1a4d389e1d177474397"}},{"ruleId":"AC3","level":"warning","message":{"text":"Data table has no header cells: A \u003Ctable\u003E with data cells but no \u003Cth\u003E gives assistive technology no way to associate cells with their headers. Mark the header row/column cells as \u003Cth\u003E (with a scope)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/search/index.scala.html"},"region":{"startLine":14}}}],"partialFingerprints":{"codehealthFindingId/v1":"2f2b72300d07ebad3f2fc09312b7df7b4126e3592e5216bfbecd49cbbe503705"}},{"ruleId":"AC3","level":"warning","message":{"text":"Data table has no header cells: A \u003Ctable\u003E with data cells but no \u003Cth\u003E gives assistive technology no way to associate cells with their headers. Mark the header row/column cells as \u003Cth\u003E (with a scope)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/subscriptions/index.scala.html"},"region":{"startLine":10}}}],"partialFingerprints":{"codehealthFindingId/v1":"9e44a1f14f1bf8ef2c3b30fb73607938fe85884d6ea49e0a7ac80c3a1e94bd9e"}},{"ruleId":"AC3","level":"warning","message":{"text":"Data table has no header cells: A \u003Ctable\u003E with data cells but no \u003Cth\u003E gives assistive technology no way to associate cells with their headers. Mark the header row/column cells as \u003Cth\u003E (with a scope)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/versions/imports.scala.html"},"region":{"startLine":3}}}],"partialFingerprints":{"codehealthFindingId/v1":"f7e440836691936e7eb688cbfde7b567108ef6765d984dc6c488277a45ccff5c"}},{"ruleId":"AC4","level":"warning","message":{"text":"Anchor without href: An \u003Ca\u003E with no href, role or tabindex isn\u0027t focusable or keyboard-activatable. Give it a real href, or use a \u003Cbutton\u003E for an action."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/versions/resources.scala.html"},"region":{"startLine":29}}}],"partialFingerprints":{"codehealthFindingId/v1":"b75c13330491168c7414ab9b05bc8bdabdd188835d23a32a49c2e637b4b792c4"}},{"ruleId":"AC4","level":"warning","message":{"text":"Anchor without href: An \u003Ca\u003E with no href, role or tabindex isn\u0027t focusable or keyboard-activatable. Give it a real href, or use a \u003Cbutton\u003E for an action."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/app/views/versions/resources.scala.html"},"region":{"startLine":30}}}],"partialFingerprints":{"codehealthFindingId/v1":"83bddb8a5124d6464bf462f2301e5690f129805b721876d26bf966196baf65b0"}},{"ruleId":"AC6","level":"warning","message":{"text":"Low contrast colour pair in CSS (3.6:1): \u0060.nav-sidebar \u003E .active \u003E a\u0060 sets color: #fff on background-color: #428bca \u2014 3.6:1, below the 4.5:1 WCAG AA minimum for normal text. Darken or lighten one of them."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"app/public/stylesheets/main.css"},"region":{"startLine":73}}}],"partialFingerprints":{"codehealthFindingId/v1":"e01a4b3afdc0fd4e78cd9973feacb56e41ac8c66ee32effa6674ea1bdc87aa7e"}},{"ruleId":"AC7","level":"warning","message":{"text":"Accessibility enforcement below the top rung: No accessibility enforcement found \u2014 no automated accessibility check runs over the HTML your app renders. Assert the accessibility invariants over that HTML in the test suite you already have (parse the output and assert, or drive a browser), and gate that test in CI so a regression blocks the merge. What was searched, so you can tell an absence from a miss: the 61 markup file(s) this pass actually assessed, the linter configuration checked in beside them, and this repository\u0027s test and CI files \u2014 matched by name against the accessibility checkers this dimension carries. An audit run outside the repository, a hosted scanner, or a check whose name is not one of those, is not seen here."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"d46019b86eff5ddad9db289e6802ac158899e980df54c34f67722442787ead62"}},{"ruleId":"M1","level":"note","message":{"text":"Thin README: The root README is 13 words, against a bar of 120. Of the three newcomer-critical sections this check looks for by heading, it found no a build/run or getting-started section, no a testing section, no an architecture or project-map section. Sections are matched on HEADING text only, so material written under a heading this check does not recognise \u2014 or with no heading at all \u2014 is not seen and this row may understate what the document covers."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"5fc8f78bec0b6b3daab9d9139ba49b687f61b54f8310b64c159df9616f47e38e"}},{"ruleId":"M2","level":"note","message":{"text":"No ADRs: No Architecture Decision Records found \u2014 no conventional ADR directory, no numbered \u0060NNNN-title\u0060 documents in any markup this check reads, and nothing ADR-shaped by content. Design rationale recorded elsewhere (a design-notes tree, a mailing list, pull-request discussion) is not visible to this check and is not re-findable per decision, so a future maintainer cannot ask why one choice was made and get an answer."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"670b3d6e36a756d63097d0dfbf90afd5fc761308800b9354894a07c3f4e4aa14"}},{"ruleId":"M2","level":"note","message":{"text":"No architecture diagram/doc: No C4/Structurizr/PlantUML/Mermaid/Graphviz/D2 diagram, no drawn diagram named for the architecture, no file named \u0060architecture\u0060 or \u0060design\u0060 in any markup this check reads, and nothing in the README, docs or contributor guides that announces the shape \u2014 no \u0060## Architecture\u0060 heading, no \u0022architecture overview\u0022/\u0022high-level design\u0022 phrasing, no \u0022the architecture is \u2026\u0022 introduction, no guided code tour. A shape laid out in prose that never names itself as the architecture is not visible to this check, and neither is one kept outside the repository, so this row reports the absence of a re-findable shape document \u2014 not evidence that nobody wrote the shape down."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"0c190e7c159d1850ee706c3ac4486e151e8a4fe169de4bf61436b9f399654f06"}},{"ruleId":"P2","level":"note","message":{"text":"Logging is not universal: Only 1/2 runnable modules use logging (modules with no entry point or server are excluded \u2014 they are libraries a runnable module hosts). Silent: \u0060.\u0060."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"91a94e21d6d4d0e6a2003f94505b0b02b157176f0b24c4820f3f82b4447a97fe"}},{"ruleId":"P3","level":"note","message":{"text":"No SAST: No static application security testing detected. For this repository\u0027s stack, add scalafix or scapegoat (or \u0060semgrep --config=auto\u0060, which runs on any language) as a CI step. What was searched, so you can tell an absence from a miss: the 2791 CI workflow file(s) in this repository, and the scanner and linter configuration checked in beside them. A scan that runs outside CI, one configured in your forge\u0027s web UI rather than in a committed file, or a tool whose name is none of those this check carries, is not seen \u2014 if that is your case the row is wrong, and saying so is more useful than adding a second scanner."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"6e54424179c892f03ef2fd003130ac4bd43f39bbf3b1ca0a0143e25acb80ec87"}},{"ruleId":"P6","level":"note","message":{"text":"No changelog: No CHANGELOG/HISTORY/RELEASES file \u2014 what shipped when isn\u0027t easy to reconstruct for support or audit. (Versioning/tagging makes releases traceable, but a changelog records the what.)"},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"dda5aa5aed8cbb292c3ef2b733bc138f614293ae6426c85e98bf31ef330d9415"}}],"taxonomies":[{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d","organization":"MITRE","informationUri":"https://cwe.mitre.org/","isComprehensive":false,"shortDescription":{"text":"The MITRE Common Weakness Enumeration (CWE)."},"taxa":[{"id":"CWE-1032","guid":"5f21e517-68aa-a650-9a25-5771ef024637","name":"OWASP Top Ten \u2014 Security Misconfiguration category","shortDescription":{"text":"OWASP Top Ten \u2014 Security Misconfiguration category"},"helpUri":"https://cwe.mitre.org/data/definitions/1032.html"},{"id":"CWE-1104","guid":"4c918cb5-b2a6-6c55-9963-a44ee464305e","name":"CWE-1104","shortDescription":{"text":"CWE-1104"},"helpUri":"https://cwe.mitre.org/data/definitions/1104.html"},{"id":"CWE-1265","guid":"9bfc5711-f2f2-6252-bd2e-ff21a1e98a6c","name":"CWE-1265","shortDescription":{"text":"CWE-1265"},"helpUri":"https://cwe.mitre.org/data/definitions/1265.html"},{"id":"CWE-1329","guid":"f70f1c3f-4ccf-cb5e-bdd3-03ba4868d36d","name":"CWE-1329","shortDescription":{"text":"CWE-1329"},"helpUri":"https://cwe.mitre.org/data/definitions/1329.html"},{"id":"CWE-1357","guid":"e4d2e772-757e-0a5c-bd7d-77052949d866","name":"Reliance on Insufficiently Trustworthy Component","shortDescription":{"text":"Reliance on Insufficiently Trustworthy Component"},"helpUri":"https://cwe.mitre.org/data/definitions/1357.html"},{"id":"CWE-16","guid":"659db3ea-affc-8453-8add-c1218fbfcb92","name":"Configuration","shortDescription":{"text":"Configuration"},"helpUri":"https://cwe.mitre.org/data/definitions/16.html"},{"id":"CWE-259","guid":"ae9ad959-fbb6-9d5e-892d-3dca66da0b69","name":"Use of Hard-coded Password","shortDescription":{"text":"Use of Hard-coded Password"},"helpUri":"https://cwe.mitre.org/data/definitions/259.html"},{"id":"CWE-353","guid":"09d7e902-d4ee-f05d-ae6c-0a1554d0c18f","name":"CWE-353","shortDescription":{"text":"CWE-353"},"helpUri":"https://cwe.mitre.org/data/definitions/353.html"},{"id":"CWE-494","guid":"b8a65e0d-e459-4a55-a931-fc1136482375","name":"Download of Code Without Integrity Check","shortDescription":{"text":"Download of Code Without Integrity Check"},"helpUri":"https://cwe.mitre.org/data/definitions/494.html"},{"id":"CWE-732","guid":"1da27e8f-b330-7650-ab63-bd61953eae5d","name":"Incorrect Permission Assignment for Critical Resource","shortDescription":{"text":"Incorrect Permission Assignment for Critical Resource"},"helpUri":"https://cwe.mitre.org/data/definitions/732.html"},{"id":"CWE-77","guid":"332c8ade-6612-9f56-a06b-d8d90b1a8750","name":"Command Injection","shortDescription":{"text":"Command Injection"},"helpUri":"https://cwe.mitre.org/data/definitions/77.html"},{"id":"CWE-78","guid":"2e31ceaf-c7ae-2e5e-9661-cfb1362789cf","name":"OS Command Injection","shortDescription":{"text":"OS Command Injection"},"helpUri":"https://cwe.mitre.org/data/definitions/78.html"},{"id":"CWE-79","guid":"fd45580b-e8c4-fc5e-8c2f-aa8fab0b4dbf","name":"Cross-site Scripting (XSS)","shortDescription":{"text":"Cross-site Scripting (XSS)"},"helpUri":"https://cwe.mitre.org/data/definitions/79.html"},{"id":"CWE-798","guid":"5e8f057d-fee3-995a-a0cb-9fc5b0d174d1","name":"Use of Hard-coded Credentials","shortDescription":{"text":"Use of Hard-coded Credentials"},"helpUri":"https://cwe.mitre.org/data/definitions/798.html"},{"id":"CWE-89","guid":"6d08fdad-37eb-c150-bbf0-d7d946863407","name":"SQL Injection","shortDescription":{"text":"SQL Injection"},"helpUri":"https://cwe.mitre.org/data/definitions/89.html"},{"id":"CWE-94","guid":"75e7f50c-6c2f-dd52-bf40-bf6c52b861fd","name":"Code Injection","shortDescription":{"text":"Code Injection"},"helpUri":"https://cwe.mitre.org/data/definitions/94.html"}]}],"properties":{"codehealthPublication":{"public":true,"notice":"This is the PUBLIC form of this artifact. Findings are listed in full, but the details of SECURITY findings \u2014 which rule fired, in which file, on which line, and how to fix it \u2014 are deliberately withheld, and any secret-scanner results are excluded entirely. Where detail is absent here it was REMOVED FOR PUBLICATION; it is not missing from the analysis. The complete artifact is available from the repository owner.","securityFindingsRedacted":38,"secretScannerRunsExcluded":0}},"redactionTokens":["A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."]}]}