{"$schema":"https://json.schemastore.org/sarif-2.1.0.json","version":"2.1.0","runs":[{"tool":{"driver":{"name":"codehealth","informationUri":"https://codehealth.canine.dev","rules":[{"id":"D1","name":"Cyclomatic Complexity","shortDescription":{"text":"Cyclomatic Complexity"},"helpUri":"https://codehealth.canine.dev/dimensions/D1"},{"id":"D2","name":"Cognitive Complexity","shortDescription":{"text":"Cognitive Complexity"},"helpUri":"https://codehealth.canine.dev/dimensions/D2"},{"id":"D3","name":"God Classes","shortDescription":{"text":"God Classes"},"helpUri":"https://codehealth.canine.dev/dimensions/D3"},{"id":"D4","name":"Code Duplication","shortDescription":{"text":"Code Duplication"},"helpUri":"https://codehealth.canine.dev/dimensions/D4"},{"id":"D5","name":"Coupling","shortDescription":{"text":"Coupling"},"helpUri":"https://codehealth.canine.dev/dimensions/D5"},{"id":"D6","name":"Cohesion (LCOM4)","shortDescription":{"text":"Cohesion (LCOM4)"},"helpUri":"https://codehealth.canine.dev/dimensions/D6"},{"id":"D7","name":"Architectural Integrity","shortDescription":{"text":"Architectural Integrity"},"helpUri":"https://codehealth.canine.dev/dimensions/D7"},{"id":"D8","name":"Code Coverage","shortDescription":{"text":"Code Coverage"},"helpUri":"https://codehealth.canine.dev/dimensions/D8"},{"id":"D9","name":"Test Distribution","shortDescription":{"text":"Test Distribution"},"helpUri":"https://codehealth.canine.dev/dimensions/D9"},{"id":"D10","name":"Test Quality","shortDescription":{"text":"Test Quality"},"helpUri":"https://codehealth.canine.dev/dimensions/D10"},{"id":"D11","name":"Test Reliability","shortDescription":{"text":"Test Reliability"},"helpUri":"https://codehealth.canine.dev/dimensions/D11"},{"id":"D12","name":"Dependency Hygiene","shortDescription":{"text":"Dependency Hygiene"},"helpUri":"https://codehealth.canine.dev/dimensions/D12"},{"id":"D13","name":"Secret Scanning","shortDescription":{"text":"Secret Scanning"},"helpUri":"https://codehealth.canine.dev/dimensions/D13"},{"id":"D14","name":"License Compliance","shortDescription":{"text":"License Compliance"},"helpUri":"https://codehealth.canine.dev/dimensions/D14"},{"id":"D15","name":"Churn \u00D7 Complexity Hotspots","shortDescription":{"text":"Churn \u00D7 Complexity Hotspots"},"helpUri":"https://codehealth.canine.dev/dimensions/D15"},{"id":"D16","name":"Bus Factor","shortDescription":{"text":"Bus Factor"},"helpUri":"https://codehealth.canine.dev/dimensions/D16"},{"id":"D17","name":"Explicit Debt","shortDescription":{"text":"Explicit Debt"},"helpUri":"https://codehealth.canine.dev/dimensions/D17"},{"id":"D18","name":"Solution Shape","shortDescription":{"text":"Solution Shape"},"helpUri":"https://codehealth.canine.dev/dimensions/D18"},{"id":"D19","name":"Documentation Quality","shortDescription":{"text":"Documentation Quality"},"helpUri":"https://codehealth.canine.dev/dimensions/D19"},{"id":"D20","name":"ADR Quality","shortDescription":{"text":"ADR Quality"},"helpUri":"https://codehealth.canine.dev/dimensions/D20"},{"id":"D21","name":"Naming Consistency","shortDescription":{"text":"Naming Consistency"},"helpUri":"https://codehealth.canine.dev/dimensions/D21"},{"id":"D22","name":"Internal API Consistency","shortDescription":{"text":"Internal API Consistency"},"helpUri":"https://codehealth.canine.dev/dimensions/D22"},{"id":"D23","name":"Boundary Type-Coupling","shortDescription":{"text":"Boundary Type-Coupling"},"helpUri":"https://codehealth.canine.dev/dimensions/D23"},{"id":"D24","name":"Comment Value","shortDescription":{"text":"Comment Value"},"helpUri":"https://codehealth.canine.dev/dimensions/D24"},{"id":"D25","name":"ADR Conformance","shortDescription":{"text":"ADR Conformance"},"helpUri":"https://codehealth.canine.dev/dimensions/D25"},{"id":"D26","name":"Project Cohesion","shortDescription":{"text":"Project Cohesion"},"helpUri":"https://codehealth.canine.dev/dimensions/D26"},{"id":"D27","name":"Navigability","shortDescription":{"text":"Navigability"},"helpUri":"https://codehealth.canine.dev/dimensions/D27"},{"id":"D28","name":"Secrets (history)","shortDescription":{"text":"Secrets (history)"},"helpUri":"https://codehealth.canine.dev/dimensions/D28"},{"id":"D29","name":"Static Analysis (SAST)","shortDescription":{"text":"Static Analysis (SAST)"},"helpUri":"https://codehealth.canine.dev/dimensions/D29"},{"id":"D30","name":"Dependency Vulnerabilities","shortDescription":{"text":"Dependency Vulnerabilities"},"helpUri":"https://codehealth.canine.dev/dimensions/D30"},{"id":"D31","name":"IaC \u0026 Container Security","shortDescription":{"text":"IaC \u0026 Container Security"},"helpUri":"https://codehealth.canine.dev/dimensions/D31"},{"id":"D32","name":"Data Compliance (PII/GDPR)","shortDescription":{"text":"Data Compliance (PII/GDPR)"},"helpUri":"https://codehealth.canine.dev/dimensions/D32"},{"id":"D33","name":"JS/npm Dependency Vulnerabilities","shortDescription":{"text":"JS/npm Dependency Vulnerabilities"},"helpUri":"https://codehealth.canine.dev/dimensions/D33"},{"id":"D34","name":"Knowledge Freshness","shortDescription":{"text":"Knowledge Freshness"},"helpUri":"https://codehealth.canine.dev/dimensions/D34"},{"id":"D35","name":"Change Coupling","shortDescription":{"text":"Change Coupling"},"helpUri":"https://codehealth.canine.dev/dimensions/D35"},{"id":"D36","name":"Supply-chain Provenance \u0026 Signing","shortDescription":{"text":"Supply-chain Provenance \u0026 Signing"},"helpUri":"https://codehealth.canine.dev/dimensions/D36"},{"id":"D37","name":"Vulnerability-disclosure Policy","shortDescription":{"text":"Vulnerability-disclosure Policy"},"helpUri":"https://codehealth.canine.dev/dimensions/D37"},{"id":"D38","name":"OSV Dependency Vulnerabilities","shortDescription":{"text":"OSV Dependency Vulnerabilities"},"helpUri":"https://codehealth.canine.dev/dimensions/D38"}]}},"results":[{"ruleId":"D5","level":"warning","message":{"text":"Unstable project Clean.Architecture.AspireHost: Clean.Architecture.AspireHost has instability 1.00 with 0 dependents."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"99b0e00cd3d3f27dacb82475ea7c033d57efabff4551a3a827e88bd1764ddfb3"}},{"ruleId":"D5","level":"warning","message":{"text":"Off the main sequence: Clean.Architecture.ServiceDefaults: Clean.Architecture.ServiceDefaults: abstractness 0.00, instability 0.00, distance 1.00 \u2014 zone of pain \u2014 concrete and heavily depended-on, so it\u0027s rigid to change."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"f46bd89a046c34bb4f9c6c3c6ab3a2e1651901622ecbfb742f0e5448308971a0"}},{"ruleId":"D5","level":"warning","message":{"text":"Off the main sequence: Clean.Architecture.Core: Clean.Architecture.Core: abstractness 0.15, instability 0.00, distance 0.85 \u2014 zone of pain \u2014 concrete and heavily depended-on, so it\u0027s rigid to change."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"ad42ff90c138de31f59448761cd14f47a7c3b3eae40a7b820ec0f4d68fc41808"}},{"ruleId":"D5","level":"warning","message":{"text":"Off the main sequence: Clean.Architecture.UseCases: Clean.Architecture.UseCases: abstractness 0.07, instability 0.20, distance 0.73 \u2014 zone of pain \u2014 concrete and heavily depended-on, so it\u0027s rigid to change."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"df9dcad51b73703a52b10f5fea9a14a128ba2c4b5a84e638347c61eb13d6f16d"}},{"ruleId":"D7","level":"note","message":{"text":"No checkable ADRs to assess: No architecture decision records were found and the project graph is acyclic, so architectural integrity could not be assessed. Add ADRs (with \u0060enforcement: analyzer|test\u0060) to make the architecture\u0027s rules checkable."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"9bfa095522c5f2e53a7c1c0405fd8830d318409a6fb74f4288bab05aaf716e52"}},{"ruleId":"D9","level":"note","message":{"text":"Unit tests: 10 unit test method(s)."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"3067d72f6515925eded797ae6deb86f74d157d3bd0b8e2d3a80edaa12ea95d24"}},{"ruleId":"D9","level":"note","message":{"text":"Integration tests: 8 integration test method(s)."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"b8ce5913e7f0487c282aa29038cefc209006d3bfe4e8418292f03d5a2d9bc5b9"}},{"ruleId":"D9","level":"note","message":{"text":"BDD tests: 0 BDD test method(s)."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"2335ff4716b8a3faefb3014515ddf9f836e46276f415e6cd56462b6bf7742991"}},{"ruleId":"D9","level":"note","message":{"text":"E2E tests: 0 end-to-end test method(s)."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"9a982d279a9674eceb951bedcbe3f8d344879045f8bee5f9f6f059139e0ed590"}},{"ruleId":"D10","level":"error","message":{"text":"No assertions: ReturnsNotFoundGivenId1000: Test method has no assertions \u2014 it may not test anything."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"tests/Clean.Architecture.FunctionalTests/ApiEndpoints/ContributorGetById.cs"},"region":{"startLine":21}}}],"partialFingerprints":{"codehealthFindingId/v1":"f1d79887db098f9dca5f55a549eeecf2c25e9abe471ef71bf2cfd4aaa6e57002"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: ReturnsNotFoundGivenInvalidId1000: In a harness-style test project (most tests assert via a verifier/approval harness or step indirection) \u2014 no conventional assertion call was detected."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"sample/tests/NimblePros.SampleToDo.FunctionalTests/Projects/ProjectGetById.cs"},"region":{"startLine":28}}}],"partialFingerprints":{"codehealthFindingId/v1":"2f5852c6e95f8668f9c43f8db9f9c0e83a07fe5d858636d70e83c6705eccc4be"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: ReturnsBadRequestWhenTitleIsMissing: In a harness-style test project (most tests assert via a verifier/approval harness or step indirection) \u2014 no conventional assertion call was detected."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"sample/tests/NimblePros.SampleToDo.FunctionalTests/Projects/ProjectAddToDoItem.cs"},"region":{"startLine":48}}}],"partialFingerprints":{"codehealthFindingId/v1":"36c4ff357e362d4353a0fe45c6c8d6594d215f8354f44db748fa68b0c8680eb2"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: ReturnsBadRequestWhenDescriptionIsMissing: In a harness-style test project (most tests assert via a verifier/approval harness or step indirection) \u2014 no conventional assertion call was detected."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"sample/tests/NimblePros.SampleToDo.FunctionalTests/Projects/ProjectAddToDoItem.cs"},"region":{"startLine":64}}}],"partialFingerprints":{"codehealthFindingId/v1":"f7f21b322e514a185db6a126d42b7d7ae57ed706c7cc9dc9e563a426082be167"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: ReturnsBadRequestWhenProjectIdIsZero: In a harness-style test project (most tests assert via a verifier/approval harness or step indirection) \u2014 no conventional assertion call was detected."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"sample/tests/NimblePros.SampleToDo.FunctionalTests/Projects/ProjectAddToDoItem.cs"},"region":{"startLine":80}}}],"partialFingerprints":{"codehealthFindingId/v1":"5f653609ee402846299091564bc5c3c5ffe7654c9691541da87f24f28f18494e"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: ReturnsNotFoundWhenProjectDoesNotExist: In a harness-style test project (most tests assert via a verifier/approval harness or step indirection) \u2014 no conventional assertion call was detected."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"sample/tests/NimblePros.SampleToDo.FunctionalTests/Projects/ProjectAddToDoItem.cs"},"region":{"startLine":96}}}],"partialFingerprints":{"codehealthFindingId/v1":"50db71a4beab35e08d3ae0dfb2be88dcdc7baade65df5218e615acd5d559fa74"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: ReturnsBadRequestWhenTitleExceedsMaxLength: In a harness-style test project (most tests assert via a verifier/approval harness or step indirection) \u2014 no conventional assertion call was detected."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"sample/tests/NimblePros.SampleToDo.FunctionalTests/Projects/ProjectAddToDoItem.cs"},"region":{"startLine":234}}}],"partialFingerprints":{"codehealthFindingId/v1":"de1020e441fb3b4f1c6f58f3b3570d29d6e0893c4317f41cec2858d5cfa59589"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: ReturnsBadRequestWhenDescriptionExceedsMaxLength: In a harness-style test project (most tests assert via a verifier/approval harness or step indirection) \u2014 no conventional assertion call was detected."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"sample/tests/NimblePros.SampleToDo.FunctionalTests/Projects/ProjectAddToDoItem.cs"},"region":{"startLine":251}}}],"partialFingerprints":{"codehealthFindingId/v1":"86f730e1923597b5f15b81c09d8b80fd185731794d577cef2b219bf3649d7c87"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: HandlesWhitespaceOnlyTitleAndDescription: In a harness-style test project (most tests assert via a verifier/approval harness or step indirection) \u2014 no conventional assertion call was detected."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"sample/tests/NimblePros.SampleToDo.FunctionalTests/Projects/ProjectAddToDoItem.cs"},"region":{"startLine":268}}}],"partialFingerprints":{"codehealthFindingId/v1":"4205f5d3a2f30b51760b4efdf049c0c12bcfab4614c96ab007caf114810e180a"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: ReturnsNotFoundGivenMissingContributorId: In a harness-style test project (most tests assert via a verifier/approval harness or step indirection) \u2014 no conventional assertion call was detected."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"sample/tests/NimblePros.SampleToDo.FunctionalTests/Contributors/ContributorUpdate.cs"},"region":{"startLine":32}}}],"partialFingerprints":{"codehealthFindingId/v1":"de4f981f90f0f25f76d76fdcdf42dac1afdc885a77a435185373af681f6fb8cc"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: ReturnsBadRequestIfRouteIdDoesNotMatchBodyId: In a harness-style test project (most tests assert via a verifier/approval harness or step indirection) \u2014 no conventional assertion call was detected."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"sample/tests/NimblePros.SampleToDo.FunctionalTests/Contributors/ContributorUpdate.cs"},"region":{"startLine":43}}}],"partialFingerprints":{"codehealthFindingId/v1":"7e92e7635e4b5c34ec9f4bd54c05d673d815ad79405dafb784ec0bae3c22312b"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: ReturnsNotFoundGivenInvalidId1000: In a harness-style test project (most tests assert via a verifier/approval harness or step indirection) \u2014 no conventional assertion call was detected."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"sample/tests/NimblePros.SampleToDo.FunctionalTests/Contributors/ContributorGetById.cs"},"region":{"startLine":25}}}],"partialFingerprints":{"codehealthFindingId/v1":"afc1b14e5619837157359cf8aea1aba1ac4e3aa9031024ce6b57f0c400a6c0e8"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: DeletesExistingContributor: In a harness-style test project (most tests assert via a verifier/approval harness or step indirection) \u2014 no conventional assertion call was detected."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"sample/tests/NimblePros.SampleToDo.FunctionalTests/Contributors/ContributorDelete.cs"},"region":{"startLine":16}}}],"partialFingerprints":{"codehealthFindingId/v1":"fecda5a529379eb5e40853fbc45c5cf9dcf1bb1ed471bf9d76175d4b9aa5af30"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: ReturnsNotFoundGivenMissingContributorId: In a harness-style test project (most tests assert via a verifier/approval harness or step indirection) \u2014 no conventional assertion call was detected."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"sample/tests/NimblePros.SampleToDo.FunctionalTests/Contributors/ContributorDelete.cs"},"region":{"startLine":26}}}],"partialFingerprints":{"codehealthFindingId/v1":"326a5cb93264299cc8e827a9b034186d2b532eb1385a3cc7f2a887e8e38079d9"}},{"ruleId":"D10","level":"note","message":{"text":"Mock framework: NSubstitute: Clean.Architecture.IntegrationTests references NSubstitute."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"f7a00103b900edf7e4be8c5cb3d32d7475832a80a5a9fb7f1f0784e5799890ed"}},{"ruleId":"D10","level":"note","message":{"text":"Mock framework: NSubstitute: Clean.Architecture.UnitTests references NSubstitute."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"f7a00103b900edf7e4be8c5cb3d32d7475832a80a5a9fb7f1f0784e5799890ed"}},{"ruleId":"D14","level":"note","message":{"text":"Licenses scanned: 66 packages scanned; 4 distinct SPDX licenses."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"1d29d66daec20840f6831f63c1b66b87c40390635ef3e9f728002964c77e88d4"}},{"ruleId":"D14","level":"error","message":{"text":"Banned license: NsDepCop: NsDepCop 2.7.0 is licensed GPL-2.0-only (banned by policy)."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"900bfae54a608334a9aba04606020b458dadeab70a24e443dd8e919af9ae2db4"}},{"ruleId":"D15","level":"warning","message":{"text":"git history depth insufficient: git history depth insufficient \u2014 install a full clone for reliable trend signal."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"ab15c4a7c72fcad940ff795282e210fd7f3769431dab6bffd8ce9ee8f7ee13f1"}},{"ruleId":"D16","level":"warning","message":{"text":"single-maintainer \u2014 knowledge-concentration (bus factor) risk: single-maintainer \u2014 knowledge-concentration (bus factor) risk (0 author(s) across 0 commit(s) sampled)."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"b4b49d961df742f0e507f4cc5c8094fb077ba0391a27fd015d18320865187719"}},{"ruleId":"D18","level":"note","message":{"text":"Clean.Architecture.Core (Production): 14 .cs files, 214 LoC (154 significant)"},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Clean.Architecture.Core/Clean.Architecture.Core.csproj"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"87a9be39a22bb2f37a239280e95075ba68ce716b88e48ee9b4760371ae0d6a55"}},{"ruleId":"D19","level":"note","message":{"text":"Low XML-doc coverage (9%) for the infrastructure layer.: Add XML \u003Csummary\u003E tags to public classes and methods in the Infrastructure project."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Clean.Architecture.Infrastructure/README.md"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"0a86fb9e17d46b650d6d316ae308216c11bde64cb10953731b2effc5b46ae8db"}},{"ruleId":"D19","level":"note","message":{"text":"Low XML-doc coverage (10%) for the Web project.: Add XML \u003Csummary\u003E tags to public classes and methods in the Web project."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Clean.Architecture.Web/README.md"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"642d0d9a9143081ff91616a7cfc1710b67463879067013547fc3cf4f6e3aaf94"}},{"ruleId":"D19","level":"warning","message":{"text":"Low XML-doc coverage: Clean.Architecture.Core: Clean.Architecture.Core: 6 % XML-doc coverage (2/34)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Clean.Architecture.Core/Clean.Architecture.Core.csproj"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"885e2edaec6e35c1d1030720c0c5d8e15fa2381373c441ac02bad5283992751f"}},{"ruleId":"D19","level":"warning","message":{"text":"Low XML-doc coverage: Clean.Architecture.Infrastructure: Clean.Architecture.Infrastructure: 9 % XML-doc coverage (3/35)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Clean.Architecture.Infrastructure/Clean.Architecture.Infrastructure.csproj"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"ae0b574eb96419a8f4f36b49d1449433f518708fb3d660456957bd9398d49442"}},{"ruleId":"D19","level":"warning","message":{"text":"Low XML-doc coverage: Clean.Architecture.UseCases: Clean.Architecture.UseCases: 14 % XML-doc coverage (3/22)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Clean.Architecture.UseCases/Clean.Architecture.UseCases.csproj"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"ef7d0c83af045178a5473cbf0a2dac1cde4a7a7b3456005ed0a8c5e81ceab039"}},{"ruleId":"D19","level":"warning","message":{"text":"Low XML-doc coverage: Clean.Architecture.Web: Clean.Architecture.Web: 10 % XML-doc coverage (8/78)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Clean.Architecture.Web/Clean.Architecture.Web.csproj"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"54b2b119d39c699a64068e90b4bf1034228c56ebc800bd4b8a0ecd30500553e9"}},{"ruleId":"D19","level":"note","message":{"text":"XML-doc coverage: Clean.Architecture.AspireHost: Clean.Architecture.AspireHost: 100 % XML-doc coverage (0/0)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Clean.Architecture.AspireHost/Clean.Architecture.AspireHost.csproj"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"dd789ba64580c4a7ea1b4f903af62531bf2d4dec3a17f47cdc03928d303d9bbc"}},{"ruleId":"D19","level":"warning","message":{"text":"Low XML-doc coverage: Clean.Architecture.ServiceDefaults: Clean.Architecture.ServiceDefaults: 0 % XML-doc coverage (0/5)."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Clean.Architecture.ServiceDefaults/Clean.Architecture.ServiceDefaults.csproj"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"d37e3406d5b2e47b88d54ce89f25be07fab62b3b358d6dee0291cc2421efaaaa"}},{"ruleId":"D22","level":"note","message":{"text":"No exposed public API: No intentionally-exposed types (IsPackable or .Contracts) to evaluate."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"2712d35e1d1ba8e91a90125d29842b77d4ca65e0eeaa52476c739f7165820a6f"}},{"ruleId":"D23","level":"note","message":{"text":"Bounded contexts not declared: A codebase of this size and project count likely contains multiple distinct concerns that require explicit boundary declarations to prevent unassessed type coupling. Declare architecture.contexts (\u22652) in config to assess cross-boundary type coupling."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"1c7e276c9c682731f01819ed5378b90ca320cde1b583c90920172911598362b3"}},{"ruleId":"D24","level":"note","message":{"text":"redundant comment: \u0022// Bind to ?page=\u0022 \u2014 Remove. The attribute \u0060[FromQuery]\u0060 or similar in the code makes this comment unnecessary."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Clean.Architecture.Web/Contributors/List.cs"},"region":{"startLine":89}}}],"partialFingerprints":{"codehealthFindingId/v1":"82ade4daee1d202a6b77e3014d31903537974b71cda0d5553441048a3c2fce93"}},{"ruleId":"D24","level":"note","message":{"text":"redundant comment: \u0022// This sets up OpenTelemetry logging\u0022 \u2014 Remove. The code \u0060builder.AddOpenTelemetry()\u0060 is self-explanatory."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/Clean.Architecture.Web/Program.cs"},"region":{"startLine":5}}}],"partialFingerprints":{"codehealthFindingId/v1":"0b634f99403248630922fbb033a0002e8fdd137fba8b7759da80591311502c37"}},{"ruleId":"D24","level":"note","message":{"text":"redundant comment: \u0022// add a Contributor\u0022 \u2014 Remove. The variable name or method call likely makes this obvious."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"tests/Clean.Architecture.IntegrationTests/Data/EfRepositoryDelete.cs"},"region":{"startLine":11}}}],"partialFingerprints":{"codehealthFindingId/v1":"e7440b162062a99d6bc300be81654380fff7c06b6f29531db32f2f40d2aad8e4"}},{"ruleId":"D25","level":"note","message":{"text":"no ADRs to check: No ADRs found, so conformance can\u0027t be assessed."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"5f96235c58be08aaae505ba823e9095f206fbc6a447f646e346ee9bd81a5f481"}},{"ruleId":"D27","level":"note","message":{"text":"Navigability unmeasured \u2014 symbol resolution incomplete: 75 % of sampled invocations could not be resolved to a symbol (the workspace likely loaded without all references) \u2014 the indirection fractions would be computed over an unrepresentative slice, so navigability is reported as not measured rather than a misleading score."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"e4b2c182df6722121fd53f7b767118a1dcf40c24ddcf7edd2a809768fcefbd23"}},{"ruleId":"D31","level":"note","message":{"text":"Not applicable: No Infrastructure-as-Code or container manifests found (Dockerfile, Terraform, Kubernetes/Helm, CloudFormation); nothing to scan."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"2e57fca60a46af1c36cbca9e46b2039488d0488a6eab73ad6bc057cd95ef2432"}},{"ruleId":"D32","level":"note","message":{"text":"Not applicable: No PII/GDPR-handling patterns detected (p/gdpr ruleset) \u2014 no data-compliance surface to assess."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"df51e593e9b0b9805626d04fe36a3d12c504b5d7d5da30dc59b5b0f134b5753b"}},{"ruleId":"D33","level":"note","message":{"text":"Not applicable: No JS/npm manifest or lockfile found outside bin/obj (package.json, package-lock.json, yarn.lock, pnpm-lock.yaml, bun.lockb); no JS dependencies to scan."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"f46a134eeb447d8c90511e3106af3dac20b26868f5143d77eadbb96ed8f220c6"}},{"ruleId":"D34","level":"note","message":{"text":"early-stage repository \u2014 too little history to judge knowledge freshness: early-stage repository \u2014 too little history to judge knowledge freshness (0 commit(s) sampled)."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"58b42e8ad1f5e125e8a2d365554e56d01e64a556b28e0c9985ff169722b7c54a"}},{"ruleId":"D36","level":"note","message":{"text":"Not applicable: This is a dotnet-new template \u2014 it produces no released artifact to attest. Supply-chain provenance, signing and SBOM are deferred to the application you build from it (add SLSA provenance / cosign signing / an SBOM in your app\u0027s release pipeline)."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"383f97e2d2c3d8c6d4adffc68d228db0928a3a8f5c3df1214c0f646687d2dbe9"}},{"ruleId":"D37","level":"note","message":{"text":"Not applicable: No vulnerability-disclosure policy file found (SECURITY.md, .github/SECURITY.md, docs/SECURITY.md, .well-known/security.txt). A coordinated-disclosure policy may live off-repo, so this is not evidenced rather than failed."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"e748a9b8b3d154964dfb621b8675d34a302dda266d0196c5d83eb8ba4071d61c"}},{"ruleId":"D38","level":"note","message":{"text":"Not applicable: No JS/npm lockfile found outside bin/obj (package-lock.json, yarn.lock, pnpm-lock.yaml, bun.lockb); nothing for OSV to scan."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"6ff7301b610918095afd57ac1c89dabddab1d8fdb34c0f0d687159a5a0df0b8e"}}],"properties":{"codehealthPublication":{"public":true,"notice":"This is the PUBLIC form of this artifact. Findings are listed in full, but the details of SECURITY findings \u2014 which rule fired, in which file, on which line, and how to fix it \u2014 are deliberately withheld, and any secret-scanner results are excluded entirely. Where detail is absent here it was REMOVED FOR PUBLICATION; it is not missing from the analysis. The complete artifact is available from the repository owner.","securityFindingsRedacted":0,"secretScannerRunsExcluded":0}}}]}