# Changelog

## Score

- CAI 38 → 39 (+1.4)
- Rubric changed (rubric-2026.08.17 → rubric-2026.09.15) — scores are not directly comparable.

## Lenses

- Code Health 98 → 99 (+1.4)
- Architecture 69 → 69 (+0.0)
- Maturity 33 → 33 (+0.0)
- Readiness 15 → 21 (+6.0)
- Security 100 → 80 (-20.0)

## Resolved (9)

- Dependency hygiene not measured — no supported dependency manifest was read
- Duplicated block (9–12 lines × 2) (whocc_scraper/whocc_scraper/spiders/fourth.py)
- Duplicated block (9–12 lines × 3) (whocc_scraper/whocc_scraper/spiders/fourth.py)
- No exposed public API
- The README does not mention license or acknowledgements, which are standard metadata for a public project. (README.md)
- early-stage repository — too few commits for a meaningful bus factor
- early-stage repository — too little history to judge knowledge freshness
- git history depth insufficient
- git history depth insufficient

## New (104)

- Critical CVE: [GHSA redacted] (requirements.txt)
- Critical CVE: [GHSA redacted] (requirements.txt)
- Documentation: no architecture or design documentation (README.md)
- Documentation: no licence statement (README.md)
- Duplicated block (8–11 lines × 5) (whocc_scraper/whocc_scraper/spiders/fourth.py)
- High CVE: [GHSA redacted] (requirements.txt)
- High CVE: [GHSA redacted] (requirements.txt)
- High CVE: [GHSA redacted] (requirements.txt)
- High CVE: [GHSA redacted] (requirements.txt)
- High CVE: [GHSA redacted] (requirements.txt)
- High CVE: [GHSA redacted] (requirements.txt)
- High CVE: [GHSA redacted] (requirements.txt)
- High CVE: [GHSA redacted] (requirements.txt)
- High CVE: [GHSA redacted] (requirements.txt)
- High CVE: [GHSA redacted] (requirements.txt)
- High CVE: [GHSA redacted] (requirements.txt)
- High CVE: [GHSA redacted] (requirements.txt)
- Medium CVE: [GHSA redacted] (requirements.txt)
- Medium CVE: [GHSA redacted] (requirements.txt)
- Medium CVE: [GHSA redacted] (requirements.txt)
- …and 84 more
