{"$schema":"https://json.schemastore.org/sarif-2.1.0.json","version":"2.1.0","runs":[{"tool":{"driver":{"name":"codehealth","informationUri":"https://codehealth.canine.dev","rules":[{"id":"D1","name":"Cyclomatic Complexity","shortDescription":{"text":"Cyclomatic Complexity"},"helpUri":"https://codehealth.canine.dev/dimensions/D1"},{"id":"D2","name":"Cognitive Complexity","shortDescription":{"text":"Cognitive Complexity"},"helpUri":"https://codehealth.canine.dev/dimensions/D2"},{"id":"D3","name":"God Classes","shortDescription":{"text":"God Classes"},"helpUri":"https://codehealth.canine.dev/dimensions/D3"},{"id":"D4","name":"Code Duplication","shortDescription":{"text":"Code Duplication"},"helpUri":"https://codehealth.canine.dev/dimensions/D4"},{"id":"D9","name":"Test Distribution","shortDescription":{"text":"Test Distribution"},"helpUri":"https://codehealth.canine.dev/dimensions/D9"},{"id":"D10","name":"Test Quality","shortDescription":{"text":"Test Quality"},"helpUri":"https://codehealth.canine.dev/dimensions/D10"},{"id":"D12","name":"Dependency Hygiene","shortDescription":{"text":"Dependency Hygiene"},"helpUri":"https://codehealth.canine.dev/dimensions/D12"},{"id":"D13","name":"Secret Scanning","shortDescription":{"text":"Secret Scanning"},"helpUri":"https://codehealth.canine.dev/dimensions/D13","relationships":[{"target":{"id":"CWE-798","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-259","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]}],"properties":{"cwe":["CWE-798","CWE-259"]}},{"id":"D15","name":"Churn \u00D7 Complexity Hotspots","shortDescription":{"text":"Churn \u00D7 Complexity Hotspots"},"helpUri":"https://codehealth.canine.dev/dimensions/D15"},{"id":"D16","name":"Bus Factor","shortDescription":{"text":"Bus Factor"},"helpUri":"https://codehealth.canine.dev/dimensions/D16"},{"id":"D19","name":"Documentation Quality","shortDescription":{"text":"Documentation Quality"},"helpUri":"https://codehealth.canine.dev/dimensions/D19"},{"id":"D21","name":"Naming Consistency","shortDescription":{"text":"Naming Consistency"},"helpUri":"https://codehealth.canine.dev/dimensions/D21"},{"id":"D26","name":"Project Cohesion","shortDescription":{"text":"Project Cohesion"},"helpUri":"https://codehealth.canine.dev/dimensions/D26"},{"id":"D28","name":"Secrets (history)","shortDescription":{"text":"Secrets (history)"},"helpUri":"https://codehealth.canine.dev/dimensions/D28","relationships":[{"target":{"id":"CWE-798","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-259","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]}],"properties":{"cwe":["CWE-798","CWE-259"]}},{"id":"D29","name":"Static Analysis (SAST)","shortDescription":{"text":"Static Analysis (SAST)"},"helpUri":"https://codehealth.canine.dev/dimensions/D29","relationships":[{"target":{"id":"CWE-79","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-89","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-78","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-94","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-77","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]}],"properties":{"cwe":["CWE-79","CWE-89","CWE-78","CWE-94","CWE-77"]}},{"id":"D30","name":"Dependency Vulnerabilities","shortDescription":{"text":"Dependency Vulnerabilities"},"helpUri":"https://codehealth.canine.dev/dimensions/D30","relationships":[{"target":{"id":"CWE-1395","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-937","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]}],"properties":{"cwe":["CWE-1395","CWE-937"]}},{"id":"D34","name":"Knowledge Freshness","shortDescription":{"text":"Knowledge Freshness"},"helpUri":"https://codehealth.canine.dev/dimensions/D34"},{"id":"D35","name":"Change Coupling","shortDescription":{"text":"Change Coupling"},"helpUri":"https://codehealth.canine.dev/dimensions/D35"},{"id":"D36","name":"Supply-chain Provenance \u0026 Signing","shortDescription":{"text":"Supply-chain Provenance \u0026 Signing"},"helpUri":"https://codehealth.canine.dev/dimensions/D36","relationships":[{"target":{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]},{"target":{"id":"CWE-494","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]}],"properties":{"cwe":["CWE-1357","CWE-494"]}},{"id":"D37","name":"Vulnerability-disclosure Policy","shortDescription":{"text":"Vulnerability-disclosure Policy"},"helpUri":"https://codehealth.canine.dev/dimensions/D37","relationships":[{"target":{"id":"CWE-1059","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]}],"properties":{"cwe":["CWE-1059"]}},{"id":"D43","name":"Malicious Dependencies","shortDescription":{"text":"Malicious Dependencies"},"helpUri":"https://codehealth.canine.dev/dimensions/D43","relationships":[{"target":{"id":"CWE-506","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},"kinds":["relevant"]}],"properties":{"cwe":["CWE-506"]}},{"id":"AX10","name":"Code composition","shortDescription":{"text":"Code composition"},"helpUri":"https://codehealth.canine.dev/dimensions/AX10"},{"id":"AX3","name":"Project dependency cycles","shortDescription":{"text":"Project dependency cycles"},"helpUri":"https://codehealth.canine.dev/dimensions/AX3"},{"id":"AX4","name":"Dependency direction","shortDescription":{"text":"Dependency direction"},"helpUri":"https://codehealth.canine.dev/dimensions/AX4"},{"id":"AXB1","name":"Runtime evidence locked \u2014 no reproducible boot","shortDescription":{"text":"Runtime evidence locked \u2014 no reproducible boot"},"helpUri":"https://codehealth.canine.dev/dimensions/AXB1"},{"id":"M1","name":"Documentation (README)","shortDescription":{"text":"Documentation (README)"},"helpUri":"https://codehealth.canine.dev/dimensions/M1"},{"id":"M2","name":"Architecture documentation","shortDescription":{"text":"Architecture documentation"},"helpUri":"https://codehealth.canine.dev/dimensions/M2"},{"id":"M3","name":"Folder \u0026 project structure","shortDescription":{"text":"Folder \u0026 project structure"},"helpUri":"https://codehealth.canine.dev/dimensions/M3"},{"id":"M4","name":"Documentation accuracy","shortDescription":{"text":"Documentation accuracy"},"helpUri":"https://codehealth.canine.dev/dimensions/M4"},{"id":"P1","name":"CI/CD gates","shortDescription":{"text":"CI/CD gates"},"helpUri":"https://codehealth.canine.dev/dimensions/P1"},{"id":"P10","name":"Library API \u0026 versioning","shortDescription":{"text":"Library API \u0026 versioning"},"helpUri":"https://codehealth.canine.dev/dimensions/P10"},{"id":"P12","name":"CI test-gate honesty","shortDescription":{"text":"CI test-gate honesty"},"helpUri":"https://codehealth.canine.dev/dimensions/P12"},{"id":"P3","name":"Security \u0026 performance tooling","shortDescription":{"text":"Security \u0026 performance tooling"},"helpUri":"https://codehealth.canine.dev/dimensions/P3"},{"id":"P4","name":"Deployment \u0026 Rollback","shortDescription":{"text":"Deployment \u0026 Rollback"},"helpUri":"https://codehealth.canine.dev/dimensions/P4"},{"id":"P6","name":"Release Hygiene","shortDescription":{"text":"Release Hygiene"},"helpUri":"https://codehealth.canine.dev/dimensions/P6"},{"id":"R1","name":"Type Safety","shortDescription":{"text":"Type Safety"},"helpUri":"https://codehealth.canine.dev/dimensions/R1"},{"id":"R10","name":"Code Duplication","shortDescription":{"text":"Code Duplication"},"helpUri":"https://codehealth.canine.dev/dimensions/R10"},{"id":"R2","name":"Cyclomatic Complexity","shortDescription":{"text":"Cyclomatic Complexity"},"helpUri":"https://codehealth.canine.dev/dimensions/R2"},{"id":"R3","name":"Large Files","shortDescription":{"text":"Large Files"},"helpUri":"https://codehealth.canine.dev/dimensions/R3"},{"id":"R4","name":"Test Coverage","shortDescription":{"text":"Test Coverage"},"helpUri":"https://codehealth.canine.dev/dimensions/R4"},{"id":"R6","name":"Tooling","shortDescription":{"text":"Tooling"},"helpUri":"https://codehealth.canine.dev/dimensions/R6"},{"id":"R7","name":"Dead Code","shortDescription":{"text":"Dead Code"},"helpUri":"https://codehealth.canine.dev/dimensions/R7"},{"id":"R8","name":"Dependency Hygiene","shortDescription":{"text":"Dependency Hygiene"},"helpUri":"https://codehealth.canine.dev/dimensions/R8"},{"id":"R9","name":"Circular Imports","shortDescription":{"text":"Circular Imports"},"helpUri":"https://codehealth.canine.dev/dimensions/R9"},{"id":"SC1","name":"Supply-chain hygiene","shortDescription":{"text":"Supply-chain hygiene"},"helpUri":"https://codehealth.canine.dev/dimensions/SC1"},{"id":"X10","name":"Duplicated predicate","shortDescription":{"text":"Duplicated predicate"},"helpUri":"https://codehealth.canine.dev/dimensions/X10"},{"id":"X24","name":"Document value interpolated into markup unescaped","shortDescription":{"text":"Document value interpolated into markup unescaped"},"helpUri":"https://codehealth.canine.dev/dimensions/X24"},{"id":"X25","name":"Inert configuration knob","shortDescription":{"text":"Inert configuration knob"},"helpUri":"https://codehealth.canine.dev/dimensions/X25"},{"id":"X26","name":"Unsynchronised callback handoff","shortDescription":{"text":"Unsynchronised callback handoff"},"helpUri":"https://codehealth.canine.dev/dimensions/X26"},{"id":"X29","name":"Per-element action decided by a fixed element","shortDescription":{"text":"Per-element action decided by a fixed element"},"helpUri":"https://codehealth.canine.dev/dimensions/X29"},{"id":"X32","name":"Type resolved by simple name across every loaded assembly","shortDescription":{"text":"Type resolved by simple name across every loaded assembly"},"helpUri":"https://codehealth.canine.dev/dimensions/X32"},{"id":"X6","name":"Hand-rolled structured-format parsing","shortDescription":{"text":"Hand-rolled structured-format parsing"},"helpUri":"https://codehealth.canine.dev/dimensions/X6"},{"id":"X7","name":"Silent fallback defaults","shortDescription":{"text":"Silent fallback defaults"},"helpUri":"https://codehealth.canine.dev/dimensions/X7"},{"id":"X9","name":"Subsumed condition operand","shortDescription":{"text":"Subsumed condition operand"},"helpUri":"https://codehealth.canine.dev/dimensions/X9"}]}},"results":[{"ruleId":"D1","level":"warning","message":{"text":"isURL.isURL (cyclomatic 58): isURL.isURL has cyclomatic complexity 58 (threshold 15). Of this number, 56 points are the body\u0027s own statements and 2 belong to one function literal inside it that branches. To reduce it, separate the cases: extract each independent branch into its own named function, and where the body has guards that only reject input, fold those into early returns at the top."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isURL.js"},"region":{"startLine":56}}}],"partialFingerprints":{"codehealthFindingId/v1":"a1e8ce7786655e1ceeb43f3502474ee94991239749ce929b604b9d632b5dce1d"}},{"ruleId":"D1","level":"warning","message":{"text":"isEmail.isEmail (cyclomatic 37): isEmail.isEmail has cyclomatic complexity 37 (threshold 15). To reduce it, separate the cases: extract each independent branch into its own named function, and where the body has guards that only reject input, fold those into early returns at the top."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isEmail.js"},"region":{"startLine":64}}}],"partialFingerprints":{"codehealthFindingId/v1":"b5b884b2619a0991b8a235f8ad9ae022147964ffc33beec025e7dbe265aadcbb"}},{"ruleId":"D1","level":"warning","message":{"text":"normalizeEmail.normalizeEmail (cyclomatic 30): normalizeEmail.normalizeEmail has cyclomatic complexity 30 (threshold 15). To reduce it, separate the cases: extract each independent branch into its own named function, and where the body has guards that only reject input, fold those into early returns at the top."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/normalizeEmail.js"},"region":{"startLine":172}}}],"partialFingerprints":{"codehealthFindingId/v1":"1743e74ea2c630fb857894da8c2b60ac229d7ccf032f6117c682dd02fda7a868"}},{"ruleId":"D1","level":"warning","message":{"text":"isFloat.isFloat (cyclomatic 20): isFloat.isFloat has cyclomatic complexity 20 (threshold 15). To reduce it, name the conditions: bind each compound test to a well-named local or a small predicate function, so the body reads as a sequence of named decisions rather than a chain of operators."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isFloat.js"},"region":{"startLine":5}}}],"partialFingerprints":{"codehealthFindingId/v1":"82ec15d3e8cda7c04ee97fb19a96de305650ae7b3a15edbbf73c7998201ab6f0"}},{"ruleId":"D1","level":"warning","message":{"text":"isFQDN.isFQDN (cyclomatic 19): isFQDN.isFQDN has cyclomatic complexity 19 (threshold 15). Of this number, 12 points are the body\u0027s own statements and 7 belong to one function literal inside it that branches. To reduce it, split the body: these branches sit side by side rather than nested inside one another, so extracting each one on its own would leave a function per branch. Group the statements between the checks into named steps and move each step into its own function, so the body reads as a short sequence of named stages."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isFQDN.js"},"region":{"startLine":13}}}],"partialFingerprints":{"codehealthFindingId/v1":"3227cc3dcf03dfd07ebd7708ee575390679046e496c730a4eec838bd3891cde4"}},{"ruleId":"D1","level":"warning","message":{"text":"isDate.isDate (cyclomatic 19): isDate.isDate has cyclomatic complexity 19 (threshold 15). To reduce it, separate the cases: extract each independent branch into its own named function, and where the body has guards that only reject input, fold those into early returns at the top."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isDate.js"},"region":{"startLine":24}}}],"partialFingerprints":{"codehealthFindingId/v1":"6ee3d620502b242820ca2760ead19398aad1ce1f5cfa0c6c77007ef940251428"}},{"ruleId":"D1","level":"warning","message":{"text":"isTaxID.ptBrCheck (cyclomatic 18): isTaxID.ptBrCheck has cyclomatic complexity 18 (threshold 15). To reduce it, separate the cases: extract each independent branch into its own named function, and where the body has guards that only reject input, fold those into early returns at the top."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isTaxID.js"},"region":{"startLine":968}}}],"partialFingerprints":{"codehealthFindingId/v1":"5c305c873ebc4f2d369a4d3d44cb4632e992a8171a135e4cf3323712438c79c0"}},{"ruleId":"D1","level":"warning","message":{"text":"isCurrency.currencyRegex (cyclomatic 18): isCurrency.currencyRegex has cyclomatic complexity 18 (threshold 15). Of this number, 17 points are the body\u0027s own statements and 1 belongs to one function literal inside it that branches. To reduce it, split the body: these branches sit side by side rather than nested inside one another, so extracting each one on its own would leave a function per branch. Group the statements between the checks into named steps and move each step into its own function, so the body reads as a short sequence of named stages."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isCurrency.js"},"region":{"startLine":4}}}],"partialFingerprints":{"codehealthFindingId/v1":"6d9d7936ea2c8437748cc51fa366f098fe5304dc929af256bd110af014e5fb7f"}},{"ruleId":"D1","level":"warning","message":{"text":"isTaxID.csCzCheck (cyclomatic 16): isTaxID.csCzCheck has cyclomatic complexity 16 (threshold 15). To reduce it, separate the cases: extract each independent branch into its own named function, and where the body has guards that only reject input, fold those into early returns at the top."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isTaxID.js"},"region":{"startLine":101}}}],"partialFingerprints":{"codehealthFindingId/v1":"ddde40bc9e00ad410c5e57012a59d2905d250ab0af6986e402521fa3b751f15d"}},{"ruleId":"D2","level":"warning","message":{"text":"isURL (cognitive 97): isURL has cognitive complexity 97 (threshold 15). Drivers by points: if/else 40 (74 pts), boolean chains 20, ternaries 1 (3 pts) (nesting depth added 36). Of this number, 95 points are the body\u0027s own statements and 2 belong to one function item inside it that branches. To reduce it, split the body into named stages: move each independent step or branch into its own named function so the body reads as a short sequence of named calls rather than one long body."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isURL.js"},"region":{"startLine":56}}}],"partialFingerprints":{"codehealthFindingId/v1":"d617025a9de4ad663758b106f3e1e66c90425b531247fe2fbad45f156e174ad8"}},{"ruleId":"D2","level":"warning","message":{"text":"isEmail.isEmail (cognitive 54): isEmail.isEmail has cognitive complexity 54 (threshold 15). Drivers by points: if/else 21 (37 pts), boolean chains 11, loops 2 (3 pts), ternaries 2 (3 pts) (nesting depth added 18). To reduce it, split the body into named stages: move each independent step or branch into its own named function so the body reads as a short sequence of named calls rather than one long body."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isEmail.js"},"region":{"startLine":64}}}],"partialFingerprints":{"codehealthFindingId/v1":"ac311a5e42dfdb0954128c595cad4151969adf642def12e8cdfa070317897a7f"}},{"ruleId":"D2","level":"warning","message":{"text":"normalizeEmail (cognitive 47): normalizeEmail has cognitive complexity 47 (threshold 15). Drivers by points: if/else 20 (34 pts), ternaries 3 (7 pts), boolean chains 6 (nesting depth added 18). To reduce it, split the body into named stages: move each independent step or branch into its own named function so the body reads as a short sequence of named calls rather than one long body."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/normalizeEmail.js"},"region":{"startLine":172}}}],"partialFingerprints":{"codehealthFindingId/v1":"0dc615d7976f4d06500bc6dd4ce12d3e9f4b3b131c4bb8dcfd58fbe093f46d35"}},{"ruleId":"D2","level":"warning","message":{"text":"isDate.isDate (cognitive 32): isDate.isDate has cognitive complexity 32 (threshold 15). Drivers by points: if/else 13 (24 pts), boolean chains 4, loops 1 (2 pts), ternaries 1 (2 pts) (nesting depth added 13). To reduce it, split the body into named stages: move each independent step or branch into its own named function so the body reads as a short sequence of named calls rather than one long body."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isDate.js"},"region":{"startLine":24}}}],"partialFingerprints":{"codehealthFindingId/v1":"02597a5bbde8707cd644b10125a8e0604eadd35bb6688d1f3e6f4d1403155b14"}},{"ruleId":"D2","level":"warning","message":{"text":"isISIN.isISIN (cognitive 29): isISIN.isISIN has cognitive complexity 29 (threshold 15). Drivers by points: if/else 11 (24 pts), loops 2 (4 pts), boolean chains 1 (nesting depth added 15). To reduce it, split the body into named stages: move each independent step or branch into its own named function so the body reads as a short sequence of named calls rather than one long body."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isISIN.js"},"region":{"startLine":12}}}],"partialFingerprints":{"codehealthFindingId/v1":"9d607d0fe6341f756742a5f6f2ddcdea3c7f6eb6d79f666243572ca21360a985"}},{"ruleId":"D2","level":"warning","message":{"text":"isTaxID.csCzCheck (cognitive 29): isTaxID.csCzCheck has cognitive complexity 29 (threshold 15). Drivers by points: if/else 18 (28 pts), boolean chains 1 (nesting depth added 10). To reduce it, split the body into named stages: move each independent step or branch into its own named function so the body reads as a short sequence of named calls rather than one long body."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isTaxID.js"},"region":{"startLine":101}}}],"partialFingerprints":{"codehealthFindingId/v1":"e1c729296577e79e7a9f3ce65aa54138d9e55891ce7901551033465faf1a8583"}},{"ruleId":"D2","level":"warning","message":{"text":"isTaxID.svSeCheck (cognitive 25): isTaxID.svSeCheck has cognitive complexity 25 (threshold 15). Drivers by points: if/else 14 (24 pts), boolean chains 1 (nesting depth added 10). To reduce it, split the body into named stages: move each independent step or branch into its own named function so the body reads as a short sequence of named calls rather than one long body."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isTaxID.js"},"region":{"startLine":1117}}}],"partialFingerprints":{"codehealthFindingId/v1":"23784784bed158e9304d05b708915b7366ebe754e93022ed06e1b9b2a18edc7d"}},{"ruleId":"D2","level":"warning","message":{"text":"isTaxID.itItNameCheck (cognitive 22): isTaxID.itItNameCheck has cognitive complexity 22 (threshold 15). Drivers by points: if/else 7 (18 pts), boolean chains 3, loops 1 (nesting depth added 11). To reduce it, split the body into named stages: move each independent step or branch into its own named function so the body reads as a short sequence of named calls rather than one long body."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isTaxID.js"},"region":{"startLine":621}}}],"partialFingerprints":{"codehealthFindingId/v1":"e82d172790eece86534ed498608c3a6c4abfe586ef848d32a5d1667f2e8d4eb7"}},{"ruleId":"D2","level":"warning","message":{"text":"isFQDN.isFQDN (cognitive 21): isFQDN.isFQDN has cognitive complexity 21 (threshold 15). Drivers by points: if/else 12 (15 pts), boolean chains 6 (nesting depth added 3). Of this number, 14 points are the body\u0027s own statements and 7 belong to one function literal inside it that branches. To reduce it, split the body: most of this score is breadth rather than depth \u2014 checks laid out side by side rather than stacked \u2014 so group the statements between the checks into named steps and move each step into its own function. Some of it IS depth: where a check sits inside another whose only job is to reach it, merge the two into one condition."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isFQDN.js"},"region":{"startLine":13}}}],"partialFingerprints":{"codehealthFindingId/v1":"fe59836c2312ad5fa214da427d918ace80c56f5b17f960d9510430ea40e51a62"}},{"ruleId":"D2","level":"warning","message":{"text":"isISBN.isISBN (cognitive 21): isISBN.isISBN has cognitive complexity 21 (threshold 15). Drivers by points: if/else 9 (14 pts), loops 2 (4 pts), boolean chains 3 (nesting depth added 7). To reduce it, split the body into named stages: move each independent step or branch into its own named function so the body reads as a short sequence of named calls rather than one long body."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isISBN.js"},"region":{"startLine":7}}}],"partialFingerprints":{"codehealthFindingId/v1":"79636a9f9ca045af00c6c5594f91fd35746f09c6228e6741acc538dd68c828f2"}},{"ruleId":"D2","level":"warning","message":{"text":"isMobilePhone.isMobilePhone (cognitive 20): isMobilePhone.isMobilePhone has cognitive complexity 20 (threshold 15). Drivers by points: if/else 8 (16 pts), boolean chains 2, loops 1 (2 pts) (nesting depth added 9). Of this number, 15 points are the body\u0027s own statements and 5 belong to one function literal inside it that branches. To reduce it, split the body into named stages: move each independent step or branch into its own named function so the body reads as a short sequence of named calls rather than one long body."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isMobilePhone.js"},"region":{"startLine":180}}}],"partialFingerprints":{"codehealthFindingId/v1":"0f3be74d1641bb2d661dd644f10a9ab5ec1ceffc02886266bf4f67665c2c3707"}},{"ruleId":"D2","level":"warning","message":{"text":"currencyRegex (cognitive 20): currencyRegex has cognitive complexity 20 (threshold 15). Drivers by points: if/else 12 (14 pts), boolean chains 3, ternaries 3 (nesting depth added 2). Of this number, 19 points are the body\u0027s own statements and 1 belongs to 2 function literals inside it that branch. To reduce it, split the body: most of this score is breadth rather than depth \u2014 checks laid out side by side rather than stacked \u2014 so group the statements between the checks into named steps and move each step into its own function. Some of it IS depth: where a check sits inside another whose only job is to reach it, merge the two into one condition, and where an else follows a branch that already returns, drop the trailing else and let the rest of the body continue at one level."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isCurrency.js"},"region":{"startLine":4}}}],"partialFingerprints":{"codehealthFindingId/v1":"e6804b4c14fddf4517972f4c8004ab231459e5db3d07f57938825d4733fbe5e7"}},{"ruleId":"D2","level":"warning","message":{"text":"isTaxID.itItCheck (cognitive 19): isTaxID.itItCheck has cognitive complexity 19 (threshold 15). Drivers by points: if/else 11 (16 pts), loops 3 (nesting depth added 5). To reduce it, split the body into named stages: move each independent step or branch into its own named function so the body reads as a short sequence of named calls rather than one long body."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isTaxID.js"},"region":{"startLine":654}}}],"partialFingerprints":{"codehealthFindingId/v1":"53e9cac65a8f42d3a07a3ca77f21acc6b88a3af3313f48ae04c9ed5e12747582"}},{"ruleId":"D2","level":"warning","message":{"text":"isISO6346.isISO6346 (cognitive 19): isISO6346.isISO6346 has cognitive complexity 19 (threshold 15). Drivers by points: if/else 9 (15 pts), boolean chains 2, loops 1 (2 pts) (nesting depth added 7). To reduce it, split the body into named stages: move each independent step or branch into its own named function so the body reads as a short sequence of named calls rather than one long body."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isISO6346.js"},"region":{"startLine":9}}}],"partialFingerprints":{"codehealthFindingId/v1":"3c45dbb23e4fef43e343b3aad339066163d7b9f9bc1d80b5cb6695c49641a7ae"}},{"ruleId":"D2","level":"warning","message":{"text":"isTaxID.deDeCheck (cognitive 16): isTaxID.deDeCheck has cognitive complexity 16 (threshold 15). Drivers by points: if/else 5 (10 pts), loops 3 (5 pts), boolean chains 1 (nesting depth added 7). To reduce it, split the body into named stages: move each independent step or branch into its own named function so the body reads as a short sequence of named calls rather than one long body."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isTaxID.js"},"region":{"startLine":172}}}],"partialFingerprints":{"codehealthFindingId/v1":"8bd97b9469945c01189d0926ffc6e460830ee94dbca5e7bb276d51faa695df0e"}},{"ruleId":"D2","level":"warning","message":{"text":"isTaxID.plPlCheck (cognitive 16): isTaxID.plPlCheck has cognitive complexity 16 (threshold 15). Drivers by points: if/else 11 (13 pts), loops 2 (3 pts) (nesting depth added 3). To reduce it, split the body: most of this score is breadth rather than depth \u2014 checks laid out side by side rather than stacked \u2014 so group the statements between the checks into named steps and move each step into its own function. Some of it IS depth: where a check sits inside another whose only job is to reach it, merge the two into one condition, and where an else follows a branch that already returns, drop the trailing else and let the rest of the body continue at one level."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isTaxID.js"},"region":{"startLine":852}}}],"partialFingerprints":{"codehealthFindingId/v1":"57008e2cbe1c978f84385753fb0502b77421f8d0cb932d44210c1525748d72a3"}},{"ruleId":"D2","level":"warning","message":{"text":"isTaxID.ptBrCheck (cognitive 16): isTaxID.ptBrCheck has cognitive complexity 16 (threshold 15). Drivers by points: if/else 6 (11 pts), loops 2 (4 pts), boolean chains 1 (nesting depth added 7). To reduce it, split the body into named stages: move each independent step or branch into its own named function so the body reads as a short sequence of named calls rather than one long body."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isTaxID.js"},"region":{"startLine":968}}}],"partialFingerprints":{"codehealthFindingId/v1":"3c46e62c8782b8000d475f61f4946aeb701bcc6deaade5e06c71018bb1f8d343"}},{"ruleId":"D3","level":"warning","message":{"text":"FileTooLong: lib/isTaxID.js: FileTooLong \u2014 712 significant lines (blank, comment-only and punctuation-only lines excluded; the length bar is tripled for a single-responsibility module of 4 or fewer top-level units). The bar is 500 significant lines; this is 212 over it, 1.42\u00D7 the bar. To reduce it, split the file along the responsibilities already in it: move each cohesive group of declarations into its own sibling file in the same module or package, so no one file has to be read whole to change one of them."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isTaxID.js"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"c0480f21b5fbec2f95a302fca592f9d6cac97a1fe8d35568391d59434a18c52c"}},{"ruleId":"D3","level":"warning","message":{"text":"FunctionTooLong: isURL.isURL: FunctionTooLong \u2014 isURL runs 114 significant lines (blank, comment-only and punctuation-only lines excluded) in one body. The bar is 100 significant lines; this is 14 over it, 1.14\u00D7 the bar. This is length, not branching: a long straight-line body scores low on complexity and is still read whole to change any part of it, so the complexity numbers beside this row neither confirm nor excuse it. To reduce it, extract each cohesive step of the body \u2014 the runs of statements that work on the same values and would earn the same name \u2014 into its own named unit, and have this one call them in order."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isURL.js"},"region":{"startLine":56}}}],"partialFingerprints":{"codehealthFindingId/v1":"c71f065cb13f23c40c856721a157aa93207ef2fbca1125ffbbd3d506924cd3df"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate email addresses: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":11}}}],"partialFingerprints":{"codehealthFindingId/v1":"74bffdda256db6f9bac997a08ada51458ea1ae0a32c8222c4858566988c3aab5"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate email addresses with domain specific validation: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":80}}}],"partialFingerprints":{"codehealthFindingId/v1":"0dc77b540327db42d2e70ca296e3bb952a6cdf5265ba1f4ba0093e5ab8ce1028"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate email addresses with underscores in the domain: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":99}}}],"partialFingerprints":{"codehealthFindingId/v1":"ae578d3fd94c9e2ab2e3bd9c3e19b32db963449f5c326b573a92675f81e10dc4"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate email addresses without UTF8 characters in local part: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":110}}}],"partialFingerprints":{"codehealthFindingId/v1":"12000e0e61b9d027be042a07ef51af17cfb001715e3bf8f3391023ce95f8d24c"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate email addresses with display names: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":142}}}],"partialFingerprints":{"codehealthFindingId/v1":"2f6f86ed6503d35c178e59508e91857a06b5bd3ad525d959fa3e1a23369fc3c2"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate email addresses with required display names: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":205}}}],"partialFingerprints":{"codehealthFindingId/v1":"31eaa77940650482f112c9abb170c4b627c225d2273a83ee26d5cb5da4a67faf"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate email addresses with allowed IPs: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":251}}}],"partialFingerprints":{"codehealthFindingId/v1":"3995925da0843a7cdc659f3ceaba73459830bf6f362db1b60801e70645cf4fa8"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should not validate email addresses with blacklisted chars in the name: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":267}}}],"partialFingerprints":{"codehealthFindingId/v1":"7cc235c5873a9619f5bfcbc7d0fa5a4a6ca84d81490124c32f8fa3425b4e68fa"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate really long emails if ignore_max_length is set: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":284}}}],"partialFingerprints":{"codehealthFindingId/v1":"7fffcd12d40c56e149827714dcb35cd046c82558b1d2b734304444f4d5ba627e"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should not validate email addresses with denylisted domains: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":313}}}],"partialFingerprints":{"codehealthFindingId/v1":"92b73e0d14154d3e2636667c703f605c8909972f0c6e7ec89ed1bc934ad204a4"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should allow regular expressions in the host blacklist of isEmail: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":327}}}],"partialFingerprints":{"codehealthFindingId/v1":"3f818205498956c809aea0addcaaf6e6692389aae0b0819788e1ce3997b454ec"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate only email addresses with whitelisted domains: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":346}}}],"partialFingerprints":{"codehealthFindingId/v1":"9f63bbcd6fd6ea1c818f13558c62d6549b2ffdcc55ae7072519c3afe505532ea"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should allow regular expressions in the host whitelist of isEmail: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":362}}}],"partialFingerprints":{"codehealthFindingId/v1":"c0f18940c7fd263178aa6d1ae091755232c30397dab1760a7ce834d6625e9e8e"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate URLs: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":381}}}],"partialFingerprints":{"codehealthFindingId/v1":"c2baf4a7dd8f4fc903c6bb9006ea95bedf95d4d9f586334b8743ad47622965e3"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate URLs without protocol: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":493}}}],"partialFingerprints":{"codehealthFindingId/v1":"0b3602b18936032daaaef1f129b72f60523633d06b09c9bf878831f1a6c96f64"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate URLs with custom protocols: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":549}}}],"partialFingerprints":{"codehealthFindingId/v1":"a50bf235f28f5dcdd3e88b69138ae8df40f65e764b19cd84c2e863703e94f0de"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate file URLs without a host: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":566}}}],"partialFingerprints":{"codehealthFindingId/v1":"87e48dca793e6c6eaaa9d86a425ec0c181401e9879fe6edbcdcc2be8e56fe9a4"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate postgres URLs without a host: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":586}}}],"partialFingerprints":{"codehealthFindingId/v1":"b5a721ae81a641fd07634b7a2c752184f5d6dfa41f475b8d33130f036cbbf1af"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate URLs with any protocol: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":604}}}],"partialFingerprints":{"codehealthFindingId/v1":"78057fc66e31df578e3f5db810095bc4c3aacf07a7de516b0188f10a29f43d89"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate URLs with underscores: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":624}}}],"partialFingerprints":{"codehealthFindingId/v1":"a777c1c1dedb036e311bea47b1e423988859b54e7919dceb66b2ddeb1abb532c"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate URLs that do not have a TLD: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":640}}}],"partialFingerprints":{"codehealthFindingId/v1":"e21408f6ca06b39930a607999119333ba744b10dffa80f48e1f51dc28a5c307d"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate URLs with a trailing dot option: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":657}}}],"partialFingerprints":{"codehealthFindingId/v1":"4e12b02b686899f2193c82210c16c5150682193ef4417aeea706c8f3d69c58e8"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate URLs with column and no port: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":671}}}],"partialFingerprints":{"codehealthFindingId/v1":"83e7fc362c857c97bab5f6cd2abd22663aee710469bc8eab583c6325142a0cb2"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate sftp protocol URL containing column and no port: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":684}}}],"partialFingerprints":{"codehealthFindingId/v1":"55d399d1c85b30c16356ef88053bc273d998f795fd11c3608f193141ce6d711f"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate protocol relative URLs: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":696}}}],"partialFingerprints":{"codehealthFindingId/v1":"05e8e22d19a391b5f2b1cd590aeb868845b1abcfc597c1b1447a76b609e35c22"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should not validate URLs with fragments when allow fragments is false: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":716}}}],"partialFingerprints":{"codehealthFindingId/v1":"8a944633a0b1fe2e8add7d173c82010e7c46a8187343841bd45f17bdbdefb158"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should not validate URLs with query components when allow query components is false: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":733}}}],"partialFingerprints":{"codehealthFindingId/v1":"b9c39dabae7ecc2bab8f0753c91f777e9eebcc593bd8648f8ae0f64909a86ac3"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should not validate protocol relative URLs when require protocol is true: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":752}}}],"partialFingerprints":{"codehealthFindingId/v1":"75267d0cf908bb5fa01479f29e227e351d1e8ef4024e434697d817ae69bf83f3"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should let users specify whether URLs require a protocol: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":771}}}],"partialFingerprints":{"codehealthFindingId/v1":"8defdddaaa81ed5075b62a5cea8f4279a4e3603d60e3d5eacd302d42e82ce04e"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate authentication strings if a protocol is not required: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":788}}}],"partialFingerprints":{"codehealthFindingId/v1":"3d328fdc423a70521aaed7bbfef6c801e536c81cb7831d404b0e7ccdf768ac61"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should reject authentication strings if a protocol is required: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":803}}}],"partialFingerprints":{"codehealthFindingId/v1":"3069e91cbeb675ffa26588197ee99dee9b857650981cfa4e9c55078654164dad"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should reject invalid protocols when require_valid_protocol is enabled: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":822}}}],"partialFingerprints":{"codehealthFindingId/v1":"af8b49dd18ade9a03c63d8946666009caf9c0bdf5fff559fedfd31bdfc95d347"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should let users specify a host whitelist: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":843}}}],"partialFingerprints":{"codehealthFindingId/v1":"5f7645cb576c84dfaa20aa71be32eaeb1342d6ea1ca3b9618fe04b6e1c110ba4"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should allow regular expressions in the host whitelist: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":861}}}],"partialFingerprints":{"codehealthFindingId/v1":"450b0a4ec36e03591bf3b60a2437dc49a002420073f666bc02c3c0156aa8caad"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should let users specify a host blacklist: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":882}}}],"partialFingerprints":{"codehealthFindingId/v1":"558ec8de52b8fc20efb622d59341320b10093a379105bb3860b6e1a05f13cc73"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should allow regular expressions in the host blacklist: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":900}}}],"partialFingerprints":{"codehealthFindingId/v1":"8771d86a2804b3248ed3398cbafdfccbcd63cf918ee02840f13e5762620db017"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: [GHSA redacted] vulnerability - protocol delimiter parsing difference: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":921}}}],"partialFingerprints":{"codehealthFindingId/v1":"a47b9f08e1b4573eac34015ed46d4816e6e261e18a5765fe372019796068519c"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should allow rejecting urls containing authentication information: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":939}}}],"partialFingerprints":{"codehealthFindingId/v1":"825526557630ad3518d942c6e98758e717449dfd6e6f406317f241ee6d68737f"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should accept urls containing authentication information: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":953}}}],"partialFingerprints":{"codehealthFindingId/v1":"070a85ac81adf1c7d5c57a85903581a02357bae469a736e4b6b2e161af8b535d"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should allow user to skip URL length validation: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":971}}}],"partialFingerprints":{"codehealthFindingId/v1":"5b06470b146b1afef80080f68555f22868eb6f13f7d7dfa821bd30d0be2e98b6"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should allow user to configure the maximum URL length: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":983}}}],"partialFingerprints":{"codehealthFindingId/v1":"d70a7b0897751d28cda0adaab9d4cb60f831c81942763c25d79289fc8f8d5986"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate URLs with port present: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":998}}}],"partialFingerprints":{"codehealthFindingId/v1":"2f893a034905458a955da26b615136d51ce94f1d5e48629de84b7f48e3a26836"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate MAC addresses: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1021}}}],"partialFingerprints":{"codehealthFindingId/v1":"b7e88fdeb494ff9bbd5f46e5b84f70e84946eebaa1f42b9122a4d252604d83a3"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate MAC addresses without separator: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1118}}}],"partialFingerprints":{"codehealthFindingId/v1":"ab7c720fd7144ec7be03d5c25cd053efda26cb26f826eddfc0a1c4649ffb1bdd"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate isIPRange: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1202}}}],"partialFingerprints":{"codehealthFindingId/v1":"62537671d03f576bfdbd04e9d405b68607f5dac130e0246502b8e746172ee24f"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate FQDN: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1295}}}],"partialFingerprints":{"codehealthFindingId/v1":"d92fd01d89b9fa5faf9ce768507f72ec738c4d2c5f827d83226d9d78654577d8"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate FQDN with trailing dot option: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1335}}}],"partialFingerprints":{"codehealthFindingId/v1":"a8970685a05b748daf32aaf12a8b12085e388592bda0dd4d3e863365db8394a7"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should invalidate FQDN when not require_tld: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1346}}}],"partialFingerprints":{"codehealthFindingId/v1":"a9310ab10aec7539c9b4ad5c2ceaa6ef69ca71533cb461f96a43f1892ae9551d"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate FQDN when not require_tld but allow_numeric_tld: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1359}}}],"partialFingerprints":{"codehealthFindingId/v1":"13db49506846f9fe3157c6252ce0fa0d8a65f4faf6e27d6f1443f48d3de6234b"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate FQDN with wildcard option: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1372}}}],"partialFingerprints":{"codehealthFindingId/v1":"66d0d10a1daa8581b44ef4e7cbda36aa8e051f00617f566b36a4fdb83564a97e"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate FQDN with required allow_trailing_dot, allow_underscores and allow_numeric_tld options: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1384}}}],"partialFingerprints":{"codehealthFindingId/v1":"7c523b8b586de3cdec83edb0c31e1aa8a9b72deec44170dfdc127dad3d88362e"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1397}}}],"partialFingerprints":{"codehealthFindingId/v1":"4f87fa1241de74210ff1f45c6831729445c10368a453a371e22beea8aaf3ca39"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate alpha string with ignored characters: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1417}}}],"partialFingerprints":{"codehealthFindingId/v1":"d2248d1ffa057911843cc1208669b78c92dbce03e25f8af40b622443fb64e573"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Azerbaijani alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1456}}}],"partialFingerprints":{"codehealthFindingId/v1":"af0c7c4190ae0a3d10b5fbe0041621e0d97fffe7228fd5db9e5ee03dcb6b06e6"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate bulgarian alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1479}}}],"partialFingerprints":{"codehealthFindingId/v1":"73f2750b522bd9a2f5100f2d5c483c14d6d042345f88c8abf83ba71a10213f40"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Bengali alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1500}}}],"partialFingerprints":{"codehealthFindingId/v1":"928423889c58e6677cda8a7918522ad3f36c70dd7054b4a644952a4efc65d4fb"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate czech alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1520}}}],"partialFingerprints":{"codehealthFindingId/v1":"bb6c4f7c34df396ca872cbaccc315c00cd4995aa403a1940be96158d76f19ca1"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate slovak alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1539}}}],"partialFingerprints":{"codehealthFindingId/v1":"9d1fef53effb106db3f9e200ab6248d0de201790aa38b2c4b185d7672c6430f1"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate danish alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1564}}}],"partialFingerprints":{"codehealthFindingId/v1":"8ca7bfff4950fd07e458070e1bbb01a162e0c1298722d7c223ee92c106af5ed5"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate dutch alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1582}}}],"partialFingerprints":{"codehealthFindingId/v1":"e6dc061c79957561ff68d228b369a48b05120b64dac477305096c3b06765c4bc"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate german alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1601}}}],"partialFingerprints":{"codehealthFindingId/v1":"2b844a0d2d953a2e2f64578903748a0484a2d85397a3b573de8fa5a9eb56563e"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate hungarian alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1619}}}],"partialFingerprints":{"codehealthFindingId/v1":"d612969177a173b531a01b8c3aafc9daced4c9f0c2803cdd81961309ed570ac6"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate portuguese alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1636}}}],"partialFingerprints":{"codehealthFindingId/v1":"cb70d30b5bfaa8450d3036c77e8944c250c1c98049cf48057144c80094594261"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate italian alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1656}}}],"partialFingerprints":{"codehealthFindingId/v1":"e4430f473852f9bae66371a66b8e0df0c5120e260802e25667f1cd7abb682a7c"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Japanese alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1679}}}],"partialFingerprints":{"codehealthFindingId/v1":"cd6787fdb07ff86921a82144180eb82d54852580f7c0696d383b7c1aef5ebbed"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate kazakh alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1705}}}],"partialFingerprints":{"codehealthFindingId/v1":"dff515c9a89d36027cb564d9c107023766b0d34e20e25a68875ae232612184e2"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Vietnamese alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1726}}}],"partialFingerprints":{"codehealthFindingId/v1":"df3807b7af223bf0f1993533eb78be68d37e7316c5318d3354f4e5f5170f1a3c"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate arabic alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1746}}}],"partialFingerprints":{"codehealthFindingId/v1":"b833af77e2837cf7df2361ae38a3992cc50396f03d54dcd5e9642bf09a20c16b"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate farsi alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1768}}}],"partialFingerprints":{"codehealthFindingId/v1":"039465f69883ab45d11329455fd1486f6b48f449731262815d9dc2925b79cf95"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate finnish alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1792}}}],"partialFingerprints":{"codehealthFindingId/v1":"7fb41df39baa196613db578f9e2fdf2738c0da48bb70c030a5bdce1665965c9c"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate kurdish alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1810}}}],"partialFingerprints":{"codehealthFindingId/v1":"a9e92ef46bd0ee3baf22cd2f8df8c1140b5020e0a479f9b32e3813357fe5a4b7"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate norwegian alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1832}}}],"partialFingerprints":{"codehealthFindingId/v1":"7ab14457bd97e62327a1c89c0206e4b081092804f97e17232838262262813cd4"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate polish alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1850}}}],"partialFingerprints":{"codehealthFindingId/v1":"5084871e78e9d3373d7966408f5c3e2ed21eca4bf8a6df5a3b80560a07d2a593"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate serbian cyrillic alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1871}}}],"partialFingerprints":{"codehealthFindingId/v1":"5e2da0f8229c9d0ab4d1e5997dbb0bd1a7dd40ac91592b4b88509f66bfe790c0"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate serbian latin alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1887}}}],"partialFingerprints":{"codehealthFindingId/v1":"5015aec7a75fbb100cffa36f6aaf4798ba9b4be0bb786024a487fdb4c2eace29"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate spanish alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1903}}}],"partialFingerprints":{"codehealthFindingId/v1":"d649e6a473c4dc97ee5eaa25810d6f40330461faccf3ce5e77f7d89dbfc3051f"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate swedish alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1922}}}],"partialFingerprints":{"codehealthFindingId/v1":"ba324231511b95e6b77121846f2e7ae07ea17c9c34a91d31045ff16288803718"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate defined arabic locales alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1940}}}],"partialFingerprints":{"codehealthFindingId/v1":"e15dc51486db27d3707925302c1e6df6ec3d6daf64ca97e5a7b3c6b8b9f61e96"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate turkish alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1962}}}],"partialFingerprints":{"codehealthFindingId/v1":"d7246999ec38b0d57619419ffffd0e94dbc6f3619c8acf2213caf9ee3657741e"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate urkrainian alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":1981}}}],"partialFingerprints":{"codehealthFindingId/v1":"d112e6caa975de8e4dbe96d192a0d1122f3364bb9bae05e739b0d345a0c3e609"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate greek alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2001}}}],"partialFingerprints":{"codehealthFindingId/v1":"eb798c37c3dcdb2c38dcb3645c25468fe0b396c54a32d8a9440757d1aada7c27"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Hebrew alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2023}}}],"partialFingerprints":{"codehealthFindingId/v1":"b19e8c0e8b69a63a8f5eda22564a0a43bffd11e4362cd802da33842f0d1d5f16"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Hindi alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2040}}}],"partialFingerprints":{"codehealthFindingId/v1":"d369aa205eee032678e486d8cf7a8d4fc2b7c48637bf91e7d869c5914a02face"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Tamil alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2059}}}],"partialFingerprints":{"codehealthFindingId/v1":"cc0d02767dd170238094fc37e3ec944bc6d2e360420f065e17169a6b11ae5dda"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Telugu alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2076}}}],"partialFingerprints":{"codehealthFindingId/v1":"471c38b7f4f3704200a267186e0283236ab0c4bea87b9187e90c329814b19ca4"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Kannada alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2087}}}],"partialFingerprints":{"codehealthFindingId/v1":"452765bcf155229485e08f832baf1da6263e41f02695e9f93a83c01ec0aef5ca"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Malayalam alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2098}}}],"partialFingerprints":{"codehealthFindingId/v1":"988f04add6d9565cf0a0b9c00f04c181fc921e3196acae1b3d32f896d5757930"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Gujarati alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2109}}}],"partialFingerprints":{"codehealthFindingId/v1":"6b522be775c0d3aa37de62e02130020942c0eda1924dcc888fd3c8dbe715461b"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Punjabi alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2120}}}],"partialFingerprints":{"codehealthFindingId/v1":"73374ef7dcd8b079b5dbb4cf0299ca35fa474be127c4a490914cd3a4b7a35c27"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Odia alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2131}}}],"partialFingerprints":{"codehealthFindingId/v1":"e37d190fa34fed3a7652c35f8f283bb6da80b9d8de30029e608a351765b9047e"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Bengali alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2142}}}],"partialFingerprints":{"codehealthFindingId/v1":"9f82a2ddb8ff627af1968f88d261a67e22ffc0124e548f36b8ad229f6b576635"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate persian alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2153}}}],"partialFingerprints":{"codehealthFindingId/v1":"debd3ff7fb09c306c449675f25293639e49b9b3616a385c4a301274397133604"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Thai alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2170}}}],"partialFingerprints":{"codehealthFindingId/v1":"9278bdc24a98a028038fc2a803ea3abd53f2d2687cc67becde76c32aea88f5fc"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Korea alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2186}}}],"partialFingerprints":{"codehealthFindingId/v1":"8bca3f6f34a2ee6291193e8d337709ff7847cfd281463403287787ed2907ed17"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Sinhala alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2207}}}],"partialFingerprints":{"codehealthFindingId/v1":"49b233d96f23315f2ca18aaf682c8cd9d6e294ebb9d0fdaf288f5a83bcab089a"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Esperanto alpha strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2227}}}],"partialFingerprints":{"codehealthFindingId/v1":"61e4ef0b7da13b80bb97537d378230e03b9a4c96a685c87c65cdc5ad4aeeaf2d"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should error on invalid locale: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2246}}}],"partialFingerprints":{"codehealthFindingId/v1":"65e16016b0759231dc23072f9ec4b58754c6c1eecea34ae49b7cad5f8465f8ee"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2257}}}],"partialFingerprints":{"codehealthFindingId/v1":"966e85e3fe5f1df266d307677d78c681f3a41ada758f0114abeae5a144795f08"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate alphanumeric string with ignored characters: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2274}}}],"partialFingerprints":{"codehealthFindingId/v1":"df62b835202f15e4e1c62ad77b1c99894ad8e0801a4a7f1c3a0e3703a2e45f14"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate defined english aliases: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2313}}}],"partialFingerprints":{"codehealthFindingId/v1":"ee3bf7709e89182f91a12fc238f881aa07e9e9588ca702d1f2e389752dbc32b4"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Azerbaijani alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2331}}}],"partialFingerprints":{"codehealthFindingId/v1":"900f2ebea61370bdc4ed91c2d5100507bfc5d2c85f0d716921e58cffc3e47855"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate bulgarian alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2352}}}],"partialFingerprints":{"codehealthFindingId/v1":"c9a9d520c10e3b3ba34822836283cfef5f5c7ca893d48c4faced7fe421277432"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Bengali alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2372}}}],"partialFingerprints":{"codehealthFindingId/v1":"12d2cfadec6211686d8cbb01a58c95b7f483b29d64e3d494c9d724a1b1e82775"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate czech alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2391}}}],"partialFingerprints":{"codehealthFindingId/v1":"983024907d220c921f44601b8b6add5fbf40bf69f200cb6ada000699a3d9896d"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate slovak alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2406}}}],"partialFingerprints":{"codehealthFindingId/v1":"010c7891e8f4c9985bd6d29fc779b1a8d94a603a2c357a5688a86db7b3dc3903"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate danish alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2430}}}],"partialFingerprints":{"codehealthFindingId/v1":"d7cbaf0deb14462e06c75e6c2a6419648ecd90e2f22a2a0496fc321969b8624a"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate dutch alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2448}}}],"partialFingerprints":{"codehealthFindingId/v1":"129b649d89fe3146cba853915cd9fc9394cbe3c993d70e2224ed32f5ddc571c8"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate finnish alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2467}}}],"partialFingerprints":{"codehealthFindingId/v1":"1eb7e8fa5feeb731f22aea38157b9fe0775e9aee2221ba948237beba68a967f7"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate german alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2485}}}],"partialFingerprints":{"codehealthFindingId/v1":"77a51cca084a29dffce07c7d8633aabbe7cb30236742cb1dea17d997dc95300a"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate hungarian alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2500}}}],"partialFingerprints":{"codehealthFindingId/v1":"cb68c58680ed2cb3dac501ccf638cdbb57cfff9dd1f3dc6e861c9f68a4a24382"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate portuguese alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2518}}}],"partialFingerprints":{"codehealthFindingId/v1":"be62216eca8d8bbe205da6b632193f6172e97ee86fe8a6e9a57a1e06a9d06df6"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate italian alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2538}}}],"partialFingerprints":{"codehealthFindingId/v1":"dd8f4d9847795129e59d87fc4a34190c75a18aea0dd5166eb9710962d95cc30d"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate spanish alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2561}}}],"partialFingerprints":{"codehealthFindingId/v1":"90cfcdf627215b0197c2948d23a69cd0a77fdd4d520baf035637f774c0a4e181"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Vietnamese alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2577}}}],"partialFingerprints":{"codehealthFindingId/v1":"44130440f5a2ebfbbaa8621840da39132196ea80f2c7b96f53d3bd9b49f84f3f"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate arabic alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2592}}}],"partialFingerprints":{"codehealthFindingId/v1":"14ddd2c29a3a44ef4498347662b162578234cf87a03daa08dd36360c5ea4b414"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Hindi alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2608}}}],"partialFingerprints":{"codehealthFindingId/v1":"187e581b2a7ae7f922c927859595260d506d81fd6c67df657c51fa74b20d8b2d"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate farsi alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2628}}}],"partialFingerprints":{"codehealthFindingId/v1":"fdf1245b736c267fd96f6d1c05ab178bb465a964b28bc1beeb2faddbd795db14"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Japanese alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2646}}}],"partialFingerprints":{"codehealthFindingId/v1":"eda45f114a5603ab66901bebd756fea84ed136e7634220192ec90ca357c5363b"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate kazakh alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2668}}}],"partialFingerprints":{"codehealthFindingId/v1":"434ac1b660c0c0de3f1107615bd8ee2e8cd859208521ed7f3792b561d5d68ff9"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate kurdish alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2689}}}],"partialFingerprints":{"codehealthFindingId/v1":"8b9e98592546e6614ef9aa994e36372af7dcc8205460f0435360782d227beaa7"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate defined arabic aliases: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2704}}}],"partialFingerprints":{"codehealthFindingId/v1":"116aa2a5da5cd4d522e2cb7651298cbfec84f1b1ed69014d5bcdf0ba062f1a43"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate norwegian alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2722}}}],"partialFingerprints":{"codehealthFindingId/v1":"d6fe0eb3bce3cbebc204d179f6c209eba19db0b33eb2d880a5b4c3aef3f10b88"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate polish alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2740}}}],"partialFingerprints":{"codehealthFindingId/v1":"58ed557c569efd82ed14880be3d099fb7605c56116320d3297f8bb95ebaec385"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate serbian cyrillic alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2761}}}],"partialFingerprints":{"codehealthFindingId/v1":"69cb7cbe0916bb1d58b2a5a9977ddc98d56ec571d57e09aed9cb449640640b85"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate serbian latin alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2777}}}],"partialFingerprints":{"codehealthFindingId/v1":"51525e43f5a7f67960b0470c32e83a92d57cf585685d48dda98301367f2321a1"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate swedish alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2793}}}],"partialFingerprints":{"codehealthFindingId/v1":"e1bbc45a69c954d06e8ee0a2d0237522923867a64f5f7316072182082bad1e95"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate turkish alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2811}}}],"partialFingerprints":{"codehealthFindingId/v1":"9016c48e0e6693315e35740ada770de309f1fb38958d57b18823fba1f8c941ee"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate urkrainian alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2826}}}],"partialFingerprints":{"codehealthFindingId/v1":"7f36fda1c568c25ef09280ea2be0a543865bebea4b30f59eaa40d41d01f50627"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate greek alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2842}}}],"partialFingerprints":{"codehealthFindingId/v1":"a77807c22cdbd5bdf4b92ca618e09b21596feda566f569a0fc12213fd36bd55c"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Hebrew alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2863}}}],"partialFingerprints":{"codehealthFindingId/v1":"916c16b9e6947a9f327e3e668bad6026e35306e43ab4e9741f5726d0bb18a85f"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Thai alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2880}}}],"partialFingerprints":{"codehealthFindingId/v1":"3652ea5124bcd3ce1ec08047989acd3caa6928dca792b9af751ffcec8781e1de"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Korea alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2895}}}],"partialFingerprints":{"codehealthFindingId/v1":"7269a3e9ce86b84eed2821686fb423684846acbf28e9bf853657bf06dfb40de0"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Sinhala alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2912}}}],"partialFingerprints":{"codehealthFindingId/v1":"6e1580d3b9c80ed03ff5984445f5307628b03dc14851ffebc27b3cef76ada119"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Esperanto alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2933}}}],"partialFingerprints":{"codehealthFindingId/v1":"1d80043707446b7014e1abb9b58e261c513664ff7957056fbd5169159501a44b"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Tamil alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2950}}}],"partialFingerprints":{"codehealthFindingId/v1":"7fe9b40823aeabecc8bd916bb77b47269ef16e235aad9dbd33e4cf95bb11dabe"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Telugu alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2970}}}],"partialFingerprints":{"codehealthFindingId/v1":"e12082a221af899e8d4c394a6e3d9aae2a6245be876663e9d16ca55389f807d0"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Kannada alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":2989}}}],"partialFingerprints":{"codehealthFindingId/v1":"bc0f6ee6594a880cee19e86c29fe5a4a9a7a88c14c44be008ca0d9495d84d20b"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Malayalam alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":3008}}}],"partialFingerprints":{"codehealthFindingId/v1":"dc9b471ccf50a73d0c62d3104091149142d63ee2d291b0f9f7308b26d84cde8d"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Gujarati alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":3027}}}],"partialFingerprints":{"codehealthFindingId/v1":"4f5f615489abd5abde829b636d8d00fb6a94c9e72db4e77b78fa3995dd7be82e"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Punjabi alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":3046}}}],"partialFingerprints":{"codehealthFindingId/v1":"c162aaf20fede1354b96426c9bca6e378d8f5fb944f2ea34679578509b7f51e4"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Odia alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":3065}}}],"partialFingerprints":{"codehealthFindingId/v1":"8fbe99a8c66f4fbbfd7023282136fd3694a5bd004a62f1b19905b596a432f5b9"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Bengali alphanumeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":3084}}}],"partialFingerprints":{"codehealthFindingId/v1":"22ae533f6b788d935bcc6811e3cc03b1fcf01247fdf1dfeb909aef49bf069178"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should error on invalid locale: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":3109}}}],"partialFingerprints":{"codehealthFindingId/v1":"93ada27af0831d0653aed9a6915822669a5e74c124863a1a6aab7bc60a0cf0a9"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate numeric strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":3120}}}],"partialFingerprints":{"codehealthFindingId/v1":"681c77b9109975170086bb0e9d059bfe4913eced3ddc31b03afbbffc7e6d0472"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate numeric strings without symbols: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":3141}}}],"partialFingerprints":{"codehealthFindingId/v1":"c5e94f7f0aee2225a7fda36345219e615abc9a5a9393fd48bbd0fa10d943583f"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate numeric strings with locale: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":3165}}}],"partialFingerprints":{"codehealthFindingId/v1":"a6ff9e17d02fdcf6cd8e96ccecd0cf1d571db8878536428c8490167e94ebeb1b"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate numeric strings with locale: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":3189}}}],"partialFingerprints":{"codehealthFindingId/v1":"b3166ca3636bc4db80697580c4100c670f93efcc1b636de57f4af64573903322"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate ports: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":3213}}}],"partialFingerprints":{"codehealthFindingId/v1":"8ba115980ba3899017c31c08458e6f38a3194f528dd5254fed17fdb759d42109"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate passport number: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":3234}}}],"partialFingerprints":{"codehealthFindingId/v1":"01af84f8d258a25cebea516a1807c807a03e44f964ad44eda57a250e2cb66174"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate decimal numbers: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":4054}}}],"partialFingerprints":{"codehealthFindingId/v1":"da43415e916de8d51569d5993351b4274ed7c32d39a6c3795f7be119a01c2c1e"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should error on invalid locale: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":4351}}}],"partialFingerprints":{"codehealthFindingId/v1":"1ba9845a97e07f2c8d740d7a67543f0eb4c5c9ad36ef73f0041802abc762d81f"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate lowercase strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":4363}}}],"partialFingerprints":{"codehealthFindingId/v1":"8ee63fcfb497f083457e5075082120081f8a4b45c26753797e9e29ecf754c9b7"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate imei strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":4380}}}],"partialFingerprints":{"codehealthFindingId/v1":"62d9a5b83e451573dd495113805233b82f0cd118a5952c60d04011dab6ecc140"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate imei strings with hyphens: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":4400}}}],"partialFingerprints":{"codehealthFindingId/v1":"6748d1faa4297c35f85711fe8ec72cbe9e76ed995431234f73db7d53629f1032"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate uppercase strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":4421}}}],"partialFingerprints":{"codehealthFindingId/v1":"052a9155cee0264db4abb060f78014e52521e32009db1cfab8138c718df4c25d"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate integers: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":4437}}}],"partialFingerprints":{"codehealthFindingId/v1":"153f4baa1ae667adaa61bae4458a354d6c437cb63f8b35660a1d447583376c02"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate floats: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":4633}}}],"partialFingerprints":{"codehealthFindingId/v1":"b9877f39cc57214134607d0d3d9c80964ee00d414931011fd0f58f76142f49db"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate hexadecimal strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":4943}}}],"partialFingerprints":{"codehealthFindingId/v1":"bef77df8f3a0783fdb85c423d10b6d375f967aa6c104a67b8cfdb442245e1cfa"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate octal strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":4970}}}],"partialFingerprints":{"codehealthFindingId/v1":"723b774e25f8dc64b4343e63d2235cd65a1e5a6e5719af70ae301e08b94ef95a"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate HSL color strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":5063}}}],"partialFingerprints":{"codehealthFindingId/v1":"182be401f251c849a404dcb72209fcc462927836572ea7dd5d74ab9ce8068ad1"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate rgb color strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":5111}}}],"partialFingerprints":{"codehealthFindingId/v1":"f806effc6506e8f9b90ac979aa419d2ed02221fe28d932477809b365765a9867"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate ISRC code strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":5364}}}],"partialFingerprints":{"codehealthFindingId/v1":"69533232e02739ec8e9550559a7fd9fa624ded4926f9ccf7028e20d3c4ba6f17"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate md5 strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":5382}}}],"partialFingerprints":{"codehealthFindingId/v1":"135077cb84c2685d62976bd333dba656ea0dfa50d1ac9d53a0f4540dd82eed55"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate hash strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":5400}}}],"partialFingerprints":{"codehealthFindingId/v1":"b2ec749a27b4bb2a03872ad8d22f7da8daf216599627e65ea49fb92a35f3c9a9"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate JWT tokens: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":5543}}}],"partialFingerprints":{"codehealthFindingId/v1":"a7e77d83c4aa62612d9daa7b57a8c33727c559f2655f6cb779cc054ffadc6f3c"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate null strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":5568}}}],"partialFingerprints":{"codehealthFindingId/v1":"1cad4f06e87d416355af754cdbc40b819771e1b5a2e83f1447f83a713c3fa701"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate strings against an expected value: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":5606}}}],"partialFingerprints":{"codehealthFindingId/v1":"3fa694f9fc71ac0fc2c06342dcbfb966fa468ad9dac190fb74893dfdcfec61bb"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate strings contain another string: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":5612}}}],"partialFingerprints":{"codehealthFindingId/v1":"6a1d29df53c2ba6b0c715891f6cbf9ca2a9a21572f1960da42f56f62ea9ac052"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate strings against a pattern: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":5639}}}],"partialFingerprints":{"codehealthFindingId/v1":"7f119b2ef69f94754592db8563e53b97adec1318775465f3a837c09214fa1700"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate isLocale codes: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":5661}}}],"partialFingerprints":{"codehealthFindingId/v1":"eed49cf7b621d5e2e1e5f7f29ba87b8ed9b44af7c38bb2f7abf6d60885cf5c49"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate strings by byte length (deprecated api): No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":5717}}}],"partialFingerprints":{"codehealthFindingId/v1":"352409cc8b83fc4505c871682d5bc9f99f9da7cb659230eaf630a5c877ac6ca1"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate strings by byte length: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":5739}}}],"partialFingerprints":{"codehealthFindingId/v1":"d085bf16b1c61cf09cc8bc1381b86ee46e4018f220b86a871018b55af28c9160"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should handle unpaired UTF-16 surrogates without throwing: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":5766}}}],"partialFingerprints":{"codehealthFindingId/v1":"8b61da1312a48860eca9357eb201baa14c1cd55d54f0cc512dee4ae475cf1307"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should count UTF-16 surrogate pairs as four UTF-8 bytes: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":5779}}}],"partialFingerprints":{"codehealthFindingId/v1":"77ef1c05798fce13eea9d8ce7c7b379ab9240ef30e6e16377300e32532a51d50"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should reject emails containing unpaired UTF-16 surrogates without throwing: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":5787}}}],"partialFingerprints":{"codehealthFindingId/v1":"2b3f08b2dd5dd812bd02dd6bde416c9286c4b6f6d14350396fdcba9e3698cc8b"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate ULIDs: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":5794}}}],"partialFingerprints":{"codehealthFindingId/v1":"2ddb17b75bc80715d2951caf198b7928e9a55d0d8cf456b035e2a7042a5e28a6"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate UUIDs: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":5817}}}],"partialFingerprints":{"codehealthFindingId/v1":"0ca15037d96bb383894cbbc07748d0ee2608dbebd8a12fe45351f2fc8636b73c"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate a string that is in another string or array: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":6144}}}],"partialFingerprints":{"codehealthFindingId/v1":"bd0c1d874db7c54e62b0b6ac90da97353d4ca6df40df8465abc9d94e4d2d158d"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate a string that is in another object: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":6172}}}],"partialFingerprints":{"codehealthFindingId/v1":"c1c5fa0e2ddb3a42e9b0b74cd1e313f272782ae37250169bc4e60d180a872f45"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate ABA routing number: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":6187}}}],"partialFingerprints":{"codehealthFindingId/v1":"0cc3ce227471db9f803810bfeef0ddd2ccb8ae8de32532fcbffc605578bd2ea5"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate IBAN: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":6207}}}],"partialFingerprints":{"codehealthFindingId/v1":"9b658a81e0df33b6ed35d8cd20e84a23314459ee56d12cebad94fbabb7874fb6"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate BIC codes: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":6331}}}],"partialFingerprints":{"codehealthFindingId/v1":"334d8681841b1249d6252ff772a2f0ea1f876d35377ae47b8de3a3a5b6dab8f4"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate that integer strings are divisible by a number: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":6353}}}],"partialFingerprints":{"codehealthFindingId/v1":"ac3d5fb4aaae37e5ca593bc5aefbe31cfdb38214b4656c5c0699e3e661d8d239"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate luhn numbers: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":6369}}}],"partialFingerprints":{"codehealthFindingId/v1":"c34eeb9791e91f0532d94f19aea180a615ce4c0cfa16d1f1789759d4cf3a1053"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate credit cards: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":6397}}}],"partialFingerprints":{"codehealthFindingId/v1":"cd7445e2b77286c53f4eba1a7483a420cd619c1af407bd1f9c16c2d1aa9dcffe"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate credit cards without a proper provider: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":6440}}}],"partialFingerprints":{"codehealthFindingId/v1":"92837aafeb65d3c102079ef1b563927c11aff36711b6baebde20ba93a60eef9d"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate AmEx provided credit cards: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":6456}}}],"partialFingerprints":{"codehealthFindingId/v1":"8b8432553b29477f6caf502e0a75351b8c742cc3b928867d3b73eea8f95f473d"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Diners Club provided credit cards: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":6492}}}],"partialFingerprints":{"codehealthFindingId/v1":"e0a172e13305b3b7a28ef3277bc7d75d6f32584369b0acc50319d842bedb9034"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Discover provided credit cards: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":6527}}}],"partialFingerprints":{"codehealthFindingId/v1":"a2e3004124de4e4f3baf3607dbeeec3ac0cd210b3da583ce905cd9218d9f84ab"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate JCB provided credit cards: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":6564}}}],"partialFingerprints":{"codehealthFindingId/v1":"8619a7b16411642b6ae413f011490271badc3dedf59e222c756e2d5fcf48850f"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Mastercard provided credit cards: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":6602}}}],"partialFingerprints":{"codehealthFindingId/v1":"d077545a5440ce01fd11e157f17ee6940ddef2d31289424183c77ad84b2a78ae"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Union Pay provided credit cards: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":6638}}}],"partialFingerprints":{"codehealthFindingId/v1":"93de5722b3a64e6184577dfeb8f794e51b6d3fb6568724d401d29a7fe7cfc99c"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Visa provided credit cards: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":6673}}}],"partialFingerprints":{"codehealthFindingId/v1":"ad950c7c6834ce4b227d67260581b3ca5919a30a8c4781e80123b3a71f56617b"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate identity cards: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":6709}}}],"partialFingerprints":{"codehealthFindingId/v1":"bdaeec9bc32a0408ecbcf8c79e7b343611efbc2850c353443e1bcb4c85f16ec9"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should error on invalid locale: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":7115}}}],"partialFingerprints":{"codehealthFindingId/v1":"2f1825635c8b082477c4bfe13c3f68deeab766ba3ca089592fd7fd69fd8baebd"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate ISINs: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":7126}}}],"partialFingerprints":{"codehealthFindingId/v1":"eb41e937d030ae851d6bade25e534476cc571aa6632d8e731c95030a02d4efc8"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate EANs: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":7148}}}],"partialFingerprints":{"codehealthFindingId/v1":"a20823f50b4096b2b0d857c1df5a26d7798a0dc28a4591a4f8677bdbf669e6ff"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate ISSNs: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":7170}}}],"partialFingerprints":{"codehealthFindingId/v1":"13b6ed7f8da07fbb3b7b86d2dca7d1596715bad4192e2f55876542f2f85775a8"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate JSON: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":7237}}}],"partialFingerprints":{"codehealthFindingId/v1":"91e6521200efcffdbb34233281bf33329d1a29741332129b973e8b4004b47d53"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate JSON with primitives: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":7254}}}],"partialFingerprints":{"codehealthFindingId/v1":"64e59f24767b27389038ad28bbc696a74198427a2da02c4cb15b142a5acd888c"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate JSON with any value: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":7275}}}],"partialFingerprints":{"codehealthFindingId/v1":"974f510fa0bd1a6593b739cb27563aab9dd787d841e1c25f3ebf83973e163824"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate multibyte strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":7299}}}],"partialFingerprints":{"codehealthFindingId/v1":"6ae258f9dd76b5e7c8432f7357831c9dd82f8332165639c0344289dfd75c37d4"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate ascii strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":7318}}}],"partialFingerprints":{"codehealthFindingId/v1":"1399c2c3f5f9b52e10b23614574b99e89ba9eb493b258d9b34018cea1a4d0616"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate full-width strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":7336}}}],"partialFingerprints":{"codehealthFindingId/v1":"c55cd5f59ef3c957afa46c58de753455d07c5acd7a40aa97f5ae262724b35564"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate half-width strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":7353}}}],"partialFingerprints":{"codehealthFindingId/v1":"b92a75709b784232943da241d7d21900ca806d1079df8c4f4f18daf5fde96cfe"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate variable-width strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":7369}}}],"partialFingerprints":{"codehealthFindingId/v1":"2b08a5e8053c6c3209368a8430ea61c7a44df7d4537e2601f422cad528d33f2a"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate surrogate pair strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":7389}}}],"partialFingerprints":{"codehealthFindingId/v1":"82aa9b69e185209085fa369089a580d778a79baff54faf8b142a25123bc5c1b5"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Semantic Versioning Specification (SemVer) strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":7405}}}],"partialFingerprints":{"codehealthFindingId/v1":"f60f3ce09981d818aca07aa120b1c0c29512b612977f53c0a61e3dfe10a4311d"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate base32 strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":7480}}}],"partialFingerprints":{"codehealthFindingId/v1":"49dc51c4750d301220f89de916ae7fc41abb6e3b02d34ec5bd3f14cba3fe7686"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate base32 strings with crockford alternative: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":7506}}}],"partialFingerprints":{"codehealthFindingId/v1":"7e699732021aa8694bf65c13a6ed5a6a88028137cc66778d222afdb3efc3fe2e"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate base58 strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":7525}}}],"partialFingerprints":{"codehealthFindingId/v1":"cd808c5412dc44611b2a87b83d7e514d834f4e0b73d4bc537af574bff5a1790a"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate hex-encoded MongoDB ObjectId: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":7551}}}],"partialFingerprints":{"codehealthFindingId/v1":"5212bdd68c7a3c3394821d69efd2e0cc713351553f1ca8423550e6f8044a0133"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate mobile phone number: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":7587}}}],"partialFingerprints":{"codehealthFindingId/v1":"5a0c708a53689dda10695905e9bb4b4ea16ac5375aa349ec8070a88511f1a37b"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should error on invalid locale: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":11279}}}],"partialFingerprints":{"codehealthFindingId/v1":"5dd1080139f303c61e7589862f807532666c4871658d44f91c0b95b500e6f5c2"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate currency: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":11290}}}],"partialFingerprints":{"codehealthFindingId/v1":"e2f681a2ec5b797cf5aa98f461ed4d8d4c95359ffc2b61719d305d6a743f11fc"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Ethereum addresses: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":12217}}}],"partialFingerprints":{"codehealthFindingId/v1":"623af8caf534bdb991b96a6371e138ed101b9cdda78c863faab0d2c897662b40"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Bitcoin addresses: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":12238}}}],"partialFingerprints":{"codehealthFindingId/v1":"03c86fc95724bd1d4eb6fc8a8109e1f40c9b0a2ea53ba5b0e6069e8309a4b7ad"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate booleans: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":12275}}}],"partialFingerprints":{"codehealthFindingId/v1":"1d3bee881a28f9f3b80e611ea912e0bed963c6a0d762b55f532969452833184f"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate booleans with option loose set to true: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":12295}}}],"partialFingerprints":{"codehealthFindingId/v1":"873466ef257ebd40ee5c69e76ca41ada81d55a66dead5ad6941ac246b3e0ae1a"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate ISO 639-1 language codes: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":12326}}}],"partialFingerprints":{"codehealthFindingId/v1":"695e9b1588446bb86218daf1f1f25263ecef70d49da22c609e07fdc53730f01e"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate ISO 8601 dates: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":12414}}}],"partialFingerprints":{"codehealthFindingId/v1":"6e1854c18eb186ba9b84506276b756347f54de680ef2ae614fcd9d1c3e324b00"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate ISO 8601 dates, with strict = true (regression): No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":12423}}}],"partialFingerprints":{"codehealthFindingId/v1":"e0f10618b8847d2cfb4ccbfb14b7bacb91796886aecdf0affb5f59b6253d874a"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate ISO 8601 dates, with strict = true: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":12434}}}],"partialFingerprints":{"codehealthFindingId/v1":"c406a259cedacdb557c988fdf0340ad6acf5e4a7a6666dee43a2619d24349e66"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate ISO 8601 dates, with strictSeparator = true: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":12456}}}],"partialFingerprints":{"codehealthFindingId/v1":"cff0897518c81f3464f0fab983e6cddad11c8b272127e7908442f4751227ceb4"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate ISO 8601 dates, with strict = true and strictSeparator = true (regression): No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":12535}}}],"partialFingerprints":{"codehealthFindingId/v1":"d16b79d6f663881d30a92740b0d9d84317e36e08ff163c6772a81b5fc36f0f4a"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate ISO 15924 script codes: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":12563}}}],"partialFingerprints":{"codehealthFindingId/v1":"242a51c4dc52160ec2e5184f583d892440095d91188e0dfaf946ccfc2ec96c18"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate RFC 3339 dates: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":12585}}}],"partialFingerprints":{"codehealthFindingId/v1":"c5ff1944b3eaefc58f2c8525a5b5ccfdc3dac6f6847a45492822642132115261"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate ISO 3166-1 numeric country codes: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":12622}}}],"partialFingerprints":{"codehealthFindingId/v1":"8008bebd068ceebcf362152bed8400dabe6344e0ca0b4660399175c9eaae74b5"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate ISO 4217 corrency codes: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":12653}}}],"partialFingerprints":{"codehealthFindingId/v1":"767c5dd6e6294cf4741f55ee3de57bab3f86af947dad8b5ce49309455442c13b"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate whitelisted characters: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":12688}}}],"partialFingerprints":{"codehealthFindingId/v1":"c3959aace684ee2eeae7cb8d144bdd318641db5be50b5cd1e95459f63708b09b"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should error on non-string input: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":12697}}}],"partialFingerprints":{"codehealthFindingId/v1":"7b51cfe841625c67a156de58f4c632604648890ccec3e4a12637716f96454229"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate dataURI: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":12704}}}],"partialFingerprints":{"codehealthFindingId/v1":"a7e9135a16d24ae6224501e1e213fcfe38cf3bbd33da77b4767b01a8c4e1e5e1"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate magnetURI: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":12740}}}],"partialFingerprints":{"codehealthFindingId/v1":"c4e560904bddfb81fcd0462cb8d2b41ed75e295c6bf3cfbbc982bda4abea8d99"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate LatLong: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":12774}}}],"partialFingerprints":{"codehealthFindingId/v1":"c264f166008b0e19260b12fddd56c68c5f4cd81e3ea61e865e13ea16af1a2810"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate postal code: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":12859}}}],"partialFingerprints":{"codehealthFindingId/v1":"a35dae60defe4ceadb081f63ea3a883b783a92b2c9b60108e6428e8fb2a2538c"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should error on invalid locale: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":13536}}}],"partialFingerprints":{"codehealthFindingId/v1":"1dee14e674a6c62308a32fee1f6857c1d3d71b35b262cb31292012aee35a2639"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate MIME types: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":13547}}}],"partialFingerprints":{"codehealthFindingId/v1":"29aa1c535e99e1811188abb718f51b58c89e4f8446377f933715544df84e5359"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate ISO6346 shipping containerID: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":13596}}}],"partialFingerprints":{"codehealthFindingId/v1":"846fd7dcfaf3667a9479ac9d1cd27d57f8d3026d927d119b779345fd5a0da197"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate ISO6346 shipping containerID: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":13621}}}],"partialFingerprints":{"codehealthFindingId/v1":"ce6f51f79dccca2bea7c0078797b92c45d7f30ab34176ef67a5c45cdbc3dfbfb"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate ISO6346 shipping container IDs with checksum digit 10 represented as 0: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":13647}}}],"partialFingerprints":{"codehealthFindingId/v1":"e3b4dd4a57beb9a37e6a00be9b1f7d9f22ac5a22c835dc17f1a11968d65fc4c7"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate ISO6346 shipping container IDs with checksum digit 10 represented as 0: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":13671}}}],"partialFingerprints":{"codehealthFindingId/v1":"fda6f0479c91865254f18cb9b4c39085412df0d6ef1da5fdc4924e38ab6cec49"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate taxID: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":13697}}}],"partialFingerprints":{"codehealthFindingId/v1":"f9079bcbcd60ec82b1080d2358bee3f01086fbaf52e167972e089eebf96b5646"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate slug: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":14331}}}],"partialFingerprints":{"codehealthFindingId/v1":"e700b6f9d6dfe50fe6f790b5242adcdf861dcab57a8dacfbb43ae2959fa12dff"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate strong passwords: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":14363}}}],"partialFingerprints":{"codehealthFindingId/v1":"9133f7bc841db457d01b4d61249db7548b5a64b04138c7cf1dccf7223972600a"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate date: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":14394}}}],"partialFingerprints":{"codehealthFindingId/v1":"87e47a1d14331fab73972e1d40aa29e781ad7962bf066ad0cbd73d104b41af03"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate time: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":14686}}}],"partialFingerprints":{"codehealthFindingId/v1":"c6c0ac4ee257ba434c6944c32d780853ebc47e8895dbb1f87156ce5f2fc97b97"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should be valid license plate: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":14854}}}],"partialFingerprints":{"codehealthFindingId/v1":"cdf774e65648b9d2706493e8300f6ca20f91fdc21b1c3e18da043ac6355749a2"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate VAT numbers: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":15241}}}],"partialFingerprints":{"codehealthFindingId/v1":"2b993a5d8170d1bbaf3edea1b5b95aa12149b8d70ac22706c2dde5ecced7653d"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate mailto URI: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators.test.js"},"region":{"startLine":16180}}}],"partialFingerprints":{"codehealthFindingId/v1":"df999ddacd9dfb6c8fec887560e93c2a4583e93d348b8735ef0989b7ec308d2f"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should sanitize boolean strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/sanitizers.test.js"},"region":{"startLine":29}}}],"partialFingerprints":{"codehealthFindingId/v1":"1ed78bc08575e31654b2c5cc881a946c7dd66aecf96e0d04b9269c5e3bf91da6"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should trim whitespace: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/sanitizers.test.js"},"region":{"startLine":65}}}],"partialFingerprints":{"codehealthFindingId/v1":"f63a55108f7110ab9fca4dc11e94c81aa0784d17b88dc4bcd45ec6ff6cf0e6bd"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should trim custom characters: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/sanitizers.test.js"},"region":{"startLine":91}}}],"partialFingerprints":{"codehealthFindingId/v1":"3bf124488dca51f2fee7b929f580a51c8af4ad205588ee7090c10f80450563e8"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should convert strings to integers: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/sanitizers.test.js"},"region":{"startLine":124}}}],"partialFingerprints":{"codehealthFindingId/v1":"72572855f5926dd8b7f17efc206e1a04fba519ff15f3bf74658e0511c8c27f02"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should convert strings to floats: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/sanitizers.test.js"},"region":{"startLine":142}}}],"partialFingerprints":{"codehealthFindingId/v1":"4d80a213d2ee7646b0672f863e64148aba221375ac4d6a134fb7177f36599beb"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should convert inputs to strings: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/sanitizers.test.js"},"region":{"startLine":156}}}],"partialFingerprints":{"codehealthFindingId/v1":"ceac7cf44f3ff7ba8c8f8d1d43e17cf8bf3b52faec2f5c65584249f4a75d8358"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should escape HTML: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/sanitizers.test.js"},"region":{"startLine":168}}}],"partialFingerprints":{"codehealthFindingId/v1":"ea563c9809e8bfa04a305b061e2baf1c70b0e1d0614e174acb480b4bc6c4ff8f"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should unescape HTML: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/sanitizers.test.js"},"region":{"startLine":187}}}],"partialFingerprints":{"codehealthFindingId/v1":"99512663d4cddfcb74a16751bb443235aeb54fe605c2f0f1700b06aae749f054"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should remove control characters (\u003C32 and 127): No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/sanitizers.test.js"},"region":{"startLine":206}}}],"partialFingerprints":{"codehealthFindingId/v1":"cc6668251214e29a5eed9c6562f7e3d450e564276c2f9d3eaff1fc228c3bbb61"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should sanitize a string based on a whitelist: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/sanitizers.test.js"},"region":{"startLine":238}}}],"partialFingerprints":{"codehealthFindingId/v1":"34339b8390819a2d744d61ce0535d7525a385720b289074a094e2dcb16037f2b"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should sanitize a string based on a blacklist: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/sanitizers.test.js"},"region":{"startLine":251}}}],"partialFingerprints":{"codehealthFindingId/v1":"3b0c6027ceacb623fa47f023ceeae3ce913d10fd8dc3cbd67e703732393ee6af"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should score passwords: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/sanitizers.test.js"},"region":{"startLine":264}}}],"partialFingerprints":{"codehealthFindingId/v1":"8a3a26aeac1f1fdbbe3676c5f56cefd09b26d90d4770b8c0bc413ee3cb22defb"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should score passwords with default options: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/sanitizers.test.js"},"region":{"startLine":286}}}],"partialFingerprints":{"codehealthFindingId/v1":"ccad3143c063eded9d8305e60da9abcf376d833329ce4bdd4903a473937506d3"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should normalize an email based on domain: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/sanitizers.test.js"},"region":{"startLine":300}}}],"partialFingerprints":{"codehealthFindingId/v1":"c336752641fc59888eacb2918cc088bce6bc1017560f6d5b0e176fe2c72c65f4"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should return false for a string with length greater than the max: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isLength.test.js"},"region":{"startLine":4}}}],"partialFingerprints":{"codehealthFindingId/v1":"9af5640b991c18b86258bbb20cf6d430e03b46b1905bcdfbcbb33c80b68a7ea9"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should return true for a string with length equal to the max: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isLength.test.js"},"region":{"startLine":12}}}],"partialFingerprints":{"codehealthFindingId/v1":"e94219724aa66a3d0feee01102e5f1daf75cc85a80e2b4934300155ce08853a1"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should correctly calculate the length of a string with presentation sequences: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isLength.test.js"},"region":{"startLine":20}}}],"partialFingerprints":{"codehealthFindingId/v1":"2cee90286d79feee189476d60f550fc7f43edec79303ccda6da27d6eea6bc570"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate strings by length (deprecated api): No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isLength.test.js"},"region":{"startLine":46}}}],"partialFingerprints":{"codehealthFindingId/v1":"f1a7b151e7cec2fccec165e8bc119e2ab6e2dae4bbbf594be86e8904906fc551"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate strings by length: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isLength.test.js"},"region":{"startLine":73}}}],"partialFingerprints":{"codehealthFindingId/v1":"885415e66d08cbebcfbbc92e2e75f52db76a889b1f4dd1947ca73472a254ff64"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should return true if string exactly match min/max bounds: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isLength.test.js"},"region":{"startLine":145}}}],"partialFingerprints":{"codehealthFindingId/v1":"8c4b40fec1b7e9064ecb6d2a6c3dc0f01b6fb9d6556647dd5ec3688745fa56e0"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should count emojis as single character: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isLength.test.js"},"region":{"startLine":154}}}],"partialFingerprints":{"codehealthFindingId/v1":"684acc8046324edac445bea5aeb7d493353766094b712e35fbc9952f02938f52"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should only allow strings with specific lengths from a list: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isLength.test.js"},"region":{"startLine":163}}}],"partialFingerprints":{"codehealthFindingId/v1":"c7cda8ba46478e661638f76d2890945c8b5f27cc133c1f1eb28c9f890bf792fd"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate ISO 3166-1 alpha 3 country codes: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isISO31661Alpha3.test.js"},"region":{"startLine":4}}}],"partialFingerprints":{"codehealthFindingId/v1":"cfb13a5ed8f5a9c2573865e728901eb58d05fed62f5b36bc860afe88b48dc7d6"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate user assigned ISO 3166-1 alpha 3 code if provided: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isISO31661Alpha3.test.js"},"region":{"startLine":29}}}],"partialFingerprints":{"codehealthFindingId/v1":"210aae100012ce5a80460436b2ccbd7fb1d04a3a72a643e04767d8b472f366cb"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should not validate user assigned ISO 3166-1 alpha 3 not valid code if provided: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isISO31661Alpha3.test.js"},"region":{"startLine":38}}}],"partialFingerprints":{"codehealthFindingId/v1":"28dcd1b9d5ba4cab61332684782ea984d6bd9da2b8e7ac7f3888af163565d5fa"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should still validate ISO 3166-1 alpha 3 country codes if the options object is empty: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isISO31661Alpha3.test.js"},"region":{"startLine":47}}}],"partialFingerprints":{"codehealthFindingId/v1":"d1fd9c2e079a3e466aa0e5ee90d35b390720be578e8830577ecbd1f040ca1097"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should still validate ISO 3166-1 alpha 3 country codes if the userAssignedCodes option is empty: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isISO31661Alpha3.test.js"},"region":{"startLine":56}}}],"partialFingerprints":{"codehealthFindingId/v1":"ed01c7ea18eaf1db4959ed9696700791dc6ec1e5c9204db5af1842132db28e40"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate ISO 3166-1 alpha 2 country codes: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isISO31661Alpha2.test.js"},"region":{"startLine":4}}}],"partialFingerprints":{"codehealthFindingId/v1":"8b7c87d72a34a5313cc58d8a21598e0bd07a87ce76935592d68276244330ce44"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate user assigned alpha 2 code if provided: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isISO31661Alpha2.test.js"},"region":{"startLine":35}}}],"partialFingerprints":{"codehealthFindingId/v1":"4bdd2e593e1f7c8e88635527302e7fb8b4250d8f53ed41b170d065a41f0f94af"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should not validate user assigned alpha 2 not valid code if provided: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isISO31661Alpha2.test.js"},"region":{"startLine":44}}}],"partialFingerprints":{"codehealthFindingId/v1":"374ae5f8235dd3f791efef61a54c13280a98558914c2e2b756c6f23befbae301"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should still validate ISO 3166-1 alpha 2 country codes if the options object is empty: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isISO31661Alpha2.test.js"},"region":{"startLine":53}}}],"partialFingerprints":{"codehealthFindingId/v1":"7a2ae1f8ab3173970bc0d0ca8f00cd68f129596a0ad3e24c899dd55d7d812208"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should still validate ISO 3166-1 alpha 2 country codes if the userAssignedCodes option is empty: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isISO31661Alpha2.test.js"},"region":{"startLine":62}}}],"partialFingerprints":{"codehealthFindingId/v1":"c27af048c4e98f3893e3fc7a0dbbef01b2916c9e93a48b7239f7ce6451d56da5"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate ISBNs: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isISBN.test.js"},"region":{"startLine":4}}}],"partialFingerprints":{"codehealthFindingId/v1":"5a1a175cc544dc92c95ad061173ca6cac8117b4c1d6e67ee99951ee86dfd2755"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate ISBNs: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isISBN.test.js"},"region":{"startLine":57}}}],"partialFingerprints":{"codehealthFindingId/v1":"25bf01bec4b8438ed3f20ff1ab2ad53f88f21b1358cf5eba191908ca261bfff4"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate IP addresses: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isIP.test.js"},"region":{"startLine":4}}}],"partialFingerprints":{"codehealthFindingId/v1":"eba2ce7bfd77e8775b46984a0be4daec0d1642dcc328851917b653308555f451"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate IP addresses: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isIP.test.js"},"region":{"startLine":174}}}],"partialFingerprints":{"codehealthFindingId/v1":"87472d5397516168baa110fc547d45a066fc59392f0f1fbb9ba7a1d8f32d8267"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate domain names.: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isFQDN.test.js"},"region":{"startLine":4}}}],"partialFingerprints":{"codehealthFindingId/v1":"172026d105cb8500ad2676a50f5023efcdfe36ca131889f41225082d41f9e41f"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate base64 strings with default options: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isBase64.test.js"},"region":{"startLine":6}}}],"partialFingerprints":{"codehealthFindingId/v1":"fa8510123c3382f481f95f155f26187bc3d375fb67a2a7b63c8c8cc0cb35b322"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate standard Base64 with padding: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isBase64.test.js"},"region":{"startLine":77}}}],"partialFingerprints":{"codehealthFindingId/v1":"fa339ad9b6ceb846b0a9324573d1c084f4e843987b37783cd61d5f2276eb3d26"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate standard Base64 without padding: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isBase64.test.js"},"region":{"startLine":101}}}],"partialFingerprints":{"codehealthFindingId/v1":"b836a847bfcb413d4ec8a8034bc654d119bd4b400935c8e9ec87ede1d6c20540"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Base64url with padding: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isBase64.test.js"},"region":{"startLine":125}}}],"partialFingerprints":{"codehealthFindingId/v1":"8354130a010bde7afb942f12e645992a8cc726697bdf9e1fe1cf0e0bc88b4952"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate Base64url without padding: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isBase64.test.js"},"region":{"startLine":146}}}],"partialFingerprints":{"codehealthFindingId/v1":"6728d2e64400abfffd2d5e57e5be22f3318b214f0d64963b9e0a4e14761b1528"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should handle mixed cases correctly: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isBase64.test.js"},"region":{"startLine":168}}}],"partialFingerprints":{"codehealthFindingId/v1":"147bc7c57117af756a5e8bc0949a103f472295d30ac74569f0e49ec1ef649182"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate dates against a start date: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isAfter.test.js"},"region":{"startLine":4}}}],"partialFingerprints":{"codehealthFindingId/v1":"b05d68bc93a514558cf3fa06113b7fe0f7f14b891012288d7f2db04fc56606aa"}},{"ruleId":"D10","level":"note","message":{"text":"No direct assertions: should validate dates against a start date: No conventional assertion call was detected, and 294 of 323 tests in \u0060the repository root\u0060 read the same way \u2014 so this is treated as that project\u0027s convention rather than a broken test, and it does not drag the score. Two things look like this: verification that happens indirectly (an approval/verifier harness or BDD step methods), or a project of runnable samples compiled as tests, where a run that does not throw is the only check. If it is the latter, these methods genuinely verify nothing."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"test/validators/isAfter.test.js"},"region":{"startLine":48}}}],"partialFingerprints":{"codehealthFindingId/v1":"602399bc098ee47cd49cf4f3ea368b65b7a8b3ec16f2ffd424cd819dd38e838e"}},{"ruleId":"D16","level":"note","message":{"text":"Off-boarding risk: anonymized user #1: If anonymized user #1 becomes unavailable, 1 significant file(s) lose their only recent owner: src/lib/normalizeEmail.js. Pair on, review, or document these before any departure."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"8d72a5a28086ff578a55833b69801b4215b862d4cba0006cca7ca39fde385e58"}},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"de24fb5b2f9808dee7349e0f8b4bf4e8fc0b77a05b8578184e5f23b813b48863"},"taxa":[{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-353","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"703b990f6d9a60db46de372b4bc3713bc769740b61be7dfed2b23b523664ac12"},"taxa":[{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-353","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"bc17439367157c6f6ff8590f4dfe29bc3a0ce4e328d99df310f8a49a2877af10"},"taxa":[{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-353","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"4ffcc1b724469248fcd864b1901b4fb0cedf5b911fb5d6075b57cf61232c29e8"},"taxa":[{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-353","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"bc26593caf509b487cb3dff9d1a587737a02c72fc5e13e59c1a151f7d6412ad4"},"taxa":[{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-353","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"6697da3b2939cbcf901a777f5a24bd801502016d5915f04b926e15ae287c6795"},"taxa":[{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-353","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"bf6e654aae86dc886c5a2e651d1be07a1252f28560ba57c82c6b15ac3d1f9c30"},"taxa":[{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-353","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"96f88121b035a898a6759141862415469563ae4858d3bd2449d90d5e5ba04a57"},"taxa":[{"id":"CWE-522","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-829","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"dd2ab60f0744f0fa3ded8d666143bf909ab8a2e8348ad2ddd8a93156d3adc94a"},"taxa":[{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-353","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"7a29df3c4b73b38337ac0c48c825ef6aace52faedb76536737648711426349e1"},"taxa":[{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-353","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"7edfd8f4f5bf8e12eaa030a7c42ab1e660cfefd97a58fe598164ecb96a02e3c9"},"taxa":[{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-353","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"fbae55df5f85e32ca32b5237b845c7388ab1f1cff2e732654830f8f06acc6881"},"taxa":[{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-353","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"19f197c7b244ec588e0652363982a8c22a74b263f6339e301f47c68d18664883"},"taxa":[{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-353","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D29","level":"error","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"2e8440509e60dc124287ad340892759ebc2bae7529bbde2e670aaf9b15fc34dc"},"taxa":[{"id":"CWE-1357","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}},{"id":"CWE-353","toolComponent":{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d"}}]},{"ruleId":"D30","level":"note","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"83624e2a75b102d656da943ab10c203006d969612030d1669428c03d4067940e"}},{"ruleId":"D34","level":"note","message":{"text":"Orphaned files with no living knowledge: 10 of 20 analysed file(s) have no living knowledge left \u2014 their last meaningful change has decayed away, so if one breaks, no one currently understands it (counted over production source files of roughly 2,400 bytes or more, excluding vendored, generated and example/demo trees and test files identified by path convention, largest first; 20 of the 113 production source files in this repository met that bar). None is large enough to earn a read-through of its own, so this row stands in for the per-file rows rather than raising one each \u2014 most significant first: src/lib/alpha.js, src/lib/isEmail.js, src/lib/isLocale.js, src/lib/util/algorithms.js, src/lib/isCurrency.js, src/lib/isStrongPassword.js, src/lib/isIP.js, src/lib/isDate.js (and 2 more). Attach the read to the next change that touches one of them: have a second person review that change, and leave behind a short comment or test recording what the file is for, so the knowledge comes back at the cost of a change you were making anyway."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"ce861fd78f6935114d3a342cb90ad25870f984e1042954fcbbe27c0e23be3658"}},{"ruleId":"D36","level":"note","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"1b213f6eedd4b140d0bc37bdf1496f72811a643f34064f12518b32e9e83bcfc7"}},{"ruleId":"D36","level":"note","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"0e17f71490e4d120a48b2b2881ab866c93b272bef2febb673a3e8e42b2c288ab"}},{"ruleId":"D36","level":"note","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"eb00976a698a5d68999b7ee6d27206fd374e916853e7ff1ead5eed42386f043f"}},{"ruleId":"D36","level":"warning","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"fbd5c0e4d49f57dbf5cf538253649be0cac07fa750f39b39447afc88d270967e"}},{"ruleId":"D36","level":"warning","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"90f83b4fa27db32740afe9540c905f3c0499caed87f61049a8a903ecc95b41c3"}},{"ruleId":"D36","level":"warning","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"d068c977b62d9a977df1bb6f53e8b00b586c3abee955f91d715f92b8e019d624"}},{"ruleId":"D36","level":"note","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"ace515990e7ee0f17b5c17e44dd168a5bdecf90804a3a3dd845cf05540978013"}},{"ruleId":"D43","level":"note","message":{"text":"A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."},"partialFingerprints":{"codehealthFindingId/v1":"ca77df8ac0ed56a2e42b0923be81cca477f3174e98a1dc599981adac6a376eef"}},{"ruleId":"M2","level":"note","message":{"text":"No ADRs: No Architecture Decision Records found \u2014 no conventional ADR directory, no numbered \u0060NNNN-title\u0060 documents in any markup this check reads, and nothing ADR-shaped by content. Design rationale recorded elsewhere (a design-notes tree, a mailing list, pull-request discussion) is not visible to this check and is not re-findable per decision, so a future maintainer cannot ask why one choice was made and get an answer."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"670b3d6e36a756d63097d0dfbf90afd5fc761308800b9354894a07c3f4e4aa14"}},{"ruleId":"M4","level":"note","message":{"text":"README/code drift: README advertises Docker containerisation, but no Dockerfile/compose file exists \u2014 searched for: \u0060dockerfile\u0060, \u0060docker-compose\u0060, \u0060compose.yaml\u0060, \u0060compose.yml\u0060. Each was matched case- and separator-insensitively against file and directory NAMES anywhere in the tree, and against the CONTENTS of manifest files (package.json, *.csproj, *.props, *.slnx, *.yml, Dockerfile); the README\u0027s own prose never counts, so a claim is never refuted by merely being made. Nothing outside that search was read \u2014 a footprint living only in a submodule, in a file type not listed here, or under a name none of those terms matches is not seen, and this row is then wrong."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"343bbbd51ceb8de7a9ff88d79f7c797abf9b5921f8727b67b4d0f4f8a22c5e49"}},{"ruleId":"P12","level":"warning","message":{"text":"Coverage collected but not gated: CI collects a coverage report but no step enforces a minimum \u2014 coverage could halve and CI stays green. Add a step that fails the build when coverage drops below a floor (your coverage tool\u0027s minimum-threshold flag, or a coverage-gate action) so the number guards something. What was searched, so you can tell an absence from a miss: this repository\u0027s CI files AND its coverage configuration \u2014 the well-known coverage and test-runner config files, read at the repository root and inside workspace package directories two levels down, so a floor declared beside the tests rather than in the pipeline is credited \u2014 matched against the threshold settings this check knows by name. A floor set in your coverage service\u0027s web UI rather than in a committed file, or under a setting whose name is not one of those, is not seen here."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"7f63c06044cf998d9a0698692df30d8873e29bc9b0c98ee829255017c1193d33"}},{"ruleId":"R1","level":"warning","message":{"text":"Type Safety: 0 typed \u00B7 129 plain JS \u2014 the untyped files are build-browser.mjs, src/index.js, src/lib/alpha.js, src/lib/blacklist.js, src/lib/contains.js, src/lib/equals.js (\u002B123 more)."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"d00ee7953f55325a823d27e5db9657c80ca9b9861c0c0abf8fe487cd3fa586d3"}},{"ruleId":"R10","level":"warning","message":{"text":"Duplicated block (21 lines \u00D7 2 locations): src/lib/isAlpha.js:4 \u00B7 src/lib/isAlphanumeric.js:4 \u2014 the 2 copies sit in sibling files in one directory, so check first whether one of them (or an existing module there) already owns this behaviour and the others should call it; otherwise extract it into one module in that directory and have each site call it."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isAlpha.js"},"region":{"startLine":4}}}],"partialFingerprints":{"codehealthFindingId/v1":"96f91385e4c64cf7639debc3cfef4fe66106678a51c6f17bc5fadd98f2ce96b8"}},{"ruleId":"R10","level":"warning","message":{"text":"Duplicated block (18 lines \u00D7 2 locations): src/lib/isISO31661Alpha2.js:34 \u00B7 src/lib/isISO31661Alpha3.js:25 \u2014 the 2 copies sit in sibling files in one directory, so check first whether one of them (or an existing module there) already owns this behaviour and the others should call it; otherwise extract it into one module in that directory and have each site call it."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isISO31661Alpha2.js"},"region":{"startLine":34}}}],"partialFingerprints":{"codehealthFindingId/v1":"3b8b1ae3ca8bdc561c748c84429a72f71240faddf74cca0a67f934b1bc27cc5d"}},{"ruleId":"R10","level":"warning","message":{"text":"Duplicated block with local edits (13 matched lines \u00D7 2 locations): src/lib/isISIN.js:23 \u00B7 src/lib/isISIN.js:41 \u2014 the two spans are one implementation copied and then locally edited \u2014 62 tokens are still identical, in the same order in both spans, with only local edits between them. The copies have already begun to drift, which is this row\u0027s finding: an edit made to one and not the other changes behaviour silently. Diff the two spans first to learn what genuinely differs, then extract the shared core into one module both sites use, passing the differences in as parameters \u2014 or, if one copy exists only because the other could not be imported from its context, make one of them the single source the other is generated or re-exported from. If one copy is no longer reachable, delete it rather than letting it shadow the live one."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isISIN.js"},"region":{"startLine":23}}}],"partialFingerprints":{"codehealthFindingId/v1":"fbf6daf2c251e1d9e86ddfc564ff81fc669411153d8b6cca220af93206b71b54"}},{"ruleId":"R10","level":"warning","message":{"text":"Duplicated block (13 lines \u00D7 2 locations): src/lib/isMobilePhone.js:200 \u00B7 src/lib/isPostalCode.js:91 \u2014 the 2 copies are spread across 2 files, and the CITED SPAN is not a self-contained block \u2014 it runs from inside one construct into the next (the tail of a branch plus the head of the following one, a run of switch arms, the end of a declaration plus the list that follows it) rather than covering a whole unit. So do not lift these lines literally: no call can be substituted for a half-open construct. Extract the enclosing repeated UNIT instead \u2014 the whole function, component or branch these lines sit in \u2014 and where the repetition IS the construct (a run of switch arms, a stack of near-identical declarations) replace it with one table or registry looked up by key rather than a helper each arm calls. The copies still drift apart the first time only one of them is edited, which is why this is reported."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isMobilePhone.js"},"region":{"startLine":200}}}],"partialFingerprints":{"codehealthFindingId/v1":"5347566f104ae4f7079771bdc78f38f792ec51ed25882bee3105dffbdd961237"}},{"ruleId":"R10","level":"warning","message":{"text":"Duplicated block (12 lines \u00D7 2 locations): src/lib/isTaxID.js:505 \u00B7 src/lib/isTaxID.js:780 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isTaxID.js"},"region":{"startLine":505}}}],"partialFingerprints":{"codehealthFindingId/v1":"f1e3caac39ce61dc912bcad3184a3995eb8529812be1d40494e84515495d0389"}},{"ruleId":"R10","level":"warning","message":{"text":"Duplicated block (10 lines \u00D7 2 locations): src/lib/isTaxID.js:244 \u00B7 src/lib/isTaxID.js:460 \u2014 all 2 copies are in the same file, and the CITED SPAN is not a self-contained block \u2014 it runs from inside one construct into the next (the tail of a branch plus the head of the following one, a run of switch arms, the end of a declaration plus the list that follows it) rather than covering a whole unit. So do not lift these lines literally: no call can be substituted for a half-open construct. Extract the enclosing repeated UNIT instead \u2014 the whole function, component or branch these lines sit in \u2014 and where the repetition IS the construct (a run of switch arms, a stack of near-identical declarations) replace it with one table or registry looked up by key rather than a helper each arm calls. The copies still drift apart the first time only one of them is edited, which is why this is reported."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isTaxID.js"},"region":{"startLine":244}}}],"partialFingerprints":{"codehealthFindingId/v1":"a433907d5014a381f5f0c7137ddb7578606c92cd2b912f868a043762f01603da"}},{"ruleId":"R10","level":"warning","message":{"text":"Duplicated block (10 lines \u00D7 3 locations): src/lib/normalizeEmail.js:202 \u00B7 src/lib/normalizeEmail.js:213 \u00B7 src/lib/normalizeEmail.js:225 \u2014 all 3 copies are in the same file, and the CITED SPAN is not a self-contained block \u2014 it runs from inside one construct into the next (the tail of a branch plus the head of the following one, a run of switch arms, the end of a declaration plus the list that follows it) rather than covering a whole unit. So do not lift these lines literally: no call can be substituted for a half-open construct. Extract the enclosing repeated UNIT instead \u2014 the whole function, component or branch these lines sit in \u2014 and where the repetition IS the construct (a run of switch arms, a stack of near-identical declarations) replace it with one table or registry looked up by key rather than a helper each arm calls. The copies still drift apart the first time only one of them is edited, which is why this is reported."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/normalizeEmail.js"},"region":{"startLine":202}}}],"partialFingerprints":{"codehealthFindingId/v1":"b05ba139e405c496ffa80bdfd0b4c3e2a7258e22da1ecb759ec3e29c4be07407"}},{"ruleId":"R10","level":"warning","message":{"text":"Duplicated block (9 lines \u00D7 2 locations): src/lib/isByteLength.js:28 \u00B7 src/lib/isLength.js:4 \u2014 the 2 copies are spread across 2 files, and the CITED SPAN is not a self-contained block \u2014 it runs from inside one construct into the next (the tail of a branch plus the head of the following one, a run of switch arms, the end of a declaration plus the list that follows it) rather than covering a whole unit. So do not lift these lines literally: no call can be substituted for a half-open construct. Extract the enclosing repeated UNIT instead \u2014 the whole function, component or branch these lines sit in \u2014 and where the repetition IS the construct (a run of switch arms, a stack of near-identical declarations) replace it with one table or registry looked up by key rather than a helper each arm calls. The copies still drift apart the first time only one of them is edited, which is why this is reported."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isByteLength.js"},"region":{"startLine":28}}}],"partialFingerprints":{"codehealthFindingId/v1":"01b7c6e62abf09b7f9e07d462fdfb290222a7e68ce2be7f35058628bc657e557"}},{"ruleId":"R10","level":"warning","message":{"text":"Duplicated block (9 lines \u00D7 2 locations): src/lib/isTaxID.js:455 \u00B7 src/lib/isTaxID.js:509 \u2014 all 2 copies are in the same file, and the CITED SPAN is not a self-contained block \u2014 it runs from inside one construct into the next (the tail of a branch plus the head of the following one, a run of switch arms, the end of a declaration plus the list that follows it) rather than covering a whole unit. So do not lift these lines literally: no call can be substituted for a half-open construct. Extract the enclosing repeated UNIT instead \u2014 the whole function, component or branch these lines sit in \u2014 and where the repetition IS the construct (a run of switch arms, a stack of near-identical declarations) replace it with one table or registry looked up by key rather than a helper each arm calls. The copies still drift apart the first time only one of them is edited, which is why this is reported."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isTaxID.js"},"region":{"startLine":455}}}],"partialFingerprints":{"codehealthFindingId/v1":"857adda95a1809f684e37152a01ba84e006d19e0626c89df5088964efedddc69"}},{"ruleId":"R10","level":"warning","message":{"text":"Duplicated block (9 lines \u00D7 2 locations): src/lib/isTaxID.js:469 \u00B7 src/lib/isTaxID.js:481 \u2014 both copies are in the same file, so extract the block into one function there and call it from each site \u2014 the copies drift apart the first time only one of them is edited."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isTaxID.js"},"region":{"startLine":469}}}],"partialFingerprints":{"codehealthFindingId/v1":"82fc141fd546b8297577119ac23e7bef23102fe5d569723fb8efa76d806097b9"}},{"ruleId":"R10","level":"warning","message":{"text":"Duplicated block (8 lines \u00D7 2 locations): src/lib/isIdentityCard.js:301 \u00B7 src/lib/isIdentityCard.js:314 \u2014 all 2 copies are in the same file, and the CITED SPAN is not a self-contained block \u2014 it runs from inside one construct into the next (the tail of a branch plus the head of the following one, a run of switch arms, the end of a declaration plus the list that follows it) rather than covering a whole unit. So do not lift these lines literally: no call can be substituted for a half-open construct. Extract the enclosing repeated UNIT instead \u2014 the whole function, component or branch these lines sit in \u2014 and where the repetition IS the construct (a run of switch arms, a stack of near-identical declarations) replace it with one table or registry looked up by key rather than a helper each arm calls. The copies still drift apart the first time only one of them is edited, which is why this is reported."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isIdentityCard.js"},"region":{"startLine":301}}}],"partialFingerprints":{"codehealthFindingId/v1":"20e8c7716f3938ea7eb9483ee51092bd0ab8e2f2c51b973db350b9ef1ae01964"}},{"ruleId":"R10","level":"warning","message":{"text":"Duplicated block (7 lines \u00D7 2 locations): src/lib/isTaxID.js:42 \u00B7 src/lib/isTaxID.js:881 \u2014 all 2 copies are in the same file, and the CITED SPAN is not a self-contained block \u2014 it runs from inside one construct into the next (the tail of a branch plus the head of the following one, a run of switch arms, the end of a declaration plus the list that follows it) rather than covering a whole unit. So do not lift these lines literally: no call can be substituted for a half-open construct. Extract the enclosing repeated UNIT instead \u2014 the whole function, component or branch these lines sit in \u2014 and where the repetition IS the construct (a run of switch arms, a stack of near-identical declarations) replace it with one table or registry looked up by key rather than a helper each arm calls. The copies still drift apart the first time only one of them is edited, which is why this is reported."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isTaxID.js"},"region":{"startLine":42}}}],"partialFingerprints":{"codehealthFindingId/v1":"d5f235fa3532bc86d5a4f58fcd2945a66cf3f6b30268db3c4747281e0b1840c6"}},{"ruleId":"R10","level":"warning","message":{"text":"Duplicated block (5 lines \u00D7 2 locations): src/lib/isAfter.js:3 \u00B7 src/lib/isBefore.js:3 \u2014 the 2 copies are spread across 2 files, and the CITED SPAN is not a self-contained block \u2014 it runs from inside one construct into the next (the tail of a branch plus the head of the following one, a run of switch arms, the end of a declaration plus the list that follows it) rather than covering a whole unit. So do not lift these lines literally: no call can be substituted for a half-open construct. Extract the enclosing repeated UNIT instead \u2014 the whole function, component or branch these lines sit in \u2014 and where the repetition IS the construct (a run of switch arms, a stack of near-identical declarations) replace it with one table or registry looked up by key rather than a helper each arm calls. The copies still drift apart the first time only one of them is edited, which is why this is reported."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isAfter.js"},"region":{"startLine":3}}}],"partialFingerprints":{"codehealthFindingId/v1":"cc62ac5831916bc2f7009ef57d709d0f9bd4203016d894c6ce5385ef27a10a78"}},{"ruleId":"R2","level":"warning","message":{"text":"Complex function isURL (cyclomatic 56, cognitive 95): isURL has cyclomatic complexity 56 and cognitive complexity 95; this row is raised above a cyclomatic bar of 10. The two numbers answer different questions and the gap between them is what decides whether to act: cyclomatic counts the independent arms through the body, cognitive counts what it costs to hold them in your head, so nesting and mixed boolean chains raise it while a flat run of independent arms does not. Cognitive is at or above cyclomatic here, so the branching is nested or entangled rather than laid out side by side \u2014 extracting each decision into its own named function is the change that pays. Measured by this repository\u0027s own parse of the file, so a body assembled at runtime, or generated, is counted as written rather than as it executes."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isURL.js"},"region":{"startLine":56}}}],"partialFingerprints":{"codehealthFindingId/v1":"f3480edfba92958d68bbf38ce960e6427e0c20807b33f864a057062ec41101fc"}},{"ruleId":"R2","level":"warning","message":{"text":"Complex function isEmail (cyclomatic 37, cognitive 54): isEmail has cyclomatic complexity 37 and cognitive complexity 54; this row is raised above a cyclomatic bar of 10. The two numbers answer different questions and the gap between them is what decides whether to act: cyclomatic counts the independent arms through the body, cognitive counts what it costs to hold them in your head, so nesting and mixed boolean chains raise it while a flat run of independent arms does not. Cognitive is at or above cyclomatic here, so the branching is nested or entangled rather than laid out side by side \u2014 extracting each decision into its own named function is the change that pays. Measured by this repository\u0027s own parse of the file, so a body assembled at runtime, or generated, is counted as written rather than as it executes."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isEmail.js"},"region":{"startLine":64}}}],"partialFingerprints":{"codehealthFindingId/v1":"f76ef9d68cd48607c24de365399d90eb48558b401c6983bca8378761779cc550"}},{"ruleId":"R2","level":"warning","message":{"text":"Complex function normalizeEmail (cyclomatic 30, cognitive 47): normalizeEmail has cyclomatic complexity 30 and cognitive complexity 47; this row is raised above a cyclomatic bar of 10. The two numbers answer different questions and the gap between them is what decides whether to act: cyclomatic counts the independent arms through the body, cognitive counts what it costs to hold them in your head, so nesting and mixed boolean chains raise it while a flat run of independent arms does not. Cognitive is at or above cyclomatic here, so the branching is nested or entangled rather than laid out side by side \u2014 extracting each decision into its own named function is the change that pays. Measured by this repository\u0027s own parse of the file, so a body assembled at runtime, or generated, is counted as written rather than as it executes."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/normalizeEmail.js"},"region":{"startLine":172}}}],"partialFingerprints":{"codehealthFindingId/v1":"6e67d321c573a621e5b9d70eb2f3532e4110b5faf68f47104a93cfcfd73388aa"}},{"ruleId":"R2","level":"warning","message":{"text":"Complex function isFloat (cyclomatic 20, cognitive 12): isFloat has cyclomatic complexity 20 and cognitive complexity 12; this row is raised above a cyclomatic bar of 10. The two numbers answer different questions and the gap between them is what decides whether to act: cyclomatic counts the independent arms through the body, cognitive counts what it costs to hold them in your head, so nesting and mixed boolean chains raise it while a flat run of independent arms does not. Cognitive sits below cyclomatic here, so much of the count is breadth \u2014 arms side by side rather than stacked \u2014 and splitting per arm would leave a function per arm; group the work between the checks into named steps instead. Measured by this repository\u0027s own parse of the file, so a body assembled at runtime, or generated, is counted as written rather than as it executes."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isFloat.js"},"region":{"startLine":5}}}],"partialFingerprints":{"codehealthFindingId/v1":"89b3159b8b82413a9d287f0157653f877def163310dcb7b126e56448c168f517"}},{"ruleId":"R2","level":"warning","message":{"text":"Complex function isDate (cyclomatic 19, cognitive 32): isDate has cyclomatic complexity 19 and cognitive complexity 32; this row is raised above a cyclomatic bar of 10. The two numbers answer different questions and the gap between them is what decides whether to act: cyclomatic counts the independent arms through the body, cognitive counts what it costs to hold them in your head, so nesting and mixed boolean chains raise it while a flat run of independent arms does not. Cognitive is at or above cyclomatic here, so the branching is nested or entangled rather than laid out side by side \u2014 extracting each decision into its own named function is the change that pays. Measured by this repository\u0027s own parse of the file, so a body assembled at runtime, or generated, is counted as written rather than as it executes."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isDate.js"},"region":{"startLine":24}}}],"partialFingerprints":{"codehealthFindingId/v1":"3913ac3d0fb9debd9e9ad0e33b2b352421996818b7b3c27b08d5be1f6ae3195e"}},{"ruleId":"R2","level":"warning","message":{"text":"Complex function ptBrCheck (cyclomatic 18, cognitive 16): ptBrCheck has cyclomatic complexity 18 and cognitive complexity 16; this row is raised above a cyclomatic bar of 10. The two numbers answer different questions and the gap between them is what decides whether to act: cyclomatic counts the independent arms through the body, cognitive counts what it costs to hold them in your head, so nesting and mixed boolean chains raise it while a flat run of independent arms does not. Cognitive sits below cyclomatic here, so much of the count is breadth \u2014 arms side by side rather than stacked \u2014 and splitting per arm would leave a function per arm; group the work between the checks into named steps instead. Measured by this repository\u0027s own parse of the file, so a body assembled at runtime, or generated, is counted as written rather than as it executes."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isTaxID.js"},"region":{"startLine":968}}}],"partialFingerprints":{"codehealthFindingId/v1":"b9eeb2b49518c3652f7b2888fa25d9d77b3d1d713f38b0662d2cc42f8390f1e7"}},{"ruleId":"R2","level":"warning","message":{"text":"Complex function currencyRegex (cyclomatic 17, cognitive 19): currencyRegex has cyclomatic complexity 17 and cognitive complexity 19; this row is raised above a cyclomatic bar of 10. The two numbers answer different questions and the gap between them is what decides whether to act: cyclomatic counts the independent arms through the body, cognitive counts what it costs to hold them in your head, so nesting and mixed boolean chains raise it while a flat run of independent arms does not. Cognitive is at or above cyclomatic here, so the branching is nested or entangled rather than laid out side by side \u2014 extracting each decision into its own named function is the change that pays. Measured by this repository\u0027s own parse of the file, so a body assembled at runtime, or generated, is counted as written rather than as it executes."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isCurrency.js"},"region":{"startLine":4}}}],"partialFingerprints":{"codehealthFindingId/v1":"f7a49c5a1d9b1758e347556b55f75b6c358cc0f37c3b26956ebc90eba6aecf10"}},{"ruleId":"R2","level":"warning","message":{"text":"Complex function csCzCheck (cyclomatic 16, cognitive 29): csCzCheck has cyclomatic complexity 16 and cognitive complexity 29; this row is raised above a cyclomatic bar of 10. The two numbers answer different questions and the gap between them is what decides whether to act: cyclomatic counts the independent arms through the body, cognitive counts what it costs to hold them in your head, so nesting and mixed boolean chains raise it while a flat run of independent arms does not. Cognitive is at or above cyclomatic here, so the branching is nested or entangled rather than laid out side by side \u2014 extracting each decision into its own named function is the change that pays. Measured by this repository\u0027s own parse of the file, so a body assembled at runtime, or generated, is counted as written rather than as it executes."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isTaxID.js"},"region":{"startLine":101}}}],"partialFingerprints":{"codehealthFindingId/v1":"86a649f3f700f14ae7fdb057042b207fa194021d48fbe99b9356a858803af008"}},{"ruleId":"R2","level":"warning","message":{"text":"Complex function dkDkCheck (cyclomatic 15, cognitive 14): dkDkCheck has cyclomatic complexity 15 and cognitive complexity 14; this row is raised above a cyclomatic bar of 10. The two numbers answer different questions and the gap between them is what decides whether to act: cyclomatic counts the independent arms through the body, cognitive counts what it costs to hold them in your head, so nesting and mixed boolean chains raise it while a flat run of independent arms does not. Cognitive sits below cyclomatic here, so much of the count is breadth \u2014 arms side by side rather than stacked \u2014 and splitting per arm would leave a function per arm; group the work between the checks into named steps instead. Measured by this repository\u0027s own parse of the file, so a body assembled at runtime, or generated, is counted as written rather than as it executes."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isTaxID.js"},"region":{"startLine":213}}}],"partialFingerprints":{"codehealthFindingId/v1":"60f1691c7e22552c1395539834b438c5668969ee1a35fb063b2b02b126cc0f49"}},{"ruleId":"R2","level":"warning","message":{"text":"Complex function isInt (cyclomatic 15, cognitive 7): isInt has cyclomatic complexity 15 and cognitive complexity 7; this row is raised above a cyclomatic bar of 10. The two numbers answer different questions and the gap between them is what decides whether to act: cyclomatic counts the independent arms through the body, cognitive counts what it costs to hold them in your head, so nesting and mixed boolean chains raise it while a flat run of independent arms does not. Cognitive sits below cyclomatic here, so much of the count is breadth \u2014 arms side by side rather than stacked \u2014 and splitting per arm would leave a function per arm; group the work between the checks into named steps instead. Measured by this repository\u0027s own parse of the file, so a body assembled at runtime, or generated, is counted as written rather than as it executes."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isInt.js"},"region":{"startLine":7}}}],"partialFingerprints":{"codehealthFindingId/v1":"44e10be0fab1cbf03cd34e40c86377dcaf4dafd6b20a234378d64ec39b7cba61"}},{"ruleId":"R2","level":"warning","message":{"text":"Complex function isISBN (cyclomatic 14, cognitive 21): isISBN has cyclomatic complexity 14 and cognitive complexity 21; this row is raised above a cyclomatic bar of 10. The two numbers answer different questions and the gap between them is what decides whether to act: cyclomatic counts the independent arms through the body, cognitive counts what it costs to hold them in your head, so nesting and mixed boolean chains raise it while a flat run of independent arms does not. Cognitive is at or above cyclomatic here, so the branching is nested or entangled rather than laid out side by side \u2014 extracting each decision into its own named function is the change that pays. Measured by this repository\u0027s own parse of the file, so a body assembled at runtime, or generated, is counted as written rather than as it executes."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isISBN.js"},"region":{"startLine":7}}}],"partialFingerprints":{"codehealthFindingId/v1":"bb78c0336d1c3380145e86d855a5cf051bf5f81055ea14c8c5ef536026e7535c"}},{"ruleId":"R2","level":"warning","message":{"text":"Complex function itItCheck (cyclomatic 14, cognitive 19): itItCheck has cyclomatic complexity 14 and cognitive complexity 19; this row is raised above a cyclomatic bar of 10. The two numbers answer different questions and the gap between them is what decides whether to act: cyclomatic counts the independent arms through the body, cognitive counts what it costs to hold them in your head, so nesting and mixed boolean chains raise it while a flat run of independent arms does not. Cognitive is at or above cyclomatic here, so the branching is nested or entangled rather than laid out side by side \u2014 extracting each decision into its own named function is the change that pays. Measured by this repository\u0027s own parse of the file, so a body assembled at runtime, or generated, is counted as written rather than as it executes."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isTaxID.js"},"region":{"startLine":654}}}],"partialFingerprints":{"codehealthFindingId/v1":"f3ba69af90ba832917e9a1ee26350e8f297d18e7a08d310b6ac205842783e616"}},{"ruleId":"R2","level":"warning","message":{"text":"Complex function svSeCheck (cyclomatic 13, cognitive 25): svSeCheck has cyclomatic complexity 13 and cognitive complexity 25; this row is raised above a cyclomatic bar of 10. The two numbers answer different questions and the gap between them is what decides whether to act: cyclomatic counts the independent arms through the body, cognitive counts what it costs to hold them in your head, so nesting and mixed boolean chains raise it while a flat run of independent arms does not. Cognitive is at or above cyclomatic here, so the branching is nested or entangled rather than laid out side by side \u2014 extracting each decision into its own named function is the change that pays. Measured by this repository\u0027s own parse of the file, so a body assembled at runtime, or generated, is counted as written rather than as it executes."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isTaxID.js"},"region":{"startLine":1117}}}],"partialFingerprints":{"codehealthFindingId/v1":"5c81cef3e867cab61e43afde15be295f8e463ff6296b924859116d5514bc126b"}},{"ruleId":"R2","level":"warning","message":{"text":"Complex function itItNameCheck (cyclomatic 13, cognitive 22): itItNameCheck has cyclomatic complexity 13 and cognitive complexity 22; this row is raised above a cyclomatic bar of 10. The two numbers answer different questions and the gap between them is what decides whether to act: cyclomatic counts the independent arms through the body, cognitive counts what it costs to hold them in your head, so nesting and mixed boolean chains raise it while a flat run of independent arms does not. Cognitive is at or above cyclomatic here, so the branching is nested or entangled rather than laid out side by side \u2014 extracting each decision into its own named function is the change that pays. Measured by this repository\u0027s own parse of the file, so a body assembled at runtime, or generated, is counted as written rather than as it executes."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isTaxID.js"},"region":{"startLine":621}}}],"partialFingerprints":{"codehealthFindingId/v1":"52035b6c9b33e77ac25817b57b5f9b5f477a9c372358b30e3d301f12d3841de1"}},{"ruleId":"R2","level":"warning","message":{"text":"Complex function plPlCheck (cyclomatic 13, cognitive 16): plPlCheck has cyclomatic complexity 13 and cognitive complexity 16; this row is raised above a cyclomatic bar of 10. The two numbers answer different questions and the gap between them is what decides whether to act: cyclomatic counts the independent arms through the body, cognitive counts what it costs to hold them in your head, so nesting and mixed boolean chains raise it while a flat run of independent arms does not. Cognitive is at or above cyclomatic here, so the branching is nested or entangled rather than laid out side by side \u2014 extracting each decision into its own named function is the change that pays. Measured by this repository\u0027s own parse of the file, so a body assembled at runtime, or generated, is counted as written rather than as it executes."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isTaxID.js"},"region":{"startLine":852}}}],"partialFingerprints":{"codehealthFindingId/v1":"9b07d37862f89b1085f834893f2b3c005631d422426d49e4c3946e17bd931c26"}},{"ruleId":"R2","level":"warning","message":{"text":"Complex function roRoCheck (cyclomatic 13, cognitive 13): roRoCheck has cyclomatic complexity 13 and cognitive complexity 13; this row is raised above a cyclomatic bar of 10. The two numbers answer different questions and the gap between them is what decides whether to act: cyclomatic counts the independent arms through the body, cognitive counts what it costs to hold them in your head, so nesting and mixed boolean chains raise it while a flat run of independent arms does not. Cognitive is at or above cyclomatic here, so the branching is nested or entangled rather than laid out side by side \u2014 extracting each decision into its own named function is the change that pays. Measured by this repository\u0027s own parse of the file, so a body assembled at runtime, or generated, is counted as written rather than as it executes."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isTaxID.js"},"region":{"startLine":1027}}}],"partialFingerprints":{"codehealthFindingId/v1":"4f8fa355a7e861a8d45d190e03ddc3d11d44cb156d6ec764be4465ca765fc249"}},{"ruleId":"R2","level":"warning","message":{"text":"Complex function isValidDate (cyclomatic 13, cognitive 11): isValidDate has cyclomatic complexity 13 and cognitive complexity 11; this row is raised above a cyclomatic bar of 10. The two numbers answer different questions and the gap between them is what decides whether to act: cyclomatic counts the independent arms through the body, cognitive counts what it costs to hold them in your head, so nesting and mixed boolean chains raise it while a flat run of independent arms does not. Cognitive sits below cyclomatic here, so much of the count is breadth \u2014 arms side by side rather than stacked \u2014 and splitting per arm would leave a function per arm; group the work between the checks into named steps instead. Measured by this repository\u0027s own parse of the file, so a body assembled at runtime, or generated, is counted as written rather than as it executes."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isISO8601.js"},"region":{"startLine":9}}}],"partialFingerprints":{"codehealthFindingId/v1":"f85938cb910346239e6ae9265948fdc075b46086b921682c433f7e812755f6ad"}},{"ruleId":"R2","level":"warning","message":{"text":"Complex function isFQDN (cyclomatic 12, cognitive 14): isFQDN has cyclomatic complexity 12 and cognitive complexity 14; this row is raised above a cyclomatic bar of 10. The two numbers answer different questions and the gap between them is what decides whether to act: cyclomatic counts the independent arms through the body, cognitive counts what it costs to hold them in your head, so nesting and mixed boolean chains raise it while a flat run of independent arms does not. Cognitive is at or above cyclomatic here, so the branching is nested or entangled rather than laid out side by side \u2014 extracting each decision into its own named function is the change that pays. Measured by this repository\u0027s own parse of the file, so a body assembled at runtime, or generated, is counted as written rather than as it executes."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isFQDN.js"},"region":{"startLine":13}}}],"partialFingerprints":{"codehealthFindingId/v1":"487c7dc21ae35acdd649a39153e8326d44f2fac814fdfe542428c7ff2364b654"}},{"ruleId":"R2","level":"warning","message":{"text":"Complex function isRgbColor (cyclomatic 12, cognitive 14): isRgbColor has cyclomatic complexity 12 and cognitive complexity 14; this row is raised above a cyclomatic bar of 10. The two numbers answer different questions and the gap between them is what decides whether to act: cyclomatic counts the independent arms through the body, cognitive counts what it costs to hold them in your head, so nesting and mixed boolean chains raise it while a flat run of independent arms does not. Cognitive is at or above cyclomatic here, so the branching is nested or entangled rather than laid out side by side \u2014 extracting each decision into its own named function is the change that pays. Measured by this repository\u0027s own parse of the file, so a body assembled at runtime, or generated, is counted as written rather than as it executes."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isRgbColor.js"},"region":{"startLine":10}}}],"partialFingerprints":{"codehealthFindingId/v1":"1259fafa700bdb93b90870f906d750ff916abbe8ee2652f7451d9d96f5b3a1c3"}},{"ruleId":"R2","level":"warning","message":{"text":"Complex function isMACAddress (cyclomatic 12, cognitive 13): isMACAddress has cyclomatic complexity 12 and cognitive complexity 13; this row is raised above a cyclomatic bar of 10. The two numbers answer different questions and the gap between them is what decides whether to act: cyclomatic counts the independent arms through the body, cognitive counts what it costs to hold them in your head, so nesting and mixed boolean chains raise it while a flat run of independent arms does not. Cognitive is at or above cyclomatic here, so the branching is nested or entangled rather than laid out side by side \u2014 extracting each decision into its own named function is the change that pays. Measured by this repository\u0027s own parse of the file, so a body assembled at runtime, or generated, is counted as written rather than as it executes."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isMACAddress.js"},"region":{"startLine":10}}}],"partialFingerprints":{"codehealthFindingId/v1":"f0e43b3745d99df69f28e401aabc804672765a2dd4f236e990b8fda2f4abd3f5"}},{"ruleId":"R4","level":"warning","message":{"text":"No test reaches this file: No test imports this module directly or transitively. Import reachability cannot see a test that executes a file by path instead of importing it, nor one that drives it through a running browser by navigating to a URL \u2014 if neither does, no test reaches this one."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"build-browser.mjs"},"region":{"startLine":1}}}],"partialFingerprints":{"codehealthFindingId/v1":"02de5e40c75e72a43b09f73022454277536980979cd139e827e885baeecb56d6"}},{"ruleId":"R6","level":"warning","message":{"text":"No typecheck script: test \u2713 \u00B7 lint \u2713 \u00B7 typecheck \u2717 \u2014 read from this repository\u0027s package.json scripts and corroborated against its CI workflows. A script counts when its name or command matches the step: \u0060test\u0060 for the suite, \u0060lint\u0060 or \u0060prettier\u0060 for linting, \u0060typecheck\u0060/\u0060type-check\u0060/\u0060tsc\u0060 for type checking. \u2717 therefore means no script or CI step under those names was found, NOT that the step is absent from your pipeline \u2014 a task invoked by a runner this check does not read, or named something else entirely, is not seen and is worth confirming before acting on a cross. A \u2713 means the wiring is DECLARED \u2014 a script or CI step under those names exists. It is not a statement that the step passes, or that it runs at all: nothing here installs a dependency or executes a suite."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"912edc7f1fd20bf80ef68c3293e3048565115e48707dc5f9d492201598794658"}},{"ruleId":"R7","level":"note","message":{"text":"Unused export \u0027ScriptCodes\u0027: Nothing imports this binding \u2014 it is safe to review for removal."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isISO15924.js"},"region":{"startLine":37}}}],"partialFingerprints":{"codehealthFindingId/v1":"14004b1dcf788da4cbe06ead06b3c0c746dede0d334f9c12d05ec0ae441e5a9e"}},{"ruleId":"R7","level":"note","message":{"text":"Unused export \u0027CurrencyCodes\u0027: Nothing imports this binding \u2014 it is safe to review for removal."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isISO4217.js"},"region":{"startLine":38}}}],"partialFingerprints":{"codehealthFindingId/v1":"7e2ba086e0e9c645d4a84ab41863b1da7e022e3e566f2c9d37ce93d801a2d250"}},{"ruleId":"R7","level":"note","message":{"text":"Unused export \u0027vatMatchers\u0027: Nothing imports this binding \u2014 it is safe to review for removal."},"locations":[{"physicalLocation":{"artifactLocation":{"uri":"src/lib/isVAT.js"},"region":{"startLine":50}}}],"partialFingerprints":{"codehealthFindingId/v1":"9b724a94004e176923e5297ced1853a200fcf6985a6aca996218fa7bd382817a"}},{"ruleId":"SC1","level":"warning","message":{"text":"JavaScript dependencies are not locked: No package-lock.json / yarn.lock / pnpm-lock.yaml / bun.lock \u2014 JS installs aren\u0027t reproducible (SSDF PW.4.4). Commit your package manager\u0027s lockfile and install from it (\u0060npm ci\u0060, \u0060yarn --immutable\u0060, \u0060pnpm i --frozen-lockfile\u0060 or \u0060bun i --frozen-lockfile\u0060). Advisory \u2014 never scored."},"locations":[],"partialFingerprints":{"codehealthFindingId/v1":"40a08798dc9f9c819eaa9f7c084938e1cf2517a9281aed2c31563d6f7d5ba90d"}}],"taxonomies":[{"name":"CWE","guid":"c3a2b1d0-7f3e-4b2a-9c1d-5e6f7a8b9c0d","organization":"MITRE","informationUri":"https://cwe.mitre.org/","isComprehensive":false,"shortDescription":{"text":"The MITRE Common Weakness Enumeration (CWE)."},"taxa":[{"id":"CWE-1059","guid":"a2381a08-60f6-9554-a8b8-f3018cfaaca5","name":"Insufficient Technical Documentation","shortDescription":{"text":"Insufficient Technical Documentation"},"helpUri":"https://cwe.mitre.org/data/definitions/1059.html"},{"id":"CWE-1357","guid":"e4d2e772-757e-0a5c-bd7d-77052949d866","name":"Reliance on Insufficiently Trustworthy Component","shortDescription":{"text":"Reliance on Insufficiently Trustworthy Component"},"helpUri":"https://cwe.mitre.org/data/definitions/1357.html"},{"id":"CWE-1395","guid":"800e09e7-c11a-8654-9fa6-86f398995fed","name":"Dependency on Vulnerable Third-Party Component","shortDescription":{"text":"Dependency on Vulnerable Third-Party Component"},"helpUri":"https://cwe.mitre.org/data/definitions/1395.html"},{"id":"CWE-259","guid":"ae9ad959-fbb6-9d5e-892d-3dca66da0b69","name":"Use of Hard-coded Password","shortDescription":{"text":"Use of Hard-coded Password"},"helpUri":"https://cwe.mitre.org/data/definitions/259.html"},{"id":"CWE-353","guid":"09d7e902-d4ee-f05d-ae6c-0a1554d0c18f","name":"CWE-353","shortDescription":{"text":"CWE-353"},"helpUri":"https://cwe.mitre.org/data/definitions/353.html"},{"id":"CWE-494","guid":"b8a65e0d-e459-4a55-a931-fc1136482375","name":"Download of Code Without Integrity Check","shortDescription":{"text":"Download of Code Without Integrity Check"},"helpUri":"https://cwe.mitre.org/data/definitions/494.html"},{"id":"CWE-506","guid":"401d6455-56e3-0552-9a39-f77461673e3f","name":"CWE-506","shortDescription":{"text":"CWE-506"},"helpUri":"https://cwe.mitre.org/data/definitions/506.html"},{"id":"CWE-522","guid":"71fb233e-ce6a-ae57-9419-ef8373540b09","name":"CWE-522","shortDescription":{"text":"CWE-522"},"helpUri":"https://cwe.mitre.org/data/definitions/522.html"},{"id":"CWE-77","guid":"332c8ade-6612-9f56-a06b-d8d90b1a8750","name":"Command Injection","shortDescription":{"text":"Command Injection"},"helpUri":"https://cwe.mitre.org/data/definitions/77.html"},{"id":"CWE-78","guid":"2e31ceaf-c7ae-2e5e-9661-cfb1362789cf","name":"OS Command Injection","shortDescription":{"text":"OS Command Injection"},"helpUri":"https://cwe.mitre.org/data/definitions/78.html"},{"id":"CWE-79","guid":"fd45580b-e8c4-fc5e-8c2f-aa8fab0b4dbf","name":"Cross-site Scripting (XSS)","shortDescription":{"text":"Cross-site Scripting (XSS)"},"helpUri":"https://cwe.mitre.org/data/definitions/79.html"},{"id":"CWE-798","guid":"5e8f057d-fee3-995a-a0cb-9fc5b0d174d1","name":"Use of Hard-coded Credentials","shortDescription":{"text":"Use of Hard-coded Credentials"},"helpUri":"https://cwe.mitre.org/data/definitions/798.html"},{"id":"CWE-829","guid":"13c33925-97fb-5a5e-b40c-56d328b8a4d7","name":"CWE-829","shortDescription":{"text":"CWE-829"},"helpUri":"https://cwe.mitre.org/data/definitions/829.html"},{"id":"CWE-89","guid":"6d08fdad-37eb-c150-bbf0-d7d946863407","name":"SQL Injection","shortDescription":{"text":"SQL Injection"},"helpUri":"https://cwe.mitre.org/data/definitions/89.html"},{"id":"CWE-937","guid":"16f316ae-415c-b354-a59b-1f7905f756e9","name":"Using Components with Known Vulnerabilities","shortDescription":{"text":"Using Components with Known Vulnerabilities"},"helpUri":"https://cwe.mitre.org/data/definitions/937.html"},{"id":"CWE-94","guid":"75e7f50c-6c2f-dd52-bf40-bf6c52b861fd","name":"Code Injection","shortDescription":{"text":"Code Injection"},"helpUri":"https://cwe.mitre.org/data/definitions/94.html"}]}],"properties":{"codehealthPublication":{"public":true,"notice":"This is the PUBLIC form of this artifact. Findings are listed in full, but the details of SECURITY findings \u2014 which rule fired, in which file, on which line, and how to fix it \u2014 are deliberately withheld, and any secret-scanner results are excluded entirely. Where detail is absent here it was REMOVED FOR PUBLICATION; it is not missing from the analysis. The complete artifact is available from the repository owner.","securityFindingsRedacted":23,"secretScannerRunsExcluded":0}},"redactionTokens":["A security finding was recorded here. Its details are withheld on the public artifact \u2014 ask the repository owner for the full report."]}]}