{
  "$schema": "https://verifymcp.io/schemas/changelog.json",
  "server": "builtbyabs-shopify-geo-audit",
  "component": "shopify-geo-audit-mcp",
  "generated_at": "2026-09-21T01:26:43.031Z",
  "tracking_since": "2026-07-27",
  "counts": {
    "critical": 0,
    "security": 16,
    "functional": 0,
    "cosmetic": 0
  },
  "events": [
    {
      "id": "chg_01a0a2dd-4768-707e-a437-8ce16566a766",
      "kind": "check.verdict",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.building_history",
      "to_code": "stability.stable",
      "from_value": "0.97",
      "to_value": "pass",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-15",
      "occurred_at": "2026-09-15 02:20:05.719551+00",
      "observed_since": "2026-09-14",
      "source": "scan",
      "summary": "Stability (0.97 → pass)",
      "link": "https://verifymcp.io/servers/builtbyabs-shopify-geo-audit/shopify-geo-audit-mcp#chg-chg_01a0a2dd-4768-707e-a437-8ce16566a766"
    },
    {
      "id": "chg_01a083f8-fb11-75d8-a5d1-bf5389c9a3ea",
      "kind": "check.verdict",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.building_history",
      "to_code": "stability.stable",
      "from_value": "0.97",
      "to_value": "pass",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-09",
      "occurred_at": "2026-09-09 02:22:07.540686+00",
      "observed_since": "2026-09-08",
      "source": "scan",
      "summary": "Stability (0.97 → pass)",
      "link": "https://verifymcp.io/servers/builtbyabs-shopify-geo-audit/shopify-geo-audit-mcp#chg-chg_01a083f8-fb11-75d8-a5d1-bf5389c9a3ea"
    },
    {
      "id": "chg_01a05ff1-d752-7c69-808a-ae9a881176c4",
      "kind": "check.verdict",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.building_history",
      "to_code": "stability.stable",
      "from_value": "0.97",
      "to_value": "pass",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-02",
      "occurred_at": "2026-09-02 02:27:59.878158+00",
      "observed_since": "2026-09-01",
      "source": "scan",
      "summary": "Stability (0.97 → pass)",
      "link": "https://verifymcp.io/servers/builtbyabs-shopify-geo-audit/shopify-geo-audit-mcp#chg-chg_01a05ff1-d752-7c69-808a-ae9a881176c4"
    },
    {
      "id": "chg_01a036c3-cef9-7331-87b3-5c559892c93e",
      "kind": "check.verdict",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.building_history",
      "to_code": "stability.stable",
      "from_value": "0.97",
      "to_value": "pass",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-25",
      "occurred_at": "2026-08-25 02:33:17.236721+00",
      "observed_since": "2026-08-24",
      "source": "scan",
      "summary": "Stability (0.97 → pass)",
      "link": "https://verifymcp.io/servers/builtbyabs-shopify-geo-audit/shopify-geo-audit-mcp#chg-chg_01a036c3-cef9-7331-87b3-5c559892c93e"
    },
    {
      "id": "chg_019fda0c-7cb9-7ac1-899a-f794f8b35f7f",
      "kind": "check.verdict",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.tree_partial",
      "to_code": "cve.none",
      "from_value": "partial",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "seen": "121",
        "assessed": "122",
        "resolved": "121",
        "tree_source": "registry",
        "tree_status": "resolved"
      },
      "occurred_on": "2026-08-07",
      "occurred_at": "2026-08-07 02:27:59.236995+00",
      "observed_since": "2026-08-06",
      "source": "scan",
      "summary": "Known CVEs (partial → pass)",
      "link": "https://verifymcp.io/servers/builtbyabs-shopify-geo-audit/shopify-geo-audit-mcp#chg-chg_019fda0c-7cb9-7ac1-899a-f794f8b35f7f"
    },
    {
      "id": "chg_019fcfbe-29a0-7200-a3b2-c6c822e2da5d",
      "kind": "advisory.resolved",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-69207",
      "subject_child": "",
      "from_code": "cve.transitive",
      "to_code": "cve.tree_partial",
      "from_value": "medium",
      "to_value": null,
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-69207"
      },
      "occurred_on": "2026-08-05",
      "occurred_at": "2026-08-05 02:26:14.01019+00",
      "observed_since": "2026-08-04",
      "source": "scan",
      "summary": "CVE-2026-69207 no longer affects this package",
      "link": "https://verifymcp.io/servers/builtbyabs-shopify-geo-audit/shopify-geo-audit-mcp#chg-chg_019fcfbe-29a0-7200-a3b2-c6c822e2da5d"
    },
    {
      "id": "chg_019fcfbe-29a0-7c2b-a585-30e658ffd681",
      "kind": "check.verdict",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.transitive",
      "to_code": "cve.tree_partial",
      "from_value": "fail",
      "to_value": "partial",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "seen": "127",
        "assessed": "120",
        "resolved": "119",
        "unresolved": "8",
        "tree_source": "registry",
        "tree_status": "partial"
      },
      "occurred_on": "2026-08-05",
      "occurred_at": "2026-08-05 02:26:14.01019+00",
      "observed_since": "2026-08-04",
      "source": "scan",
      "summary": "Known CVEs (fail → partial)",
      "link": "https://verifymcp.io/servers/builtbyabs-shopify-geo-audit/shopify-geo-audit-mcp#chg-chg_019fcfbe-29a0-7c2b-a585-30e658ffd681"
    },
    {
      "id": "chg_019fca8d-26c7-7140-bfa6-cf9c0c3e8ecb",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-69207",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "medium",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-69207",
        "severity": "medium"
      },
      "occurred_on": "2026-08-04",
      "occurred_at": "2026-08-04 02:14:35.938351+00",
      "observed_since": "2026-08-03",
      "source": "scan",
      "summary": "CVE-2026-69207 affects this package (medium)",
      "link": "https://verifymcp.io/servers/builtbyabs-shopify-geo-audit/shopify-geo-audit-mcp#chg-chg_019fca8d-26c7-7140-bfa6-cf9c0c3e8ecb"
    },
    {
      "id": "chg_019fca8d-26c7-7703-b748-aa6589d6c27d",
      "kind": "check.verdict",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.tree_partial",
      "to_code": "cve.transitive",
      "from_value": "partial",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "path": "shopify-geo-audit > @modelcontextprotocol/sdk > hono",
        "refs": "[\"CVE-2026-69207\"]",
        "seen": "127",
        "package": "hono",
        "version": "4.12.33",
        "assessed": "120",
        "resolved": "119",
        "severity": "medium",
        "transitive": "1",
        "unresolved": "8",
        "vulnerable": "[{\"name\":\"hono\",\"version\":\"4.12.33\",\"depth\":3,\"path\":[\"shopify-geo-audit\",\"@modelcontextprotocol/sdk\",\"hono\"],\"refs\":[\"CVE-2026-69207\"]}]",
        "tree_source": "registry",
        "tree_status": "partial"
      },
      "occurred_on": "2026-08-04",
      "occurred_at": "2026-08-04 02:14:35.938351+00",
      "observed_since": "2026-08-03",
      "source": "scan",
      "summary": "Known CVEs (partial → fail)",
      "link": "https://verifymcp.io/servers/builtbyabs-shopify-geo-audit/shopify-geo-audit-mcp#chg-chg_019fca8d-26c7-7703-b748-aa6589d6c27d"
    },
    {
      "id": "chg_019fc4ce-5b29-7ef4-89ed-e806f44862ee",
      "kind": "check.reverified",
      "family": "build-provenance",
      "subject_kind": "check",
      "subject": "build-provenance",
      "subject_child": "",
      "from_code": "provenance.inconclusive",
      "to_code": "provenance.none",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:28:05.911961+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Provenance (unverified → fail)",
      "link": "https://verifymcp.io/servers/builtbyabs-shopify-geo-audit/shopify-geo-audit-mcp#chg-chg_019fc4ce-5b29-7ef4-89ed-e806f44862ee"
    },
    {
      "id": "chg_019fc4ce-5b2b-77c3-a15e-53c4adde47da",
      "kind": "check.reverified",
      "family": "install-scripts",
      "subject_kind": "check",
      "subject": "install-scripts",
      "subject_child": "",
      "from_code": "installscript.inconclusive",
      "to_code": "installscript.none",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "tier": "none"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:28:05.911961+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Install scripts (unverified → pass)",
      "link": "https://verifymcp.io/servers/builtbyabs-shopify-geo-audit/shopify-geo-audit-mcp#chg-chg_019fc4ce-5b2b-77c3-a15e-53c4adde47da"
    },
    {
      "id": "chg_019fc4ce-5b2b-7d24-b2d0-0c0f57c3a421",
      "kind": "check.reverified",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.inconclusive",
      "to_code": "cve.tree_partial",
      "from_value": "unverified",
      "to_value": "partial",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "seen": "127",
        "assessed": "120",
        "resolved": "119",
        "unresolved": "8",
        "tree_source": "registry",
        "tree_status": "partial"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:28:05.911961+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Known CVEs (unverified → partial)",
      "link": "https://verifymcp.io/servers/builtbyabs-shopify-geo-audit/shopify-geo-audit-mcp#chg-chg_019fc4ce-5b2b-7d24-b2d0-0c0f57c3a421"
    },
    {
      "id": "chg_019fc1f1-f31f-7a06-8552-bbcc7fd47f95",
      "kind": "check.reverified",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_inconclusive",
      "to_code": "supplychain.malware_clean",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 10:08:06.930074+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Malware scan (unverified → pass)",
      "link": "https://verifymcp.io/servers/builtbyabs-shopify-geo-audit/shopify-geo-audit-mcp#chg-chg_019fc1f1-f31f-7a06-8552-bbcc7fd47f95"
    },
    {
      "id": "chg_019fc1f1-f320-7511-9de3-1ea031d4051c",
      "kind": "check.reason",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.insufficient_history",
      "to_code": "stability.sandbox_pending",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 10:08:06.930074+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Stability (Stability not yet verified: we do not have a sandbox capture of the MCP schema this version of the package serves yet.)",
      "link": "https://verifymcp.io/servers/builtbyabs-shopify-geo-audit/shopify-geo-audit-mcp#chg-chg_019fc1f1-f320-7511-9de3-1ea031d4051c"
    },
    {
      "id": "chg_019fbcb8-a240-7a2d-9b34-d0e43a252c5b",
      "kind": "check.reason",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.sandbox_pending",
      "to_code": "stability.insufficient_history",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-01",
      "occurred_at": "2026-08-01 09:47:24.596418+00",
      "observed_since": "2026-07-31",
      "source": "scan",
      "summary": "Stability (Stability not yet verified: not enough scan history yet (needs a 30-day window).)",
      "link": "https://verifymcp.io/servers/builtbyabs-shopify-geo-audit/shopify-geo-audit-mcp#chg-chg_019fbcb8-a240-7a2d-9b34-d0e43a252c5b"
    },
    {
      "id": "chg_019fb1aa-4847-7da3-8b3d-2726f52ec5e0",
      "kind": "check.unverifiable",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_clean",
      "to_code": "supplychain.malware_inconclusive",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-07-30",
      "occurred_at": "2026-07-30 06:15:54.684473+00",
      "observed_since": "2026-07-28",
      "source": "scan",
      "summary": "Malware scan (pass → unverified)",
      "link": "https://verifymcp.io/servers/builtbyabs-shopify-geo-audit/shopify-geo-audit-mcp#chg-chg_019fb1aa-4847-7da3-8b3d-2726f52ec5e0"
    }
  ],
  "days": [
    {
      "date": "2026-09-20",
      "total": 84,
      "delta": 1,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-18",
      "total": 83,
      "delta": 1,
      "tracked": true,
      "explained": false,
      "beyond_event_horizon": false,
      "attribution": {
        "category": "Stability & Change Management",
        "from": 83,
        "to": 87,
        "delta": 4,
        "others": [],
        "accrual": {
          "code": "stability.building_history",
          "from_days": 25,
          "to_days": 26
        },
        "partial": false,
        "compared_to": "2026-09-17",
        "summary": "No change was recorded against any check on this day. Stability & Change Management went from 83 to 87. That category is still filling its 30-day observation window: 25 days of observed history at the previous scan, 26 at this one. The score rises as the window fills, whether or not the server changes."
      },
      "event_count": 0
    },
    {
      "date": "2026-09-16",
      "total": 82,
      "delta": -3,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-15",
      "total": 85,
      "delta": 1,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-13",
      "total": 84,
      "delta": 1,
      "tracked": true,
      "explained": false,
      "beyond_event_horizon": false,
      "attribution": {
        "category": "Stability & Change Management",
        "from": 90,
        "to": 93,
        "delta": 3,
        "others": [],
        "accrual": {
          "code": "stability.building_history",
          "from_days": 27,
          "to_days": 28
        },
        "partial": false,
        "compared_to": "2026-09-12",
        "summary": "No change was recorded against any check on this day. Stability & Change Management went from 90 to 93. That category is still filling its 30-day observation window: 27 days of observed history at the previous scan, 28 at this one. The score rises as the window fills, whether or not the server changes."
      },
      "event_count": 0
    },
    {
      "date": "2026-09-11",
      "total": 83,
      "delta": 1,
      "tracked": true,
      "explained": false,
      "beyond_event_horizon": false,
      "attribution": {
        "category": "Stability & Change Management",
        "from": 83,
        "to": 87,
        "delta": 4,
        "others": [],
        "accrual": {
          "code": "stability.building_history",
          "from_days": 25,
          "to_days": 26
        },
        "partial": false,
        "compared_to": "2026-09-10",
        "summary": "No change was recorded against any check on this day. Stability & Change Management went from 83 to 87. That category is still filling its 30-day observation window: 25 days of observed history at the previous scan, 26 at this one. The score rises as the window fills, whether or not the server changes."
      },
      "event_count": 0
    },
    {
      "date": "2026-09-10",
      "total": 82,
      "delta": -3,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-09",
      "total": 85,
      "delta": 1,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    }
  ]
}