{
  "$schema": "https://verifymcp.io/schemas/changelog.json",
  "server": "cyanheads-nhtsa-vehicle-safety-mcp-server",
  "component": "nhtsa",
  "generated_at": "2026-09-28T23:36:52.768Z",
  "tracking_since": "2026-07-26",
  "counts": {
    "critical": 0,
    "security": 13,
    "functional": 0,
    "cosmetic": 0
  },
  "events": [
    {
      "id": "chg_01a08493-59da-7bd6-8a3f-3e79ae2552c5",
      "kind": "check.verdict",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.building_history",
      "to_code": "stability.stable",
      "from_value": "0.97",
      "to_value": "pass",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-09",
      "occurred_at": "2026-09-09 05:10:44.383883+00",
      "observed_since": "2026-09-08",
      "source": "scan",
      "summary": "Stability (0.97 → pass)",
      "link": "https://verifymcp.io/servers/cyanheads-nhtsa-vehicle-safety-mcp-server/nhtsa#chg-chg_01a08493-59da-7bd6-8a3f-3e79ae2552c5"
    },
    {
      "id": "chg_01a04bed-7b0a-7e32-88bc-cf8259a5c16e",
      "kind": "check.verdict",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.churn",
      "to_code": "stability.stable",
      "from_value": "fail",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-29",
      "occurred_at": "2026-08-29 05:10:49.757323+00",
      "observed_since": "2026-08-28",
      "source": "scan",
      "summary": "Stability (fail → pass)",
      "link": "https://verifymcp.io/servers/cyanheads-nhtsa-vehicle-safety-mcp-server/nhtsa#chg-chg_01a04bed-7b0a-7e32-88bc-cf8259a5c16e"
    },
    {
      "id": "chg_019fea0f-6495-7af6-b2a9-ec3fa2b32b9c",
      "kind": "check.reason",
      "family": "auth-oauth",
      "subject_kind": "check",
      "subject": "auth-oauth",
      "subject_child": "",
      "from_code": "auth.none_unlisted",
      "to_code": "auth.none_undeclared",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {
        "auth": "none",
        "undeclared_tools": "7"
      },
      "occurred_on": "2026-08-10",
      "occurred_at": "2026-08-10 05:05:05.074449+00",
      "observed_since": "2026-08-09",
      "source": "scan",
      "summary": "Authorization (Authorisation not fully verified: no authorisation is required to call this server, and 7 tool(s) never declared a destructiveHint. The MCP spec treats an absent hint as destructive by default, so we cannot call this surface safe.)",
      "link": "https://verifymcp.io/servers/cyanheads-nhtsa-vehicle-safety-mcp-server/nhtsa#chg-chg_019fea0f-6495-7af6-b2a9-ec3fa2b32b9c"
    },
    {
      "id": "chg_019fea0f-6495-7627-8bb4-f75b554a5dc8",
      "kind": "check.verdict",
      "family": "transport",
      "subject_kind": "check",
      "subject": "transport",
      "subject_child": "",
      "from_code": "transport.http_error",
      "to_code": "transport.verified",
      "from_value": "fail",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "transport": "streamable-http"
      },
      "occurred_on": "2026-08-10",
      "occurred_at": "2026-08-10 05:05:05.074449+00",
      "observed_since": "2026-08-09",
      "source": "scan",
      "summary": "Transport (fail → pass)",
      "link": "https://verifymcp.io/servers/cyanheads-nhtsa-vehicle-safety-mcp-server/nhtsa#chg-chg_019fea0f-6495-7627-8bb4-f75b554a5dc8"
    },
    {
      "id": "chg_019fea0f-6495-7046-bed5-3568736f14f9",
      "kind": "check.verdict",
      "family": "hsts",
      "subject_kind": "check",
      "subject": "hsts",
      "subject_child": "",
      "from_code": "headers.hsts_absent",
      "to_code": "headers.hsts_present",
      "from_value": "fail",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-10",
      "occurred_at": "2026-08-10 05:05:05.074449+00",
      "observed_since": "2026-08-09",
      "source": "scan",
      "summary": "HSTS header (fail → pass)",
      "link": "https://verifymcp.io/servers/cyanheads-nhtsa-vehicle-safety-mcp-server/nhtsa#chg-chg_019fea0f-6495-7046-bed5-3568736f14f9"
    },
    {
      "id": "chg_019fea0f-6493-7f02-ba6c-0585fc09c463",
      "kind": "check.reverified",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.insufficient_history",
      "to_code": "stability.churn",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "days": "15",
        "added": "0",
        "breaks": "7",
        "removed": "0",
        "auth_transport": "0"
      },
      "occurred_on": "2026-08-10",
      "occurred_at": "2026-08-10 05:05:05.074449+00",
      "observed_since": "2026-08-09",
      "source": "scan",
      "summary": "Stability (unverified → fail)",
      "link": "https://verifymcp.io/servers/cyanheads-nhtsa-vehicle-safety-mcp-server/nhtsa#chg-chg_019fea0f-6493-7f02-ba6c-0585fc09c463"
    },
    {
      "id": "chg_019fdfc2-73f8-73c1-9b7b-63fd079939bc",
      "kind": "capture.status_changed",
      "family": "",
      "subject_kind": "server",
      "subject": "capture",
      "subject_child": "",
      "from_code": null,
      "to_code": null,
      "from_value": "verified",
      "to_value": "not_mcp",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "to": "not_mcp",
        "from": "verified"
      },
      "occurred_on": "2026-08-08",
      "occurred_at": "2026-08-08 05:04:50.620592+00",
      "observed_since": "2026-08-07",
      "source": "scan",
      "summary": "Endpoint reachability (reachable → not serving MCP)",
      "link": "https://verifymcp.io/servers/cyanheads-nhtsa-vehicle-safety-mcp-server/nhtsa#chg-chg_019fdfc2-73f8-73c1-9b7b-63fd079939bc"
    },
    {
      "id": "chg_019fdfc2-73f6-7a4d-b011-e1413c43fecd",
      "kind": "check.verdict",
      "family": "transport",
      "subject_kind": "check",
      "subject": "transport",
      "subject_child": "",
      "from_code": "transport.verified",
      "to_code": "transport.http_error",
      "from_value": "pass",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "status": "530",
        "transport": "streamable-http"
      },
      "occurred_on": "2026-08-08",
      "occurred_at": "2026-08-08 05:04:50.620592+00",
      "observed_since": "2026-08-07",
      "source": "scan",
      "summary": "Transport (pass → fail)",
      "link": "https://verifymcp.io/servers/cyanheads-nhtsa-vehicle-safety-mcp-server/nhtsa#chg-chg_019fdfc2-73f6-7a4d-b011-e1413c43fecd"
    },
    {
      "id": "chg_019fdfc2-73f6-7eff-83da-d6b9327728cf",
      "kind": "check.verdict",
      "family": "hsts",
      "subject_kind": "check",
      "subject": "hsts",
      "subject_child": "",
      "from_code": "headers.hsts_present",
      "to_code": "headers.hsts_absent",
      "from_value": "pass",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-08",
      "occurred_at": "2026-08-08 05:04:50.620592+00",
      "observed_since": "2026-08-07",
      "source": "scan",
      "summary": "HSTS header (pass → fail)",
      "link": "https://verifymcp.io/servers/cyanheads-nhtsa-vehicle-safety-mcp-server/nhtsa#chg-chg_019fdfc2-73f6-7eff-83da-d6b9327728cf"
    },
    {
      "id": "chg_019fdfc2-73f7-73c6-8cfa-6cca7902764c",
      "kind": "check.reason",
      "family": "auth-oauth",
      "subject_kind": "check",
      "subject": "auth-oauth",
      "subject_child": "",
      "from_code": "auth.none_undeclared",
      "to_code": "auth.none_unlisted",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-08",
      "occurred_at": "2026-08-08 05:04:50.620592+00",
      "observed_since": "2026-08-07",
      "source": "scan",
      "summary": "Authorization (Authorisation not fully verified: no authorisation is required to connect, but we couldn't read the whole tool list to see what that exposes.)",
      "link": "https://verifymcp.io/servers/cyanheads-nhtsa-vehicle-safety-mcp-server/nhtsa#chg-chg_019fdfc2-73f7-73c6-8cfa-6cca7902764c"
    },
    {
      "id": "chg_019fdfc2-73f6-70b9-9f78-3dc5fc20f413",
      "kind": "check.unverifiable",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.churn",
      "to_code": "stability.insufficient_history",
      "from_value": "fail",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-08",
      "occurred_at": "2026-08-08 05:04:50.620592+00",
      "observed_since": "2026-08-07",
      "source": "scan",
      "summary": "Stability (fail → unverified)",
      "link": "https://verifymcp.io/servers/cyanheads-nhtsa-vehicle-safety-mcp-server/nhtsa#chg-chg_019fdfc2-73f6-70b9-9f78-3dc5fc20f413"
    },
    {
      "id": "chg_019fb4f2-3e02-7069-8336-6aa82db12f50",
      "kind": "tool.description_changed",
      "family": "",
      "subject_kind": "tool",
      "subject": "nhtsa_search_investigations",
      "subject_child": "",
      "from_code": null,
      "to_code": null,
      "from_value": null,
      "to_value": null,
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {
        "tool": "nhtsa_search_investigations"
      },
      "occurred_on": "2026-07-30",
      "occurred_at": "2026-07-30 21:33:22.28697+00",
      "observed_since": "2026-07-30",
      "source": "scan",
      "summary": "Tool “nhtsa_search_investigations” rewrote its description, which is the text the model reads",
      "link": "https://verifymcp.io/servers/cyanheads-nhtsa-vehicle-safety-mcp-server/nhtsa#chg-chg_019fb4f2-3e02-7069-8336-6aa82db12f50"
    },
    {
      "id": "chg_019fb482-9579-71d6-b1b7-4f519e4526b8",
      "kind": "check.verdict",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.building_history",
      "to_code": "stability.churn",
      "from_value": "0.10",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "days": "4",
        "added": "0",
        "breaks": "1",
        "removed": "0",
        "auth_transport": "0"
      },
      "occurred_on": "2026-07-30",
      "occurred_at": "2026-07-30 19:31:24.653844+00",
      "observed_since": "2026-07-29",
      "source": "scan",
      "summary": "Stability (0.10 → fail)",
      "link": "https://verifymcp.io/servers/cyanheads-nhtsa-vehicle-safety-mcp-server/nhtsa#chg-chg_019fb482-9579-71d6-b1b7-4f519e4526b8"
    }
  ],
  "days": [
    {
      "date": "2026-09-28",
      "total": 87,
      "delta": 7,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-25",
      "total": 80,
      "delta": 0,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-20",
      "total": 80,
      "delta": 0,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-09",
      "total": 80,
      "delta": 0,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-08",
      "total": 80,
      "delta": 1,
      "tracked": true,
      "explained": false,
      "beyond_event_horizon": false,
      "attribution": {
        "category": "Stability & Change Management",
        "from": 93,
        "to": 97,
        "delta": 4,
        "others": [],
        "accrual": {
          "code": "stability.building_history",
          "from_days": 28,
          "to_days": 29
        },
        "partial": false,
        "compared_to": "2026-09-07",
        "summary": "No change was recorded against any check on this day. Stability & Change Management went from 93 to 97. That category is still filling its 30-day observation window: 28 days of observed history at the previous scan, 29 at this one. The score rises as the window fills, whether or not the server changes."
      },
      "event_count": 0
    },
    {
      "date": "2026-09-07",
      "total": 79,
      "delta": -1,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-08-29",
      "total": 0,
      "delta": null,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-08-26",
      "total": 0,
      "delta": null,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    }
  ]
}