{
  "$schema": "https://verifymcp.io/schemas/changelog.json",
  "server": "erayendes-asc-mcp",
  "component": "erayendes-asc-mcp",
  "generated_at": "2026-08-08T10:08:57.135Z",
  "tracking_since": "2026-07-26",
  "counts": {
    "critical": 0,
    "security": 22,
    "functional": 0,
    "cosmetic": 0
  },
  "events": [
    {
      "id": "chg_019fddd0-14cb-77e7-bc40-72f1f29e7280",
      "kind": "check.verdict",
      "family": "build-provenance",
      "subject_kind": "check",
      "subject": "build-provenance",
      "subject_child": "",
      "from_code": "provenance.none",
      "to_code": "provenance.verified",
      "from_value": "fail",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "repo": "erayendes/app-store-connect-mcp"
      },
      "occurred_on": "2026-08-07",
      "occurred_at": "2026-08-07 20:00:29.355616+00",
      "observed_since": "2026-08-06",
      "source": "scan",
      "summary": "Provenance (fail → pass)",
      "link": "https://verifymcp.io/servers/erayendes-asc-mcp/erayendes-asc-mcp#chg-chg_019fddd0-14cb-77e7-bc40-72f1f29e7280"
    },
    {
      "id": "chg_019fddd0-14ce-7236-970a-fe9dff38fb64",
      "kind": "provenance.repo_changed",
      "family": "build-provenance",
      "subject_kind": "package",
      "subject": "repo",
      "subject_child": "",
      "from_code": "provenance.none",
      "to_code": "provenance.verified",
      "from_value": null,
      "to_value": "erayendes/app-store-connect-mcp",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {
        "to": "erayendes/app-store-connect-mcp",
        "from": ""
      },
      "occurred_on": "2026-08-07",
      "occurred_at": "2026-08-07 20:00:29.355616+00",
      "observed_since": "2026-08-06",
      "source": "scan",
      "summary": "The attested source repository moved (erayendes/app-store-connect-mcp)",
      "link": "https://verifymcp.io/servers/erayendes-asc-mcp/erayendes-asc-mcp#chg-chg_019fddd0-14ce-7236-970a-fe9dff38fb64"
    },
    {
      "id": "chg_019fddd0-14cd-79fe-921f-e75e64acb510",
      "kind": "check.reason",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.sandbox_failed",
      "to_code": "stability.sandbox_pending",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {
        "reason": "version_superseded"
      },
      "occurred_on": "2026-08-07",
      "occurred_at": "2026-08-07 20:00:29.355616+00",
      "observed_since": "2026-08-06",
      "source": "scan",
      "summary": "Stability (Stability not yet verified: we do not have a sandbox capture of the MCP schema this version of the package serves yet.)",
      "link": "https://verifymcp.io/servers/erayendes-asc-mcp/erayendes-asc-mcp#chg-chg_019fddd0-14cd-79fe-921f-e75e64acb510"
    },
    {
      "id": "chg_019fda00-7de7-7a5d-9dfd-6b96a18f39f3",
      "kind": "check.verdict",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.tree_partial",
      "to_code": "cve.none",
      "from_value": "partial",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "seen": "132",
        "assessed": "133",
        "resolved": "132",
        "tree_source": "registry",
        "tree_status": "resolved"
      },
      "occurred_on": "2026-08-07",
      "occurred_at": "2026-08-07 02:14:53.043574+00",
      "observed_since": "2026-08-06",
      "source": "scan",
      "summary": "Known CVEs (partial → pass)",
      "link": "https://verifymcp.io/servers/erayendes-asc-mcp/erayendes-asc-mcp#chg-chg_019fda00-7de7-7a5d-9dfd-6b96a18f39f3"
    },
    {
      "id": "chg_019fcfb6-6ce0-7ad3-a7cd-29ebb3c9fbb8",
      "kind": "check.verdict",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.transitive",
      "to_code": "cve.tree_partial",
      "from_value": "fail",
      "to_value": "partial",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "seen": "132",
        "assessed": "132",
        "resolved": "131",
        "unresolved": "1",
        "tree_source": "registry",
        "tree_status": "partial"
      },
      "occurred_on": "2026-08-05",
      "occurred_at": "2026-08-05 02:17:46.940567+00",
      "observed_since": "2026-08-04",
      "source": "scan",
      "summary": "Known CVEs (fail → partial)",
      "link": "https://verifymcp.io/servers/erayendes-asc-mcp/erayendes-asc-mcp#chg-chg_019fcfb6-6ce0-7ad3-a7cd-29ebb3c9fbb8"
    },
    {
      "id": "chg_019fcfb6-6cdf-7b36-bf54-cabbe61824c6",
      "kind": "advisory.resolved",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-69207",
      "subject_child": "",
      "from_code": "cve.transitive",
      "to_code": "cve.tree_partial",
      "from_value": "medium",
      "to_value": null,
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-69207"
      },
      "occurred_on": "2026-08-05",
      "occurred_at": "2026-08-05 02:17:46.940567+00",
      "observed_since": "2026-08-04",
      "source": "scan",
      "summary": "CVE-2026-69207 no longer affects this package",
      "link": "https://verifymcp.io/servers/erayendes-asc-mcp/erayendes-asc-mcp#chg-chg_019fcfb6-6cdf-7b36-bf54-cabbe61824c6"
    },
    {
      "id": "chg_019fca8f-370c-7d75-bac2-e3fd28fe4959",
      "kind": "check.verdict",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.tree_partial",
      "to_code": "cve.transitive",
      "from_value": "partial",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "path": "@modelcontextprotocol/sdk > hono",
        "refs": "[\"CVE-2026-69207\"]",
        "seen": "132",
        "package": "hono",
        "version": "4.12.33",
        "assessed": "132",
        "resolved": "131",
        "severity": "medium",
        "transitive": "1",
        "unresolved": "1",
        "vulnerable": "[{\"name\":\"hono\",\"version\":\"4.12.33\",\"depth\":2,\"path\":[\"@modelcontextprotocol/sdk\",\"hono\"],\"refs\":[\"CVE-2026-69207\"]}]",
        "tree_source": "registry",
        "tree_status": "partial"
      },
      "occurred_on": "2026-08-04",
      "occurred_at": "2026-08-04 02:16:51.189657+00",
      "observed_since": "2026-08-03",
      "source": "scan",
      "summary": "Known CVEs (partial → fail)",
      "link": "https://verifymcp.io/servers/erayendes-asc-mcp/erayendes-asc-mcp#chg-chg_019fca8f-370c-7d75-bac2-e3fd28fe4959"
    },
    {
      "id": "chg_019fca8f-370c-733f-a236-587e460cf925",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-69207",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "medium",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-69207",
        "severity": "medium"
      },
      "occurred_on": "2026-08-04",
      "occurred_at": "2026-08-04 02:16:51.189657+00",
      "observed_since": "2026-08-03",
      "source": "scan",
      "summary": "CVE-2026-69207 affects this package (medium)",
      "link": "https://verifymcp.io/servers/erayendes-asc-mcp/erayendes-asc-mcp#chg-chg_019fca8f-370c-733f-a236-587e460cf925"
    },
    {
      "id": "chg_019fc4b6-88a4-7b19-a199-7651640ffe11",
      "kind": "check.reverified",
      "family": "build-provenance",
      "subject_kind": "check",
      "subject": "build-provenance",
      "subject_child": "",
      "from_code": "provenance.inconclusive",
      "to_code": "provenance.none",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:02:04.647113+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Provenance (unverified → fail)",
      "link": "https://verifymcp.io/servers/erayendes-asc-mcp/erayendes-asc-mcp#chg-chg_019fc4b6-88a4-7b19-a199-7651640ffe11"
    },
    {
      "id": "chg_019fc4b6-88aa-7e2a-901c-3fcbbcd3e95a",
      "kind": "check.reverified",
      "family": "install-scripts",
      "subject_kind": "check",
      "subject": "install-scripts",
      "subject_child": "",
      "from_code": "installscript.inconclusive",
      "to_code": "installscript.none",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "tier": "none"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:02:04.647113+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Install scripts (unverified → pass)",
      "link": "https://verifymcp.io/servers/erayendes-asc-mcp/erayendes-asc-mcp#chg-chg_019fc4b6-88aa-7e2a-901c-3fcbbcd3e95a"
    },
    {
      "id": "chg_019fc4b6-88af-7522-8d7a-652d016b9f0e",
      "kind": "advisory.resolved",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "GHSA-frvp-7c67-39w9",
      "subject_child": "",
      "from_code": "cve.inconclusive",
      "to_code": "cve.tree_partial",
      "from_value": null,
      "to_value": null,
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "id": "GHSA-frvp-7c67-39w9"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:02:04.647113+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "GHSA-frvp-7c67-39w9 no longer affects this package",
      "link": "https://verifymcp.io/servers/erayendes-asc-mcp/erayendes-asc-mcp#chg-chg_019fc4b6-88af-7522-8d7a-652d016b9f0e"
    },
    {
      "id": "chg_019fc4b6-88af-7b00-91af-f529c77642b8",
      "kind": "check.reverified",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.inconclusive",
      "to_code": "cve.tree_partial",
      "from_value": "unverified",
      "to_value": "partial",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "seen": "132",
        "assessed": "132",
        "resolved": "131",
        "unresolved": "1",
        "tree_source": "registry",
        "tree_status": "partial"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:02:04.647113+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Known CVEs (unverified → partial)",
      "link": "https://verifymcp.io/servers/erayendes-asc-mcp/erayendes-asc-mcp#chg-chg_019fc4b6-88af-7b00-91af-f529c77642b8"
    },
    {
      "id": "chg_019fc239-f587-7068-86af-246fdcc884d2",
      "kind": "check.reverified",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_inconclusive",
      "to_code": "supplychain.malware_clean",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 11:26:46.135595+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Malware scan (unverified → pass)",
      "link": "https://verifymcp.io/servers/erayendes-asc-mcp/erayendes-asc-mcp#chg-chg_019fc239-f587-7068-86af-246fdcc884d2"
    },
    {
      "id": "chg_019fa966-928f-7507-aad1-6e397bb70863",
      "kind": "advisory.resolved",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "GHSA-frvp-7c67-39w9",
      "subject_child": "",
      "from_code": "cve.transitive",
      "to_code": "cve.inconclusive",
      "from_value": "medium",
      "to_value": null,
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "id": "GHSA-frvp-7c67-39w9"
      },
      "occurred_on": "2026-07-28",
      "occurred_at": "2026-07-28 15:44:59.522917+00",
      "observed_since": "2026-07-27",
      "source": "scan",
      "summary": "GHSA-frvp-7c67-39w9 no longer affects this package",
      "link": "https://verifymcp.io/servers/erayendes-asc-mcp/erayendes-asc-mcp#chg-chg_019fa966-928f-7507-aad1-6e397bb70863"
    },
    {
      "id": "chg_019fa966-928e-7ad0-8acf-24c45ac39ac9",
      "kind": "check.unverifiable",
      "family": "install-scripts",
      "subject_kind": "check",
      "subject": "install-scripts",
      "subject_child": "",
      "from_code": "installscript.none",
      "to_code": "installscript.inconclusive",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-07-28",
      "occurred_at": "2026-07-28 15:44:59.522917+00",
      "observed_since": "2026-07-27",
      "source": "scan",
      "summary": "Install scripts (pass → unverified)",
      "link": "https://verifymcp.io/servers/erayendes-asc-mcp/erayendes-asc-mcp#chg-chg_019fa966-928e-7ad0-8acf-24c45ac39ac9"
    },
    {
      "id": "chg_019fa966-928d-7eb9-8a08-eab552e34f4f",
      "kind": "check.unverifiable",
      "family": "build-provenance",
      "subject_kind": "check",
      "subject": "build-provenance",
      "subject_child": "",
      "from_code": "provenance.none",
      "to_code": "provenance.inconclusive",
      "from_value": "fail",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-07-28",
      "occurred_at": "2026-07-28 15:44:59.522917+00",
      "observed_since": "2026-07-27",
      "source": "scan",
      "summary": "Provenance (fail → unverified)",
      "link": "https://verifymcp.io/servers/erayendes-asc-mcp/erayendes-asc-mcp#chg-chg_019fa966-928d-7eb9-8a08-eab552e34f4f"
    },
    {
      "id": "chg_019fa966-928e-75e4-a9ca-f1600de1663f",
      "kind": "check.unverifiable",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.transitive",
      "to_code": "cve.inconclusive",
      "from_value": "fail",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "resolver_unavailable"
      },
      "occurred_on": "2026-07-28",
      "occurred_at": "2026-07-28 15:44:59.522917+00",
      "observed_since": "2026-07-27",
      "source": "scan",
      "summary": "Known CVEs (fail → unverified)",
      "link": "https://verifymcp.io/servers/erayendes-asc-mcp/erayendes-asc-mcp#chg-chg_019fa966-928e-75e4-a9ca-f1600de1663f"
    },
    {
      "id": "chg_019fa24b-e15c-7d96-8c0c-775b63622330",
      "kind": "check.reverified",
      "family": "install-scripts",
      "subject_kind": "check",
      "subject": "install-scripts",
      "subject_child": "",
      "from_code": "installscript.inconclusive",
      "to_code": "installscript.none",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "tier": "none"
      },
      "occurred_on": "2026-07-27",
      "occurred_at": "2026-07-27 06:38:29.708463+00",
      "observed_since": "2026-07-26",
      "source": "scan",
      "summary": "Install scripts (unverified → pass)",
      "link": "https://verifymcp.io/servers/erayendes-asc-mcp/erayendes-asc-mcp#chg-chg_019fa24b-e15c-7d96-8c0c-775b63622330"
    },
    {
      "id": "chg_019fa24b-e15c-76df-8592-8ad3fd82cd54",
      "kind": "check.reverified",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.inconclusive",
      "to_code": "cve.transitive",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "path": "@modelcontextprotocol/sdk > @hono/node-server",
        "refs": "[\"GHSA-frvp-7c67-39w9\"]",
        "seen": "132",
        "package": "@hono/node-server",
        "version": "1.19.17",
        "assessed": "132",
        "resolved": "131",
        "severity": "medium",
        "transitive": "1",
        "unresolved": "1",
        "vulnerable": "[{\"name\":\"@hono/node-server\",\"version\":\"1.19.17\",\"depth\":2,\"path\":[\"@modelcontextprotocol/sdk\",\"@hono/node-server\"],\"refs\":[\"GHSA-frvp-7c67-39w9\"]}]",
        "tree_source": "registry",
        "tree_status": "partial"
      },
      "occurred_on": "2026-07-27",
      "occurred_at": "2026-07-27 06:38:29.708463+00",
      "observed_since": "2026-07-26",
      "source": "scan",
      "summary": "Known CVEs (unverified → fail)",
      "link": "https://verifymcp.io/servers/erayendes-asc-mcp/erayendes-asc-mcp#chg-chg_019fa24b-e15c-76df-8592-8ad3fd82cd54"
    },
    {
      "id": "chg_019fa24b-e15c-70cc-ad6b-a3330b60cd63",
      "kind": "check.reverified",
      "family": "build-provenance",
      "subject_kind": "check",
      "subject": "build-provenance",
      "subject_child": "",
      "from_code": "provenance.inconclusive",
      "to_code": "provenance.none",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-07-27",
      "occurred_at": "2026-07-27 06:38:29.708463+00",
      "observed_since": "2026-07-26",
      "source": "scan",
      "summary": "Provenance (unverified → fail)",
      "link": "https://verifymcp.io/servers/erayendes-asc-mcp/erayendes-asc-mcp#chg-chg_019fa24b-e15c-70cc-ad6b-a3330b60cd63"
    },
    {
      "id": "chg_019fa24b-e15b-7967-83f9-4b700a9b79d5",
      "kind": "check.unverifiable",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_clean",
      "to_code": "supplychain.malware_inconclusive",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-07-27",
      "occurred_at": "2026-07-27 06:38:29.708463+00",
      "observed_since": "2026-07-26",
      "source": "scan",
      "summary": "Malware scan (pass → unverified)",
      "link": "https://verifymcp.io/servers/erayendes-asc-mcp/erayendes-asc-mcp#chg-chg_019fa24b-e15b-7967-83f9-4b700a9b79d5"
    },
    {
      "id": "chg_019fa24b-e15a-7ab0-8115-6308613c6c43",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "GHSA-frvp-7c67-39w9",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "medium",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "GHSA-frvp-7c67-39w9",
        "severity": "medium"
      },
      "occurred_on": "2026-07-27",
      "occurred_at": "2026-07-27 06:38:29.708463+00",
      "observed_since": "2026-07-26",
      "source": "scan",
      "summary": "GHSA-frvp-7c67-39w9 affects this package (medium)",
      "link": "https://verifymcp.io/servers/erayendes-asc-mcp/erayendes-asc-mcp#chg-chg_019fa24b-e15a-7ab0-8115-6308613c6c43"
    }
  ],
  "days": [
    {
      "date": "2026-08-07",
      "total": 49,
      "delta": 14,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 9
    },
    {
      "date": "2026-08-05",
      "total": 35,
      "delta": 1,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 2
    },
    {
      "date": "2026-08-04",
      "total": 34,
      "delta": -1,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 2
    },
    {
      "date": "2026-08-02",
      "total": 35,
      "delta": 30,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 9
    },
    {
      "date": "2026-08-01",
      "total": 5,
      "delta": -1,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-07-28",
      "total": 6,
      "delta": -20,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 10
    },
    {
      "date": "2026-07-27",
      "total": 26,
      "delta": 1,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 9
    },
    {
      "date": "2026-07-26",
      "total": 25,
      "delta": null,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 0
    }
  ]
}