{
  "$schema": "https://verifymcp.io/schemas/changelog.json",
  "server": "gucceed-norric-mcp",
  "component": "mcp",
  "generated_at": "2026-10-07T05:20:22.044Z",
  "tracking_since": "2026-07-26",
  "counts": {
    "critical": 2,
    "security": 13,
    "functional": 0,
    "cosmetic": 0
  },
  "events": [
    {
      "id": "chg_01a0be1f-2f41-7b36-beec-b8fee02def35",
      "kind": "check.reverified",
      "family": "transport",
      "subject_kind": "check",
      "subject": "transport",
      "subject_child": "",
      "from_code": "transport.auth_gated",
      "to_code": "transport.verified",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "transport": "streamable-http"
      },
      "occurred_on": "2026-09-20",
      "occurred_at": "2026-09-20 09:21:49.552486+00",
      "observed_since": "2026-09-19",
      "source": "scan",
      "summary": "Transport (unverified → pass)",
      "link": "https://verifymcp.io/servers/gucceed-norric-mcp/mcp#chg-chg_01a0be1f-2f41-7b36-beec-b8fee02def35"
    },
    {
      "id": "chg_01a0be1f-2f42-7461-a0c9-5333b7d27a91",
      "kind": "check.reverified",
      "family": "tool-safety-injection",
      "subject_kind": "check",
      "subject": "tool-safety-injection",
      "subject_child": "",
      "from_code": "toolsafety.auth_gated",
      "to_code": "toolsafety.injection_clean",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-20",
      "occurred_at": "2026-09-20 09:21:49.552486+00",
      "observed_since": "2026-09-19",
      "source": "scan",
      "summary": "Injection markers (unverified → pass)",
      "link": "https://verifymcp.io/servers/gucceed-norric-mcp/mcp#chg-chg_01a0be1f-2f42-7461-a0c9-5333b7d27a91"
    },
    {
      "id": "chg_01a0be1f-2f42-79f5-b058-873ae0705eb4",
      "kind": "check.reason",
      "family": "auth-oauth",
      "subject_kind": "check",
      "subject": "auth-oauth",
      "subject_child": "",
      "from_code": "auth.challenge_only",
      "to_code": "auth.challenge_only_invoke",
      "from_value": "fail",
      "to_value": "fail",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-20",
      "occurred_at": "2026-09-20 09:21:49.552486+00",
      "observed_since": "2026-09-19",
      "source": "scan",
      "summary": "Authorization (Authorisation is enforced on tool calls, but the challenge carries no valid RFC 9728 metadata, so a client cannot discover where to get a token.)",
      "link": "https://verifymcp.io/servers/gucceed-norric-mcp/mcp#chg-chg_01a0be1f-2f42-79f5-b058-873ae0705eb4"
    },
    {
      "id": "chg_01a0be1f-2f43-7138-a08c-fc357e1aeb22",
      "kind": "check.appeared",
      "family": "tool-safety-manipulation",
      "subject_kind": "check",
      "subject": "tool-safety-manipulation",
      "subject_child": "",
      "from_code": null,
      "to_code": "toolsafety.manipulation_clean",
      "from_value": null,
      "to_value": "pass",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {
        "units": "33",
        "judged": "33"
      },
      "occurred_on": "2026-09-20",
      "occurred_at": "2026-09-20 09:21:49.552486+00",
      "observed_since": "2026-09-19",
      "source": "scan",
      "summary": "First check of Judged manipulation (pass)",
      "link": "https://verifymcp.io/servers/gucceed-norric-mcp/mcp#chg-chg_01a0be1f-2f43-7138-a08c-fc357e1aeb22"
    },
    {
      "id": "chg_01a0b8f6-3129-71a3-b6f4-f001c941efdb",
      "kind": "check.reverified",
      "family": "hsts",
      "subject_kind": "check",
      "subject": "hsts",
      "subject_child": "",
      "from_code": "headers.inconclusive",
      "to_code": "headers.hsts_absent",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-19",
      "occurred_at": "2026-09-19 09:18:57.297332+00",
      "observed_since": "2026-09-18",
      "source": "scan",
      "summary": "HSTS header (unverified → fail)",
      "link": "https://verifymcp.io/servers/gucceed-norric-mcp/mcp#chg-chg_01a0b8f6-3129-71a3-b6f4-f001c941efdb"
    },
    {
      "id": "chg_01a0b8f6-312a-7dc9-83bc-8253b9e9e525",
      "kind": "check.unverifiable",
      "family": "transport",
      "subject_kind": "check",
      "subject": "transport",
      "subject_child": "",
      "from_code": "transport.tls_error",
      "to_code": "transport.auth_gated",
      "from_value": "fail",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "transport": "streamable-http"
      },
      "occurred_on": "2026-09-19",
      "occurred_at": "2026-09-19 09:18:57.297332+00",
      "observed_since": "2026-09-18",
      "source": "scan",
      "summary": "Transport (fail → unverified)",
      "link": "https://verifymcp.io/servers/gucceed-norric-mcp/mcp#chg-chg_01a0b8f6-312a-7dc9-83bc-8253b9e9e525"
    },
    {
      "id": "chg_01a0b8f6-312b-7577-bfbd-a0d052cf92d9",
      "kind": "check.reverified",
      "family": "auth-oauth",
      "subject_kind": "check",
      "subject": "auth-oauth",
      "subject_child": "",
      "from_code": "auth.unreachable",
      "to_code": "auth.challenge_only",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-19",
      "occurred_at": "2026-09-19 09:18:57.297332+00",
      "observed_since": "2026-09-18",
      "source": "scan",
      "summary": "Authorization (unverified → fail)",
      "link": "https://verifymcp.io/servers/gucceed-norric-mcp/mcp#chg-chg_01a0b8f6-312b-7577-bfbd-a0d052cf92d9"
    },
    {
      "id": "chg_01a0b8f6-312b-79ea-8ff6-bb20be8801a7",
      "kind": "check.verdict",
      "family": "tls",
      "subject_kind": "check",
      "subject": "tls",
      "subject_child": "",
      "from_code": "tls.hostname_mismatch",
      "to_code": "tls.valid",
      "from_value": "fail",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-19",
      "occurred_at": "2026-09-19 09:18:57.297332+00",
      "observed_since": "2026-09-18",
      "source": "scan",
      "summary": "TLS certificate (fail → pass)",
      "link": "https://verifymcp.io/servers/gucceed-norric-mcp/mcp#chg-chg_01a0b8f6-312b-79ea-8ff6-bb20be8801a7"
    },
    {
      "id": "chg_01a0b8f6-312b-7da9-9bb6-19825ae6f6fe",
      "kind": "check.reason",
      "family": "tool-safety-injection",
      "subject_kind": "check",
      "subject": "tool-safety-injection",
      "subject_child": "",
      "from_code": "toolsafety.unreachable",
      "to_code": "toolsafety.auth_gated",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-19",
      "occurred_at": "2026-09-19 09:18:57.297332+00",
      "observed_since": "2026-09-18",
      "source": "scan",
      "summary": "Tool safety (Tool safety blocked by authentication: the endpoint requires auth we don't have to read its tools.)",
      "link": "https://verifymcp.io/servers/gucceed-norric-mcp/mcp#chg-chg_01a0b8f6-312b-7da9-9bb6-19825ae6f6fe"
    },
    {
      "id": "chg_01a0b3d0-1aae-716e-9f9d-b39f93a70400",
      "kind": "check.verdict",
      "family": "tls",
      "subject_kind": "check",
      "subject": "tls",
      "subject_child": "",
      "from_code": "tls.valid",
      "to_code": "tls.hostname_mismatch",
      "from_value": "pass",
      "to_value": "fail",
      "materiality": "critical",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "notAfter": "2026-10-27"
      },
      "occurred_on": "2026-09-18",
      "occurred_at": "2026-09-18 09:19:14.664382+00",
      "observed_since": "2026-09-17",
      "source": "scan",
      "summary": "TLS certificate (pass → fail)",
      "link": "https://verifymcp.io/servers/gucceed-norric-mcp/mcp#chg-chg_01a0b3d0-1aae-716e-9f9d-b39f93a70400"
    },
    {
      "id": "chg_01a0b3d0-1ab2-716a-8aee-467378a35309",
      "kind": "check.unverifiable",
      "family": "auth-oauth",
      "subject_kind": "check",
      "subject": "auth-oauth",
      "subject_child": "",
      "from_code": "auth.challenge_only",
      "to_code": "auth.unreachable",
      "from_value": "fail",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-18",
      "occurred_at": "2026-09-18 09:19:14.664382+00",
      "observed_since": "2026-09-17",
      "source": "scan",
      "summary": "Authorization (fail → unverified)",
      "link": "https://verifymcp.io/servers/gucceed-norric-mcp/mcp#chg-chg_01a0b3d0-1ab2-716a-8aee-467378a35309"
    },
    {
      "id": "chg_01a0b3d0-1ab5-7841-89d4-e9cf8b4d10fe",
      "kind": "check.unverifiable",
      "family": "hsts",
      "subject_kind": "check",
      "subject": "hsts",
      "subject_child": "",
      "from_code": "headers.hsts_absent",
      "to_code": "headers.inconclusive",
      "from_value": "fail",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-18",
      "occurred_at": "2026-09-18 09:19:14.664382+00",
      "observed_since": "2026-09-17",
      "source": "scan",
      "summary": "HSTS header (fail → unverified)",
      "link": "https://verifymcp.io/servers/gucceed-norric-mcp/mcp#chg-chg_01a0b3d0-1ab5-7841-89d4-e9cf8b4d10fe"
    },
    {
      "id": "chg_01a0b3d0-1ab8-7b70-858a-207dd2a816e7",
      "kind": "check.reverified",
      "family": "transport",
      "subject_kind": "check",
      "subject": "transport",
      "subject_child": "",
      "from_code": "transport.auth_gated",
      "to_code": "transport.tls_error",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "transport": "streamable-http"
      },
      "occurred_on": "2026-09-18",
      "occurred_at": "2026-09-18 09:19:14.664382+00",
      "observed_since": "2026-09-17",
      "source": "scan",
      "summary": "Transport (unverified → fail)",
      "link": "https://verifymcp.io/servers/gucceed-norric-mcp/mcp#chg-chg_01a0b3d0-1ab8-7b70-858a-207dd2a816e7"
    },
    {
      "id": "chg_01a0b3d0-1abe-7173-a89e-dd68316414a7",
      "kind": "check.reason",
      "family": "tool-safety-injection",
      "subject_kind": "check",
      "subject": "tool-safety-injection",
      "subject_child": "",
      "from_code": "toolsafety.auth_gated",
      "to_code": "toolsafety.unreachable",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-18",
      "occurred_at": "2026-09-18 09:19:14.664382+00",
      "observed_since": "2026-09-17",
      "source": "scan",
      "summary": "Tool safety (Tool safety not yet verified: we couldn't read the endpoint's tools, or could read only part of the list.)",
      "link": "https://verifymcp.io/servers/gucceed-norric-mcp/mcp#chg-chg_01a0b3d0-1abe-7173-a89e-dd68316414a7"
    },
    {
      "id": "chg_01a0b3d0-1ace-716f-b4bd-2c3fe58019ec",
      "kind": "score.status_changed",
      "family": "",
      "subject_kind": "score",
      "subject": "status",
      "subject_child": "",
      "from_code": null,
      "to_code": null,
      "from_value": "scored",
      "to_value": "failed",
      "materiality": "critical",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "to": "failed",
        "from": "scored"
      },
      "occurred_on": "2026-09-18",
      "occurred_at": "2026-09-18 09:19:14.664382+00",
      "observed_since": "2026-09-17",
      "source": "scan",
      "summary": "Score status (scored → failed)",
      "link": "https://verifymcp.io/servers/gucceed-norric-mcp/mcp#chg-chg_01a0b3d0-1ace-716f-b4bd-2c3fe58019ec"
    }
  ],
  "days": [
    {
      "date": "2026-10-06",
      "total": 78,
      "delta": 1,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-10-04",
      "total": 77,
      "delta": 0,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-10-03",
      "total": 77,
      "delta": 1,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-10-02",
      "total": 76,
      "delta": 0,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-10-01",
      "total": 76,
      "delta": 1,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-30",
      "total": 75,
      "delta": 0,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-29",
      "total": 75,
      "delta": 1,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-28",
      "total": 74,
      "delta": 0,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    }
  ]
}