{
  "$schema": "https://verifymcp.io/schemas/changelog.json",
  "server": "jcooley8-pincushion",
  "component": "pincushion-mcp",
  "generated_at": "2026-09-21T01:30:41.813Z",
  "tracking_since": "2026-07-27",
  "counts": {
    "critical": 0,
    "security": 30,
    "functional": 0,
    "cosmetic": 0
  },
  "events": [
    {
      "id": "chg_01a0b707-a8ef-74c0-b997-e08cacecc5a4",
      "kind": "check.verdict",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.building_history",
      "to_code": "stability.stable",
      "from_value": "0.97",
      "to_value": "pass",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-19",
      "occurred_at": "2026-09-19 00:18:47.595808+00",
      "observed_since": "2026-09-18",
      "source": "scan",
      "summary": "Stability (0.97 → pass)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_01a0b707-a8ef-74c0-b997-e08cacecc5a4"
    },
    {
      "id": "chg_01a09824-be6b-7784-9317-2433c5a9550f",
      "kind": "check.reverified",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_inconclusive",
      "to_code": "supplychain.malware_clean",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-13",
      "occurred_at": "2026-09-13 00:22:19.953468+00",
      "observed_since": "2026-09-12",
      "source": "scan",
      "summary": "Malware scan (unverified → pass)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_01a09824-be6b-7784-9317-2433c5a9550f"
    },
    {
      "id": "chg_01a09824-be6c-798e-b745-ebcd29e27fc2",
      "kind": "check.reverified",
      "family": "tool-safety-injection",
      "subject_kind": "check",
      "subject": "tool-safety-injection",
      "subject_child": "",
      "from_code": "toolsafety.sandbox_pending",
      "to_code": "toolsafety.injection_clean",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-13",
      "occurred_at": "2026-09-13 00:22:19.953468+00",
      "observed_since": "2026-09-12",
      "source": "scan",
      "summary": "Injection markers (unverified → pass)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_01a09824-be6c-798e-b745-ebcd29e27fc2"
    },
    {
      "id": "chg_01a090fc-0ea5-787c-a7fa-cd9dc48d4db4",
      "kind": "check.unverifiable",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.version_churn",
      "to_code": "stability.sandbox_pending",
      "from_value": "fail",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "version_superseded"
      },
      "occurred_on": "2026-09-11",
      "occurred_at": "2026-09-11 15:00:32.623617+00",
      "observed_since": "2026-09-10",
      "source": "scan",
      "summary": "Stability (fail → unverified)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_01a090fc-0ea5-787c-a7fa-cd9dc48d4db4"
    },
    {
      "id": "chg_01a090fc-0ea7-737d-9bb8-cc8f36dfcbb2",
      "kind": "check.unverifiable",
      "family": "tool-safety-injection",
      "subject_kind": "check",
      "subject": "tool-safety-injection",
      "subject_child": "",
      "from_code": "toolsafety.injection_clean",
      "to_code": "toolsafety.sandbox_pending",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "version_superseded"
      },
      "occurred_on": "2026-09-11",
      "occurred_at": "2026-09-11 15:00:32.623617+00",
      "observed_since": "2026-09-10",
      "source": "scan",
      "summary": "Tool safety (pass → unverified)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_01a090fc-0ea7-737d-9bb8-cc8f36dfcbb2"
    },
    {
      "id": "chg_01a08cf6-e85a-79da-9790-2266c671a1e0",
      "kind": "check.unverifiable",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_clean",
      "to_code": "supplychain.malware_inconclusive",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "vendor_not_cached"
      },
      "occurred_on": "2026-09-10",
      "occurred_at": "2026-09-10 20:16:26.391652+00",
      "observed_since": "2026-09-09",
      "source": "scan",
      "summary": "Malware scan (pass → unverified)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_01a08cf6-e85a-79da-9790-2266c671a1e0"
    },
    {
      "id": "chg_01a08cf6-e85c-7bf0-ba06-fbf363303864",
      "kind": "advisory.resolved",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-54285",
      "subject_child": "",
      "from_code": "cve.transitive",
      "to_code": "cve.tree_partial",
      "from_value": "medium",
      "to_value": null,
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-54285"
      },
      "occurred_on": "2026-09-10",
      "occurred_at": "2026-09-10 20:16:26.391652+00",
      "observed_since": "2026-09-09",
      "source": "scan",
      "summary": "CVE-2026-54285 no longer affects this package",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_01a08cf6-e85c-7bf0-ba06-fbf363303864"
    },
    {
      "id": "chg_01a08cf6-e85d-7a2b-a376-014407e36e0f",
      "kind": "check.verdict",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.transitive",
      "to_code": "cve.tree_partial",
      "from_value": "fail",
      "to_value": "partial",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "seen": "128",
        "assessed": "128",
        "resolved": "127",
        "unresolved": "1",
        "tree_source": "registry",
        "tree_status": "partial"
      },
      "occurred_on": "2026-09-10",
      "occurred_at": "2026-09-10 20:16:26.391652+00",
      "observed_since": "2026-09-09",
      "source": "scan",
      "summary": "Known CVEs (fail → partial)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_01a08cf6-e85d-7a2b-a376-014407e36e0f"
    },
    {
      "id": "chg_01a0837b-1c55-7189-819c-4f394fd6e6f9",
      "kind": "check.unverifiable",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.version_churn",
      "to_code": "stability.sandbox_pending",
      "from_value": "fail",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "version_superseded"
      },
      "occurred_on": "2026-09-09",
      "occurred_at": "2026-09-09 00:04:38.486271+00",
      "observed_since": "2026-09-08",
      "source": "scan",
      "summary": "Stability (fail → unverified)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_01a0837b-1c55-7189-819c-4f394fd6e6f9"
    },
    {
      "id": "chg_01a0837b-1c56-7d0e-9712-71daadf1a709",
      "kind": "check.unverifiable",
      "family": "tool-safety-injection",
      "subject_kind": "check",
      "subject": "tool-safety-injection",
      "subject_child": "",
      "from_code": "toolsafety.injection_clean",
      "to_code": "toolsafety.sandbox_pending",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "version_superseded"
      },
      "occurred_on": "2026-09-09",
      "occurred_at": "2026-09-09 00:04:38.486271+00",
      "observed_since": "2026-09-08",
      "source": "scan",
      "summary": "Tool safety (pass → unverified)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_01a0837b-1c56-7d0e-9712-71daadf1a709"
    },
    {
      "id": "chg_01a0837b-1c58-7c5f-b136-545ac076a14e",
      "kind": "check.reverified",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_inconclusive",
      "to_code": "supplychain.malware_clean",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-09",
      "occurred_at": "2026-09-09 00:04:38.486271+00",
      "observed_since": "2026-09-08",
      "source": "scan",
      "summary": "Malware scan (unverified → pass)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_01a0837b-1c58-7c5f-b136-545ac076a14e"
    },
    {
      "id": "chg_01a08224-d621-7a2f-96d4-3a9506e83f3a",
      "kind": "check.unverifiable",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_clean",
      "to_code": "supplychain.malware_inconclusive",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "vendor_not_cached"
      },
      "occurred_on": "2026-09-08",
      "occurred_at": "2026-09-08 17:50:47.072892+00",
      "observed_since": "2026-09-07",
      "source": "scan",
      "summary": "Malware scan (pass → unverified)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_01a08224-d621-7a2f-96d4-3a9506e83f3a"
    },
    {
      "id": "chg_01a06ea7-8826-76e9-a9ef-43ed9ba08b9a",
      "kind": "check.unverifiable",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.version_churn",
      "to_code": "stability.sandbox_pending",
      "from_value": "fail",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "version_superseded"
      },
      "occurred_on": "2026-09-04",
      "occurred_at": "2026-09-04 23:01:07.299915+00",
      "observed_since": "2026-09-03",
      "source": "scan",
      "summary": "Stability (fail → unverified)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_01a06ea7-8826-76e9-a9ef-43ed9ba08b9a"
    },
    {
      "id": "chg_01a06ea7-884a-77b3-b0b6-5372dd224b94",
      "kind": "check.unverifiable",
      "family": "tool-safety-injection",
      "subject_kind": "check",
      "subject": "tool-safety-injection",
      "subject_child": "",
      "from_code": "toolsafety.injection_clean",
      "to_code": "toolsafety.sandbox_pending",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "version_superseded"
      },
      "occurred_on": "2026-09-04",
      "occurred_at": "2026-09-04 23:01:07.299915+00",
      "observed_since": "2026-09-03",
      "source": "scan",
      "summary": "Tool safety (pass → unverified)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_01a06ea7-884a-77b3-b0b6-5372dd224b94"
    },
    {
      "id": "chg_01a05a49-d709-7c38-80ab-0b6e8dd352f6",
      "kind": "check.reverified",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_inconclusive",
      "to_code": "supplychain.malware_clean",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-01",
      "occurred_at": "2026-09-01 00:06:23.673092+00",
      "observed_since": "2026-08-31",
      "source": "scan",
      "summary": "Malware scan (unverified → pass)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_01a05a49-d709-7c38-80ab-0b6e8dd352f6"
    },
    {
      "id": "chg_01a0561e-f8a6-7005-ab0c-f71c68e1dcb7",
      "kind": "check.unverifiable",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_clean",
      "to_code": "supplychain.malware_inconclusive",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "vendor_not_cached"
      },
      "occurred_on": "2026-08-31",
      "occurred_at": "2026-08-31 04:41:05.27582+00",
      "observed_since": "2026-08-30",
      "source": "scan",
      "summary": "Malware scan (pass → unverified)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_01a0561e-f8a6-7005-ab0c-f71c68e1dcb7"
    },
    {
      "id": "chg_019ffd5a-d6c1-7485-8303-d71fd9d92290",
      "kind": "check.verdict",
      "family": "provenance-repo",
      "subject_kind": "check",
      "subject": "provenance-repo",
      "subject_child": "",
      "from_code": "provenance.repo_verified",
      "to_code": "provenance.repo_http_error",
      "from_value": "pass",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "status": "404"
      },
      "occurred_on": "2026-08-13",
      "occurred_at": "2026-08-13 23:00:16.673696+00",
      "observed_since": "2026-08-12",
      "source": "scan",
      "summary": "Source repository (pass → fail)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_019ffd5a-d6c1-7485-8303-d71fd9d92290"
    },
    {
      "id": "chg_019ffd5a-d6c2-7634-8a1f-309c2ff5c299",
      "kind": "check.reason",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.insufficient_history",
      "to_code": "stability.sandbox_pending",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {
        "reason": "version_superseded"
      },
      "occurred_on": "2026-08-13",
      "occurred_at": "2026-08-13 23:00:16.673696+00",
      "observed_since": "2026-08-12",
      "source": "scan",
      "summary": "Stability (Stability not yet verified: we do not have a sandbox capture of the MCP schema this version of the package serves yet.)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_019ffd5a-d6c2-7634-8a1f-309c2ff5c299"
    },
    {
      "id": "chg_019ff946-d9e0-7961-aff2-978a4e8bc4cc",
      "kind": "check.reverified",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.insufficient_history",
      "to_code": "stability.version_churn",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "to": "1.11.7",
        "days": "8",
        "from": "1.11.4",
        "added": "2",
        "breaks": "1",
        "removed": "0"
      },
      "occurred_on": "2026-08-13",
      "occurred_at": "2026-08-13 03:59:57.849311+00",
      "observed_since": "2026-08-12",
      "source": "scan",
      "summary": "Stability (unverified → fail)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_019ff946-d9e0-7961-aff2-978a4e8bc4cc"
    },
    {
      "id": "chg_019ff946-d9e1-76c5-ad18-3a8270e58a6e",
      "kind": "check.unverifiable",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.transitive",
      "to_code": "cve.inconclusive",
      "from_value": "fail",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "root_version_missing"
      },
      "occurred_on": "2026-08-13",
      "occurred_at": "2026-08-13 03:59:57.849311+00",
      "observed_since": "2026-08-12",
      "source": "scan",
      "summary": "Known CVEs (fail → unverified)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_019ff946-d9e1-76c5-ad18-3a8270e58a6e"
    },
    {
      "id": "chg_019fd46d-7c60-76f6-b467-5e995dd78c2a",
      "kind": "check.reason",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.sandbox_failed",
      "to_code": "stability.insufficient_history",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-06",
      "occurred_at": "2026-08-06 00:16:12.877002+00",
      "observed_since": "2026-08-05",
      "source": "scan",
      "summary": "Stability (Stability not yet verified: not enough scan history yet (needs a 30-day window).)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_019fd46d-7c60-76f6-b467-5e995dd78c2a"
    },
    {
      "id": "chg_019fcf48-949e-71c2-ab8c-269074086a38",
      "kind": "advisory.resolved",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-69207",
      "subject_child": "",
      "from_code": "cve.transitive",
      "to_code": "cve.transitive",
      "from_value": "medium",
      "to_value": null,
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-69207"
      },
      "occurred_on": "2026-08-05",
      "occurred_at": "2026-08-05 00:17:48.164404+00",
      "observed_since": "2026-08-04",
      "source": "scan",
      "summary": "CVE-2026-69207 no longer affects this package",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_019fcf48-949e-71c2-ab8c-269074086a38"
    },
    {
      "id": "chg_019fca1f-9e83-7d30-9a9f-f7f515e81501",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-69207",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "medium",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-69207",
        "severity": "medium"
      },
      "occurred_on": "2026-08-04",
      "occurred_at": "2026-08-04 00:14:57.650161+00",
      "observed_since": "2026-08-03",
      "source": "scan",
      "summary": "CVE-2026-69207 affects this package (medium)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_019fca1f-9e83-7d30-9a9f-f7f515e81501"
    },
    {
      "id": "chg_019fc487-564e-7d9d-b661-3438c1ff032d",
      "kind": "check.reverified",
      "family": "build-provenance",
      "subject_kind": "check",
      "subject": "build-provenance",
      "subject_child": "",
      "from_code": "provenance.inconclusive",
      "to_code": "provenance.none",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 22:10:31.566118+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Provenance (unverified → fail)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_019fc487-564e-7d9d-b661-3438c1ff032d"
    },
    {
      "id": "chg_019fc487-5652-7b0b-9e6c-5b2762f3c578",
      "kind": "check.reverified",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.inconclusive",
      "to_code": "cve.transitive",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "path": "@sentry/node > @opentelemetry/core",
        "refs": "[\"CVE-2026-54285\"]",
        "seen": "182",
        "package": "@opentelemetry/core",
        "version": "1.30.1",
        "assessed": "178",
        "resolved": "177",
        "severity": "medium",
        "transitive": "1",
        "unresolved": "5",
        "vulnerable": "[{\"name\":\"@opentelemetry/core\",\"version\":\"1.30.1\",\"depth\":2,\"path\":[\"@sentry/node\",\"@opentelemetry/core\"],\"refs\":[\"CVE-2026-54285\"]}]",
        "tree_source": "registry",
        "tree_status": "partial"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 22:10:31.566118+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Known CVEs (unverified → fail)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_019fc487-5652-7b0b-9e6c-5b2762f3c578"
    },
    {
      "id": "chg_019fc487-5656-7f3b-ae81-61121b141eb5",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-54285",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "medium",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-54285",
        "severity": "medium"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 22:10:31.566118+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "CVE-2026-54285 affects this package (medium)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_019fc487-5656-7f3b-ae81-61121b141eb5"
    },
    {
      "id": "chg_019fc487-5658-7ced-ba80-4c4fe4de19f9",
      "kind": "check.reverified",
      "family": "install-scripts",
      "subject_kind": "check",
      "subject": "install-scripts",
      "subject_child": "",
      "from_code": "installscript.inconclusive",
      "to_code": "installscript.none",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "tier": "none"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 22:10:31.566118+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Install scripts (unverified → pass)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_019fc487-5658-7ced-ba80-4c4fe4de19f9"
    },
    {
      "id": "chg_019fc024-1885-7425-9171-df8c919f3b64",
      "kind": "check.reverified",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_inconclusive",
      "to_code": "supplychain.malware_clean",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 01:43:38.854944+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Malware scan (unverified → pass)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_019fc024-1885-7425-9171-df8c919f3b64"
    },
    {
      "id": "chg_019fc024-1886-71a6-b34c-6f3438a0733b",
      "kind": "check.reason",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.sandbox_failed",
      "to_code": "stability.sandbox_pending",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 01:43:38.854944+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Stability (Stability not yet verified: we do not have a sandbox capture of the MCP schema this version of the package serves yet.)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_019fc024-1886-71a6-b34c-6f3438a0733b"
    },
    {
      "id": "chg_019fbc48-7314-75a7-b987-1130627db007",
      "kind": "check.reason",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.sandbox_pending",
      "to_code": "stability.sandbox_failed",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {
        "status": "failed"
      },
      "occurred_on": "2026-08-01",
      "occurred_at": "2026-08-01 07:44:52.486071+00",
      "observed_since": "2026-07-31",
      "source": "scan",
      "summary": "Stability (Stability not yet verified: our sandbox run of this package did not complete, so we have no schema to compare.)",
      "link": "https://verifymcp.io/servers/jcooley8-pincushion/pincushion-mcp#chg-chg_019fbc48-7314-75a7-b987-1130627db007"
    }
  ],
  "days": [
    {
      "date": "2026-09-20",
      "total": 74,
      "delta": -2,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-19",
      "total": 76,
      "delta": 0,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-18",
      "total": 76,
      "delta": 1,
      "tracked": true,
      "explained": false,
      "beyond_event_horizon": false,
      "attribution": {
        "category": "Stability & Change Management",
        "from": 93,
        "to": 97,
        "delta": 4,
        "others": [],
        "accrual": {
          "code": "stability.building_history",
          "from_days": 28,
          "to_days": 29
        },
        "partial": false,
        "compared_to": "2026-09-17",
        "summary": "No change was recorded against any check on this day. Stability & Change Management went from 93 to 97. That category is still filling its 30-day observation window: 28 days of observed history at the previous scan, 29 at this one. The score rises as the window fills, whether or not the server changes."
      },
      "event_count": 0
    },
    {
      "date": "2026-09-15",
      "total": 75,
      "delta": 1,
      "tracked": true,
      "explained": false,
      "beyond_event_horizon": false,
      "attribution": {
        "category": "Stability & Change Management",
        "from": 83,
        "to": 87,
        "delta": 4,
        "others": [],
        "accrual": {
          "code": "stability.building_history",
          "from_days": 25,
          "to_days": 26
        },
        "partial": false,
        "compared_to": "2026-09-14",
        "summary": "No change was recorded against any check on this day. Stability & Change Management went from 83 to 87. That category is still filling its 30-day observation window: 25 days of observed history at the previous scan, 26 at this one. The score rises as the window fills, whether or not the server changes."
      },
      "event_count": 0
    },
    {
      "date": "2026-09-13",
      "total": 74,
      "delta": 58,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 6
    },
    {
      "date": "2026-09-12",
      "total": 16,
      "delta": 0,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-11",
      "total": 16,
      "delta": -45,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 7
    },
    {
      "date": "2026-09-10",
      "total": 61,
      "delta": -13,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 6
    }
  ]
}