{
  "$schema": "https://verifymcp.io/schemas/changelog.json",
  "server": "jflamb-fdic-mcp-server",
  "component": "fdic-mcp-server",
  "generated_at": "2026-09-21T23:38:18.936Z",
  "tracking_since": "2026-07-27",
  "counts": {
    "critical": 0,
    "security": 22,
    "functional": 0,
    "cosmetic": 0
  },
  "events": [
    {
      "id": "chg_01a0b7ea-3bc8-7f0b-b63a-59559e98ef34",
      "kind": "check.reverified",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_inconclusive",
      "to_code": "supplychain.malware_clean",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-19",
      "occurred_at": "2026-09-19 04:26:16.294091+00",
      "observed_since": "2026-09-18",
      "source": "scan",
      "summary": "Malware scan (unverified → pass)",
      "link": "https://verifymcp.io/servers/jflamb-fdic-mcp-server/fdic-mcp-server#chg-chg_01a0b7ea-3bc8-7f0b-b63a-59559e98ef34"
    },
    {
      "id": "chg_01a0b7ea-3bca-747b-b909-7c5e3ad7d99d",
      "kind": "check.reverified",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.inconclusive",
      "to_code": "cve.none",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "seen": "88",
        "assessed": "89",
        "resolved": "88",
        "tree_source": "registry",
        "tree_status": "resolved"
      },
      "occurred_on": "2026-09-19",
      "occurred_at": "2026-09-19 04:26:16.294091+00",
      "observed_since": "2026-09-18",
      "source": "scan",
      "summary": "Known CVEs (unverified → pass)",
      "link": "https://verifymcp.io/servers/jflamb-fdic-mcp-server/fdic-mcp-server#chg-chg_01a0b7ea-3bca-747b-b909-7c5e3ad7d99d"
    },
    {
      "id": "chg_01a0b582-a9f8-79bc-aa2d-152fd924cadf",
      "kind": "check.unverifiable",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.none",
      "to_code": "cve.inconclusive",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "root_version_missing"
      },
      "occurred_on": "2026-09-18",
      "occurred_at": "2026-09-18 17:13:53.726755+00",
      "observed_since": "2026-09-17",
      "source": "scan",
      "summary": "Known CVEs (pass → unverified)",
      "link": "https://verifymcp.io/servers/jflamb-fdic-mcp-server/fdic-mcp-server#chg-chg_01a0b582-a9f8-79bc-aa2d-152fd924cadf"
    },
    {
      "id": "chg_01a0b517-4437-7076-9acb-6583494ba9e3",
      "kind": "check.unverifiable",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_clean",
      "to_code": "supplychain.malware_inconclusive",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "vendor_not_cached"
      },
      "occurred_on": "2026-09-18",
      "occurred_at": "2026-09-18 15:16:35.671569+00",
      "observed_since": "2026-09-17",
      "source": "scan",
      "summary": "Malware scan (pass → unverified)",
      "link": "https://verifymcp.io/servers/jflamb-fdic-mcp-server/fdic-mcp-server#chg-chg_01a0b517-4437-7076-9acb-6583494ba9e3"
    },
    {
      "id": "chg_01a0a874-a4e0-7a10-90e6-4e13b6b5f80a",
      "kind": "check.verdict",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.building_history",
      "to_code": "stability.stable",
      "from_value": "0.97",
      "to_value": "pass",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-16",
      "occurred_at": "2026-09-16 04:23:31.696289+00",
      "observed_since": "2026-09-15",
      "source": "scan",
      "summary": "Stability (0.97 → pass)",
      "link": "https://verifymcp.io/servers/jflamb-fdic-mcp-server/fdic-mcp-server#chg-chg_01a0a874-a4e0-7a10-90e6-4e13b6b5f80a"
    },
    {
      "id": "chg_01a0a351-91b4-727d-b434-0b27ede88ba7",
      "kind": "check.verdict",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.transitive",
      "to_code": "cve.none",
      "from_value": "fail",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "seen": "173",
        "assessed": "174",
        "resolved": "173",
        "tree_source": "registry",
        "tree_status": "resolved"
      },
      "occurred_on": "2026-09-15",
      "occurred_at": "2026-09-15 04:27:06.938993+00",
      "observed_since": "2026-09-14",
      "source": "scan",
      "summary": "Known CVEs (fail → pass)",
      "link": "https://verifymcp.io/servers/jflamb-fdic-mcp-server/fdic-mcp-server#chg-chg_01a0a351-91b4-727d-b434-0b27ede88ba7"
    },
    {
      "id": "chg_01a0a351-91b2-7dcc-8544-f2618c3a3731",
      "kind": "advisory.resolved",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-82562",
      "subject_child": "",
      "from_code": "cve.transitive",
      "to_code": "cve.none",
      "from_value": "medium",
      "to_value": null,
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-82562"
      },
      "occurred_on": "2026-09-15",
      "occurred_at": "2026-09-15 04:27:06.938993+00",
      "observed_since": "2026-09-14",
      "source": "scan",
      "summary": "CVE-2026-82562 no longer affects this package",
      "link": "https://verifymcp.io/servers/jflamb-fdic-mcp-server/fdic-mcp-server#chg-chg_01a0a351-91b2-7dcc-8544-f2618c3a3731"
    },
    {
      "id": "chg_01a0a351-91b4-79fc-aa1e-284c25caa823",
      "kind": "advisory.resolved",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-82417",
      "subject_child": "",
      "from_code": "cve.transitive",
      "to_code": "cve.none",
      "from_value": "medium",
      "to_value": null,
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-82417"
      },
      "occurred_on": "2026-09-15",
      "occurred_at": "2026-09-15 04:27:06.938993+00",
      "observed_since": "2026-09-14",
      "source": "scan",
      "summary": "CVE-2026-82417 no longer affects this package",
      "link": "https://verifymcp.io/servers/jflamb-fdic-mcp-server/fdic-mcp-server#chg-chg_01a0a351-91b4-79fc-aa1e-284c25caa823"
    },
    {
      "id": "chg_01a08469-1689-75a5-aefb-0af89d644a51",
      "kind": "check.verdict",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.building_history",
      "to_code": "stability.stable",
      "from_value": "0.97",
      "to_value": "pass",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-09",
      "occurred_at": "2026-09-09 04:24:34.565448+00",
      "observed_since": "2026-09-08",
      "source": "scan",
      "summary": "Stability (0.97 → pass)",
      "link": "https://verifymcp.io/servers/jflamb-fdic-mcp-server/fdic-mcp-server#chg-chg_01a08469-1689-75a5-aefb-0af89d644a51"
    },
    {
      "id": "chg_01a0657e-9fca-7ec8-b948-5d4c637ce44a",
      "kind": "check.verdict",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.none",
      "to_code": "cve.transitive",
      "from_value": "pass",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "path": "express > qs",
        "refs": "[\"CVE-2026-82417\",\"CVE-2026-82562\"]",
        "seen": "174",
        "package": "qs",
        "version": "6.15.3",
        "assessed": "175",
        "resolved": "174",
        "severity": "medium",
        "transitive": "1",
        "vulnerable": "[{\"name\":\"qs\",\"version\":\"6.15.3\",\"depth\":2,\"path\":[\"express\",\"qs\"],\"refs\":[\"CVE-2026-82417\",\"CVE-2026-82562\"]}]",
        "tree_source": "registry",
        "tree_status": "resolved"
      },
      "occurred_on": "2026-09-03",
      "occurred_at": "2026-09-03 04:19:52.30278+00",
      "observed_since": "2026-09-02",
      "source": "scan",
      "summary": "Known CVEs (pass → fail)",
      "link": "https://verifymcp.io/servers/jflamb-fdic-mcp-server/fdic-mcp-server#chg-chg_01a0657e-9fca-7ec8-b948-5d4c637ce44a"
    },
    {
      "id": "chg_01a0657e-9fca-7a1a-b4f7-572d7ad2cd1a",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-82562",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "medium",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-82562",
        "severity": "medium"
      },
      "occurred_on": "2026-09-03",
      "occurred_at": "2026-09-03 04:19:52.30278+00",
      "observed_since": "2026-09-02",
      "source": "scan",
      "summary": "CVE-2026-82562 affects this package (medium)",
      "link": "https://verifymcp.io/servers/jflamb-fdic-mcp-server/fdic-mcp-server#chg-chg_01a0657e-9fca-7a1a-b4f7-572d7ad2cd1a"
    },
    {
      "id": "chg_01a0657e-9fc9-7b69-b2a6-fdd94e07aff0",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-82417",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "medium",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-82417",
        "severity": "medium"
      },
      "occurred_on": "2026-09-03",
      "occurred_at": "2026-09-03 04:19:52.30278+00",
      "observed_since": "2026-09-02",
      "source": "scan",
      "summary": "CVE-2026-82417 affects this package (medium)",
      "link": "https://verifymcp.io/servers/jflamb-fdic-mcp-server/fdic-mcp-server#chg-chg_01a0657e-9fc9-7b69-b2a6-fdd94e07aff0"
    },
    {
      "id": "chg_01a05b31-3137-74f0-a741-95ec28850763",
      "kind": "check.verdict",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.building_history",
      "to_code": "stability.stable",
      "from_value": "0.97",
      "to_value": "pass",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-01",
      "occurred_at": "2026-09-01 04:19:05.609499+00",
      "observed_since": "2026-08-31",
      "source": "scan",
      "summary": "Stability (0.97 → pass)",
      "link": "https://verifymcp.io/servers/jflamb-fdic-mcp-server/fdic-mcp-server#chg-chg_01a05b31-3137-74f0-a741-95ec28850763"
    },
    {
      "id": "chg_01a03723-139e-75a6-84ec-d3a1e034945e",
      "kind": "check.verdict",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.building_history",
      "to_code": "stability.stable",
      "from_value": "0.97",
      "to_value": "pass",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-25",
      "occurred_at": "2026-08-25 04:17:20.691871+00",
      "observed_since": "2026-08-24",
      "source": "scan",
      "summary": "Stability (0.97 → pass)",
      "link": "https://verifymcp.io/servers/jflamb-fdic-mcp-server/fdic-mcp-server#chg-chg_01a03723-139e-75a6-84ec-d3a1e034945e"
    },
    {
      "id": "chg_019fdf98-db5a-786b-8482-0d1e17edde64",
      "kind": "check.verdict",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.tree_partial",
      "to_code": "cve.none",
      "from_value": "partial",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "seen": "173",
        "assessed": "174",
        "resolved": "173",
        "tree_source": "registry",
        "tree_status": "resolved"
      },
      "occurred_on": "2026-08-08",
      "occurred_at": "2026-08-08 04:19:24.572282+00",
      "observed_since": "2026-08-07",
      "source": "scan",
      "summary": "Known CVEs (partial → pass)",
      "link": "https://verifymcp.io/servers/jflamb-fdic-mcp-server/fdic-mcp-server#chg-chg_019fdf98-db5a-786b-8482-0d1e17edde64"
    },
    {
      "id": "chg_019fc484-9185-7744-bcca-71a1df3c2933",
      "kind": "provenance.repo_changed",
      "family": "build-provenance",
      "subject_kind": "package",
      "subject": "repo",
      "subject_child": "",
      "from_code": "provenance.inconclusive",
      "to_code": "provenance.verified",
      "from_value": null,
      "to_value": "jflamb/fdic-mcp-server",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {
        "to": "jflamb/fdic-mcp-server",
        "from": ""
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 22:07:30.158177+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "The attested source repository moved (jflamb/fdic-mcp-server)",
      "link": "https://verifymcp.io/servers/jflamb-fdic-mcp-server/fdic-mcp-server#chg-chg_019fc484-9185-7744-bcca-71a1df3c2933"
    },
    {
      "id": "chg_019fc484-9183-7bd4-9921-a8ae2ebcf98a",
      "kind": "check.reverified",
      "family": "install-scripts",
      "subject_kind": "check",
      "subject": "install-scripts",
      "subject_child": "",
      "from_code": "installscript.inconclusive",
      "to_code": "installscript.none",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "tier": "none"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 22:07:30.158177+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Install scripts (unverified → pass)",
      "link": "https://verifymcp.io/servers/jflamb-fdic-mcp-server/fdic-mcp-server#chg-chg_019fc484-9183-7bd4-9921-a8ae2ebcf98a"
    },
    {
      "id": "chg_019fc484-9184-7691-a731-670021eab2e4",
      "kind": "check.reverified",
      "family": "build-provenance",
      "subject_kind": "check",
      "subject": "build-provenance",
      "subject_child": "",
      "from_code": "provenance.inconclusive",
      "to_code": "provenance.verified",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "repo": "jflamb/fdic-mcp-server"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 22:07:30.158177+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Provenance (unverified → pass)",
      "link": "https://verifymcp.io/servers/jflamb-fdic-mcp-server/fdic-mcp-server#chg-chg_019fc484-9184-7691-a731-670021eab2e4"
    },
    {
      "id": "chg_019fc484-9184-7afa-ad08-369ea68384db",
      "kind": "check.reverified",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.inconclusive",
      "to_code": "cve.tree_partial",
      "from_value": "unverified",
      "to_value": "partial",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "seen": "174",
        "assessed": "173",
        "resolved": "172",
        "unresolved": "2",
        "tree_source": "registry",
        "tree_status": "partial"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 22:07:30.158177+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Known CVEs (unverified → partial)",
      "link": "https://verifymcp.io/servers/jflamb-fdic-mcp-server/fdic-mcp-server#chg-chg_019fc484-9184-7afa-ad08-369ea68384db"
    },
    {
      "id": "chg_019fc484-9185-7189-adee-ac30c983fd45",
      "kind": "check.reason",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.sandbox_pending",
      "to_code": "stability.insufficient_history",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 22:07:30.158177+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Stability (Stability not yet verified: not enough scan history yet (needs a 30-day window).)",
      "link": "https://verifymcp.io/servers/jflamb-fdic-mcp-server/fdic-mcp-server#chg-chg_019fc484-9185-7189-adee-ac30c983fd45"
    },
    {
      "id": "chg_019fc2a7-57b5-7526-9ee0-03fa2b5eb34e",
      "kind": "check.reverified",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_inconclusive",
      "to_code": "supplychain.malware_clean",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 13:26:14.678849+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Malware scan (unverified → pass)",
      "link": "https://verifymcp.io/servers/jflamb-fdic-mcp-server/fdic-mcp-server#chg-chg_019fc2a7-57b5-7526-9ee0-03fa2b5eb34e"
    },
    {
      "id": "chg_019fb75f-c341-7a13-93c2-7409bb1a15ee",
      "kind": "check.unverifiable",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_clean",
      "to_code": "supplychain.malware_inconclusive",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-07-31",
      "occurred_at": "2026-07-31 08:52:14.24045+00",
      "observed_since": "2026-07-30",
      "source": "scan",
      "summary": "Malware scan (pass → unverified)",
      "link": "https://verifymcp.io/servers/jflamb-fdic-mcp-server/fdic-mcp-server#chg-chg_019fb75f-c341-7a13-93c2-7409bb1a15ee"
    }
  ],
  "days": [
    {
      "date": "2026-09-21",
      "total": 87,
      "delta": 1,
      "tracked": true,
      "explained": false,
      "beyond_event_horizon": false,
      "attribution": {
        "category": "Stability & Change Management",
        "from": 90,
        "to": 93,
        "delta": 3,
        "others": [],
        "accrual": {
          "code": "stability.building_history",
          "from_days": 27,
          "to_days": 28
        },
        "partial": false,
        "compared_to": "2026-09-20",
        "summary": "No change was recorded against any check on this day. Stability & Change Management went from 90 to 93. That category is still filling its 30-day observation window: 27 days of observed history at the previous scan, 28 at this one. The score rises as the window fills, whether or not the server changes."
      },
      "event_count": 0
    },
    {
      "date": "2026-09-19",
      "total": 86,
      "delta": 26,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 3
    },
    {
      "date": "2026-09-18",
      "total": 60,
      "delta": -25,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 7
    },
    {
      "date": "2026-09-17",
      "total": 85,
      "delta": -3,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-16",
      "total": 88,
      "delta": 1,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-15",
      "total": 87,
      "delta": 2,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 3
    },
    {
      "date": "2026-09-12",
      "total": 85,
      "delta": 1,
      "tracked": true,
      "explained": false,
      "beyond_event_horizon": false,
      "attribution": {
        "category": "Stability & Change Management",
        "from": 83,
        "to": 87,
        "delta": 4,
        "others": [],
        "accrual": {
          "code": "stability.building_history",
          "from_days": 25,
          "to_days": 26
        },
        "partial": false,
        "compared_to": "2026-09-11",
        "summary": "No change was recorded against any check on this day. Stability & Change Management went from 83 to 87. That category is still filling its 30-day observation window: 25 days of observed history at the previous scan, 26 at this one. The score rises as the window fills, whether or not the server changes."
      },
      "event_count": 0
    },
    {
      "date": "2026-09-11",
      "total": 84,
      "delta": 1,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    }
  ]
}