{
  "$schema": "https://verifymcp.io/schemas/changelog.json",
  "server": "nirholas-3d-ai-agent-avatar",
  "component": "three-ws-avatar-agent",
  "generated_at": "2026-09-20T19:24:58.355Z",
  "tracking_since": "2026-07-27",
  "counts": {
    "critical": 0,
    "security": 14,
    "functional": 0,
    "cosmetic": 0
  },
  "events": [
    {
      "id": "chg_01a0b207-deea-7118-ad4c-eb4820ce935f",
      "kind": "check.verdict",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.building_history",
      "to_code": "stability.stable",
      "from_value": "0.97",
      "to_value": "pass",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-18",
      "occurred_at": "2026-09-18 01:00:55.165709+00",
      "observed_since": "2026-09-17",
      "source": "scan",
      "summary": "Stability (0.97 → pass)",
      "link": "https://verifymcp.io/servers/nirholas-3d-ai-agent-avatar/three-ws-avatar-agent#chg-chg_01a0b207-deea-7118-ad4c-eb4820ce935f"
    },
    {
      "id": "chg_01a08e0e-216b-7236-971f-e09107b45f2f",
      "kind": "check.verdict",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.building_history",
      "to_code": "stability.stable",
      "from_value": "0.97",
      "to_value": "pass",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-11",
      "occurred_at": "2026-09-11 01:21:25.525759+00",
      "observed_since": "2026-09-10",
      "source": "scan",
      "summary": "Stability (0.97 → pass)",
      "link": "https://verifymcp.io/servers/nirholas-3d-ai-agent-avatar/three-ws-avatar-agent#chg-chg_01a08e0e-216b-7236-971f-e09107b45f2f"
    },
    {
      "id": "chg_01a069ff-0f91-79a6-bb23-68465b922b2b",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-63376",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-63376",
        "severity": "high"
      },
      "occurred_on": "2026-09-04",
      "occurred_at": "2026-09-04 01:18:38.304899+00",
      "observed_since": "2026-09-03",
      "source": "scan",
      "summary": "CVE-2026-63376 affects this package (high)",
      "link": "https://verifymcp.io/servers/nirholas-3d-ai-agent-avatar/three-ws-avatar-agent#chg-chg_01a069ff-0f91-79a6-bb23-68465b922b2b"
    },
    {
      "id": "chg_01a069ff-0f9b-7bbe-864a-6dca05b0ea94",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-71429",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-71429",
        "severity": "high"
      },
      "occurred_on": "2026-09-04",
      "occurred_at": "2026-09-04 01:18:38.304899+00",
      "observed_since": "2026-09-03",
      "source": "scan",
      "summary": "CVE-2026-71429 affects this package (high)",
      "link": "https://verifymcp.io/servers/nirholas-3d-ai-agent-avatar/three-ws-avatar-agent#chg-chg_01a069ff-0f9b-7bbe-864a-6dca05b0ea94"
    },
    {
      "id": "chg_01a069ff-0f9c-729e-8773-fc30afb46411",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-77465",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-77465",
        "severity": "high"
      },
      "occurred_on": "2026-09-04",
      "occurred_at": "2026-09-04 01:18:38.304899+00",
      "observed_since": "2026-09-03",
      "source": "scan",
      "summary": "CVE-2026-77465 affects this package (high)",
      "link": "https://verifymcp.io/servers/nirholas-3d-ai-agent-avatar/three-ws-avatar-agent#chg-chg_01a069ff-0f9c-729e-8773-fc30afb46411"
    },
    {
      "id": "chg_01a069ff-0f9c-78b2-9868-68824d578106",
      "kind": "check.verdict",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.building_history",
      "to_code": "stability.stable",
      "from_value": "0.97",
      "to_value": "pass",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-04",
      "occurred_at": "2026-09-04 01:18:38.304899+00",
      "observed_since": "2026-09-03",
      "source": "scan",
      "summary": "Stability (0.97 → pass)",
      "link": "https://verifymcp.io/servers/nirholas-3d-ai-agent-avatar/three-ws-avatar-agent#chg-chg_01a069ff-0f9c-78b2-9868-68824d578106"
    },
    {
      "id": "chg_019fd4a6-ad5a-77ee-85ea-c3aa6df6a3ad",
      "kind": "check.reason",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.sandbox_failed",
      "to_code": "stability.insufficient_history",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-06",
      "occurred_at": "2026-08-06 01:18:40.959645+00",
      "observed_since": "2026-08-05",
      "source": "scan",
      "summary": "Stability (Stability not yet verified: not enough scan history yet (needs a 30-day window).)",
      "link": "https://verifymcp.io/servers/nirholas-3d-ai-agent-avatar/three-ws-avatar-agent#chg-chg_019fd4a6-ad5a-77ee-85ea-c3aa6df6a3ad"
    },
    {
      "id": "chg_019fcf7e-4b41-72b7-b164-273c7c7fc7ba",
      "kind": "advisory.resolved",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-69207",
      "subject_child": "",
      "from_code": "cve.transitive",
      "to_code": "cve.transitive",
      "from_value": "high",
      "to_value": null,
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-69207"
      },
      "occurred_on": "2026-08-05",
      "occurred_at": "2026-08-05 01:16:28.305441+00",
      "observed_since": "2026-08-04",
      "source": "scan",
      "summary": "CVE-2026-69207 no longer affects this package",
      "link": "https://verifymcp.io/servers/nirholas-3d-ai-agent-avatar/three-ws-avatar-agent#chg-chg_019fcf7e-4b41-72b7-b164-273c7c7fc7ba"
    },
    {
      "id": "chg_019fca59-3db9-7d63-9b60-f9be17dff087",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-69207",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-69207",
        "severity": "high"
      },
      "occurred_on": "2026-08-04",
      "occurred_at": "2026-08-04 01:17:53.950361+00",
      "observed_since": "2026-08-03",
      "source": "scan",
      "summary": "CVE-2026-69207 affects this package (high)",
      "link": "https://verifymcp.io/servers/nirholas-3d-ai-agent-avatar/three-ws-avatar-agent#chg-chg_019fca59-3db9-7d63-9b60-f9be17dff087"
    },
    {
      "id": "chg_019fc4f3-f41f-7017-b6c6-469630e209fd",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-41907",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-41907",
        "severity": "high"
      },
      "occurred_on": "2026-08-03",
      "occurred_at": "2026-08-03 00:09:09.867903+00",
      "observed_since": "2026-08-02",
      "source": "scan",
      "summary": "CVE-2026-41907 affects this package (high)",
      "link": "https://verifymcp.io/servers/nirholas-3d-ai-agent-avatar/three-ws-avatar-agent#chg-chg_019fc4f3-f41f-7017-b6c6-469630e209fd"
    },
    {
      "id": "chg_019fc4f3-f421-77d8-8960-ab09f1b97eda",
      "kind": "check.reverified",
      "family": "build-provenance",
      "subject_kind": "check",
      "subject": "build-provenance",
      "subject_child": "",
      "from_code": "provenance.inconclusive",
      "to_code": "provenance.none",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-03",
      "occurred_at": "2026-08-03 00:09:09.867903+00",
      "observed_since": "2026-08-02",
      "source": "scan",
      "summary": "Provenance (unverified → fail)",
      "link": "https://verifymcp.io/servers/nirholas-3d-ai-agent-avatar/three-ws-avatar-agent#chg-chg_019fc4f3-f421-77d8-8960-ab09f1b97eda"
    },
    {
      "id": "chg_019fc4f3-f421-7d4f-8c17-69361eda824d",
      "kind": "check.reverified",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.inconclusive",
      "to_code": "cve.transitive",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "path": "@solana/web3.js > jayson > uuid",
        "refs": "[\"CVE-2026-41907\"]",
        "seen": "300",
        "package": "uuid",
        "version": "8.3.2",
        "assessed": "251",
        "resolved": "250",
        "severity": "high",
        "transitive": "2",
        "unresolved": "50",
        "vulnerable": "[{\"name\":\"bigint-buffer\",\"version\":\"1.1.5\",\"depth\":3,\"path\":[\"@solana/spl-token\",\"@solana/buffer-layout-utils\",\"bigint-buffer\"],\"refs\":[\"CVE-2025-3194\"]},{\"name\":\"uuid\",\"version\":\"8.3.2\",\"depth\":3,\"path\":[\"@solana/web3.js\",\"jayson\",\"uuid\"],\"refs\":[\"CVE-2026-41907\"]}]",
        "no_fix_refs": "[\"CVE-2025-3194\"]",
        "tree_source": "registry",
        "tree_status": "partial"
      },
      "occurred_on": "2026-08-03",
      "occurred_at": "2026-08-03 00:09:09.867903+00",
      "observed_since": "2026-08-02",
      "source": "scan",
      "summary": "Known CVEs (unverified → fail)",
      "link": "https://verifymcp.io/servers/nirholas-3d-ai-agent-avatar/three-ws-avatar-agent#chg-chg_019fc4f3-f421-7d4f-8c17-69361eda824d"
    },
    {
      "id": "chg_019fc4f3-f423-71b3-8817-3518790324a7",
      "kind": "check.reverified",
      "family": "install-scripts",
      "subject_kind": "check",
      "subject": "install-scripts",
      "subject_child": "",
      "from_code": "installscript.inconclusive",
      "to_code": "installscript.none",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "tier": "none"
      },
      "occurred_on": "2026-08-03",
      "occurred_at": "2026-08-03 00:09:09.867903+00",
      "observed_since": "2026-08-02",
      "source": "scan",
      "summary": "Install scripts (unverified → pass)",
      "link": "https://verifymcp.io/servers/nirholas-3d-ai-agent-avatar/three-ws-avatar-agent#chg-chg_019fc4f3-f423-71b3-8817-3518790324a7"
    },
    {
      "id": "chg_019fc1b9-1b51-7673-b235-b9cee958ac85",
      "kind": "check.reverified",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_inconclusive",
      "to_code": "supplychain.malware_clean",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 09:06:01.65124+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Malware scan (unverified → pass)",
      "link": "https://verifymcp.io/servers/nirholas-3d-ai-agent-avatar/three-ws-avatar-agent#chg-chg_019fc1b9-1b51-7673-b235-b9cee958ac85"
    }
  ],
  "days": [
    {
      "date": "2026-09-19",
      "total": 78,
      "delta": -3,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-18",
      "total": 81,
      "delta": 1,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-16",
      "total": 80,
      "delta": 1,
      "tracked": true,
      "explained": false,
      "beyond_event_horizon": false,
      "attribution": {
        "category": "Stability & Change Management",
        "from": 90,
        "to": 93,
        "delta": 3,
        "others": [],
        "accrual": {
          "code": "stability.building_history",
          "from_days": 27,
          "to_days": 28
        },
        "partial": false,
        "compared_to": "2026-09-15",
        "summary": "No change was recorded against any check on this day. Stability & Change Management went from 90 to 93. That category is still filling its 30-day observation window: 27 days of observed history at the previous scan, 28 at this one. The score rises as the window fills, whether or not the server changes."
      },
      "event_count": 0
    },
    {
      "date": "2026-09-14",
      "total": 79,
      "delta": 1,
      "tracked": true,
      "explained": false,
      "beyond_event_horizon": false,
      "attribution": {
        "category": "Stability & Change Management",
        "from": 83,
        "to": 87,
        "delta": 4,
        "others": [],
        "accrual": {
          "code": "stability.building_history",
          "from_days": 25,
          "to_days": 26
        },
        "partial": false,
        "compared_to": "2026-09-13",
        "summary": "No change was recorded against any check on this day. Stability & Change Management went from 83 to 87. That category is still filling its 30-day observation window: 25 days of observed history at the previous scan, 26 at this one. The score rises as the window fills, whether or not the server changes."
      },
      "event_count": 0
    },
    {
      "date": "2026-09-12",
      "total": 78,
      "delta": -3,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-11",
      "total": 81,
      "delta": 1,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-09",
      "total": 80,
      "delta": 1,
      "tracked": true,
      "explained": false,
      "beyond_event_horizon": false,
      "attribution": {
        "category": "Stability & Change Management",
        "from": 90,
        "to": 93,
        "delta": 3,
        "others": [],
        "accrual": {
          "code": "stability.building_history",
          "from_days": 27,
          "to_days": 28
        },
        "partial": false,
        "compared_to": "2026-09-08",
        "summary": "No change was recorded against any check on this day. Stability & Change Management went from 90 to 93. That category is still filling its 30-day observation window: 27 days of observed history at the previous scan, 28 at this one. The score rises as the window fills, whether or not the server changes."
      },
      "event_count": 0
    },
    {
      "date": "2026-09-07",
      "total": 79,
      "delta": 1,
      "tracked": true,
      "explained": false,
      "beyond_event_horizon": false,
      "attribution": {
        "category": "Stability & Change Management",
        "from": 83,
        "to": 87,
        "delta": 4,
        "others": [],
        "accrual": {
          "code": "stability.building_history",
          "from_days": 25,
          "to_days": 26
        },
        "partial": false,
        "compared_to": "2026-09-06",
        "summary": "No change was recorded against any check on this day. Stability & Change Management went from 83 to 87. That category is still filling its 30-day observation window: 25 days of observed history at the previous scan, 26 at this one. The score rises as the window fills, whether or not the server changes."
      },
      "event_count": 0
    }
  ]
}