{
  "server": "nirholas-xactions",
  "component": "xactions",
  "generated_at": "2026-08-03T21:34:22.241Z",
  "tracking_since": "2026-07-27",
  "counts": {
    "critical": 0,
    "security": 14,
    "functional": 0,
    "cosmetic": 0
  },
  "events": [
    {
      "id": "chg_019fc4c6-8fb1-7363-881e-725b77f08b54",
      "kind": "check.reverified",
      "family": "build-provenance",
      "subject_kind": "check",
      "subject": "build-provenance",
      "subject_child": "",
      "from_code": "provenance.inconclusive",
      "to_code": "provenance.none",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:19:35.069288+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Provenance (unverified → fail)",
      "link": "https://verifymcp.io/servers/nirholas-xactions/xactions#chg-chg_019fc4c6-8fb1-7363-881e-725b77f08b54"
    },
    {
      "id": "chg_019fc4c6-8fb1-7843-ba92-b1f786f0dcc1",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-41907",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.direct",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-41907",
        "severity": "high"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:19:35.069288+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "CVE-2026-41907 affects this package (high)",
      "link": "https://verifymcp.io/servers/nirholas-xactions/xactions#chg-chg_019fc4c6-8fb1-7843-ba92-b1f786f0dcc1"
    },
    {
      "id": "chg_019fc4c6-8fb2-7258-b3f2-354c45c6fc9a",
      "kind": "check.reverified",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.inconclusive",
      "to_code": "cve.direct",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "path": "nodemailer",
        "refs": "[\"GHSA-268h-hp4c-crq3\",\"GHSA-c7w3-x93f-qmm8\",\"CVE-2025-13033\",\"GHSA-p6gq-j5cr-w38f\",\"GHSA-r7g4-qg5f-qqm2\",\"CVE-2025-14874\",\"GHSA-vvjj-xcjg-gr5g\",\"GHSA-wqvq-jvpq-h66f\",\"CVE-2026-41907\"]",
        "seen": "646",
        "direct": "1",
        "package": "nodemailer",
        "version": "6.10.1",
        "assessed": "251",
        "resolved": "250",
        "severity": "high",
        "transitive": "1",
        "unresolved": "396",
        "vulnerable": "[{\"name\":\"nodemailer\",\"version\":\"6.10.1\",\"depth\":1,\"path\":[\"nodemailer\"],\"refs\":[\"GHSA-268h-hp4c-crq3\",\"GHSA-c7w3-x93f-qmm8\",\"CVE-2025-13033\",\"GHSA-p6gq-j5cr-w38f\",\"GHSA-r7g4-qg5f-qqm2\",\"CVE-2025-14874\",\"GHSA-vvjj-xcjg-gr5g\",\"GHSA-wqvq-jvpq-h66f\"]},{\"name\":\"uuid\",\"version\":\"8.3.2\",\"depth\":2,\"path\":[\"bull\",\"uuid\"],\"refs\":[\"CVE-2026-41907\"]}]",
        "tree_source": "registry",
        "tree_status": "partial"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:19:35.069288+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Known CVEs (unverified → fail)",
      "link": "https://verifymcp.io/servers/nirholas-xactions/xactions#chg-chg_019fc4c6-8fb2-7258-b3f2-354c45c6fc9a"
    },
    {
      "id": "chg_019fc4c6-8fb2-774c-a191-2f90f15d04f0",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2025-13033",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.direct",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2025-13033",
        "severity": "high"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:19:35.069288+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "CVE-2025-13033 affects this package (high)",
      "link": "https://verifymcp.io/servers/nirholas-xactions/xactions#chg-chg_019fc4c6-8fb2-774c-a191-2f90f15d04f0"
    },
    {
      "id": "chg_019fc4c6-8fb3-7381-ba02-f53b0bd07b68",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "GHSA-c7w3-x93f-qmm8",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.direct",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "GHSA-c7w3-x93f-qmm8",
        "severity": "high"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:19:35.069288+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "GHSA-c7w3-x93f-qmm8 affects this package (high)",
      "link": "https://verifymcp.io/servers/nirholas-xactions/xactions#chg-chg_019fc4c6-8fb3-7381-ba02-f53b0bd07b68"
    },
    {
      "id": "chg_019fc4c6-8fb3-7800-9426-ef880c8e35a8",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "GHSA-vvjj-xcjg-gr5g",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.direct",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "GHSA-vvjj-xcjg-gr5g",
        "severity": "high"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:19:35.069288+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "GHSA-vvjj-xcjg-gr5g affects this package (high)",
      "link": "https://verifymcp.io/servers/nirholas-xactions/xactions#chg-chg_019fc4c6-8fb3-7800-9426-ef880c8e35a8"
    },
    {
      "id": "chg_019fc4c6-8fb3-7ce1-a9bc-e3630d0b5595",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2025-14874",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.direct",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2025-14874",
        "severity": "high"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:19:35.069288+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "CVE-2025-14874 affects this package (high)",
      "link": "https://verifymcp.io/servers/nirholas-xactions/xactions#chg-chg_019fc4c6-8fb3-7ce1-a9bc-e3630d0b5595"
    },
    {
      "id": "chg_019fc4c6-8fb4-714a-a789-ca294ce0e0bf",
      "kind": "check.reverified",
      "family": "install-scripts",
      "subject_kind": "check",
      "subject": "install-scripts",
      "subject_child": "",
      "from_code": "installscript.inconclusive",
      "to_code": "installscript.none",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "tier": "none"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:19:35.069288+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Install scripts (unverified → pass)",
      "link": "https://verifymcp.io/servers/nirholas-xactions/xactions#chg-chg_019fc4c6-8fb4-714a-a789-ca294ce0e0bf"
    },
    {
      "id": "chg_019fc4c6-8faf-70ce-a870-7b510fd13d5f",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "GHSA-r7g4-qg5f-qqm2",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.direct",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "GHSA-r7g4-qg5f-qqm2",
        "severity": "high"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:19:35.069288+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "GHSA-r7g4-qg5f-qqm2 affects this package (high)",
      "link": "https://verifymcp.io/servers/nirholas-xactions/xactions#chg-chg_019fc4c6-8faf-70ce-a870-7b510fd13d5f"
    },
    {
      "id": "chg_019fc4c6-8fb0-70fc-9b89-fcf4a9fbaf4c",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "GHSA-268h-hp4c-crq3",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.direct",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "GHSA-268h-hp4c-crq3",
        "severity": "high"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:19:35.069288+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "GHSA-268h-hp4c-crq3 affects this package (high)",
      "link": "https://verifymcp.io/servers/nirholas-xactions/xactions#chg-chg_019fc4c6-8fb0-70fc-9b89-fcf4a9fbaf4c"
    },
    {
      "id": "chg_019fc4c6-8fb0-7763-a800-05bb50e8b573",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "GHSA-p6gq-j5cr-w38f",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.direct",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "GHSA-p6gq-j5cr-w38f",
        "severity": "high"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:19:35.069288+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "GHSA-p6gq-j5cr-w38f affects this package (high)",
      "link": "https://verifymcp.io/servers/nirholas-xactions/xactions#chg-chg_019fc4c6-8fb0-7763-a800-05bb50e8b573"
    },
    {
      "id": "chg_019fc4c6-8fb0-7d18-8d3a-238f6909c844",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "GHSA-wqvq-jvpq-h66f",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.direct",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "GHSA-wqvq-jvpq-h66f",
        "severity": "high"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:19:35.069288+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "GHSA-wqvq-jvpq-h66f affects this package (high)",
      "link": "https://verifymcp.io/servers/nirholas-xactions/xactions#chg-chg_019fc4c6-8fb0-7d18-8d3a-238f6909c844"
    },
    {
      "id": "chg_019fc2bb-10f9-7e1a-a7ab-de01d806e1cf",
      "kind": "check.reason",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.sandbox_pending",
      "to_code": "stability.sandbox_failed",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {
        "status": "failed"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 13:47:47.270936+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Stability (Stability not yet verified: our sandbox run of this package did not complete, so we have no schema to compare.)",
      "link": "https://verifymcp.io/servers/nirholas-xactions/xactions#chg-chg_019fc2bb-10f9-7e1a-a7ab-de01d806e1cf"
    },
    {
      "id": "chg_019fb72e-01a3-7ea2-9ad1-a214c11a41bd",
      "kind": "check.unverifiable",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_clean",
      "to_code": "supplychain.malware_inconclusive",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-07-31",
      "occurred_at": "2026-07-31 07:57:53.423417+00",
      "observed_since": "2026-07-30",
      "source": "scan",
      "summary": "Malware scan (pass → unverified)",
      "link": "https://verifymcp.io/servers/nirholas-xactions/xactions#chg-chg_019fb72e-01a3-7ea2-9ad1-a214c11a41bd"
    }
  ],
  "days": [
    {
      "date": "2026-08-02",
      "total": 31,
      "delta": 10,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 21
    },
    {
      "date": "2026-08-01",
      "total": 21,
      "delta": 15,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-07-31",
      "total": 6,
      "delta": -18,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-07-27",
      "total": 24,
      "delta": null,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 0
    }
  ]
}