{
  "$schema": "https://verifymcp.io/schemas/changelog.json",
  "server": "plur-ai-plur",
  "component": "plur-ai-mcp",
  "generated_at": "2026-09-22T22:34:25.212Z",
  "tracking_since": "2026-07-27",
  "counts": {
    "critical": 0,
    "security": 37,
    "functional": 0,
    "cosmetic": 0
  },
  "events": [
    {
      "id": "chg_01a0b438-c129-79a2-8f15-9bc3889ecf12",
      "kind": "check.unverifiable",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.stable",
      "to_code": "stability.sandbox_pending",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "version_superseded"
      },
      "occurred_on": "2026-09-18",
      "occurred_at": "2026-09-18 11:13:33.00208+00",
      "observed_since": "2026-09-17",
      "source": "scan",
      "summary": "Stability (pass → unverified)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_01a0b438-c129-79a2-8f15-9bc3889ecf12"
    },
    {
      "id": "chg_01a0b438-c12b-7582-bcc3-ec54b3a63459",
      "kind": "check.unverifiable",
      "family": "tool-safety-injection",
      "subject_kind": "check",
      "subject": "tool-safety-injection",
      "subject_child": "",
      "from_code": "toolsafety.injection_clean",
      "to_code": "toolsafety.sandbox_pending",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "version_superseded"
      },
      "occurred_on": "2026-09-18",
      "occurred_at": "2026-09-18 11:13:33.00208+00",
      "observed_since": "2026-09-17",
      "source": "scan",
      "summary": "Tool safety (pass → unverified)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_01a0b438-c12b-7582-bcc3-ec54b3a63459"
    },
    {
      "id": "chg_01a0ad9d-55cd-7e8f-a601-090c7fb8b0d3",
      "kind": "check.verdict",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.building_history",
      "to_code": "stability.stable",
      "from_value": "0.97",
      "to_value": "pass",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-17",
      "occurred_at": "2026-09-17 04:26:04.432714+00",
      "observed_since": "2026-09-16",
      "source": "scan",
      "summary": "Stability (0.97 → pass)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_01a0ad9d-55cd-7e8f-a601-090c7fb8b0d3"
    },
    {
      "id": "chg_01a0ac3c-684b-7747-b798-d09ed6e755d6",
      "kind": "check.unverifiable",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.building_history",
      "to_code": "stability.sandbox_pending",
      "from_value": "0.93",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "version_superseded"
      },
      "occurred_on": "2026-09-16",
      "occurred_at": "2026-09-16 22:00:34.951553+00",
      "observed_since": "2026-09-15",
      "source": "scan",
      "summary": "Stability (0.93 → unverified)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_01a0ac3c-684b-7747-b798-d09ed6e755d6"
    },
    {
      "id": "chg_01a0ac3c-684e-7164-81c7-3ff70b78536a",
      "kind": "check.unverifiable",
      "family": "tool-safety-injection",
      "subject_kind": "check",
      "subject": "tool-safety-injection",
      "subject_child": "",
      "from_code": "toolsafety.injection_clean",
      "to_code": "toolsafety.sandbox_pending",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "version_superseded"
      },
      "occurred_on": "2026-09-16",
      "occurred_at": "2026-09-16 22:00:34.951553+00",
      "observed_since": "2026-09-15",
      "source": "scan",
      "summary": "Tool safety (pass → unverified)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_01a0ac3c-684e-7164-81c7-3ff70b78536a"
    },
    {
      "id": "chg_01a0ac3c-684e-77c6-a016-e3c7e3866d53",
      "kind": "advisory.resolved",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "GHSA-rgj7-g3m4-5g8c",
      "subject_child": "",
      "from_code": "cve.transitive",
      "to_code": "cve.none",
      "from_value": "high",
      "to_value": null,
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "id": "GHSA-rgj7-g3m4-5g8c"
      },
      "occurred_on": "2026-09-16",
      "occurred_at": "2026-09-16 22:00:34.951553+00",
      "observed_since": "2026-09-15",
      "source": "scan",
      "summary": "GHSA-rgj7-g3m4-5g8c no longer affects this package",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_01a0ac3c-684e-77c6-a016-e3c7e3866d53"
    },
    {
      "id": "chg_01a0ac3c-684f-7345-b02f-77b69e9f251c",
      "kind": "check.verdict",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.transitive",
      "to_code": "cve.none",
      "from_value": "fail",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "seen": "138",
        "assessed": "139",
        "resolved": "138",
        "tree_source": "registry",
        "tree_status": "resolved"
      },
      "occurred_on": "2026-09-16",
      "occurred_at": "2026-09-16 22:00:34.951553+00",
      "observed_since": "2026-09-15",
      "source": "scan",
      "summary": "Known CVEs (fail → pass)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_01a0ac3c-684f-7345-b02f-77b69e9f251c"
    },
    {
      "id": "chg_01a0ac3c-684f-777a-a351-6c30db4a9236",
      "kind": "advisory.resolved",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "GHSA-f88m-g3jw-g9cj",
      "subject_child": "",
      "from_code": "cve.transitive",
      "to_code": "cve.none",
      "from_value": "high",
      "to_value": null,
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "id": "GHSA-f88m-g3jw-g9cj"
      },
      "occurred_on": "2026-09-16",
      "occurred_at": "2026-09-16 22:00:34.951553+00",
      "observed_since": "2026-09-15",
      "source": "scan",
      "summary": "GHSA-f88m-g3jw-g9cj no longer affects this package",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_01a0ac3c-684f-777a-a351-6c30db4a9236"
    },
    {
      "id": "chg_01a0ac3c-684f-7b51-b9a0-24a602a01a14",
      "kind": "advisory.resolved",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-39244",
      "subject_child": "",
      "from_code": "cve.transitive",
      "to_code": "cve.none",
      "from_value": "high",
      "to_value": null,
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-39244"
      },
      "occurred_on": "2026-09-16",
      "occurred_at": "2026-09-16 22:00:34.951553+00",
      "observed_since": "2026-09-15",
      "source": "scan",
      "summary": "CVE-2026-39244 no longer affects this package",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_01a0ac3c-684f-7b51-b9a0-24a602a01a14"
    },
    {
      "id": "chg_01a08ec5-edb4-7ae8-850a-76e93c1968d6",
      "kind": "check.verdict",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.building_history",
      "to_code": "stability.stable",
      "from_value": "0.97",
      "to_value": "pass",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-11",
      "occurred_at": "2026-09-11 04:42:11.127806+00",
      "observed_since": "2026-09-10",
      "source": "scan",
      "summary": "Stability (0.97 → pass)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_01a08ec5-edb4-7ae8-850a-76e93c1968d6"
    },
    {
      "id": "chg_01a0846a-0c6c-704a-a89e-c3153a80efbc",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "GHSA-rgj7-g3m4-5g8c",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "GHSA-rgj7-g3m4-5g8c",
        "severity": "high"
      },
      "occurred_on": "2026-09-09",
      "occurred_at": "2026-09-09 04:25:37.515223+00",
      "observed_since": "2026-09-08",
      "source": "scan",
      "summary": "GHSA-rgj7-g3m4-5g8c affects this package (high)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_01a0846a-0c6c-704a-a89e-c3153a80efbc"
    },
    {
      "id": "chg_01a06aa4-266e-78c9-ac59-76cb631c29a0",
      "kind": "check.verdict",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.building_history",
      "to_code": "stability.stable",
      "from_value": "0.97",
      "to_value": "pass",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-04",
      "occurred_at": "2026-09-04 04:18:57.670576+00",
      "observed_since": "2026-09-03",
      "source": "scan",
      "summary": "Stability (0.97 → pass)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_01a06aa4-266e-78c9-ac59-76cb631c29a0"
    },
    {
      "id": "chg_01a05856-5a88-7945-ab53-ae1b56ea652c",
      "kind": "check.unverifiable",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.building_history",
      "to_code": "stability.sandbox_pending",
      "from_value": "0.83",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "version_superseded"
      },
      "occurred_on": "2026-08-31",
      "occurred_at": "2026-08-31 15:00:49.068601+00",
      "observed_since": "2026-08-30",
      "source": "scan",
      "summary": "Stability (0.83 → unverified)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_01a05856-5a88-7945-ab53-ae1b56ea652c"
    },
    {
      "id": "chg_01a05856-5a89-7d9d-960a-00db74dbb020",
      "kind": "check.unverifiable",
      "family": "tool-safety-injection",
      "subject_kind": "check",
      "subject": "tool-safety-injection",
      "subject_child": "",
      "from_code": "toolsafety.injection_clean",
      "to_code": "toolsafety.sandbox_pending",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "version_superseded"
      },
      "occurred_on": "2026-08-31",
      "occurred_at": "2026-08-31 15:00:49.068601+00",
      "observed_since": "2026-08-30",
      "source": "scan",
      "summary": "Tool safety (pass → unverified)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_01a05856-5a89-7d9d-960a-00db74dbb020"
    },
    {
      "id": "chg_01a04a9a-3714-7bde-a560-48fba37f9150",
      "kind": "check.unverifiable",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.building_history",
      "to_code": "stability.sandbox_pending",
      "from_value": "0.73",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "version_superseded"
      },
      "occurred_on": "2026-08-28",
      "occurred_at": "2026-08-28 23:00:15.490438+00",
      "observed_since": "2026-08-27",
      "source": "scan",
      "summary": "Stability (0.73 → unverified)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_01a04a9a-3714-7bde-a560-48fba37f9150"
    },
    {
      "id": "chg_01a04a9a-3716-7df7-9ec3-ce7e1412e402",
      "kind": "check.unverifiable",
      "family": "tool-safety-injection",
      "subject_kind": "check",
      "subject": "tool-safety-injection",
      "subject_child": "",
      "from_code": "toolsafety.injection_clean",
      "to_code": "toolsafety.sandbox_pending",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "version_superseded"
      },
      "occurred_on": "2026-08-28",
      "occurred_at": "2026-08-28 23:00:15.490438+00",
      "observed_since": "2026-08-27",
      "source": "scan",
      "summary": "Tool safety (pass → unverified)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_01a04a9a-3716-7df7-9ec3-ce7e1412e402"
    },
    {
      "id": "chg_01a04697-18cb-7c6a-b4fc-a33e1e6d2670",
      "kind": "check.reverified",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_inconclusive",
      "to_code": "supplychain.malware_clean",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-28",
      "occurred_at": "2026-08-28 04:18:22.435385+00",
      "observed_since": "2026-08-27",
      "source": "scan",
      "summary": "Malware scan (unverified → pass)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_01a04697-18cb-7c6a-b4fc-a33e1e6d2670"
    },
    {
      "id": "chg_01a0459a-bb2d-7d66-bf6b-46fd320f2a1c",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-39244",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-39244",
        "severity": "high"
      },
      "occurred_on": "2026-08-27",
      "occurred_at": "2026-08-27 23:42:43.460174+00",
      "observed_since": "2026-08-26",
      "source": "scan",
      "summary": "CVE-2026-39244 affects this package (high)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_01a0459a-bb2d-7d66-bf6b-46fd320f2a1c"
    },
    {
      "id": "chg_01a0459a-bb31-70f9-965e-921081c0517b",
      "kind": "check.unverifiable",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_clean",
      "to_code": "supplychain.malware_inconclusive",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "vendor_not_cached"
      },
      "occurred_on": "2026-08-27",
      "occurred_at": "2026-08-27 23:42:43.460174+00",
      "observed_since": "2026-08-26",
      "source": "scan",
      "summary": "Malware scan (pass → unverified)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_01a0459a-bb31-70f9-965e-921081c0517b"
    },
    {
      "id": "chg_01a0183e-15f3-7682-8064-90d4952528e6",
      "kind": "check.reverified",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_inconclusive",
      "to_code": "supplychain.malware_clean",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-19",
      "occurred_at": "2026-08-19 04:18:36.76177+00",
      "observed_since": "2026-08-18",
      "source": "scan",
      "summary": "Malware scan (unverified → pass)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_01a0183e-15f3-7682-8064-90d4952528e6"
    },
    {
      "id": "chg_01a01592-9d21-729a-afea-6c3330fc5565",
      "kind": "check.unverifiable",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_clean",
      "to_code": "supplychain.malware_inconclusive",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "vendor_not_cached"
      },
      "occurred_on": "2026-08-18",
      "occurred_at": "2026-08-18 15:52:05.110385+00",
      "observed_since": "2026-08-17",
      "source": "scan",
      "summary": "Malware scan (pass → unverified)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_01a01592-9d21-729a-afea-6c3330fc5565"
    },
    {
      "id": "chg_019fd54b-9309-7bc0-8d36-5e06ef2b1a51",
      "kind": "check.reason",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.sandbox_pending",
      "to_code": "stability.insufficient_history",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-06",
      "occurred_at": "2026-08-06 04:18:47.578378+00",
      "observed_since": "2026-08-05",
      "source": "scan",
      "summary": "Stability (Stability not yet verified: not enough scan history yet (needs a 30-day window).)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_019fd54b-9309-7bc0-8d36-5e06ef2b1a51"
    },
    {
      "id": "chg_019fcafe-ce45-7e54-843f-068780a280c6",
      "kind": "check.reverified",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.inconclusive",
      "to_code": "cve.transitive",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "path": "@plur-ai/core > @huggingface/transformers > sharp",
        "refs": "[\"GHSA-f88m-g3jw-g9cj\"]",
        "seen": "149",
        "package": "sharp",
        "version": "0.34.5",
        "assessed": "146",
        "resolved": "145",
        "severity": "high",
        "transitive": "1",
        "unresolved": "4",
        "vulnerable": "[{\"name\":\"sharp\",\"version\":\"0.34.5\",\"depth\":3,\"path\":[\"@plur-ai/core\",\"@huggingface/transformers\",\"sharp\"],\"refs\":[\"GHSA-f88m-g3jw-g9cj\"]}]",
        "tree_source": "registry",
        "tree_status": "partial"
      },
      "occurred_on": "2026-08-04",
      "occurred_at": "2026-08-04 04:18:44.327628+00",
      "observed_since": "2026-08-03",
      "source": "scan",
      "summary": "Known CVEs (unverified → fail)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_019fcafe-ce45-7e54-843f-068780a280c6"
    },
    {
      "id": "chg_019fcafe-ce47-7208-8bc2-d476f85df658",
      "kind": "check.reverified",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_inconclusive",
      "to_code": "supplychain.malware_clean",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-04",
      "occurred_at": "2026-08-04 04:18:44.327628+00",
      "observed_since": "2026-08-03",
      "source": "scan",
      "summary": "Malware scan (unverified → pass)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_019fcafe-ce47-7208-8bc2-d476f85df658"
    },
    {
      "id": "chg_019fcafe-ce4b-70b8-94ec-6b9c3fc00fca",
      "kind": "check.reason",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.sandbox_pending",
      "to_code": "stability.sandbox_failed",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {
        "status": "failed"
      },
      "occurred_on": "2026-08-04",
      "occurred_at": "2026-08-04 04:18:44.327628+00",
      "observed_since": "2026-08-03",
      "source": "scan",
      "summary": "Stability (Stability not yet verified: our sandbox run of this package did not complete, so we have no schema to compare.)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_019fcafe-ce4b-70b8-94ec-6b9c3fc00fca"
    },
    {
      "id": "chg_019fc85a-ad61-7b1d-aac9-6075fce9ee08",
      "kind": "check.unverifiable",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_clean",
      "to_code": "supplychain.malware_inconclusive",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-03",
      "occurred_at": "2026-08-03 16:00:13.64016+00",
      "observed_since": "2026-08-02",
      "source": "scan",
      "summary": "Malware scan (pass → unverified)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_019fc85a-ad61-7b1d-aac9-6075fce9ee08"
    },
    {
      "id": "chg_019fc85a-ad62-7a86-a609-5bba236a264a",
      "kind": "check.unverifiable",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.transitive",
      "to_code": "cve.inconclusive",
      "from_value": "fail",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "root_version_missing"
      },
      "occurred_on": "2026-08-03",
      "occurred_at": "2026-08-03 16:00:13.64016+00",
      "observed_since": "2026-08-02",
      "source": "scan",
      "summary": "Known CVEs (fail → unverified)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_019fc85a-ad62-7a86-a609-5bba236a264a"
    },
    {
      "id": "chg_019fc77e-ee66-7cd8-85f0-993a2f3e834a",
      "kind": "check.reason",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.sandbox_failed",
      "to_code": "stability.sandbox_pending",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-03",
      "occurred_at": "2026-08-03 12:00:12.366709+00",
      "observed_since": "2026-08-02",
      "source": "scan",
      "summary": "Stability (Stability not yet verified: we do not have a sandbox capture of the MCP schema this version of the package serves yet.)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_019fc77e-ee66-7cd8-85f0-993a2f3e834a"
    },
    {
      "id": "chg_019fc46c-422b-7074-acb4-30dd4b0f8fdd",
      "kind": "check.reverified",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.inconclusive",
      "to_code": "cve.transitive",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "path": "@plur-ai/core > @huggingface/transformers > sharp",
        "refs": "[\"GHSA-f88m-g3jw-g9cj\"]",
        "seen": "149",
        "package": "sharp",
        "version": "0.34.5",
        "assessed": "146",
        "resolved": "145",
        "severity": "high",
        "transitive": "1",
        "unresolved": "4",
        "vulnerable": "[{\"name\":\"sharp\",\"version\":\"0.34.5\",\"depth\":3,\"path\":[\"@plur-ai/core\",\"@huggingface/transformers\",\"sharp\"],\"refs\":[\"GHSA-f88m-g3jw-g9cj\"]}]",
        "tree_source": "registry",
        "tree_status": "partial"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 21:40:56.980692+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Known CVEs (unverified → fail)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_019fc46c-422b-7074-acb4-30dd4b0f8fdd"
    },
    {
      "id": "chg_019fc273-5506-7105-a155-8e1c79273f34",
      "kind": "check.unverifiable",
      "family": "build-provenance",
      "subject_kind": "check",
      "subject": "build-provenance",
      "subject_child": "",
      "from_code": "provenance.none",
      "to_code": "provenance.inconclusive",
      "from_value": "fail",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 12:29:26.130634+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Provenance (fail → unverified)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_019fc273-5506-7105-a155-8e1c79273f34"
    },
    {
      "id": "chg_019fc273-5507-70d7-9869-c07ef32cda41",
      "kind": "check.unverifiable",
      "family": "install-scripts",
      "subject_kind": "check",
      "subject": "install-scripts",
      "subject_child": "",
      "from_code": "installscript.none",
      "to_code": "installscript.inconclusive",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 12:29:26.130634+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Install scripts (pass → unverified)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_019fc273-5507-70d7-9869-c07ef32cda41"
    },
    {
      "id": "chg_019fc273-5507-76ab-9dc0-4bc160a39aea",
      "kind": "check.reverified",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_inconclusive",
      "to_code": "supplychain.malware_clean",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 12:29:26.130634+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Malware scan (unverified → pass)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_019fc273-5507-76ab-9dc0-4bc160a39aea"
    },
    {
      "id": "chg_019fbd80-9fef-7d6b-8b63-f224026355a1",
      "kind": "check.unverifiable",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.transitive",
      "to_code": "cve.inconclusive",
      "from_value": "fail",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "resolver_unavailable"
      },
      "occurred_on": "2026-08-01",
      "occurred_at": "2026-08-01 13:25:51.201765+00",
      "observed_since": "2026-07-31",
      "source": "scan",
      "summary": "Known CVEs (fail → unverified)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_019fbd80-9fef-7d6b-8b63-f224026355a1"
    },
    {
      "id": "chg_019fb2d2-c571-7920-9a89-b0d4466d1696",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "GHSA-f88m-g3jw-g9cj",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "GHSA-f88m-g3jw-g9cj",
        "severity": "high"
      },
      "occurred_on": "2026-07-30",
      "occurred_at": "2026-07-30 11:39:45.380014+00",
      "observed_since": "2026-07-29",
      "source": "scan",
      "summary": "GHSA-f88m-g3jw-g9cj affects this package (high)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_019fb2d2-c571-7920-9a89-b0d4466d1696"
    },
    {
      "id": "chg_019fb2d2-c572-79e6-b7a5-a0533739ff51",
      "kind": "check.reverified",
      "family": "build-provenance",
      "subject_kind": "check",
      "subject": "build-provenance",
      "subject_child": "",
      "from_code": "provenance.inconclusive",
      "to_code": "provenance.none",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-07-30",
      "occurred_at": "2026-07-30 11:39:45.380014+00",
      "observed_since": "2026-07-29",
      "source": "scan",
      "summary": "Provenance (unverified → fail)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_019fb2d2-c572-79e6-b7a5-a0533739ff51"
    },
    {
      "id": "chg_019fb2d2-c572-7ef5-9cf1-8bb93432b2e7",
      "kind": "check.reverified",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.inconclusive",
      "to_code": "cve.transitive",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "path": "@plur-ai/core > @huggingface/transformers > sharp",
        "refs": "[\"GHSA-f88m-g3jw-g9cj\"]",
        "seen": "149",
        "package": "sharp",
        "version": "0.34.5",
        "assessed": "146",
        "resolved": "145",
        "severity": "high",
        "transitive": "1",
        "unresolved": "4",
        "vulnerable": "[{\"name\":\"sharp\",\"version\":\"0.34.5\",\"depth\":3,\"path\":[\"@plur-ai/core\",\"@huggingface/transformers\",\"sharp\"],\"refs\":[\"GHSA-f88m-g3jw-g9cj\"]}]",
        "tree_source": "registry",
        "tree_status": "partial"
      },
      "occurred_on": "2026-07-30",
      "occurred_at": "2026-07-30 11:39:45.380014+00",
      "observed_since": "2026-07-29",
      "source": "scan",
      "summary": "Known CVEs (unverified → fail)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_019fb2d2-c572-7ef5-9cf1-8bb93432b2e7"
    },
    {
      "id": "chg_019fb2d2-c573-74e7-ac2a-ca5d0b1a38c9",
      "kind": "check.reverified",
      "family": "install-scripts",
      "subject_kind": "check",
      "subject": "install-scripts",
      "subject_child": "",
      "from_code": "installscript.inconclusive",
      "to_code": "installscript.none",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "tier": "none"
      },
      "occurred_on": "2026-07-30",
      "occurred_at": "2026-07-30 11:39:45.380014+00",
      "observed_since": "2026-07-29",
      "source": "scan",
      "summary": "Install scripts (unverified → pass)",
      "link": "https://verifymcp.io/servers/plur-ai-plur/plur-ai-mcp#chg-chg_019fb2d2-c573-74e7-ac2a-ca5d0b1a38c9"
    }
  ],
  "days": [
    {
      "date": "2026-09-22",
      "total": 83,
      "delta": 1,
      "tracked": true,
      "explained": false,
      "beyond_event_horizon": false,
      "attribution": {
        "category": "Stability & Change Management",
        "from": 90,
        "to": 93,
        "delta": 3,
        "others": [],
        "accrual": {
          "code": "stability.building_history",
          "from_days": 27,
          "to_days": 28
        },
        "partial": false,
        "compared_to": "2026-09-21",
        "summary": "No change was recorded against any check on this day. Stability & Change Management went from 90 to 93. That category is still filling its 30-day observation window: 27 days of observed history at the previous scan, 28 at this one. The score rises as the window fills, whether or not the server changes."
      },
      "event_count": 0
    },
    {
      "date": "2026-09-20",
      "total": 82,
      "delta": 1,
      "tracked": true,
      "explained": false,
      "beyond_event_horizon": false,
      "attribution": {
        "category": "Stability & Change Management",
        "from": 83,
        "to": 87,
        "delta": 4,
        "others": [],
        "accrual": {
          "code": "stability.building_history",
          "from_days": 25,
          "to_days": 26
        },
        "partial": false,
        "compared_to": "2026-09-19",
        "summary": "No change was recorded against any check on this day. Stability & Change Management went from 83 to 87. That category is still filling its 30-day observation window: 25 days of observed history at the previous scan, 26 at this one. The score rises as the window fills, whether or not the server changes."
      },
      "event_count": 0
    },
    {
      "date": "2026-09-18",
      "total": 81,
      "delta": -3,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 8
    },
    {
      "date": "2026-09-17",
      "total": 84,
      "delta": 1,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-16",
      "total": 83,
      "delta": 2,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 12
    },
    {
      "date": "2026-09-15",
      "total": 81,
      "delta": 1,
      "tracked": true,
      "explained": false,
      "beyond_event_horizon": false,
      "attribution": {
        "category": "Stability & Change Management",
        "from": 90,
        "to": 93,
        "delta": 3,
        "others": [],
        "accrual": {
          "code": "stability.building_history",
          "from_days": 27,
          "to_days": 28
        },
        "partial": false,
        "compared_to": "2026-09-14",
        "summary": "No change was recorded against any check on this day. Stability & Change Management went from 90 to 93. That category is still filling its 30-day observation window: 27 days of observed history at the previous scan, 28 at this one. The score rises as the window fills, whether or not the server changes."
      },
      "event_count": 0
    },
    {
      "date": "2026-09-13",
      "total": 80,
      "delta": 1,
      "tracked": true,
      "explained": false,
      "beyond_event_horizon": false,
      "attribution": {
        "category": "Stability & Change Management",
        "from": 83,
        "to": 87,
        "delta": 4,
        "others": [],
        "accrual": {
          "code": "stability.building_history",
          "from_days": 25,
          "to_days": 26
        },
        "partial": false,
        "compared_to": "2026-09-12",
        "summary": "No change was recorded against any check on this day. Stability & Change Management went from 83 to 87. That category is still filling its 30-day observation window: 25 days of observed history at the previous scan, 26 at this one. The score rises as the window fills, whether or not the server changes."
      },
      "event_count": 0
    },
    {
      "date": "2026-09-12",
      "total": 79,
      "delta": -3,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    }
  ]
}