{
  "$schema": "https://verifymcp.io/schemas/changelog.json",
  "server": "spacefast-mcp",
  "component": "spacefast",
  "generated_at": "2026-09-20T14:52:07.169Z",
  "tracking_since": "2026-07-27",
  "counts": {
    "critical": 0,
    "security": 27,
    "functional": 0,
    "cosmetic": 0
  },
  "events": [
    {
      "id": "chg_01a0850f-a74c-7cd2-b105-e5d32ec5a820",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-84375",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-84375",
        "severity": "high"
      },
      "occurred_on": "2026-09-09",
      "occurred_at": "2026-09-09 07:26:30.671073+00",
      "observed_since": "2026-09-08",
      "source": "scan",
      "summary": "CVE-2026-84375 affects this package (high)",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_01a0850f-a74c-7cd2-b105-e5d32ec5a820"
    },
    {
      "id": "chg_01a02d7b-b1bb-7b8f-95f7-31eadf210f78",
      "kind": "malware.resolved",
      "family": "supplychain-malware",
      "subject_kind": "advisory",
      "subject": "gptMalware",
      "subject_child": "",
      "from_code": "supplychain.malware_found",
      "to_code": "supplychain.malware_clean",
      "from_value": "high",
      "to_value": null,
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-23",
      "occurred_at": "2026-08-23 07:17:56.201842+00",
      "observed_since": "2026-08-22",
      "source": "scan",
      "summary": "Malware indicator (automated code analysis) cleared",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_01a02d7b-b1bb-7b8f-95f7-31eadf210f78"
    },
    {
      "id": "chg_01a02d7b-b1bc-7c3c-9cc1-c5d2d16e4755",
      "kind": "check.verdict",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_found",
      "to_code": "supplychain.malware_clean",
      "from_value": "fail",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-23",
      "occurred_at": "2026-08-23 07:17:56.201842+00",
      "observed_since": "2026-08-22",
      "source": "scan",
      "summary": "Malware scan (fail → pass)",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_01a02d7b-b1bc-7c3c-9cc1-c5d2d16e4755"
    },
    {
      "id": "chg_01a0270d-2e80-7de8-b0d2-432cdb3e134f",
      "kind": "malware.identified",
      "family": "supplychain-malware",
      "subject_kind": "advisory",
      "subject": "gptMalware",
      "subject_child": "",
      "from_code": null,
      "to_code": "supplychain.malware_found",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "severity": "high"
      },
      "occurred_on": "2026-08-22",
      "occurred_at": "2026-08-22 01:19:30.315862+00",
      "observed_since": "2026-08-21",
      "source": "scan",
      "summary": "Malware indicator (automated code analysis) (high)",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_01a0270d-2e80-7de8-b0d2-432cdb3e134f"
    },
    {
      "id": "chg_01a0270d-2e84-7847-a6ab-7879bf0ea64f",
      "kind": "check.verdict",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_clean",
      "to_code": "supplychain.malware_found",
      "from_value": "pass",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "refs": "[\"gptMalware:Qn8z_R8IZXyqwqQsVwMLhKafHLv3lBnv11DDqKXIe5Ig\"]",
        "severity": "high"
      },
      "occurred_on": "2026-08-22",
      "occurred_at": "2026-08-22 01:19:30.315862+00",
      "observed_since": "2026-08-21",
      "source": "scan",
      "summary": "Malware scan (pass → fail)",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_01a0270d-2e84-7847-a6ab-7879bf0ea64f"
    },
    {
      "id": "chg_019ff4b0-56d2-70dc-a48c-65675f03704a",
      "kind": "check.verdict",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_found",
      "to_code": "supplychain.malware_clean",
      "from_value": "fail",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-12",
      "occurred_at": "2026-08-12 06:37:05.077384+00",
      "observed_since": "2026-08-11",
      "source": "scan",
      "summary": "Malware scan (fail → pass)",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_019ff4b0-56d2-70dc-a48c-65675f03704a"
    },
    {
      "id": "chg_019ff4b0-56d1-7301-8658-80d861812ddb",
      "kind": "malware.resolved",
      "family": "supplychain-malware",
      "subject_kind": "advisory",
      "subject": "gptMalware",
      "subject_child": "",
      "from_code": "supplychain.malware_found",
      "to_code": "supplychain.malware_clean",
      "from_value": "high",
      "to_value": null,
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-12",
      "occurred_at": "2026-08-12 06:37:05.077384+00",
      "observed_since": "2026-08-11",
      "source": "scan",
      "summary": "Malware indicator (automated code analysis) cleared",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_019ff4b0-56d1-7301-8658-80d861812ddb"
    },
    {
      "id": "chg_019fd9ef-0e3b-7f35-b672-9e3521c1c6b2",
      "kind": "check.reverified",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.inconclusive",
      "to_code": "cve.transitive",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "path": "@spacefast/mcp > @executor-js/plugin-openapi > js-yaml",
        "refs": "[\"GHSA-g7r4-m6w7-qqqr\",\"CVE-2026-59869\",\"GHSA-5p4m-2wfm-xmqj\",\"CVE-2026-53550\"]",
        "seen": "327",
        "direct": "1",
        "package": "js-yaml",
        "version": "4.1.1",
        "assessed": "328",
        "resolved": "327",
        "severity": "high",
        "transitive": "1",
        "vulnerable": "[{\"name\":\"esbuild\",\"version\":\"0.27.7\",\"depth\":1,\"path\":[\"esbuild\"],\"refs\":[\"GHSA-g7r4-m6w7-qqqr\"]},{\"name\":\"js-yaml\",\"version\":\"4.1.1\",\"depth\":3,\"path\":[\"@spacefast/mcp\",\"@executor-js/plugin-openapi\",\"js-yaml\"],\"refs\":[\"CVE-2026-59869\",\"GHSA-5p4m-2wfm-xmqj\",\"CVE-2026-53550\"]}]",
        "tree_source": "registry",
        "tree_status": "resolved"
      },
      "occurred_on": "2026-08-07",
      "occurred_at": "2026-08-07 01:55:50.40896+00",
      "observed_since": "2026-08-06",
      "source": "scan",
      "summary": "Known CVEs (unverified → fail)",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_019fd9ef-0e3b-7f35-b672-9e3521c1c6b2"
    },
    {
      "id": "chg_019fd9ef-0e3b-71fe-a7ee-9b4b3b87642f",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-53550",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-53550",
        "severity": "high"
      },
      "occurred_on": "2026-08-07",
      "occurred_at": "2026-08-07 01:55:50.40896+00",
      "observed_since": "2026-08-06",
      "source": "scan",
      "summary": "CVE-2026-53550 affects this package (high)",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_019fd9ef-0e3b-71fe-a7ee-9b4b3b87642f"
    },
    {
      "id": "chg_019fd9ef-0e3c-7697-b156-c2a6bbfd2e1a",
      "kind": "check.reason",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.sandbox_pending",
      "to_code": "stability.sandbox_failed",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {
        "reason": "startup_failure",
        "status": "unreachable"
      },
      "occurred_on": "2026-08-07",
      "occurred_at": "2026-08-07 01:55:50.40896+00",
      "observed_since": "2026-08-06",
      "source": "scan",
      "summary": "Stability (Stability not yet verified: this package installed, but its server did not start, so we have no schema to compare.)",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_019fd9ef-0e3c-7697-b156-c2a6bbfd2e1a"
    },
    {
      "id": "chg_019fd9ef-0e39-7130-a4d7-8b275ff732b3",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "GHSA-5p4m-2wfm-xmqj",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "GHSA-5p4m-2wfm-xmqj",
        "severity": "high"
      },
      "occurred_on": "2026-08-07",
      "occurred_at": "2026-08-07 01:55:50.40896+00",
      "observed_since": "2026-08-06",
      "source": "scan",
      "summary": "GHSA-5p4m-2wfm-xmqj affects this package (high)",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_019fd9ef-0e39-7130-a4d7-8b275ff732b3"
    },
    {
      "id": "chg_019fd9ef-0e3a-764b-a72d-4b272d9a1012",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-59869",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-59869",
        "severity": "high"
      },
      "occurred_on": "2026-08-07",
      "occurred_at": "2026-08-07 01:55:50.40896+00",
      "observed_since": "2026-08-06",
      "source": "scan",
      "summary": "CVE-2026-59869 affects this package (high)",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_019fd9ef-0e3a-764b-a72d-4b272d9a1012"
    },
    {
      "id": "chg_019fd729-1608-722f-b10a-0da221937c58",
      "kind": "check.reverified",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_inconclusive",
      "to_code": "supplychain.malware_found",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "refs": "[\"gptMalware:Qr2cykGC0zCVjRrgCvcmSTM0_xahalkWTrOtCyj204c0\"]",
        "severity": "high"
      },
      "occurred_on": "2026-08-06",
      "occurred_at": "2026-08-06 13:00:21.873048+00",
      "observed_since": "2026-08-05",
      "source": "scan",
      "summary": "Malware scan (unverified → fail)",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_019fd729-1608-722f-b10a-0da221937c58"
    },
    {
      "id": "chg_019fd729-160a-7817-93bc-e4222bd2e470",
      "kind": "malware.identified",
      "family": "supplychain-malware",
      "subject_kind": "advisory",
      "subject": "gptMalware",
      "subject_child": "",
      "from_code": null,
      "to_code": "supplychain.malware_found",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "severity": "high"
      },
      "occurred_on": "2026-08-06",
      "occurred_at": "2026-08-06 13:00:21.873048+00",
      "observed_since": "2026-08-05",
      "source": "scan",
      "summary": "Malware indicator (automated code analysis) (high)",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_019fd729-160a-7817-93bc-e4222bd2e470"
    },
    {
      "id": "chg_019fd5f0-b586-700b-9f7b-eef18ecc7552",
      "kind": "check.reverified",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.inconclusive",
      "to_code": "cve.direct",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "path": "esbuild",
        "refs": "[\"GHSA-g7r4-m6w7-qqqr\"]",
        "seen": "247",
        "direct": "1",
        "package": "esbuild",
        "version": "0.27.7",
        "assessed": "244",
        "resolved": "243",
        "severity": "low",
        "unresolved": "4",
        "vulnerable": "[{\"name\":\"esbuild\",\"version\":\"0.27.7\",\"depth\":1,\"path\":[\"esbuild\"],\"refs\":[\"GHSA-g7r4-m6w7-qqqr\"]}]",
        "tree_source": "registry",
        "tree_status": "partial"
      },
      "occurred_on": "2026-08-06",
      "occurred_at": "2026-08-06 07:19:09.902903+00",
      "observed_since": "2026-08-05",
      "source": "scan",
      "summary": "Known CVEs (unverified → fail)",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_019fd5f0-b586-700b-9f7b-eef18ecc7552"
    },
    {
      "id": "chg_019fd315-53b3-7217-8bd7-d88f95333be4",
      "kind": "check.unverifiable",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_clean",
      "to_code": "supplychain.malware_inconclusive",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-05",
      "occurred_at": "2026-08-05 18:00:18.066343+00",
      "observed_since": "2026-08-04",
      "source": "scan",
      "summary": "Malware scan (pass → unverified)",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_019fd315-53b3-7217-8bd7-d88f95333be4"
    },
    {
      "id": "chg_019fd315-53b1-77f1-8aba-36d06665f8b9",
      "kind": "check.unverifiable",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.direct",
      "to_code": "cve.inconclusive",
      "from_value": "fail",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "root_version_missing"
      },
      "occurred_on": "2026-08-05",
      "occurred_at": "2026-08-05 18:00:18.066343+00",
      "observed_since": "2026-08-04",
      "source": "scan",
      "summary": "Known CVEs (fail → unverified)",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_019fd315-53b1-77f1-8aba-36d06665f8b9"
    },
    {
      "id": "chg_019fd270-dc42-725e-9981-8c66fc57ab38",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-59869",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-59869",
        "severity": "high"
      },
      "occurred_on": "2026-08-05",
      "occurred_at": "2026-08-05 15:00:39.598347+00",
      "observed_since": "2026-08-04",
      "source": "scan",
      "summary": "CVE-2026-59869 affects this package (high)",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_019fd270-dc42-725e-9981-8c66fc57ab38"
    },
    {
      "id": "chg_019fd270-dc43-72dc-b7f9-939d810c879c",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-53550",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-53550",
        "severity": "high"
      },
      "occurred_on": "2026-08-05",
      "occurred_at": "2026-08-05 15:00:39.598347+00",
      "observed_since": "2026-08-04",
      "source": "scan",
      "summary": "CVE-2026-53550 affects this package (high)",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_019fd270-dc43-72dc-b7f9-939d810c879c"
    },
    {
      "id": "chg_019fd270-dc43-7a85-8541-ec1daa4c12cf",
      "kind": "check.reason",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.sandbox_failed",
      "to_code": "stability.sandbox_pending",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-05",
      "occurred_at": "2026-08-05 15:00:39.598347+00",
      "observed_since": "2026-08-04",
      "source": "scan",
      "summary": "Stability (Stability not yet verified: we do not have a sandbox capture of the MCP schema this version of the package serves yet.)",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_019fd270-dc43-7a85-8541-ec1daa4c12cf"
    },
    {
      "id": "chg_019fd270-dc44-7244-ba64-050a4b0748c5",
      "kind": "check.reason",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.direct",
      "to_code": "cve.transitive",
      "from_value": "fail",
      "to_value": "fail",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {
        "path": "@spacefast/mcp > @executor-js/plugin-openapi > js-yaml",
        "refs": "[\"GHSA-g7r4-m6w7-qqqr\",\"CVE-2026-59869\",\"CVE-2026-53550\"]",
        "seen": "322",
        "direct": "1",
        "package": "js-yaml",
        "version": "4.1.1",
        "assessed": "251",
        "resolved": "250",
        "severity": "high",
        "transitive": "1",
        "unresolved": "72",
        "vulnerable": "[{\"name\":\"esbuild\",\"version\":\"0.27.7\",\"depth\":1,\"path\":[\"esbuild\"],\"refs\":[\"GHSA-g7r4-m6w7-qqqr\"]},{\"name\":\"js-yaml\",\"version\":\"4.1.1\",\"depth\":3,\"path\":[\"@spacefast/mcp\",\"@executor-js/plugin-openapi\",\"js-yaml\"],\"refs\":[\"CVE-2026-59869\",\"CVE-2026-53550\"]}]",
        "tree_source": "registry",
        "tree_status": "partial"
      },
      "occurred_on": "2026-08-05",
      "occurred_at": "2026-08-05 15:00:39.598347+00",
      "observed_since": "2026-08-04",
      "source": "scan",
      "summary": "Known CVEs (CVE check failed: a known high-severity CVE affects js-yaml 4.1.1, reached via @spacefast/mcp > @executor-js/plugin-openapi > js-yaml. A fixed version is available.)",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_019fd270-dc44-7244-ba64-050a4b0748c5"
    },
    {
      "id": "chg_019fc4aa-2d34-7f2c-a75e-5e8b2ca75cfd",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "GHSA-g7r4-m6w7-qqqr",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.direct",
      "from_value": null,
      "to_value": "low",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "GHSA-g7r4-m6w7-qqqr",
        "severity": "low"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 22:48:34.753926+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "GHSA-g7r4-m6w7-qqqr affects this package (low)",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_019fc4aa-2d34-7f2c-a75e-5e8b2ca75cfd"
    },
    {
      "id": "chg_019fc4aa-2d2d-7527-a3ae-49c35102ab72",
      "kind": "check.reverified",
      "family": "build-provenance",
      "subject_kind": "check",
      "subject": "build-provenance",
      "subject_child": "",
      "from_code": "provenance.inconclusive",
      "to_code": "provenance.none",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 22:48:34.753926+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Provenance (unverified → fail)",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_019fc4aa-2d2d-7527-a3ae-49c35102ab72"
    },
    {
      "id": "chg_019fc4aa-2d39-7edb-91b6-2ba6ee7a29c5",
      "kind": "check.reverified",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.inconclusive",
      "to_code": "cve.direct",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "path": "esbuild",
        "refs": "[\"GHSA-g7r4-m6w7-qqqr\"]",
        "seen": "361",
        "direct": "1",
        "package": "esbuild",
        "version": "0.27.7",
        "assessed": "251",
        "resolved": "250",
        "severity": "low",
        "unresolved": "111",
        "vulnerable": "[{\"name\":\"esbuild\",\"version\":\"0.27.7\",\"depth\":1,\"path\":[\"esbuild\"],\"refs\":[\"GHSA-g7r4-m6w7-qqqr\"]}]",
        "tree_source": "registry",
        "tree_status": "partial"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 22:48:34.753926+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Known CVEs (unverified → fail)",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_019fc4aa-2d39-7edb-91b6-2ba6ee7a29c5"
    },
    {
      "id": "chg_019fc4aa-2d3c-747a-9cd0-d81ab758cdcd",
      "kind": "check.reverified",
      "family": "install-scripts",
      "subject_kind": "check",
      "subject": "install-scripts",
      "subject_child": "",
      "from_code": "installscript.inconclusive",
      "to_code": "installscript.none",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "tier": "none"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 22:48:34.753926+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Install scripts (unverified → pass)",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_019fc4aa-2d3c-747a-9cd0-d81ab758cdcd"
    },
    {
      "id": "chg_019fc34f-9c8b-7ba1-b0a4-e4791b7e02c5",
      "kind": "check.reverified",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_inconclusive",
      "to_code": "supplychain.malware_clean",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 16:30:02.269059+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Malware scan (unverified → pass)",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_019fc34f-9c8b-7ba1-b0a4-e4791b7e02c5"
    },
    {
      "id": "chg_019fc34f-9c99-7d0f-9908-177c3d1e750e",
      "kind": "check.reason",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.sandbox_failed",
      "to_code": "stability.sandbox_pending",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 16:30:02.269059+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Stability (Stability not yet verified: we do not have a sandbox capture of the MCP schema this version of the package serves yet.)",
      "link": "https://verifymcp.io/servers/spacefast-mcp/spacefast#chg-chg_019fc34f-9c99-7d0f-9908-177c3d1e750e"
    }
  ],
  "days": [
    {
      "date": "2026-09-09",
      "total": 36,
      "delta": 0,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-08-31",
      "total": 36,
      "delta": 0,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-08-29",
      "total": 36,
      "delta": 0,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-08-27",
      "total": 36,
      "delta": 0,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-08-26",
      "total": 36,
      "delta": 0,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-08-25",
      "total": 36,
      "delta": 0,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-08-23",
      "total": 36,
      "delta": 13,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 3
    },
    {
      "date": "2026-08-22",
      "total": 23,
      "delta": null,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 4
    }
  ]
}