{
  "server": "timescale-pg-aiguide",
  "component": "tigerdata-pg-aiguide",
  "generated_at": "2026-08-03T22:35:59.143Z",
  "tracking_since": "2026-07-26",
  "counts": {
    "critical": 0,
    "security": 16,
    "functional": 0,
    "cosmetic": 0
  },
  "events": [
    {
      "id": "chg_019fc4ce-11ba-724d-a601-2b55a5f391ff",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-59895",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-59895",
        "severity": "high"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:27:47.088581+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "CVE-2026-59895 affects this package (high)",
      "link": "https://verifymcp.io/servers/timescale-pg-aiguide/tigerdata-pg-aiguide#chg-chg_019fc4ce-11ba-724d-a601-2b55a5f391ff"
    },
    {
      "id": "chg_019fc4ce-11c7-79b0-9119-2429cbd57a57",
      "kind": "check.reverified",
      "family": "build-provenance",
      "subject_kind": "check",
      "subject": "build-provenance",
      "subject_child": "",
      "from_code": "provenance.inconclusive",
      "to_code": "provenance.verified",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "repo": "timescale/pg-aiguide"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:27:47.088581+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Provenance (unverified → pass)",
      "link": "https://verifymcp.io/servers/timescale-pg-aiguide/tigerdata-pg-aiguide#chg-chg_019fc4ce-11c7-79b0-9119-2429cbd57a57"
    },
    {
      "id": "chg_019fc4ce-11c8-718f-9895-5f08c82eb27e",
      "kind": "provenance.repo_changed",
      "family": "build-provenance",
      "subject_kind": "package",
      "subject": "repo",
      "subject_child": "",
      "from_code": "provenance.inconclusive",
      "to_code": "provenance.verified",
      "from_value": null,
      "to_value": "timescale/pg-aiguide",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {
        "to": "timescale/pg-aiguide",
        "from": ""
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:27:47.088581+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "The attested source repository moved (timescale/pg-aiguide)",
      "link": "https://verifymcp.io/servers/timescale-pg-aiguide/tigerdata-pg-aiguide#chg-chg_019fc4ce-11c8-718f-9895-5f08c82eb27e"
    },
    {
      "id": "chg_019fc4ce-11bb-72ed-9b3e-00927fe70a3f",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-54288",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-54288",
        "severity": "high"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:27:47.088581+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "CVE-2026-54288 affects this package (high)",
      "link": "https://verifymcp.io/servers/timescale-pg-aiguide/tigerdata-pg-aiguide#chg-chg_019fc4ce-11bb-72ed-9b3e-00927fe70a3f"
    },
    {
      "id": "chg_019fc4ce-11bc-7e03-82e6-09acb9974148",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-59892",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-59892",
        "severity": "high"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:27:47.088581+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "CVE-2026-59892 affects this package (high)",
      "link": "https://verifymcp.io/servers/timescale-pg-aiguide/tigerdata-pg-aiguide#chg-chg_019fc4ce-11bc-7e03-82e6-09acb9974148"
    },
    {
      "id": "chg_019fc4ce-11bc-7637-9f19-3f4e320790df",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-59897",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-59897",
        "severity": "high"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:27:47.088581+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "CVE-2026-59897 affects this package (high)",
      "link": "https://verifymcp.io/servers/timescale-pg-aiguide/tigerdata-pg-aiguide#chg-chg_019fc4ce-11bc-7637-9f19-3f4e320790df"
    },
    {
      "id": "chg_019fc4ce-11bb-7b95-b81b-7e8a223c5cd6",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-59896",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-59896",
        "severity": "high"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:27:47.088581+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "CVE-2026-59896 affects this package (high)",
      "link": "https://verifymcp.io/servers/timescale-pg-aiguide/tigerdata-pg-aiguide#chg-chg_019fc4ce-11bb-7b95-b81b-7e8a223c5cd6"
    },
    {
      "id": "chg_019fc4ce-11bd-7838-ad2a-632b61456af0",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-54287",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-54287",
        "severity": "high"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:27:47.088581+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "CVE-2026-54287 affects this package (high)",
      "link": "https://verifymcp.io/servers/timescale-pg-aiguide/tigerdata-pg-aiguide#chg-chg_019fc4ce-11bd-7838-ad2a-632b61456af0"
    },
    {
      "id": "chg_019fc4ce-11be-7274-8ec9-e112205a5ecb",
      "kind": "check.reverified",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.inconclusive",
      "to_code": "cve.transitive",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "path": "@tigerdata/mcp-boilerplate > @opentelemetry/sdk-node > @opentelemetry/propagator-jaeger",
        "refs": "[\"GHSA-frvp-7c67-39w9\",\"GHSA-frvp-7c67-39w9\",\"CVE-2026-59892\",\"CVE-2026-54290\",\"CVE-2026-59896\",\"CVE-2026-54287\",\"CVE-2026-54288\",\"CVE-2026-59895\",\"CVE-2026-54289\",\"CVE-2026-54286\",\"CVE-2026-59897\"]",
        "seen": "711",
        "package": "@opentelemetry/propagator-jaeger",
        "version": "2.8.0",
        "assessed": "251",
        "resolved": "250",
        "severity": "high",
        "transitive": "4",
        "unresolved": "461",
        "vulnerable": "[{\"name\":\"@hono/node-server\",\"version\":\"1.19.13\",\"depth\":4,\"path\":[\"@tigerdata/mcp-boilerplate\",\"@mcp-use/inspector\",\"mcp-use\",\"@hono/node-server\"],\"refs\":[\"GHSA-frvp-7c67-39w9\"]},{\"name\":\"@hono/node-server\",\"version\":\"1.19.17\",\"depth\":3,\"path\":[\"@tigerdata/mcp-boilerplate\",\"@mcp-use/inspector\",\"@hono/node-server\"],\"refs\":[\"GHSA-frvp-7c67-39w9\"]},{\"name\":\"@opentelemetry/propagator-jaeger\",\"version\":\"2.8.0\",\"depth\":3,\"path\":[\"@tigerdata/mcp-boilerplate\",\"@opentelemetry/sdk-node\",\"@opentelemetry/propagator-ja",
        "tree_source": "registry",
        "tree_status": "partial"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:27:47.088581+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Known CVEs (unverified → fail)",
      "link": "https://verifymcp.io/servers/timescale-pg-aiguide/tigerdata-pg-aiguide#chg-chg_019fc4ce-11be-7274-8ec9-e112205a5ecb"
    },
    {
      "id": "chg_019fc4ce-11be-7d66-bd46-0858f3891e61",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-54290",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-54290",
        "severity": "high"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:27:47.088581+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "CVE-2026-54290 affects this package (high)",
      "link": "https://verifymcp.io/servers/timescale-pg-aiguide/tigerdata-pg-aiguide#chg-chg_019fc4ce-11be-7d66-bd46-0858f3891e61"
    },
    {
      "id": "chg_019fc4ce-11bf-78a1-beab-da0acf6abf81",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "GHSA-frvp-7c67-39w9",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "GHSA-frvp-7c67-39w9",
        "severity": "high"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:27:47.088581+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "GHSA-frvp-7c67-39w9 affects this package (high)",
      "link": "https://verifymcp.io/servers/timescale-pg-aiguide/tigerdata-pg-aiguide#chg-chg_019fc4ce-11bf-78a1-beab-da0acf6abf81"
    },
    {
      "id": "chg_019fc4ce-11c0-72e6-ade7-4ea7e79fca4a",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-54289",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-54289",
        "severity": "high"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:27:47.088581+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "CVE-2026-54289 affects this package (high)",
      "link": "https://verifymcp.io/servers/timescale-pg-aiguide/tigerdata-pg-aiguide#chg-chg_019fc4ce-11c0-72e6-ade7-4ea7e79fca4a"
    },
    {
      "id": "chg_019fc4ce-11c0-7d5d-86e3-735c096a4a0e",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-54286",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-54286",
        "severity": "high"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:27:47.088581+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "CVE-2026-54286 affects this package (high)",
      "link": "https://verifymcp.io/servers/timescale-pg-aiguide/tigerdata-pg-aiguide#chg-chg_019fc4ce-11c0-7d5d-86e3-735c096a4a0e"
    },
    {
      "id": "chg_019fc4ce-11c7-71e1-8266-7b8d11861dd7",
      "kind": "check.reverified",
      "family": "install-scripts",
      "subject_kind": "check",
      "subject": "install-scripts",
      "subject_child": "",
      "from_code": "installscript.inconclusive",
      "to_code": "installscript.none",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "tier": "none"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:27:47.088581+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Install scripts (unverified → pass)",
      "link": "https://verifymcp.io/servers/timescale-pg-aiguide/tigerdata-pg-aiguide#chg-chg_019fc4ce-11c7-71e1-8266-7b8d11861dd7"
    },
    {
      "id": "chg_019fc261-13c4-7248-9746-74d9bb3c34be",
      "kind": "check.reverified",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_inconclusive",
      "to_code": "supplychain.malware_clean",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 12:09:29.774972+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Malware scan (unverified → pass)",
      "link": "https://verifymcp.io/servers/timescale-pg-aiguide/tigerdata-pg-aiguide#chg-chg_019fc261-13c4-7248-9746-74d9bb3c34be"
    },
    {
      "id": "chg_019fb1f6-c9da-7198-a2b4-f3d064e97b1c",
      "kind": "check.unverifiable",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_clean",
      "to_code": "supplychain.malware_inconclusive",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-07-30",
      "occurred_at": "2026-07-30 07:39:28.593872+00",
      "observed_since": "2026-07-28",
      "source": "scan",
      "summary": "Malware scan (pass → unverified)",
      "link": "https://verifymcp.io/servers/timescale-pg-aiguide/tigerdata-pg-aiguide#chg-chg_019fb1f6-c9da-7198-a2b4-f3d064e97b1c"
    }
  ],
  "days": [
    {
      "date": "2026-08-03",
      "total": 42,
      "delta": 1,
      "tracked": true,
      "explained": false,
      "beyond_event_horizon": false,
      "attribution": {
        "category": "Supply Chain Security",
        "from": 73,
        "to": 76,
        "delta": 3,
        "others": [],
        "accrual": null,
        "partial": false,
        "compared_to": "2026-08-02",
        "summary": "No change was recorded against any check on this day. Supply Chain Security went from 73 to 76."
      },
      "event_count": 0
    },
    {
      "date": "2026-08-02",
      "total": 41,
      "delta": 36,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 19
    },
    {
      "date": "2026-07-31",
      "total": 5,
      "delta": -1,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-07-30",
      "total": 6,
      "delta": -20,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 4
    },
    {
      "date": "2026-07-28",
      "total": 26,
      "delta": 0,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-07-27",
      "total": 26,
      "delta": 1,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-07-26",
      "total": 25,
      "delta": null,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    }
  ]
}