{
  "$schema": "https://verifymcp.io/schemas/changelog.json",
  "server": "wolfe-jam-gemini-faf-mcp",
  "component": "gemini-faf-mcp",
  "generated_at": "2026-09-21T03:47:58.958Z",
  "tracking_since": "2026-07-27",
  "counts": {
    "critical": 0,
    "security": 30,
    "functional": 0,
    "cosmetic": 0
  },
  "events": [
    {
      "id": "chg_01a0b39c-56b5-7dcf-9977-258b37d67b52",
      "kind": "check.verdict",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.building_history",
      "to_code": "stability.stable",
      "from_value": "0.97",
      "to_value": "pass",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-18",
      "occurred_at": "2026-09-18 08:22:42.178276+00",
      "observed_since": "2026-09-17",
      "source": "scan",
      "summary": "Stability (0.97 → pass)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_01a0b39c-56b5-7dcf-9977-258b37d67b52"
    },
    {
      "id": "chg_01a0a429-8c33-7c53-92ce-d7cd12a4bdae",
      "kind": "check.reverified",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_inconclusive",
      "to_code": "supplychain.malware_clean",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-15",
      "occurred_at": "2026-09-15 08:23:00.96576+00",
      "observed_since": "2026-09-14",
      "source": "scan",
      "summary": "Malware scan (unverified → pass)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_01a0a429-8c33-7c53-92ce-d7cd12a4bdae"
    },
    {
      "id": "chg_01a09fac-79e0-771c-8c2b-19820b61d3e7",
      "kind": "check.unverifiable",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_clean",
      "to_code": "supplychain.malware_inconclusive",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "vendor_no_verdict"
      },
      "occurred_on": "2026-09-14",
      "occurred_at": "2026-09-14 11:27:55.514141+00",
      "observed_since": "2026-09-13",
      "source": "scan",
      "summary": "Malware scan (pass → unverified)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_01a09fac-79e0-771c-8c2b-19820b61d3e7"
    },
    {
      "id": "chg_01a08f90-2145-77b8-b5a0-e44e4ad88e76",
      "kind": "check.verdict",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.building_history",
      "to_code": "stability.stable",
      "from_value": "0.97",
      "to_value": "pass",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-11",
      "occurred_at": "2026-09-11 08:23:02.153151+00",
      "observed_since": "2026-09-10",
      "source": "scan",
      "summary": "Stability (0.97 → pass)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_01a08f90-2145-77b8-b5a0-e44e4ad88e76"
    },
    {
      "id": "chg_01a06b90-fe42-7d6a-be79-0d67e9bdea1f",
      "kind": "check.verdict",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.building_history",
      "to_code": "stability.stable",
      "from_value": "0.97",
      "to_value": "pass",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-04",
      "occurred_at": "2026-09-04 08:37:39.352112+00",
      "observed_since": "2026-09-03",
      "source": "scan",
      "summary": "Stability (0.97 → pass)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_01a06b90-fe42-7d6a-be79-0d67e9bdea1f"
    },
    {
      "id": "chg_01a02373-a45d-7d6f-b9ac-4be64bb3dde3",
      "kind": "check.reverified",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_inconclusive",
      "to_code": "supplychain.malware_clean",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-21",
      "occurred_at": "2026-08-21 08:32:56.133516+00",
      "observed_since": "2026-08-20",
      "source": "scan",
      "summary": "Malware scan (unverified → pass)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_01a02373-a45d-7d6f-b9ac-4be64bb3dde3"
    },
    {
      "id": "chg_01a013f1-b7be-7628-ad87-f3ec4e5be69c",
      "kind": "check.unverifiable",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_clean",
      "to_code": "supplychain.malware_inconclusive",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "vendor_no_verdict"
      },
      "occurred_on": "2026-08-18",
      "occurred_at": "2026-08-18 08:16:43.18382+00",
      "observed_since": "2026-08-17",
      "source": "scan",
      "summary": "Malware scan (pass → unverified)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_01a013f1-b7be-7628-ad87-f3ec4e5be69c"
    },
    {
      "id": "chg_01a00edc-b98d-77e1-899f-92de09047440",
      "kind": "check.reverified",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_inconclusive",
      "to_code": "supplychain.malware_clean",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-17",
      "occurred_at": "2026-08-17 08:35:41.473132+00",
      "observed_since": "2026-08-16",
      "source": "scan",
      "summary": "Malware scan (unverified → pass)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_01a00edc-b98d-77e1-899f-92de09047440"
    },
    {
      "id": "chg_01a009a5-0077-78db-a7c8-3353312a06a8",
      "kind": "check.unverifiable",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_clean",
      "to_code": "supplychain.malware_inconclusive",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "vendor_no_verdict"
      },
      "occurred_on": "2026-08-16",
      "occurred_at": "2026-08-16 08:16:42.978302+00",
      "observed_since": "2026-08-15",
      "source": "scan",
      "summary": "Malware scan (pass → unverified)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_01a009a5-0077-78db-a7c8-3353312a06a8"
    },
    {
      "id": "chg_01a00491-7a86-7cb6-bef9-25401ac00af3",
      "kind": "check.reverified",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_inconclusive",
      "to_code": "supplychain.malware_clean",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-15",
      "occurred_at": "2026-08-15 08:37:18.056538+00",
      "observed_since": "2026-08-14",
      "source": "scan",
      "summary": "Malware scan (unverified → pass)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_01a00491-7a86-7cb6-bef9-25401ac00af3"
    },
    {
      "id": "chg_019ffa43-e427-7d6f-8968-858dbe61b47b",
      "kind": "check.unverifiable",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_clean",
      "to_code": "supplychain.malware_inconclusive",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "reason": "vendor_no_verdict"
      },
      "occurred_on": "2026-08-13",
      "occurred_at": "2026-08-13 08:36:21.135521+00",
      "observed_since": "2026-08-12",
      "source": "scan",
      "summary": "Malware scan (pass → unverified)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_019ffa43-e427-7d6f-8968-858dbe61b47b"
    },
    {
      "id": "chg_019fd623-4b23-7d06-85b7-91bf9a64e8bc",
      "kind": "check.reason",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.sandbox_failed",
      "to_code": "stability.insufficient_history",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-06",
      "occurred_at": "2026-08-06 08:14:24.89496+00",
      "observed_since": "2026-08-05",
      "source": "scan",
      "summary": "Stability (Stability not yet verified: not enough scan history yet (needs a 30-day window).)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_019fd623-4b23-7d06-85b7-91bf9a64e8bc"
    },
    {
      "id": "chg_019fd10f-d9ce-7c58-bcc5-44a30cd3ab8b",
      "kind": "check.reverified",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_inconclusive",
      "to_code": "supplychain.malware_clean",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-05",
      "occurred_at": "2026-08-05 08:35:04.736641+00",
      "observed_since": "2026-08-04",
      "source": "scan",
      "summary": "Malware scan (unverified → pass)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_019fd10f-d9ce-7c58-bcc5-44a30cd3ab8b"
    },
    {
      "id": "chg_019fcbe2-7d31-7e68-bb2f-315426513241",
      "kind": "check.unverifiable",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_clean",
      "to_code": "supplychain.malware_inconclusive",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-04",
      "occurred_at": "2026-08-04 08:27:25.857626+00",
      "observed_since": "2026-08-03",
      "source": "scan",
      "summary": "Malware scan (pass → unverified)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_019fcbe2-7d31-7e68-bb2f-315426513241"
    },
    {
      "id": "chg_019fc87f-aba0-70e1-aae4-5f2e4050cd37",
      "kind": "check.reverified",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.inconclusive",
      "to_code": "cve.transitive",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "path": "functions-framework > starlette",
        "refs": "[\"CVE-2026-54283\",\"CVE-2026-48710\",\"CVE-2026-54282\",\"CVE-2026-48818\",\"CVE-2026-48817\",\"CVE-2026-48710\",\"CVE-2026-48817\",\"CVE-2026-48818\",\"CVE-2026-54282\",\"CVE-2026-54283\"]",
        "seen": "66",
        "package": "starlette",
        "version": "0.52.1",
        "assessed": "67",
        "resolved": "66",
        "severity": "high",
        "transitive": "1",
        "vulnerable": "[{\"name\":\"starlette\",\"version\":\"0.52.1\",\"depth\":2,\"path\":[\"functions-framework\",\"starlette\"],\"refs\":[\"CVE-2026-54283\",\"CVE-2026-48710\",\"CVE-2026-54282\",\"CVE-2026-48818\",\"CVE-2026-48817\",\"CVE-2026-48710\",\"CVE-2026-48817\",\"CVE-2026-48818\",\"CVE-2026-54282\",\"CVE-2026-54283\"]}]",
        "tree_source": "registry",
        "tree_status": "resolved"
      },
      "occurred_on": "2026-08-03",
      "occurred_at": "2026-08-03 16:40:38.033099+00",
      "observed_since": "2026-08-02",
      "source": "scan",
      "summary": "Known CVEs (unverified → fail)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_019fc87f-aba0-70e1-aae4-5f2e4050cd37"
    },
    {
      "id": "chg_019fc4d0-d10d-7a56-bd04-b95601ff6d74",
      "kind": "check.reverified",
      "family": "build-provenance",
      "subject_kind": "check",
      "subject": "build-provenance",
      "subject_child": "",
      "from_code": "provenance.inconclusive",
      "to_code": "provenance.none",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:30:47.153208+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Provenance (unverified → fail)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_019fc4d0-d10d-7a56-bd04-b95601ff6d74"
    },
    {
      "id": "chg_019fc4d0-d111-7760-ad6d-d1f4b557c7ee",
      "kind": "check.reverified",
      "family": "install-scripts",
      "subject_kind": "check",
      "subject": "install-scripts",
      "subject_child": "",
      "from_code": "installscript.inconclusive",
      "to_code": "installscript.allowlisted",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "hook": "build_backend",
        "tier": "allowlisted",
        "tool": "setuptools.build_meta",
        "hooks": "build_backend"
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:30:47.153208+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Install scripts (unverified → pass)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_019fc4d0-d111-7760-ad6d-d1f4b557c7ee"
    },
    {
      "id": "chg_019fc4d0-d112-749b-8405-0e12a76f4bd5",
      "kind": "installscript.hooks_changed",
      "family": "install-scripts",
      "subject_kind": "package",
      "subject": "hooks",
      "subject_child": "",
      "from_code": "installscript.inconclusive",
      "to_code": "installscript.allowlisted",
      "from_value": null,
      "to_value": "build_backend",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {
        "to": "build_backend",
        "from": ""
      },
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 23:30:47.153208+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "The scripts that run when this package is installed changed (build_backend)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_019fc4d0-d112-749b-8405-0e12a76f4bd5"
    },
    {
      "id": "chg_019fc383-cffc-765f-8107-7717b9fadf37",
      "kind": "check.reverified",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_inconclusive",
      "to_code": "supplychain.malware_clean",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 17:27:03.403335+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Malware scan (unverified → pass)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_019fc383-cffc-765f-8107-7717b9fadf37"
    },
    {
      "id": "chg_019fc383-cffd-72cc-8948-55239021b7c5",
      "kind": "check.reason",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.sandbox_failed",
      "to_code": "stability.sandbox_pending",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-02",
      "occurred_at": "2026-08-02 17:27:03.403335+00",
      "observed_since": "2026-08-01",
      "source": "scan",
      "summary": "Stability (Stability not yet verified: we do not have a sandbox capture of the MCP schema this version of the package serves yet.)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_019fc383-cffd-72cc-8948-55239021b7c5"
    },
    {
      "id": "chg_019fb59d-8c2c-77a7-9308-80668f8df569",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-54282",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-54282",
        "severity": "high"
      },
      "occurred_on": "2026-07-31",
      "occurred_at": "2026-07-31 00:40:28.956959+00",
      "observed_since": "2026-07-29",
      "source": "scan",
      "summary": "CVE-2026-54282 affects this package (high)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_019fb59d-8c2c-77a7-9308-80668f8df569"
    },
    {
      "id": "chg_019fb59d-8c2d-7a54-adc4-fbd91dc4d02d",
      "kind": "check.unverifiable",
      "family": "supplychain-malware",
      "subject_kind": "check",
      "subject": "supplychain-malware",
      "subject_child": "",
      "from_code": "supplychain.malware_clean",
      "to_code": "supplychain.malware_inconclusive",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-07-31",
      "occurred_at": "2026-07-31 00:40:28.956959+00",
      "observed_since": "2026-07-29",
      "source": "scan",
      "summary": "Malware scan (pass → unverified)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_019fb59d-8c2d-7a54-adc4-fbd91dc4d02d"
    },
    {
      "id": "chg_019fb59d-8c2e-77d0-a030-c8d61c0377cc",
      "kind": "check.reverified",
      "family": "build-provenance",
      "subject_kind": "check",
      "subject": "build-provenance",
      "subject_child": "",
      "from_code": "provenance.inconclusive",
      "to_code": "provenance.none",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-07-31",
      "occurred_at": "2026-07-31 00:40:28.956959+00",
      "observed_since": "2026-07-29",
      "source": "scan",
      "summary": "Provenance (unverified → fail)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_019fb59d-8c2e-77d0-a030-c8d61c0377cc"
    },
    {
      "id": "chg_019fb59d-8c2f-7043-a513-93efde728674",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-48818",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-48818",
        "severity": "high"
      },
      "occurred_on": "2026-07-31",
      "occurred_at": "2026-07-31 00:40:28.956959+00",
      "observed_since": "2026-07-29",
      "source": "scan",
      "summary": "CVE-2026-48818 affects this package (high)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_019fb59d-8c2f-7043-a513-93efde728674"
    },
    {
      "id": "chg_019fb59d-8c2f-77e8-9e69-833976f1ae34",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-54283",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-54283",
        "severity": "high"
      },
      "occurred_on": "2026-07-31",
      "occurred_at": "2026-07-31 00:40:28.956959+00",
      "observed_since": "2026-07-29",
      "source": "scan",
      "summary": "CVE-2026-54283 affects this package (high)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_019fb59d-8c2f-77e8-9e69-833976f1ae34"
    },
    {
      "id": "chg_019fb59d-8c2f-7cef-9d03-be182e20a8c2",
      "kind": "check.reverified",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.inconclusive",
      "to_code": "cve.transitive",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "path": "functions-framework > starlette",
        "refs": "[\"CVE-2026-54283\",\"CVE-2026-48710\",\"CVE-2026-54282\",\"CVE-2026-48818\",\"CVE-2026-48817\",\"CVE-2026-48710\",\"CVE-2026-48817\",\"CVE-2026-48818\",\"CVE-2026-54282\",\"CVE-2026-54283\"]",
        "seen": "66",
        "package": "starlette",
        "version": "0.52.1",
        "assessed": "67",
        "resolved": "66",
        "severity": "high",
        "transitive": "1",
        "vulnerable": "[{\"name\":\"starlette\",\"version\":\"0.52.1\",\"depth\":2,\"path\":[\"functions-framework\",\"starlette\"],\"refs\":[\"CVE-2026-54283\",\"CVE-2026-48710\",\"CVE-2026-54282\",\"CVE-2026-48818\",\"CVE-2026-48817\",\"CVE-2026-48710\",\"CVE-2026-48817\",\"CVE-2026-48818\",\"CVE-2026-54282\",\"CVE-2026-54283\"]}]",
        "tree_source": "registry",
        "tree_status": "resolved"
      },
      "occurred_on": "2026-07-31",
      "occurred_at": "2026-07-31 00:40:28.956959+00",
      "observed_since": "2026-07-29",
      "source": "scan",
      "summary": "Known CVEs (unverified → fail)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_019fb59d-8c2f-7cef-9d03-be182e20a8c2"
    },
    {
      "id": "chg_019fb59d-8c30-76ca-9165-853498e42a28",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-48710",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-48710",
        "severity": "high"
      },
      "occurred_on": "2026-07-31",
      "occurred_at": "2026-07-31 00:40:28.956959+00",
      "observed_since": "2026-07-29",
      "source": "scan",
      "summary": "CVE-2026-48710 affects this package (high)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_019fb59d-8c30-76ca-9165-853498e42a28"
    },
    {
      "id": "chg_019fb59d-8c31-715e-ac70-a0d6c9f81bc6",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-48817",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.transitive",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-48817",
        "severity": "high"
      },
      "occurred_on": "2026-07-31",
      "occurred_at": "2026-07-31 00:40:28.956959+00",
      "observed_since": "2026-07-29",
      "source": "scan",
      "summary": "CVE-2026-48817 affects this package (high)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_019fb59d-8c31-715e-ac70-a0d6c9f81bc6"
    },
    {
      "id": "chg_019fb59d-8c31-7856-a9c7-015ea6ec7ab0",
      "kind": "check.reverified",
      "family": "install-scripts",
      "subject_kind": "check",
      "subject": "install-scripts",
      "subject_child": "",
      "from_code": "installscript.inconclusive",
      "to_code": "installscript.allowlisted",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "hook": "build_backend",
        "tier": "allowlisted",
        "tool": "setuptools.build_meta",
        "hooks": "build_backend"
      },
      "occurred_on": "2026-07-31",
      "occurred_at": "2026-07-31 00:40:28.956959+00",
      "observed_since": "2026-07-29",
      "source": "scan",
      "summary": "Install scripts (unverified → pass)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_019fb59d-8c31-7856-a9c7-015ea6ec7ab0"
    },
    {
      "id": "chg_019fb59d-8c32-71bc-b5db-6d18764f6b5a",
      "kind": "installscript.hooks_changed",
      "family": "install-scripts",
      "subject_kind": "package",
      "subject": "hooks",
      "subject_child": "",
      "from_code": "installscript.inconclusive",
      "to_code": "installscript.allowlisted",
      "from_value": null,
      "to_value": "build_backend",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {
        "to": "build_backend",
        "from": ""
      },
      "occurred_on": "2026-07-31",
      "occurred_at": "2026-07-31 00:40:28.956959+00",
      "observed_since": "2026-07-29",
      "source": "scan",
      "summary": "The scripts that run when this package is installed changed (build_backend)",
      "link": "https://verifymcp.io/servers/wolfe-jam-gemini-faf-mcp/gemini-faf-mcp#chg-chg_019fb59d-8c32-71bc-b5db-6d18764f6b5a"
    }
  ],
  "days": [
    {
      "date": "2026-09-19",
      "total": 76,
      "delta": -3,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-18",
      "total": 79,
      "delta": 1,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-16",
      "total": 78,
      "delta": 1,
      "tracked": true,
      "explained": false,
      "beyond_event_horizon": false,
      "attribution": {
        "category": "Stability & Change Management",
        "from": 90,
        "to": 93,
        "delta": 3,
        "others": [],
        "accrual": {
          "code": "stability.building_history",
          "from_days": 27,
          "to_days": 28
        },
        "partial": false,
        "compared_to": "2026-09-15",
        "summary": "No change was recorded against any check on this day. Stability & Change Management went from 90 to 93. That category is still filling its 30-day observation window: 27 days of observed history at the previous scan, 28 at this one. The score rises as the window fills, whether or not the server changes."
      },
      "event_count": 0
    },
    {
      "date": "2026-09-15",
      "total": 77,
      "delta": 15,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-14",
      "total": 62,
      "delta": -14,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-12",
      "total": 76,
      "delta": -3,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-11",
      "total": 79,
      "delta": 1,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-09",
      "total": 78,
      "delta": 1,
      "tracked": true,
      "explained": false,
      "beyond_event_horizon": false,
      "attribution": {
        "category": "Stability & Change Management",
        "from": 90,
        "to": 93,
        "delta": 3,
        "others": [],
        "accrual": {
          "code": "stability.building_history",
          "from_days": 27,
          "to_days": 28
        },
        "partial": false,
        "compared_to": "2026-09-08",
        "summary": "No change was recorded against any check on this day. Stability & Change Management went from 90 to 93. That category is still filling its 30-day observation window: 27 days of observed history at the previous scan, 28 at this one. The score rises as the window fills, whether or not the server changes."
      },
      "event_count": 0
    }
  ]
}