Every number on this page is fetched live from the API when you load it. Nothing here is a screenshot, and nothing is written down in advance.
None of this is a vulnerability report. A CVE feed, a scanner and a bill-of-materials entry would all be unchanged by it. They describe what is in the product. These questions ask whether the repository will keep up its commit pace and publish a release.
Read the two question rows together. Commit pace and release pace are answered separately, and the gap between them tells you the most.
A single health score cannot say that a project commits rarely and ships every week. Two dated questions can.
Which card is the quiet-but-shipping case and which is the busy-but-rarely-shipping one depends on the numbers on the day you load the page. The packages can swap places.
The card above is fetched once and read three ways, one for each kind of team we think might use it.
Tell us which one you are, or that none of them is: anteproof.com/support.
Every forecast is sealed with a public timestamp before the outcome and carries a receipt hash; the log's head is anchored daily to github.com/anteproof/log. The scored record is public, misses included.
The maintenance forecasts have no track record yet. Every past question was resolved against a
third-party archive of GitHub events that we no longer trust, so we withhold the count and the score. The response
you just fetched says so itself, in calibration_note.withheld. The current state of every
family is on the calibration page and in
/v1/proof.
These are tracked and do not carry a forecast yet. The API resolves each one and returns a plain note saying what is missing.
This list is a live query against a fixed set of well-known packages, run when you loaded the page. When it is empty it is not here at all.