{"id":5841005,"name":"github.com/hyperledger/cactus","ecosystem":"go","description":"","homepage":"https://github.com/hyperledger/cactus","licenses":"Apache-2.0","normalized_licenses":["Apache-2.0"],"repository_url":"https://github.com/hyperledger/cactus","keywords_array":[],"namespace":"github.com/hyperledger","versions_count":41,"first_release_published_at":"2019-11-14T03:02:00.000Z","latest_release_published_at":"2025-11-17T07:21:13.593Z","latest_release_number":"v2.2.0+incompatible","last_synced_at":"2026-07-28T16:01:05.979Z","created_at":"2023-01-10T00:37:15.405Z","updated_at":"2026-09-23T00:35:01.224Z","registry_url":"https://pkg.go.dev/github.com/hyperledger/cactus","install_command":"go get github.com/hyperledger/cactus","documentation_url":"https://pkg.go.dev/github.com/hyperledger/cactus#section-documentation","metadata":{},"repo_metadata":{"id":36952214,"uuid":"216610150","full_name":"hyperledger-cacti/cacti","owner":"hyperledger-cacti","description":"Hyperledger Cacti is a new approach to the blockchain interoperability problem","archived":false,"fork":false,"pushed_at":"2026-09-17T08:21:10.000Z","size":264578,"stargazers_count":416,"open_issues_count":90,"forks_count":363,"subscribers_count":15,"default_branch":"main","last_synced_at":"2026-09-19T01:45:02.050Z","etag":null,"topics":["blockchain","hacktoberfest"],"latest_commit_sha":null,"homepage":"https://hyperledger-cacti.github.io/cacti/","language":"TypeScript","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"apache-2.0","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/hyperledger-cacti.png","metadata":{"files":{"readme":"README-cactus.md","changelog":"CHANGELOG.md","contributing":"CONTRIBUTING.md","funding":null,"license":"LICENSE","code_of_conduct":"CODE_OF_CONDUCT.md","threat_model":null,"audit":null,"citation":null,"codeowners":"CODEOWNERS","security":"SECURITY.md","support":null,"governance":"GOVERNANCE.md","roadmap":"ROADMAP.md","authors":null,"dei":null,"publiccode":null,"codemeta":null,"zenodo":null,"notice":null,"maintainers":"MAINTAINERS.md","copyright":null,"agents":"AGENTS.md","claude":null,"gemini":null,"cursor":null,"copilot":".github/copilot-instructions.md","dco":null,"cla":null,"disclosure":null}},"created_at":"2019-10-21T16:06:38.000Z","updated_at":"2026-09-18T20:27:11.000Z","dependencies_parsed_at":"2026-09-18T03:50:19.884Z","dependency_job_id":null,"html_url":"https://github.com/hyperledger-cacti/cacti","commit_stats":{"total_commits":3593,"total_committers":122,"mean_commits":"29.450819672131146","dds":0.7564709156693571,"last_synced_commit":"d2fac8a7fecd2fcd63c88b6a5a71146a590a6464"},"previous_names":["hyperledger/cactus","hyperledger/cacti"],"tags_count":149,"template":false,"template_full_name":null,"purl":"pkg:github/hyperledger-cacti/cacti","repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/hyperledger-cacti%2Fcacti","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/hyperledger-cacti%2Fcacti/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/hyperledger-cacti%2Fcacti/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/hyperledger-cacti%2Fcacti/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/hyperledger-cacti","download_url":"https://codeload.github.com/hyperledger-cacti/cacti/tar.gz/refs/heads/main","sbom_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/hyperledger-cacti%2Fcacti/sbom","scorecard":{"id":475398,"data":{"date":"2025-08-16T03:03:21Z","repo":{"name":"github.com/hyperledger-cacti/cacti","commit":"85b9b62a7d82f37f0a7e6374ab2f29a57aeae996"},"scorecard":{"version":"v4.13.1","commit":"49c0eed3a423f00c872b5c3c9f1bbca9e8aae799"},"score":6.2,"checks":[{"name":"Binary-Artifacts","score":0,"reason":"binaries present in source code","details":["Warn: binary detected: packages/cacti-copm-core/src/main/protos-kt/gradle/wrapper/gradle-wrapper.jar:1","Warn: binary detected: packages/cactus-plugin-keychain-memory-wasm/src/main/typescript/generated/wasm-pack/cactus_plugin_keychain_memory_wasm_bg.wasm:1","Warn: binary detected: packages/cactus-plugin-ledger-connector-corda/src/main-server/kotlin/gen/kotlin-spring/gradle/wrapper/gradle-wrapper.jar:1","Warn: binary detected: weaver/common/protos-java-kt/gradle/wrapper/gradle-wrapper.jar:1","Warn: binary detected: weaver/core/drivers/corda-driver/gradle/wrapper/gradle-wrapper.jar:1","Warn: binary detected: weaver/core/network/corda-interop-app/gradle/wrapper/gradle-wrapper.jar:1","Warn: binary detected: weaver/samples/corda/corda-simple-application/gradle/wrapper/gradle-wrapper.jar:1","Warn: binary detected: weaver/sdks/corda/gradle/wrapper/gradle-wrapper.jar:1","Warn: binary detected: weaver/tests/network-setups/corda/gradle/wrapper/gradle-wrapper.jar:1","Warn: binary detected: weaver/tests/network-setups/corda/shared/Corda_Network/libs/Corda_Network-0.1.jar:1","Warn: binary detected: weaver/tests/network-setups/corda/shared/Corda_Network2/libs/Corda_Network2-0.1.jar:1"],"documentation":{"short":"Determines if the project has generated executable (binary) artifacts in the source repository.","url":"https://github.com/ossf/scorecard/blob/49c0eed3a423f00c872b5c3c9f1bbca9e8aae799/docs/checks.md#binary-artifacts"}},{"name":"Branch-Protection","score":4,"reason":"branch protection is not maximal on development and all release branches","details":["Info: 'force pushes' disabled on branch 'main'","Info: 'allow deletion' disabled on branch 'main'","Warn: status checks do not require up-to-date branches for 'main'","Info: status check found to merge onto on branch 'main'","Info: number of required reviewers is 2 on branch 'main'","Info: settings apply to administrators on branch 'main'","Warn: codeowner review is not required on branch 'main'"],"documentation":{"short":"Determines if the default and release branches are protected with GitHub's branch protection settings.","url":"https://github.com/ossf/scorecard/blob/49c0eed3a423f00c872b5c3c9f1bbca9e8aae799/docs/checks.md#branch-protection"}},{"name":"CI-Tests","score":10,"reason":"26 out of 26 merged PRs checked by a CI test -- score normalized to 10","details":null,"documentation":{"short":"Determines if the project runs tests before pull requests are merged.","url":"https://github.com/ossf/scorecard/blob/49c0eed3a423f00c872b5c3c9f1bbca9e8aae799/docs/checks.md#ci-tests"}},{"name":"CII-Best-Practices","score":0,"reason":"no effort to earn an OpenSSF best practices badge detected","details":null,"documentation":{"short":"Determines if the project has an OpenSSF (formerly CII) Best Practices Badge.","url":"https://github.com/ossf/scorecard/blob/49c0eed3a423f00c872b5c3c9f1bbca9e8aae799/docs/checks.md#cii-best-practices"}},{"name":"Code-Review","score":10,"reason":"all changesets reviewed","details":null,"documentation":{"short":"Determines if the project requires human code review before pull requests (aka merge requests) are merged.","url":"https://github.com/ossf/scorecard/blob/49c0eed3a423f00c872b5c3c9f1bbca9e8aae799/docs/checks.md#code-review"}},{"name":"Contributors","score":10,"reason":"22 different organizations found -- score normalized to 10","details":["Info: contributors work for FujitsuLaboratories,IBM,ItsForkIT,LF-Decentralized-Trust,NITDgpOS,PQCA,QualiChain,accenture,capitalone,fujitsu,fujitsu limited,hyperledger-labs,hyperledger-labs @accenture,ibm,ibm research,ionata,linuxfoundation,lugnitdgp,mruby-zest,nipy,openwallet-foundation,zynaddsubfx"],"documentation":{"short":"Determines if the project has a set of contributors from multiple organizations (e.g., companies).","url":"https://github.com/ossf/scorecard/blob/49c0eed3a423f00c872b5c3c9f1bbca9e8aae799/docs/checks.md#contributors"}},{"name":"Dangerous-Workflow","score":10,"reason":"no dangerous workflow patterns detected","details":null,"documentation":{"short":"Determines if the project's GitHub Action workflows avoid dangerous patterns.","url":"https://github.com/ossf/scorecard/blob/49c0eed3a423f00c872b5c3c9f1bbca9e8aae799/docs/checks.md#dangerous-workflow"}},{"name":"Dependency-Update-Tool","score":10,"reason":"update tool detected","details":["Info: tool 'Dependabot' is used: :0"],"documentation":{"short":"Determines if the project uses a dependency update tool.","url":"https://github.com/ossf/scorecard/blob/49c0eed3a423f00c872b5c3c9f1bbca9e8aae799/docs/checks.md#dependency-update-tool"}},{"name":"Fuzzing","score":0,"reason":"project is not fuzzed","details":["Warn: no OSSFuzz integration found: Follow the steps in https://github.com/google/oss-fuzz to integrate fuzzing for your project.\nOver time, try to add fuzzing for more functionalities of your project. (High effort)","Warn: no OneFuzz integration found: Follow the steps in https://github.com/microsoft/onefuzz to start fuzzing for your project.\nOver time, try to add fuzzing for more functionalities of your project. (High effort)","Warn: no GoBuiltInFuzzer integration found: Follow the steps in https://go.dev/doc/fuzz/ to enable fuzzing on your project.\nOver time, try to add fuzzing for more functionalities of your project. (Medium effort)","Warn: no PythonAtherisFuzzer integration found: Follow the steps in https://github.com/google/atheris to enable fuzzing on your project.\nOver time, try to add fuzzing for more functionalities of your project. (Medium effort)","Warn: no CLibFuzzer integration found: Follow the steps in https://llvm.org/docs/LibFuzzer.html to enable fuzzing on your project.\nOver time, try to add fuzzing for more functionalities of your project. (Medium effort)","Warn: no CppLibFuzzer integration found: Follow the steps in https://llvm.org/docs/LibFuzzer.html to enable fuzzing on your project.\nOver time, try to add fuzzing for more functionalities of your project. (Medium effort)","Warn: no SwiftLibFuzzer integration found: Follow the steps in https://google.github.io/oss-fuzz/getting-started/new-project-guide/swift-lang/ to enable fuzzing on your project.\nOver time, try to add fuzzing for more functionalities of your project. (Medium effort)","Warn: no RustCargoFuzzer integration found: Follow the steps in https://rust-fuzz.github.io/book/cargo-fuzz.html to enable fuzzing on your project.\nOver time, try to add fuzzing for more functionalities of your project. (Medium effort)","Warn: no JavaJazzerFuzzer integration found: Follow the steps in https://github.com/CodeIntelligenceTesting/jazzer to enable fuzzing on your project.\nOver time, try to add fuzzing for more functionalities of your project. (Medium effort)","Warn: no ClusterFuzzLite integration found: Follow the steps in https://github.com/google/clusterfuzzlite to integrate fuzzing as part of CI.\nOver time, try to add fuzzing for more functionalities of your project. (High effort)","Warn: no HaskellPropertyBasedTesting integration found: Use one of the following frameworks to fuzz your project:\nQuickCheck: https://hackage.haskell.org/package/QuickCheck\nhedgehog: https://hedgehog.qa/\nvalidity: https://github.com/NorfairKing/validity\nsmallcheck: https://hackage.haskell.org/package/smallcheck\nhspec: https://hspec.github.io/\ntasty: https://hackage.haskell.org/package/tasty (High effort)","Warn: no TypeScriptPropertyBasedTesting integration found: Use fast-check: https://github.com/dubzzz/fast-check (High effort)","Warn: no JavaScriptPropertyBasedTesting integration found: Use fast-check: https://github.com/dubzzz/fast-check (High effort)"],"documentation":{"short":"Determines if the project uses fuzzing.","url":"https://github.com/ossf/scorecard/blob/49c0eed3a423f00c872b5c3c9f1bbca9e8aae799/docs/checks.md#fuzzing"}},{"name":"License","score":10,"reason":"license file detected","details":["Info: License file found in expected location: LICENSE:1","Info: FSF or OSI recognized license: LICENSE:1"],"documentation":{"short":"Determines if the project has defined a license.","url":"https://github.com/ossf/scorecard/blob/49c0eed3a423f00c872b5c3c9f1bbca9e8aae799/docs/checks.md#license"}},{"name":"Maintained","score":10,"reason":"19 commit(s) out of 30 and 0 issue activity out of 30 found in the last 90 days -- score normalized to 10","details":null,"documentation":{"short":"Determines if the project is \"actively maintained\".","url":"https://github.com/ossf/scorecard/blob/49c0eed3a423f00c872b5c3c9f1bbca9e8aae799/docs/checks.md#maintained"}},{"name":"Packaging","score":10,"reason":"publishing workflow detected","details":["Info: GitHub/GitLab publishing workflow used in run https://api.github.com/repos/hyperledger-cacti/cacti/actions/runs/12124561712: .github/workflows/besu-all-in-one-publish.yaml:19"],"documentation":{"short":"Determines if the project is published as a package that others can easily download, install, easily update, and uninstall.","url":"https://github.com/ossf/scorecard/blob/49c0eed3a423f00c872b5c3c9f1bbca9e8aae799/docs/checks.md#packaging"}},{"name":"Pinned-Dependencies","score":5,"reason":"dependency not pinned by hash detected -- score normalized to 5","details":["Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/test_weaver-node-pkgs.yaml:145: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/test_weaver-node-pkgs.yaml/main?enable=pin","Warn: containerImage not pinned by hash: examples/cactus-common-example-server/Dockerfile:1: pin your Docker image by updating node:16 to node:16@sha256:f77a1aef2da8d83e45ec990f45df50f1a286c5fe8bbfb8c6e4246c6389705c0b","Warn: containerImage not pinned by hash: examples/cactus-example-carbon-accounting-backend/src/utility-emissions-channel/typescript/Dockerfile:1","Warn: containerImage not pinned by hash: examples/cactus-example-carbon-accounting-backend/src/utility-emissions-channel/typescript/Dockerfile:11: pin your Docker image by updating node:12.13.0-alpine to node:12.13.0-alpine@sha256:ae1822c17b0087cb1eea794e5a293d56cc1fe01f01ef5494d0687c1ef9584239","Warn: containerImage not pinned by hash: examples/cactus-example-cbdc-bridging-backend/Dockerfile:1: pin your Docker image by updating cruizba/ubuntu-dind:19.03.11 to cruizba/ubuntu-dind:19.03.11@sha256:48cd7dfebe65821b9aaae2e2e58168804f8b8e178801b66a0be8eef2a0bcbe48","Warn: containerImage not pinned by hash: examples/cactus-example-cbdc-bridging-frontend/Dockerfile:3: pin your Docker image by updating node:16-alpine to node:16-alpine@sha256:a1f9d027912b58a7c75be7716c97cfbc6d3099f3a97ed84aa490be9dee20e787","Warn: containerImage not pinned by hash: examples/cactus-example-discounted-asset-trade/Dockerfile:1","Warn: containerImage not pinned by hash: examples/cactus-example-electricity-trade/Dockerfile:1","Warn: containerImage not pinned by hash: examples/cactus-example-supply-chain-backend/Dockerfile:1","Warn: containerImage not pinned by hash: examples/carbon-accounting/Dockerfile:1","Warn: containerImage not pinned by hash: packages/cactus-cmd-api-server/cmd-api-server.Dockerfile:1: pin your Docker image by updating node:22.4.0-bookworm-slim to node:22.4.0-bookworm-slim@sha256:ee76feb064dbe3579085bc2517cb54ecf64b083db8f6f80341cfe4a4770d1415","Warn: containerImage not pinned by hash: packages/cactus-plugin-keychain-vault/src/cactus-keychain-vault-server/Dockerfile:1","Warn: containerImage not pinned by hash: packages/cactus-plugin-keychain-vault/src/cactus-keychain-vault-server/Dockerfile:13: pin your Docker image by updating ubuntu:24.04 to ubuntu:24.04@sha256:7c06e91f61fa88c08cc74f7e1b7c69ae24910d745357e0dfe1d2c0322aaf20f9","Warn: containerImage not pinned by hash: packages/cactus-plugin-ledger-connector-corda/src/main-server/Dockerfile:1","Warn: containerImage not pinned by hash: packages/cactus-plugin-ledger-connector-corda/src/main-server/Dockerfile:11: pin your Docker image by updating openjdk:24-slim-bookworm to openjdk:24-slim-bookworm@sha256:df6c3a966c372fa314ec0dc428bf27f8aa28316a173d3d6e99035343dee7fc2c","Warn: containerImage not pinned by hash: packages/cactus-plugin-ledger-connector-fabric/cli.Dockerfile:2","Warn: containerImage not pinned by hash: packages/cactus-plugin-persistence-ethereum/Dockerfile:1: pin your Docker image by updating node:16 to node:16@sha256:f77a1aef2da8d83e45ec990f45df50f1a286c5fe8bbfb8c6e4246c6389705c0b","Warn: containerImage not pinned by hash: packages/cactus-plugin-persistence-fabric/Dockerfile:1: pin your Docker image by updating node:16 to node:16@sha256:f77a1aef2da8d83e45ec990f45df50f1a286c5fe8bbfb8c6e4246c6389705c0b","Warn: containerImage not pinned by hash: tools/docker/besu-all-in-one/Dockerfile:1: pin your Docker image by updating hyperledger/besu:25.4.0 to hyperledger/besu:25.4.0@sha256:f18ee51c5f343c3e2755274238e55668b2b78bc6cba90c1a613f811c296c83bc","Warn: containerImage not pinned by hash: tools/docker/besu-multi-party-all-in-one/Dockerfile:6","Warn: containerImage not pinned by hash: tools/docker/besu-multi-party-all-in-one/Dockerfile:20: pin your Docker image by updating docker:24.0.5-dind to docker:24.0.5-dind@sha256:3c6e4dca7a63c9a32a4e00da40461ce067f255987ccc9721cf18ffa087bcd1ef","Warn: containerImage not pinned by hash: tools/docker/corda-all-in-one/corda-v4_12/Dockerfile:1","Warn: containerImage not pinned by hash: tools/docker/corda-all-in-one/corda-v4_12/Dockerfile:17: pin your Docker image by updating ubuntu:22.04 to ubuntu:22.04@sha256:1aa979d85661c488ce030ac292876cf6ed04535d3a237e49f61542d8e5de5ae0","Warn: containerImage not pinned by hash: tools/docker/corda-all-in-one/corda-v4_8-flowdb/Dockerfile:1: pin your Docker image by updating docker:24.0.2-dind to docker:24.0.2-dind@sha256:1d148deae16a6bb4c89224c636e1fd1799a4d5925f545861ce0d7bea3a527b5d","Warn: containerImage not pinned by hash: tools/docker/corda-all-in-one/corda-v5/Dockerfile:1: pin your Docker image by updating docker:20.10.3-dind to docker:20.10.3-dind@sha256:43df6c4dbc32ccb306412fcce5b1443310cf9d91507409d7258cea1c9ee731f4","Warn: containerImage not pinned by hash: tools/docker/daml-all-in-one/Dockerfile:1: pin your Docker image by updating ubuntu:22.04 to ubuntu:22.04@sha256:1aa979d85661c488ce030ac292876cf6ed04535d3a237e49f61542d8e5de5ae0","Warn: containerImage not pinned by hash: tools/docker/fabric-all-in-one/Dockerfile_v1.4.x:3: pin your Docker image by updating docker:24.0.5-dind to docker:24.0.5-dind@sha256:3c6e4dca7a63c9a32a4e00da40461ce067f255987ccc9721cf18ffa087bcd1ef","Warn: containerImage not pinned by hash: tools/docker/fabric-all-in-one/Dockerfile_v2.x:1: pin your Docker image by updating docker:24.0.5-dind to docker:24.0.5-dind@sha256:3c6e4dca7a63c9a32a4e00da40461ce067f255987ccc9721cf18ffa087bcd1ef","Warn: containerImage not pinned by hash: tools/docker/geth-all-in-one/Dockerfile:1: pin your Docker image by updating ethereum/client-go:v1.12.0 to ethereum/client-go:v1.12.0@sha256:c601019e4426e1320d59631c0d55005c64da641455da97a0b79f89b617707685","Warn: containerImage not pinned by hash: tools/docker/indy-all-in-one/Dockerfile:6: pin your Docker image by updating ghcr.io/hyperledger/indy-node-container/indy_node:1.12.6-ubuntu18-main to ghcr.io/hyperledger/indy-node-container/indy_node:1.12.6-ubuntu18-main@sha256:937f3bd564b89a99ae71b45c0e00fa0d8826368698d329fea1d0484ea4c711c9","Warn: containerImage not pinned by hash: tools/docker/iroha2-all-in-one/Dockerfile:5","Warn: containerImage not pinned by hash: tools/docker/iroha2-all-in-one/Dockerfile:22: pin your Docker image by updating docker:24.0.5-dind to docker:24.0.5-dind@sha256:3c6e4dca7a63c9a32a4e00da40461ce067f255987ccc9721cf18ffa087bcd1ef","Warn: containerImage not pinned by hash: tools/docker/sawtooth-all-in-one/Dockerfile:1: pin your Docker image by updating docker:24.0.5-dind to docker:24.0.5-dind@sha256:3c6e4dca7a63c9a32a4e00da40461ce067f255987ccc9721cf18ffa087bcd1ef","Warn: containerImage not pinned by hash: tools/docker/substrate-all-in-one/Dockerfile:1","Warn: containerImage not pinned by hash: tools/docker/substrate-all-in-one/Dockerfile:6: pin your Docker image by updating ubuntu:20.04 to ubuntu:20.04@sha256:8feb4d8ca5354def3d8fce243717141ce31e2c428701f6682bd2fafe15388214","Warn: containerImage not pinned by hash: tools/docker/supabase-all-in-one/Dockerfile:12","Warn: containerImage not pinned by hash: tools/docker/supabase-all-in-one/Dockerfile:35: pin your Docker image by updating docker:25.0.5-dind to docker:25.0.5-dind@sha256:b41d0183012e2334aacd4e0b8e339b89246c4fdb7eada6cc86b0355f41328549","Warn: containerImage not pinned by hash: weaver/core/drivers/corda-driver/Dockerfile.local:2","Warn: containerImage not pinned by hash: weaver/core/drivers/corda-driver/Dockerfile.local:7","Warn: containerImage not pinned by hash: weaver/core/drivers/corda-driver/Dockerfile.local:10: pin your Docker image by updating eclipse-temurin:17-jre-noble to eclipse-temurin:17-jre-noble@sha256:976e571792564542057a59a2ad18254a4e8ec4adabb70762d74f3bceeb106dc5","Warn: containerImage not pinned by hash: weaver/core/drivers/corda-driver/Dockerfile.remote:2","Warn: containerImage not pinned by hash: weaver/core/drivers/corda-driver/Dockerfile.remote:17","Warn: containerImage not pinned by hash: weaver/core/drivers/corda-driver/Dockerfile.remote:20: pin your Docker image by updating eclipse-temurin:17-jre-noble to eclipse-temurin:17-jre-noble@sha256:976e571792564542057a59a2ad18254a4e8ec4adabb70762d74f3bceeb106dc5","Warn: containerImage not pinned by hash: weaver/core/drivers/fabric-driver/fabricDriver.dockerfile:11","Warn: containerImage not pinned by hash: weaver/core/drivers/fabric-driver/fabricDriver.dockerfile:25","Warn: containerImage not pinned by hash: weaver/core/drivers/fabric-driver/fabricDriver.dockerfile:30","Warn: containerImage not pinned by hash: weaver/core/drivers/fabric-driver/fabricDriver.dockerfile.local:4","Warn: containerImage not pinned by hash: weaver/core/drivers/fabric-driver/fabricDriver.dockerfile.local:20","Warn: containerImage not pinned by hash: weaver/core/drivers/fabric-driver/fabricDriver.dockerfile.local:25","Warn: containerImage not pinned by hash: weaver/core/identity-management/iin-agent/iinagent.Dockerfile:11","Warn: containerImage not pinned by hash: weaver/core/identity-management/iin-agent/iinagent.Dockerfile:24","Warn: containerImage not pinned by hash: weaver/core/identity-management/iin-agent/iinagent.Dockerfile:29","Warn: containerImage not pinned by hash: weaver/core/identity-management/iin-agent/iinagent.local.Dockerfile:4","Warn: containerImage not pinned by hash: weaver/core/identity-management/iin-agent/iinagent.local.Dockerfile:18","Warn: containerImage not pinned by hash: weaver/core/identity-management/iin-agent/iinagent.local.Dockerfile:23","Warn: containerImage not pinned by hash: weaver/core/network/fabric-interop-cc/Dockerfile:1","Warn: containerImage not pinned by hash: weaver/core/network/fabric-interop-cc/Dockerfile:12","Warn: containerImage not pinned by hash: weaver/core/relay/Dockerfile:1","Warn: containerImage not pinned by hash: weaver/core/relay/Dockerfile:47","Warn: containerImage not pinned by hash: weaver/core/relay/Dockerfile.client:1","Warn: containerImage not pinned by hash: weaver/core/relay/Dockerfile.client:48","Warn: containerImage not pinned by hash: weaver/core/relay/Dockerfile.driver:1","Warn: containerImage not pinned by hash: weaver/core/relay/Dockerfile.driver:48","Warn: containerImage not pinned by hash: weaver/core/relay/Dockerfile.server:1","Warn: containerImage not pinned by hash: weaver/core/relay/Dockerfile.server:45","Warn: containerImage not pinned by hash: weaver/samples/corda/corda-simple-application/Dockerfile:1","Warn: containerImage not pinned by hash: weaver/samples/corda/corda-simple-application/Dockerfile:8","Warn: containerImage not pinned by hash: weaver/samples/fabric/fabric-cli/Dockerfile:1: pin your Docker image by updating node:10 to node:10@sha256:59531d2835edd5161c8f9512f9e095b1836f7a1fcb0ab73e005ec46047384911","Warn: containerImage not pinned by hash: weaver/samples/fabric/simplestate/Dockerfile:1","Warn: containerImage not pinned by hash: weaver/samples/fabric/simplestate/Dockerfile:11","Warn: containerImage not pinned by hash: weaver/samples/fabric/simplestatewithacl/Dockerfile:1","Warn: containerImage not pinned by hash: weaver/samples/fabric/simplestatewithacl/Dockerfile:11","Warn: containerImage not pinned by hash: weaver/tests/network-setups/indy/docker/Dockerfile:1: pin your Docker image by updating ubuntu:20.04 to ubuntu:20.04@sha256:8feb4d8ca5354def3d8fce243717141ce31e2c428701f6682bd2fafe15388214","Warn: npmCommand not pinned by hash: examples/cactus-example-carbon-accounting-backend/src/utility-emissions-channel/typescript/Dockerfile:3","Warn: npmCommand not pinned by hash: examples/cactus-example-carbon-accounting-backend/src/utility-emissions-channel/typescript/Dockerfile:7","Warn: downloadThenRun not pinned by hash: examples/cactus-example-cbdc-bridging-backend/Dockerfile:35","Warn: npmCommand not pinned by hash: examples/cactus-example-cbdc-bridging-backend/Dockerfile:37-40","Warn: npmCommand not pinned by hash: examples/cactus-example-cbdc-bridging-frontend/Dockerfile:9","Warn: downloadThenRun not pinned by hash: examples/cactus-example-supply-chain-backend/Dockerfile:44","Warn: npmCommand not pinned by hash: examples/cactus-example-supply-chain-backend/Dockerfile:46-66","Warn: downloadThenRun not pinned by hash: examples/carbon-accounting/Dockerfile:36","Warn: npmCommand not pinned by hash: examples/carbon-accounting/Dockerfile:37-42","Warn: downloadThenRun not pinned by hash: packages/cactus-plugin-ledger-connector-fabric/cli.Dockerfile:30","Warn: npmCommand not pinned by hash: packages/cactus-plugin-ledger-connector-fabric/cli.Dockerfile:38","Warn: npmCommand not pinned by hash: tools/docker/besu-multi-party-all-in-one/Dockerfile:12","Warn: downloadThenRun not pinned by hash: tools/docker/fabric-all-in-one/Dockerfile_v1.4.x:75","Warn: downloadThenRun not pinned by hash: tools/docker/fabric-all-in-one/Dockerfile_v1.4.x:142","Warn: downloadThenRun not pinned by hash: tools/docker/fabric-all-in-one/Dockerfile_v1.4.x:143","Warn: downloadThenRun not pinned by hash: tools/docker/fabric-all-in-one/Dockerfile_v1.4.x:144","Warn: downloadThenRun not pinned by hash: tools/docker/fabric-all-in-one/Dockerfile_v1.4.x:145","Warn: downloadThenRun not pinned by hash: tools/docker/fabric-all-in-one/Dockerfile_v1.4.x:146","Warn: downloadThenRun not pinned by hash: tools/docker/fabric-all-in-one/Dockerfile_v2.x:151","Warn: downloadThenRun not pinned by hash: tools/docker/fabric-all-in-one/Dockerfile_v2.x:152","Warn: downloadThenRun not pinned by hash: tools/docker/fabric-all-in-one/Dockerfile_v2.x:153","Warn: downloadThenRun not pinned by hash: tools/docker/fabric-all-in-one/Dockerfile_v2.x:154","Warn: downloadThenRun not pinned by hash: tools/docker/fabric-all-in-one/Dockerfile_v2.x:155","Warn: downloadThenRun not pinned by hash: tools/docker/fabric-all-in-one/Dockerfile_v2.x:156","Warn: downloadThenRun not pinned by hash: tools/docker/fabric-all-in-one/Dockerfile_v2.x:157","Warn: downloadThenRun not pinned by hash: tools/docker/fabric-all-in-one/Dockerfile_v2.x:158","Warn: downloadThenRun not pinned by hash: tools/docker/fabric-all-in-one/Dockerfile_v2.x:159","Warn: downloadThenRun not pinned by hash: tools/docker/fabric-all-in-one/Dockerfile_v2.x:166","Warn: pipCommand not pinned by hash: tools/docker/indy-all-in-one/Dockerfile:7","Warn: npmCommand not pinned by hash: weaver/core/drivers/fabric-driver/fabricDriver.dockerfile:17","Warn: npmCommand not pinned by hash: weaver/core/drivers/fabric-driver/fabricDriver.dockerfile.local:11","Warn: npmCommand not pinned by hash: weaver/core/identity-management/iin-agent/iinagent.Dockerfile:17","Warn: npmCommand not pinned by hash: weaver/core/identity-management/iin-agent/iinagent.local.Dockerfile:11","Warn: npmCommand not pinned by hash: weaver/samples/fabric/fabric-cli/Dockerfile:9","Warn: downloadThenRun not pinned by hash: weaver/tests/network-setups/indy/docker/Dockerfile:14","Warn: pipCommand not pinned by hash: weaver/tests/network-setups/indy/docker/Dockerfile:20","Warn: pipCommand not pinned by hash: weaver/tests/network-setups/indy/docker/Dockerfile:24","Warn: npmCommand not pinned by hash: examples/cactus-example-discounted-asset-trade/script-start-ledgers.sh:88","Warn: npmCommand not pinned by hash: .github/workflows/cacti-dev-container-vscode-publish.yaml:40","Warn: npmCommand not pinned by hash: .github/workflows/ci.yaml:2248","Warn: pipCommand not pinned by hash: .github/workflows/deploy_docs.yml:47","Warn: npmCommand not pinned by hash: .github/workflows/dev-container-vscode-publish.yaml:38","Warn: npmCommand not pinned by hash: .github/workflows/test_weaver-asset-exchange-fabric.yaml:78","Warn: goCommand not pinned by hash: .github/workflows/test_weaver-asset-exchange-fabric.yaml:146","Warn: npmCommand not pinned by hash: .github/workflows/test_weaver-asset-transfer.yaml:187","Warn: goCommand not pinned by hash: .github/workflows/test_weaver-asset-transfer.yaml:730","Warn: npmCommand not pinned by hash: .github/workflows/test_weaver-data-sharing.yaml:186","Warn: goCommand not pinned by hash: .github/workflows/test_weaver-data-sharing.yaml:458","Warn: goCommand not pinned by hash: .github/workflows/test_weaver-data-sharing.yaml:898","Warn: goCommand not pinned by hash: .github/workflows/test_weaver-fabric-fabric-satp.yaml:75","Warn: pipCommand not pinned by hash: .github/workflows/test_weaver-node-pkgs.yaml:152","Info: 423 out of 424 GitHub-owned GitHubAction dependencies pinned","Info:  44 out of  44 third-party GitHubAction dependencies pinned","Info:   4 out of  24 npmCommand dependencies pinned","Info:   0 out of  21 downloadThenRun dependencies pinned","Info:   0 out of   5 pipCommand dependencies pinned","Info:   6 out of  11 goCommand dependencies pinned","Info:   0 out of  72 containerImage dependencies pinned"],"documentation":{"short":"Determines if the project has declared and pinned the dependencies of its build process.","url":"https://github.com/ossf/scorecard/blob/49c0eed3a423f00c872b5c3c9f1bbca9e8aae799/docs/checks.md#pinned-dependencies"}},{"name":"SAST","score":10,"reason":"SAST tool is run on all commits","details":["Info: all commits (30) are checked with a SAST tool","Info: SAST tool detected: CodeQL"],"documentation":{"short":"Determines if the project uses static code analysis.","url":"https://github.com/ossf/scorecard/blob/49c0eed3a423f00c872b5c3c9f1bbca9e8aae799/docs/checks.md#sast"}},{"name":"Security-Policy","score":9,"reason":"security policy file detected","details":["Info: security policy file detected: SECURITY.md:1","Info: Found linked content: SECURITY.md:1","Warn: One or no descriptive hints of disclosure, vulnerability, and/or timelines in security policy: On GitHub:\nEnable private vulnerability disclosure in your repository settings https://docs.github.com/en/code-security/security-advisories/repository-security-advisories/configuring-private-vulnerability-reporting-for-a-repository\nAdd a section in your SECURITY.md indicating you have enabled private reporting, and tell them to follow the steps in https://docs.github.com/en/code-security/security-advisories/guidance-on-reporting-and-writing/privately-reporting-a-security-vulnerability to report vulnerabilities.\nOn GitLab:\nAdd a section in your SECURITY.md indicating the process to disclose vulnerabilities for your project.\nExamples: https://github.com/ossf/scorecard/blob/main/SECURITY.md, https://github.com/slsa-framework/slsa-github-generator/blob/main/SECURITY.md, https://github.com/sigstore/.github/blob/main/SECURITY.md. (Low effort)","Info: Found text in security policy: SECURITY.md:1"],"documentation":{"short":"Determines if the project has published a security policy.","url":"https://github.com/ossf/scorecard/blob/49c0eed3a423f00c872b5c3c9f1bbca9e8aae799/docs/checks.md#security-policy"}},{"name":"Signed-Releases","score":-1,"reason":"no releases found","details":["Warn: no GitHub releases found"],"documentation":{"short":"Determines if the project cryptographically signs release artifacts.","url":"https://github.com/ossf/scorecard/blob/49c0eed3a423f00c872b5c3c9f1bbca9e8aae799/docs/checks.md#signed-releases"}},{"name":"Token-Permissions","score":0,"reason":"detected GitHub workflow tokens with excessive permissions","details":["Warn: no topLevel permission defined: .github/workflows/.dast-nuclei-cmd-api-server.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/.dast-nuclei-cmd-api-server.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/actionlint.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/actionlint.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/all-nodejs-packages-publish.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/all-nodejs-packages-publish.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/besu-all-in-one-publish.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/besu-all-in-one-publish.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Info: jobLevel 'contents' permission set to 'read': .github/workflows/besu-all-in-one-publish.yaml:27","Warn: no topLevel permission defined: .github/workflows/cacti-dev-container-vscode-publish.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/cacti-dev-container-vscode-publish.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Info: jobLevel 'contents' permission set to 'read': .github/workflows/cacti-dev-container-vscode-publish.yaml:28","Warn: no topLevel permission defined: .github/workflows/ci.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/ci.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: jobLevel permissions set to 'write-all': .github/workflows/ci.yaml:1273: Verify which permissions are needed and consider whether you can reduce them. (High effort)","Warn: no topLevel permission defined: .github/workflows/ci_weaver.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/ci_weaver.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/cmd-api-server-publish.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/cmd-api-server-publish.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Info: jobLevel 'contents' permission set to 'read': .github/workflows/cmd-api-server-publish.yaml:27","Warn: no topLevel permission defined: .github/workflows/codeql-analysis.yml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/codeql-analysis.yml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/commitlint-pull-request.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/commitlint-pull-request.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/connector-besu-publish.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/connector-besu-publish.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Info: jobLevel 'contents' permission set to 'read': .github/workflows/connector-besu-publish.yaml:27","Warn: no topLevel permission defined: .github/workflows/connector-corda-server-publish.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/connector-corda-server-publish.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Info: jobLevel 'contents' permission set to 'read': .github/workflows/connector-corda-server-publish.yaml:27","Warn: no topLevel permission defined: .github/workflows/connector-fabric-cli-publish-dev.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/connector-fabric-cli-publish-dev.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/connector-fabric-cli-publish.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/connector-fabric-cli-publish.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Info: jobLevel 'contents' permission set to 'read': .github/workflows/connector-fabric-cli-publish.yaml:27","Warn: no topLevel permission defined: .github/workflows/connector-fabric-publish.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/connector-fabric-publish.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Info: jobLevel 'contents' permission set to 'read': .github/workflows/connector-fabric-publish.yaml:27","Warn: no topLevel permission defined: .github/workflows/coverage_ts.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/coverage_ts.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/daml-all-in-one-publish.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/daml-all-in-one-publish.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Info: jobLevel 'contents' permission set to 'read': .github/workflows/daml-all-in-one-publish.yaml:27","Warn: no topLevel permission defined: .github/workflows/dependent-issues.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/dependent-issues.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/deploy_docs.yml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/deploy_docs.yml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: jobLevel 'contents' permission set to 'write': .github/workflows/deploy_docs.yml:28: Verify which permissions are needed and consider whether you can reduce them. (High effort)","Warn: no topLevel permission defined: .github/workflows/dev-container-vscode-publish.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/dev-container-vscode-publish.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Info: jobLevel 'contents' permission set to 'read': .github/workflows/dev-container-vscode-publish.yaml:28","Warn: no topLevel permission defined: .github/workflows/example-carbon-accounting-publish.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/example-carbon-accounting-publish.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Info: jobLevel 'contents' permission set to 'read': .github/workflows/example-carbon-accounting-publish.yaml:27","Warn: no topLevel permission defined: .github/workflows/example-supply-chain-app-publish.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/example-supply-chain-app-publish.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Info: jobLevel 'contents' permission set to 'read': .github/workflows/example-supply-chain-app-publish.yaml:27","Warn: no topLevel permission defined: .github/workflows/fabric2-all-in-one-publish.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/fabric2-all-in-one-publish.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Info: jobLevel 'contents' permission set to 'read': .github/workflows/fabric2-all-in-one-publish.yaml:27","Warn: no topLevel permission defined: .github/workflows/geth-all-in-one-publish.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/geth-all-in-one-publish.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Info: jobLevel 'contents' permission set to 'read': .github/workflows/geth-all-in-one-publish.yaml:27","Warn: no topLevel permission defined: .github/workflows/gg-shield-action.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/gg-shield-action.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/ghpkg-all-kotlin-api-clients-publish.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/ghpkg-all-kotlin-api-clients-publish.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/iroha2-all-in-one-publish.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/iroha2-all-in-one-publish.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Info: jobLevel 'contents' permission set to 'read': .github/workflows/iroha2-all-in-one-publish.yaml:27","Warn: no topLevel permission defined: .github/workflows/keychain-vault-server-publish.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/keychain-vault-server-publish.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Info: jobLevel 'contents' permission set to 'read': .github/workflows/keychain-vault-server-publish.yaml:27","Warn: no topLevel permission defined: .github/workflows/pr-commit-parity.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/pr-commit-parity.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/publish-npm.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/publish-npm.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/sawtooth-all-in-one-publish.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/sawtooth-all-in-one-publish.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Info: jobLevel 'contents' permission set to 'read': .github/workflows/sawtooth-all-in-one-publish.yaml:27","Info: topLevel permissions set to 'read-all': .github/workflows/scorecard.yml:22","Warn: no topLevel permission defined: .github/workflows/semantic-pull-request.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/semantic-pull-request.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/test_copm.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/test_copm.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/test_weaver-asset-exchange-besu.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/test_weaver-asset-exchange-besu.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/test_weaver-asset-exchange-corda.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/test_weaver-asset-exchange-corda.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/test_weaver-asset-exchange-fabric.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/test_weaver-asset-exchange-fabric.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/test_weaver-asset-transfer.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/test_weaver-asset-transfer.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/test_weaver-corda-interop-app.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/test_weaver-corda-interop-app.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/test_weaver-data-sharing.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/test_weaver-data-sharing.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/test_weaver-docker-build.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/test_weaver-docker-build.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/test_weaver-fabric-fabric-satp.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/test_weaver-fabric-fabric-satp.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/test_weaver-go.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/test_weaver-go.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/test_weaver-node-pkgs.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/test_weaver-node-pkgs.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/test_weaver-pre-release.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/test_weaver-pre-release.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/test_weaver-relay.yaml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/test_weaver-relay.yaml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/weaver_deploy_corda-pkgs.yml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/weaver_deploy_corda-pkgs.yml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: jobLevel 'packages' permission set to 'write': .github/workflows/weaver_deploy_corda-pkgs.yml:99: Verify which permissions are needed and consider whether you can reduce them. (High effort)","Info: jobLevel 'contents' permission set to 'read': .github/workflows/weaver_deploy_corda-pkgs.yml:100","Warn: jobLevel 'packages' permission set to 'write': .github/workflows/weaver_deploy_corda-pkgs.yml:139: Verify which permissions are needed and consider whether you can reduce them. (High effort)","Info: jobLevel 'contents' permission set to 'read': .github/workflows/weaver_deploy_corda-pkgs.yml:140","Warn: jobLevel 'packages' permission set to 'write': .github/workflows/weaver_deploy_corda-pkgs.yml:22: Verify which permissions are needed and consider whether you can reduce them. (High effort)","Info: jobLevel 'contents' permission set to 'read': .github/workflows/weaver_deploy_corda-pkgs.yml:23","Warn: jobLevel 'packages' permission set to 'write': .github/workflows/weaver_deploy_corda-pkgs.yml:59: Verify which permissions are needed and consider whether you can reduce them. (High effort)","Info: jobLevel 'contents' permission set to 'read': .github/workflows/weaver_deploy_corda-pkgs.yml:60","Warn: no topLevel permission defined: .github/workflows/weaver_deploy_go-pkgs.yml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/weaver_deploy_go-pkgs.yml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: no topLevel permission defined: .github/workflows/weaver_deploy_node-pkgs.yml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/weaver_deploy_node-pkgs.yml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Warn: jobLevel 'packages' permission set to 'write': .github/workflows/weaver_deploy_node-pkgs.yml:24: Verify which permissions are needed and consider whether you can reduce them. (High effort)","Info: jobLevel 'contents' permission set to 'read': .github/workflows/weaver_deploy_node-pkgs.yml:25","Warn: jobLevel 'packages' permission set to 'write': .github/workflows/weaver_deploy_node-pkgs.yml:78: Verify which permissions are needed and consider whether you can reduce them. (High effort)","Info: jobLevel 'contents' permission set to 'read': .github/workflows/weaver_deploy_node-pkgs.yml:79","Warn: jobLevel 'packages' permission set to 'write': .github/workflows/weaver_deploy_node-pkgs.yml:123: Verify which permissions are needed and consider whether you can reduce them. (High effort)","Info: jobLevel 'contents' permission set to 'read': .github/workflows/weaver_deploy_node-pkgs.yml:124","Warn: jobLevel 'packages' permission set to 'write': .github/workflows/weaver_deploy_node-pkgs.yml:168: Verify which permissions are needed and consider whether you can reduce them. (High effort)","Info: jobLevel 'contents' permission set to 'read': .github/workflows/weaver_deploy_node-pkgs.yml:169","Warn: jobLevel 'packages' permission set to 'write': .github/workflows/weaver_deploy_node-pkgs.yml:208: Verify which permissions are needed and consider whether you can reduce them. (High effort)","Info: jobLevel 'contents' permission set to 'read': .github/workflows/weaver_deploy_node-pkgs.yml:209","Warn: no topLevel permission defined: .github/workflows/weaver_deploy_relay-server.yml:1: Visit https://app.stepsecurity.io/secureworkflow/hyperledger-cacti/cacti/weaver_deploy_relay-server.yml/main?enable=permissions\nTick the 'Restrict permissions for GITHUB_TOKEN'\nUntick other options\nNOTE: If you want to resolve multiple issues at once, you can visit https://app.stepsecurity.io/securerepo instead. (Low effort)","Info: jobLevel 'contents' permission set to 'read': .github/workflows/weaver_deploy_relay-server.yml:24","Info: jobLevel 'contents' permission set to 'read': .github/workflows/weaver_deploy_relay-server.yml:48"],"documentation":{"short":"Determines if the project's workflows follow the principle of least privilege.","url":"https://github.com/ossf/scorecard/blob/49c0eed3a423f00c872b5c3c9f1bbca9e8aae799/docs/checks.md#token-permissions"}},{"name":"Vulnerabilities","score":0,"reason":"76 existing vulnerabilities detected","details":["Warn: Project is vulnerable to: GHSA-4v7x-pqxf-cx7m / GO-2024-2687","Warn: Project is vulnerable to: GO-2024-3333","Warn: Project is vulnerable to: GHSA-qxp5-gwg8-xv66 / GO-2025-3503","Warn: Project is vulnerable to: GHSA-vvgc-356p-c3xw / GO-2025-3595","Warn: Project is vulnerable to: GHSA-8r3f-844c-mc37 / GO-2024-2611","Warn: Project is vulnerable to: RUSTSEC-2024-0388","Warn: Project is vulnerable to: RUSTSEC-2024-0436","Warn: Project is vulnerable to: RUSTSEC-2021-0139","Warn: Project is vulnerable to: GHSA-g98v-hv3f-hcfr / RUSTSEC-2021-0145","Warn: Project is vulnerable to: RUSTSEC-2024-0375","Warn: Project is vulnerable to: GHSA-h97m-ww89-6jmq / RUSTSEC-2024-0421","Warn: Project is vulnerable to: RUSTSEC-2024-0384","Warn: Project is vulnerable to: GHSA-4fcv-w3qc-ppgg","Warn: Project is vulnerable to: RUSTSEC-2025-0022","Warn: Project is vulnerable to: RUSTSEC-2023-0081","Warn: Project is vulnerable to: GHSA-wcg3-cvx6-7396 / RUSTSEC-2020-0071","Warn: Project is vulnerable to: GHSA-fg7r-2g4j-5cgr / RUSTSEC-2021-0124","Warn: Project is vulnerable to: GHSA-4q83-7cq4-p6wg / RUSTSEC-2023-0005","Warn: Project is vulnerable to: GHSA-rr8g-9fpq-6wmg","Warn: Project is vulnerable to: RUSTSEC-2025-0023","Warn: Project is vulnerable to: GHSA-4p46-pwfr-66x6","Warn: Project is vulnerable to: RUSTSEC-2025-0009","Warn: Project is vulnerable to: GHSA-c86p-w88r-qvqr","Warn: Project is vulnerable to: GHSA-qg5g-gv98-5ffh","Warn: Project is vulnerable to: RUSTSEC-2024-0399","Warn: Project is vulnerable to: GHSA-wwq9-3cpr-mm53","Warn: Project is vulnerable to: RUSTSEC-2024-0402","Warn: Project is vulnerable to: RUSTSEC-2021-0141","Warn: Project is vulnerable to: GHSA-2326-pfpj-vx3h","Warn: Project is vulnerable to: RUSTSEC-2023-0086","Warn: Project is vulnerable to: RUSTSEC-2024-0320","Warn: Project is vulnerable to: GHSA-968p-4wvh-cqc8","Warn: Project is vulnerable to: GHSA-7v5v-9h63-cj86","Warn: Project is vulnerable to: GHSA-cj7v-w2c7-cp7c","Warn: Project is vulnerable to: GHSA-v88g-cgmw-v5xw","Warn: Project is vulnerable to: GHSA-wrw9-m778-g6mc","Warn: Project is vulnerable to: GHSA-pp7h-53gx-mx7r","Warn: Project is vulnerable to: GHSA-v6h2-p8h4-qcjw","Warn: Project is vulnerable to: GHSA-pxg6-pf52-xh8x","Warn: Project is vulnerable to: GHSA-3xgq-45jj-v275","Warn: Project is vulnerable to: GHSA-ghr5-ch3p-vcr6","Warn: Project is vulnerable to: GHSA-67mh-4wv8-2f99","Warn: Project is vulnerable to: GHSA-fjxv-7rqg-78g4","Warn: Project is vulnerable to: GHSA-4q6p-r6v2-jvc5","Warn: Project is vulnerable to: GHSA-pfrx-2q88-qq97","Warn: Project is vulnerable to: GHSA-4www-5p9h-95mh","Warn: Project is vulnerable to: GHSA-9gqv-wp59-fq42","Warn: Project is vulnerable to: GHSA-29mw-wpgm-hmr9","Warn: Project is vulnerable to: GHSA-4xcv-9jjx-gfj3","Warn: Project is vulnerable to: GHSA-7wpw-2hjm-89gp","Warn: Project is vulnerable to: GHSA-952p-6rrq-rcjv","Warn: Project is vulnerable to: GHSA-44fp-w29j-9vj5","Warn: Project is vulnerable to: GHSA-4pg4-qvpc-4q3h","Warn: Project is vulnerable to: GHSA-g5hg-p3ph-g8qg","Warn: Project is vulnerable to: GHSA-fjgf-rc76-4x9p","Warn: Project is vulnerable to: GHSA-mwcw-c2x4-8c55","Warn: Project is vulnerable to: GHSA-76c9-3jph-rj3q","Warn: Project is vulnerable to: GHSA-hcrg-fc28-fcg5","Warn: Project is vulnerable to: GHSA-9wv6-86v2-598j","Warn: Project is vulnerable to: GHSA-h7cp-r72f-jxh6","Warn: Project is vulnerable to: GHSA-v62p-rq8g-8h59","Warn: Project is vulnerable to: GHSA-22r3-9w55-cj54","Warn: Project is vulnerable to: GHSA-p8p7-x288-28g6","Warn: Project is vulnerable to: GHSA-584q-6j8j-r5pm","Warn: Project is vulnerable to: GHSA-76p7-773f-r4q5","Warn: Project is vulnerable to: GHSA-4rq4-32rv-6wp6","Warn: Project is vulnerable to: GHSA-64g7-mvw6-v9qj","Warn: Project is vulnerable to: GHSA-f5x3-32g6-xq36","Warn: Project is vulnerable to: GHSA-pq67-2wwv-3xjx","Warn: Project is vulnerable to: GHSA-8cj5-5rvv-wf4v","Warn: Project is vulnerable to: GHSA-52f5-9888-hmc6","Warn: Project is vulnerable to: GHSA-c76h-2ccp-4975","Warn: Project is vulnerable to: GHSA-cxrh-j4jr-qwg3","Warn: Project is vulnerable to: GHSA-4vvj-4cpr-p986","Warn: Project is vulnerable to: GHSA-4v9v-hfq4-rm2v","Warn: Project is vulnerable to: GHSA-9jgg-88mc-972h"],"documentation":{"short":"Determines if the project has open, known unfixed vulnerabilities.","url":"https://github.com/ossf/scorecard/blob/49c0eed3a423f00c872b5c3c9f1bbca9e8aae799/docs/checks.md#vulnerabilities"}}]},"last_synced_at":"2025-08-19T15:09:19.153Z","repository_id":36952214,"created_at":"2025-08-19T15:09:19.153Z","updated_at":"2025-08-19T15:09:19.153Z"},"host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":341189360,"owners_count":37457661,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2026-08-22T15:14:58.755Z","status":"online","status_checked_at":"2026-09-18T02:00:15.364Z","response_time":89,"last_error":null,"robots_txt_status":"success","robots_txt_updated_at":"2025-07-24T06:49:26.215Z","robots_txt_url":"https://github.com/robots.txt","online":true,"can_crawl_api":true,"host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"},"owner_record":{"login":"hyperledger","name":"Hyperledger Fabric","uuid":"7657900","kind":"organization","description":"Hyperledger Fabric, an LF Decentralized Trust project.","email":null,"website":"https://www.lfdecentralizedtrust.org/","location":"United States of America","twitter":null,"company":null,"icon_url":"https://avatars.githubusercontent.com/u/7657900?v=4","repositories_count":47,"last_synced_at":"2026-09-17T01:25:27.826Z","metadata":{"has_sponsors_listing":false,"funding":null},"html_url":"https://github.com/hyperledger","funding_links":[],"total_stars":29440,"followers":2279,"following":0,"created_at":"2022-11-04T00:29:02.275Z","updated_at":"2026-09-17T01:25:27.848Z","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/hyperledger","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/hyperledger/repositories"},"tags":[]},"repo_metadata_updated_at":"2026-09-23T00:35:01.224Z","dependent_packages_count":0,"downloads":null,"downloads_period":null,"dependent_repos_count":0,"rankings":{"downloads":null,"dependent_repos_count":9.345852080216646,"dependent_packages_count":6.999148183520997,"stargazers_count":2.0085585671526545,"forks_count":1.2170089457564612,"average":4.8926419441616895},"purl":"pkg:golang/github.com/hyperledger/cactus","advisories":[],"docker_usage_url":"https://docker.ecosyste.ms/usage/go/github.com/hyperledger/cactus","docker_dependents_count":null,"docker_downloads_count":null,"usage_url":"https://repos.ecosyste.ms/usage/go/github.com/hyperledger/cactus","dependent_repositories_url":"https://repos.ecosyste.ms/api/v1/usage/go/github.com/hyperledger/cactus/dependencies","status":null,"funding_links":[],"critical":null,"issue_metadata":{"last_synced_at":"2026-09-21T22:55:21.456Z","issues_count":1182,"pull_requests_count":2412,"avg_time_to_close_issue":25104193.64942016,"avg_time_to_close_pull_request":2067184.9673959673,"issues_closed_count":1121,"pull_requests_closed_count":2331,"pull_request_authors_count":169,"issue_authors_count":99,"avg_comments_per_issue":1.3781725888324874,"avg_comments_per_pull_request":1.6198175787728026,"merged_pull_requests_count":1640,"bot_issues_count":0,"bot_pull_requests_count":488,"past_year_issues_count":114,"past_year_pull_requests_count":633,"past_year_avg_time_to_close_issue":9008819.295454545,"past_year_avg_time_to_close_pull_request":1639461.5721231767,"past_year_issues_closed_count":88,"past_year_pull_requests_closed_count":617,"past_year_pull_request_authors_count":57,"past_year_issue_authors_count":28,"past_year_avg_comments_per_issue":1.4385964912280702,"past_year_avg_comments_per_pull_request":1.537124802527646,"past_year_bot_issues_count":0,"past_year_bot_pull_requests_count":316,"past_year_merged_pull_requests_count":217,"issues_url":"https://issues.ecosyste.ms/api/v1/hosts/GitHub/repositories/hyperledger-cacti%2Fcacti/issues","maintainers":[{"login":"sandeepnRES","count":70,"url":"https://issues.ecosyste.ms/api/v1/hosts/GitHub/authors/sandeepnRES"},{"login":"AndreAugusto11","count":47,"url":"https://issues.ecosyste.ms/api/v1/hosts/GitHub/authors/AndreAugusto11"},{"login":"ParthSinghPS","count":35,"url":"https://issues.ecosyste.ms/api/v1/hosts/GitHub/authors/ParthSinghPS"},{"login":"KimDoubleB","count":1,"url":"https://issues.ecosyste.ms/api/v1/hosts/GitHub/authors/KimDoubleB"}],"active_maintainers":[{"login":"sandeepnRES","count":45,"url":"https://issues.ecosyste.ms/api/v1/hosts/GitHub/authors/sandeepnRES"},{"login":"ParthSinghPS","count":35,"url":"https://issues.ecosyste.ms/api/v1/hosts/GitHub/authors/ParthSinghPS"},{"login":"AndreAugusto11","count":8,"url":"https://issues.ecosyste.ms/api/v1/hosts/GitHub/authors/AndreAugusto11"}]},"versions_url":"https://packages.ecosyste.ms/api/v1/registries/proxy.golang.org/packages/github.com%2Fhyperledger%2Fcactus/versions","version_numbers_url":"https://packages.ecosyste.ms/api/v1/registries/proxy.golang.org/packages/github.com%2Fhyperledger%2Fcactus/version_numbers","latest_version_url":"https://packages.ecosyste.ms/api/v1/registries/proxy.golang.org/packages/github.com%2Fhyperledger%2Fcactus/latest_version","dependent_packages_url":"https://packages.ecosyste.ms/api/v1/registries/proxy.golang.org/packages/github.com%2Fhyperledger%2Fcactus/dependent_packages","related_packages_url":"https://packages.ecosyste.ms/api/v1/registries/proxy.golang.org/packages/github.com%2Fhyperledger%2Fcactus/related_packages","codemeta_url":"https://packages.ecosyste.ms/api/v1/registries/proxy.golang.org/packages/github.com%2Fhyperledger%2Fcactus/codemeta","maintainers":[]}