{"adoption": {"forks": 250, "observed_at": "2026-08-28T04:07:18.197179+00:00", "stars": 2756}, "canonical_url": "https://ross.abutalabs.com/products/bundler-audit", "card": {"archived": false, "artifact_type": "cli-tool", "description": "Patch-level verification for Bundler", "domain": ["security", "developer-tools", "version-control"], "enriched": true, "function": ["security", "dependency-audit", "cli"], "health_score": 95, "homepage": null, "language": "Ruby", "license": "GPL-3.0", "license_family": "copyleft", "maturity": "active", "member_repos": ["rubysec/bundler-audit"], "name": "rubysec/bundler-audit", "platform": ["ruby", "cli", "cross-platform"], "pushed_at": "2026-08-15T22:59:40+00:00", "repo": "rubysec/bundler-audit", "stars": 2756, "tags": ["bundler", "rubygems", "ruby-advisory-db", "gemfile-lock", "vulnerability-scanning", "supply-chain-security"], "topics": ["bundler-audit", "ruby-advisory-db", "ruby", "dependency-checker", "patch-management", "security", "security-tools", "security-audit"], "urls": [], "use_cases": ["scan Gemfile.lock for vulnerable gem versions", "check Ruby dependencies against a security advisory database", "find insecure http or git gem sources in a Bundler project", "run dependency security audits in CI without network access", "update the local ruby-advisory-db before auditing", "ignore advisories that have been manually worked around"], "what_it_is": "bundler-audit is a command-line tool that audits a Ruby project's Gemfile.lock for gems with known vulnerabilities using the ruby-advisory-db. It also flags insecure gem sources and can update its advisory database locally.", "when_to_avoid": ["your project does not use Bundler or Gemfile.lock", "you need scanning for non-Ruby ecosystems like npm or pip", "you want continuous runtime monitoring rather than point-in-time audits"], "when_to_choose": ["you maintain a Ruby or Rails app using Bundler and want automated CVE checks", "you need an offline-capable dependency audit step in CI", "you want a lightweight CLI rather than a hosted scanning service"]}, "data_as_of": "2026-08-30T08:39:29.467469+00:00", "members": [{"path": "/products/bundler-audit", "repo": "rubysec/bundler-audit", "role": "main", "score": 73}], "provenance": {"archived": {"kind": "observed", "observed_at": "2026-08-28T04:07:18.197179+00:00", "source": "github"}, "artifact_type": {"confidence": null, "enriched_at": "2026-08-30T08:31:46.289783+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "9823127a3f611b757125383af749c6035bcaeb2d42e8076e1b0e7aa720a8899c", "fetched_at": "2026-08-28T04:07:18.197179+00:00", "kind": "readme", "missing": false, "url": "https://github.com/rubysec/bundler-audit"}], "taxonomy_version": 1}, "description": {"kind": "observed", "observed_at": "2026-08-28T04:07:18.197179+00:00", "source": "github"}, "domain": {"confidence": null, "enriched_at": "2026-08-30T08:31:46.289783+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "9823127a3f611b757125383af749c6035bcaeb2d42e8076e1b0e7aa720a8899c", "fetched_at": "2026-08-28T04:07:18.197179+00:00", "kind": "readme", "missing": false, "url": "https://github.com/rubysec/bundler-audit"}], "taxonomy_version": 1}, "enriched": {"inputs": [], "kind": "computed", "method": "enrichment_status"}, "function": {"confidence": null, "enriched_at": "2026-08-30T08:31:46.289783+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "9823127a3f611b757125383af749c6035bcaeb2d42e8076e1b0e7aa720a8899c", "fetched_at": "2026-08-28T04:07:18.197179+00:00", "kind": "readme", "missing": false, "url": "https://github.com/rubysec/bundler-audit"}], "taxonomy_version": 1}, "health_score": {"inputs": ["days_since_push", "days_since_release", "archived"], "kind": "computed", "method": "health_v1"}, "homepage": {"kind": "observed", "observed_at": "2026-08-28T04:07:18.197179+00:00", "source": "github"}, "language": {"kind": "observed", "observed_at": "2026-08-28T04:07:18.197179+00:00", "source": "github"}, "license": {"kind": "observed", "observed_at": "2026-08-28T04:07:18.197179+00:00", "source": "github"}, "license_family": {"inputs": ["license"], "kind": "computed", "method": "license_family"}, "maturity": {"confidence": null, "enriched_at": "2026-08-30T08:31:46.289783+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "9823127a3f611b757125383af749c6035bcaeb2d42e8076e1b0e7aa720a8899c", "fetched_at": "2026-08-28T04:07:18.197179+00:00", "kind": "readme", "missing": false, "url": "https://github.com/rubysec/bundler-audit"}], "taxonomy_version": 1}, "member_repos": {"kind": "observed", "observed_at": "2026-08-28T04:07:18.197179+00:00", "source": "github"}, "name": {"kind": "observed", "observed_at": "2026-08-28T04:07:18.197179+00:00", "source": "github"}, "platform": {"confidence": null, "enriched_at": "2026-08-30T08:31:46.289783+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "9823127a3f611b757125383af749c6035bcaeb2d42e8076e1b0e7aa720a8899c", "fetched_at": "2026-08-28T04:07:18.197179+00:00", "kind": "readme", "missing": false, "url": "https://github.com/rubysec/bundler-audit"}], "taxonomy_version": 1}, "pushed_at": {"kind": "observed", "observed_at": "2026-08-28T04:07:18.197179+00:00", "source": "github"}, "repo": {"kind": "observed", "observed_at": "2026-08-28T04:07:18.197179+00:00", "source": "github"}, "stars": {"kind": "observed", "observed_at": "2026-08-28T04:07:18.197179+00:00", "source": "github"}, "tags": {"confidence": null, "enriched_at": "2026-08-30T08:31:46.289783+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "9823127a3f611b757125383af749c6035bcaeb2d42e8076e1b0e7aa720a8899c", "fetched_at": "2026-08-28T04:07:18.197179+00:00", "kind": "readme", "missing": false, "url": "https://github.com/rubysec/bundler-audit"}], "taxonomy_version": 1}, "topics": {"kind": "observed", "observed_at": "2026-08-28T04:07:18.197179+00:00", "source": "github"}, "urls": {"kind": "observed", "observed_at": "2026-08-28T04:07:18.197179+00:00", "source": "github"}, "use_cases": {"confidence": null, "enriched_at": "2026-08-30T08:31:46.289783+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "9823127a3f611b757125383af749c6035bcaeb2d42e8076e1b0e7aa720a8899c", "fetched_at": "2026-08-28T04:07:18.197179+00:00", "kind": "readme", "missing": false, "url": "https://github.com/rubysec/bundler-audit"}], "taxonomy_version": 1}, "what_it_is": {"confidence": null, "enriched_at": "2026-08-30T08:31:46.289783+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "9823127a3f611b757125383af749c6035bcaeb2d42e8076e1b0e7aa720a8899c", "fetched_at": "2026-08-28T04:07:18.197179+00:00", "kind": "readme", "missing": false, "url": "https://github.com/rubysec/bundler-audit"}], "taxonomy_version": 1}, "when_to_avoid": {"confidence": null, "enriched_at": "2026-08-30T08:31:46.289783+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "9823127a3f611b757125383af749c6035bcaeb2d42e8076e1b0e7aa720a8899c", "fetched_at": "2026-08-28T04:07:18.197179+00:00", "kind": "readme", "missing": false, "url": "https://github.com/rubysec/bundler-audit"}], "taxonomy_version": 1}, "when_to_choose": {"confidence": null, "enriched_at": "2026-08-30T08:31:46.289783+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "9823127a3f611b757125383af749c6035bcaeb2d42e8076e1b0e7aa720a8899c", "fetched_at": "2026-08-28T04:07:18.197179+00:00", "kind": "readme", "missing": false, "url": "https://github.com/rubysec/bundler-audit"}], "taxonomy_version": 1}}, "score": {"components": {"activity": 97, "longevity": 100, "rhythm": 27}, "computed_at": "2026-09-03T02:20:16.233290+00:00", "flags": [], "formula": "round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)", "inputs": {"age_days": 4951, "days_push": 18, "days_rel": 278, "gap_med": null, "n_releases_24m": 1}, "score": 73, "version": 2}, "staleness": {"enrichment_outdated": false, "low_confidence": false, "scrape_days": 9, "stale_scrape": false}}