@IsmaelMartinez

Portfolio health · 2026-07-21 · click any repo for detail · weekly digest
Security needs you. teams-for-linux, ismaelmartinez.me.uk, ai-model-advisor, wifisentinel, yourear have open security alerts.
This rather wants your attention

A critical matter has surfaced. I'd see to it before the tea goes cold.

7 Gold 6 Silver · 9 security alerts
54% Gold ▼ 8pp · 13 repos, 13 active

Since the last run

Needs your attention

#RepoActionEffort
1 teams-for-linux Fix 4 high vulnerability alerts moderate
2 ismaelmartinez.me.uk Fix 2 high vulnerability alerts moderate
3 ai-model-advisor Fix 1 high vulnerability alerts moderate
4 wifisentinel Fix 1 high vulnerability alerts moderate
5 yourear Fix 1 high vulnerability alerts moderate

Governance (7)

By remediation: 1 template (auto-applies) · 6 agent (local PR)

Standards Gaps

StandardPriorityAdoptionRepos needing action
Release automation low 92% adopted 1 need this: github-issue-triage-bot

Tier Uplift Opportunities

RepoPathPriorityRemaining checks
yourear Silver → Gold high Zero critical/high security findings
ismaelmartinez.me.uk Silver → Gold high Zero critical/high security findings
generator-atlassian-compass-event-catalog Silver → Gold high Release in the last 90 days
ai-model-advisor Silver → Gold high Zero critical/high security findings
wifisentinel Silver → Gold high Zero critical/high security findings
teams-for-linux Silver → Gold high Fewer than 10 open bugs, Zero critical/high security findings

Improvement Campaigns

Community Health

13/13
Repos with community health score >= 80%
100% complete
All repos compliant

Vulnerability Free

8/13
Repos with zero critical/high vulnerabilities
62% complete
5 repos need attention

CI Reliability

9/13
Repos with CI pass rate >= 90%
69% complete
4 repos need attention

License Compliance

13/13
Repos with a license configured
100% complete
All repos compliant

Issue Templates

13/13
Repos with issue templates configured
100% complete
All repos compliant
All repos · 13
RepoTierIssuesPRsCI%VulnsNext Step
teams-for-linux Silver 26 8 81% 6 Fewer than 10 open bugs
repo-butler Gold 1 3 89% 0 All checks pass
ismaelmartinez.me.uk Silver 1 5 97% 5 Zero critical/high security findings
ai-model-advisor Silver 0 0 96% 2 Zero critical/high security findings
bonnie-wee-plot Gold 0 4 84% 0 All checks pass
sound3fy Gold 0 1 100% 0 All checks pass
wifisentinel Silver 0 3 94% 1 Zero critical/high security findings
delegate-local Gold 3 2 94% 0 All checks pass
betis-escocia Gold 0 3 92% 0 All checks pass
yourear Silver 0 3 98% 1 Zero critical/high security findings
lounge-tv Gold 0 3 84% 0 All checks pass
generator-atlassian-compass-event-catalog Silver 0 2 93% 0 Release in the last 90 days
github-issue-triage-bot Gold 0 1 91% 0 All checks pass
Show all columns (13 repos)
RepoLangStarsIssuesCommitsCILicenseCommunityVulnsDepsContributorsStatusTier
teams-for-linux JavaScript486526 445 81% (15) GPL-3.0 100% 6 1836 10 active Silver
repo-butler JavaScript31 385 89% (13) MIT 100% 0 9 1 active Gold
ismaelmartinez.me.uk TypeScript11 194 97% (11) MIT 100% 5 596 (299.7y) 1 active Silver
ai-model-advisor JavaScript10 115 96% (10) MIT 100% 2 199 (61.7y) 1 active Silver
bonnie-wee-plot TypeScript10 426 84% (8) NOASSERTION 100% 0 906 1 active Gold
sound3fy JavaScript50 40 100% (7) MIT 100% 0 226 (104.1y) 1 active Gold
wifisentinel TypeScript10 294 94% (7) MIT 100% 1 416 (179.0y) 1 active Silver
delegate-local Shell13 308 94% (7) MIT 100% 0 3 1 active Gold
betis-escocia TypeScript10 112 92% (8) MIT 100% 0 723 1 active Gold
yourear TypeScript10 49 98% (8) MIT 100% 1 499 (290.1y) 1 active Silver
lounge-tv HTML00 43 84% (7) MIT 100% 0 9 1 active Gold
generator-atlassian-compass-event-catalog TypeScript40 140 93% (9) MIT 85% 0 408 (317.6y) 1 active Silver
github-issue-triage-bot Go10 253 91% (15) MIT 100% 0 23 1 active Gold
Commit Activity (26 weeks)
Weekly Commits by Repository
Dependency Inventory

Dependency Inventory

Total Unique Dependencies

5.8k
across 13 repos with SBOM

Shared Dependencies

20
used in 2+ repos

License Notes

170 low-risk
copyleft deps (low risk for non-commercial use)
Most Common Dependencies (used in 2+ repos)
PackageReposLicense
dependabot/fetch-metadata11unknown
github/codeql-action/init7unknown
github/codeql-action/analyze7unknown
dependabot/fetch-metadata2unknown
github/codeql-action/analyze2unknown
github/codeql-action/init2unknown
github/codeql-action/autobuild2unknown
googleapis/release-please-action2unknown
Low-risk copyleft dependencies (170) — fine for non-commercial use
LicenseDependenciesNote
MPL-2.0lightningcss-win32-x64-msvc, lightningcss-freebsd-x64, lightningcss-linux-x64-musl +24 moreFile-level copyleft: only modified files must stay MPL-2.0. Fine as a dependency.
Apache-2.0 OR MPL-2.0dompurifyFile-level copyleft: only modified files must stay MPL-2.0. Fine as a dependency.
BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0@img/sharp-libvips-linux-arm, @img/sharp-libvips-linux-ppc64, @img/sharp-libvips-linuxmusl-x64 +7 moreWeak copyleft: only modifications to the library itself must be shared. Fine as a dependency.
Apache-2.0 AND BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0@img/sharp-win32-ia32, @img/sharp-win32-arm64, @img/sharp-win32-x64Weak copyleft: only modifications to the library itself must be shared. Fine as a dependency.
Apache-2.0 OR (Apache-2.0 AND LGPL-3.0-only)@opentelemetry/apiWeak copyleft: only modifications to the library itself must be shared. Fine as a dependency.
About Repo Butler
Repo Butler is a GitHub Action that runs a seven-phase pipeline — OBSERVE → ASSESS → UPDATE → GOVERNANCE → IDEATE → PROPOSE → REPORT — across a portfolio of repositories, generating this dashboard, opening improvement issues, and surfacing governance findings. It runs four times a day on GitHub Actions with zero npm dependencies. Source and docs: github.com/IsmaelMartinez/repo-butler.
About — How it works
  • OBSERVE — gathers project state via the GitHub API (issues, PRs, releases, labels, workflows, roadmap content) and classifies all portfolio repos by activity level. No LLM needed.
  • ASSESS — diffs the current snapshot against the previous run, computes weekly trends (growing/shrinking/stable), and optionally summarises changes with Gemini Flash.
  • UPDATE — generates an updated roadmap document, validates it through a safety layer, and opens a PR.
  • GOVERNANCE — runs deterministic detectors over the portfolio — standards gaps, policy drift, tier-uplift opportunities, stale Dependabot PRs — and persists findings to the data branch. No LLM cost, so the daily pipeline runs it 4×/day.
  • IDEATE — generates improvement ideas using an LLM (Claude for deeper reasoning, Gemini Flash as default), feeding off the fresh governance findings.
  • PROPOSE — safety-filters ideas (URL allowlist, @mention blocking, secret detection), then creates GitHub issues capped at max_issues_per_run, sorted by priority, labelled for human review.
  • REPORT — generates HTML dashboards for every active repo in the portfolio, deployed to GitHub Pages.