{"version": "2.1.0", "$schema": "https://json.schemastore.org/sarif-2.1.0.json", "runs": [{"tool": {"driver": {"name": "Repobility", "informationUri": "https://repobility.com", "rules": [{"id": "foundry_blueprint_gap", "name": "Foundry mined blueprint gap alignment: skeeeon/kiosk", "shortDescription": {"text": "Foundry mined blueprint gap alignment: skeeeon/kiosk"}, "fullDescription": {"text": "Graph query export: Human feedback aligned with blueprint or architecture gaps\nQuery id: blueprint_gap_alignment\nQuery type: motif_query\nIntent: Curriculum-gap examples connecting issue threads to helicopter-view gaps.\nMotif: blueprint_gap_alignment\nTraining usage: curriculum_gap\nGraph gold label: supported_by_verification_signal\nRepo: skeeeon/kiosk\nThread: skeeeon/kiosk#1\nEvidence:\nGraph motif: Human feedback aligns with blueprint or architecture gaps\nMotif id: blueprint_gap_alignment\nPolarity: mixed\nTraining usage: curriculum_gap\nSeverity: medium\nRepo: skeeeon/kiosk\nThread: skeeeon/kiosk#1\nGraph gold label: supported_by_verification_signal\nThread graph evidence:\nGitHub issue/PR evidence subgraph\nThread: skeeeon/kiosk#1\nRepo: skeeeon/kiosk\nIssue/PR number: 1\nGraph consistency label: supported_by_verification_signal\nNodes: 44\nEdges: 72\nNode types: {'pr_file': 24, 'commit': 5, 'link_quality': 5, 'alignment': 2, 'blueprint_finding': 2, 'thread': 1, 'repo': 1, 'comment': 1, 'comment_chain"}, "properties": {"scanner": "foundry_dataset", "category": "tech_debt", "severity": "medium", "confidence": 0.7, "cwe": "", "owasp": ""}}, {"id": "foundry_assumption_check", "name": "Foundry mined assumption checks: skeeeon/kiosk", "shortDescription": {"text": "Foundry mined assumption checks: skeeeon/kiosk"}, "fullDescription": {"text": "Comment chain pattern product: assumption_checks\nRepo: skeeeon/kiosk\nThread: skeeeon/kiosk#2\nOutcome: claimed_resolved_unverified\nThread label: thread_has_human_issue_and_fix_context\nSource graph label: source_backed_multi_signal_graph\nReasons: source_graph_has_real_artifacts, source_graph_has_verification_artifacts, repo_has_isolated_helicopter_views, link_quality_high_confidence, high_risk_human_feedback_label\nChain evidence:\nIssue/PR evidence chain: skeeeon/kiosk#2\nRepo: skeeeon/kiosk\nThread label: thread_has_human_issue_and_fix_context\nOutcome: claimed_resolved_unverified\nComment count: 1\nLinked commit count: 3\nLinked CI commit count: 0\nLinked CI labels: {}\nChanged file count: 71\nLabels: {'security_auth_secret': 1}\nPolarities: {'bad': 1}\nChanged file labels: {'source_or_other': 25, 'docs_or_claims': 10, 'api_or_backend': 18, 'schema_or_data': 5, 'ui_or_frontend': 13}\nExamples:\n[\n  {\n    \"id\": \"github-feedback-comment-0b2a47ace186939d\",\n    \"kind\": \"pull_request_body\",\n    \"label\": "}, "properties": {"scanner": "foundry_dataset", "category": "practices", "severity": "medium", "confidence": 0.62, "cwe": "", "owasp": ""}}, {"id": "foundry_schema_ui_api_gap", "name": "Foundry mined schema ui api mismatch: skeeeon/kiosk", "shortDescription": {"text": "Foundry mined schema ui api mismatch: skeeeon/kiosk"}, "fullDescription": {"text": "Graph query export: Schema, UI, and API mismatch\nQuery id: schema_ui_api_mismatch\nQuery type: motif_query\nIntent: Assumption-check examples for data-path consistency across layers.\nMotif: schema_ui_api_mismatch\nTraining usage: assumption_check\nGraph gold label: supported_by_high_confidence_link\nRepo: skeeeon/kiosk\nThread: skeeeon/kiosk#2\nEvidence:\nGraph motif: Schema, UI, and API evidence do not line up\nMotif id: schema_ui_api_mismatch\nPolarity: bad\nTraining usage: assumption_check\nSeverity: high\nRepo: skeeeon/kiosk\nThread: skeeeon/kiosk#2\nGraph gold label: supported_by_high_confidence_link\nThread graph evidence:\nGitHub issue/PR evidence subgraph\nThread: skeeeon/kiosk#2\nRepo: skeeeon/kiosk\nIssue/PR number: 2\nGraph consistency label: supported_by_high_confidence_link\nNodes: 83\nEdges: 109\nNode types: {'pr_file': 71, 'commit': 3, 'link_quality': 3, 'thread': 1, 'repo': 1, 'comment': 1, 'comment_chain': 1, 'issue_chain': 1, 'fix_outcome': 1}\nEdge types: {'thread_touches_file': 71, 'comment"}, "properties": {"scanner": "foundry_dataset", "category": "quality", "severity": "high", "confidence": 0.76, "cwe": "", "owasp": ""}}, {"id": "foundry_auth_guardrail_gap", "name": "Foundry mined security auth guardrail gaps: skeeeon/kiosk", "shortDescription": {"text": "Foundry mined security auth guardrail gaps: skeeeon/kiosk"}, "fullDescription": {"text": "Graph query export: Security/auth changes without enough guardrails\nQuery id: security_auth_guardrail_gaps\nQuery type: motif_query\nIntent: Assumption-check security/auth examples requiring stronger tests or CI.\nMotif: security_auth_without_guardrails\nTraining usage: assumption_check\nGraph gold label: supported_by_high_confidence_link\nRepo: skeeeon/kiosk\nThread: skeeeon/kiosk#2\nEvidence:\nGraph motif: Security/auth change without enough guardrails\nMotif id: security_auth_without_guardrails\nPolarity: bad\nTraining usage: assumption_check\nSeverity: critical\nRepo: skeeeon/kiosk\nThread: skeeeon/kiosk#2\nGraph gold label: supported_by_high_confidence_link\nThread graph evidence:\nGitHub issue/PR evidence subgraph\nThread: skeeeon/kiosk#2\nRepo: skeeeon/kiosk\nIssue/PR number: 2\nGraph consistency label: supported_by_high_confidence_link\nNodes: 83\nEdges: 109\nNode types: {'pr_file': 71, 'commit': 3, 'link_quality': 3, 'thread': 1, 'repo': 1, 'comment': 1, 'comment_chain': 1, 'issue_chain': 1, 'fix_outc"}, "properties": {"scanner": "foundry_dataset", "category": "auth", "severity": "critical", "confidence": 0.78, "cwe": "", "owasp": ""}}, {"id": "scanner-4601e3ad3bb28677", "name": "No CI/CD pipelines detected", "shortDescription": {"text": "No CI/CD pipelines detected"}, "fullDescription": {"text": "No GitHub Actions, GitLab CI, or CircleCI configs found. Without CI you can't gate deploys on tests/lints."}, "properties": {"scanner": "scanner-primary", "layer": "cicd", "severity": "medium", "confidence": 1.0}}, {"id": "scanner-141b30a41e03817b", "name": "No license file detected", "shortDescription": {"text": "No license file detected"}, "fullDescription": {"text": "No LICENSE/COPYING/NOTICE file was found. Generated repositories often omit licensing, which blocks reuse and automated intake."}, "properties": {"scanner": "scanner-primary", "layer": "quality", "severity": "low", "confidence": 1.0}}, {"id": "scanner-72b2a6250083a784", "name": "Placeholder or mock-heavy implementation detected", "shortDescription": {"text": "Placeholder or mock-heavy implementation detected"}, "fullDescription": {"text": "Found 15 placeholder/mock markers across 7 source files. This often means the repo looks complete while core flows still use generated scaffolding or fake data."}, "properties": {"scanner": "scanner-primary", "layer": "quality", "severity": "medium", "confidence": 1.0}}, {"id": "scanner-2d0c7b7ab8f8aacf", "name": "Critical user flow still appears backed by mock or placeholder data", "shortDescription": {"text": "Critical user flow still appears backed by mock or placeholder data"}, "fullDescription": {"text": "A payment/auth/admin/order/billing-style flow contains mock, fake, TODO, dummy, or placeholder markers in runtime source. In the Fable corpus this is a high-leverage completeness smell: the app can look finished while the money, identity, or tenant flow is still scaffolded."}, "properties": {"scanner": "scanner-primary", "layer": "quality", "severity": "medium", "confidence": 1.0}}, {"id": "scanner-b9088664ace7f748", "name": "Composite production-readiness gap", "shortDescription": {"text": "Composite production-readiness gap"}, "fullDescription": {"text": "Multiple low-cost hardening controls are missing together: license, ci, tests. Opus verification showed these co-occurring gaps are a better readiness signal than reading each flag in isolation."}, "properties": {"scanner": "scanner-primary", "layer": "quality", "severity": "medium", "confidence": 1.0}}, {"id": "scanner-749d4bc1bd66df5f", "name": "Agent instructions exist but release-hardening basics are missing", "shortDescription": {"text": "Agent instructions exist but release-hardening basics are missing"}, "fullDescription": {"text": "AI-coder instruction files were found, but the repo is missing license, ci, tests. Treat this as a contract gap: the agent is guided, but the generated output is not yet guarded by the controls that make it repeatable."}, "properties": {"scanner": "scanner-primary", "layer": "quality", "severity": "medium", "confidence": 1.0}}, {"id": "scanner-ea8f3013f588db25", "name": "Shallow git history limits provenance confidence", "shortDescription": {"text": "Shallow git history limits provenance confidence"}, "fullDescription": {"text": "The repository is a shallow clone. Origin/evolution analysis cannot distinguish fresh generation, imported legacy code, or long-lived human code with high confidence."}, "properties": {"scanner": "scanner-primary", "layer": "quality", "severity": "low", "confidence": 1.0}}, {"id": "scanner-8424db9c75e04ba4", "name": "Very short observed git history", "shortDescription": {"text": "Very short observed git history"}, "fullDescription": {"text": "The repo has multiple source files but two or fewer visible commits. This is not a failure by itself, but it lowers confidence in evolution-based diagnosis."}, "properties": {"scanner": "scanner-primary", "layer": "quality", "severity": "info", "confidence": 1.0}}, {"id": "scanner-825d69d12ab4d236", "name": "Commented-code block (9 lines) in ui/src/types.ts:289", "shortDescription": {"text": "Commented-code block (9 lines) in ui/src/types.ts:289"}, "fullDescription": {"text": "A long run of `//` or `#` lines usually means abandoned code. Delete or move to git history. Keeps the canvas + dead-code detection honest."}, "properties": {"scanner": "scanner-primary", "layer": "quality", "severity": "info", "confidence": 1.0}}, {"id": "scanner-2a3b34f2d5b157a2", "name": "Commented-code block (7 lines) in ui/src/stores/workerAuth.ts:10", "shortDescription": {"text": "Commented-code block (7 lines) in ui/src/stores/workerAuth.ts:10"}, "fullDescription": {"text": "A long run of `//` or `#` lines usually means abandoned code. Delete or move to git history. Keeps the canvas + dead-code detection honest."}, "properties": {"scanner": "scanner-primary", "layer": "quality", "severity": "info", "confidence": 1.0}}, {"id": "scanner-17f2354528a06d7a", "name": "Commented-code block (11 lines) in ui/src/composables/useCartEvents.ts:8", "shortDescription": {"text": "Commented-code block (11 lines) in ui/src/composables/useCartEvents.ts:8"}, "fullDescription": {"text": "A long run of `//` or `#` lines usually means abandoned code. Delete or move to git history. Keeps the canvas + dead-code detection honest."}, "properties": {"scanner": "scanner-primary", "layer": "quality", "severity": "info", "confidence": 1.0}}, {"id": "scanner-21de23e99edf6339", "name": "Commented-code block (6 lines) in ui/src/composables/useKioskIdentity.ts:14", "shortDescription": {"text": "Commented-code block (6 lines) in ui/src/composables/useKioskIdentity.ts:14"}, "fullDescription": {"text": "A long run of `//` or `#` lines usually means abandoned code. Delete or move to git history. Keeps the canvas + dead-code detection honest."}, "properties": {"scanner": "scanner-primary", "layer": "quality", "severity": "info", "confidence": 1.0}}, {"id": "scanner-0b3abc6cd4c1be40", "name": "Commented-code block (5 lines) in ui/src/composables/useUrlQuerySync.ts:6", "shortDescription": {"text": "Commented-code block (5 lines) in ui/src/composables/useUrlQuerySync.ts:6"}, "fullDescription": {"text": "A long run of `//` or `#` lines usually means abandoned code. Delete or move to git history. Keeps the canvas + dead-code detection honest."}, "properties": {"scanner": "scanner-primary", "layer": "quality", "severity": "info", "confidence": 1.0}}, {"id": "scanner-c739e7288626441b", "name": "Commented-code block (6 lines) in ui/src/composables/useCart.ts:90", "shortDescription": {"text": "Commented-code block (6 lines) in ui/src/composables/useCart.ts:90"}, "fullDescription": {"text": "A long run of `//` or `#` lines usually means abandoned code. Delete or move to git history. Keeps the canvas + dead-code detection honest."}, "properties": {"scanner": "scanner-primary", "layer": "quality", "severity": "info", "confidence": 1.0}}, {"id": "scanner-4e9f62fda399c805", "name": "Commented-code block (5 lines) in ui/src/lib/onlineStatus.ts:1", "shortDescription": {"text": "Commented-code block (5 lines) in ui/src/lib/onlineStatus.ts:1"}, "fullDescription": {"text": "A long run of `//` or `#` lines usually means abandoned code. Delete or move to git history. Keeps the canvas + dead-code detection honest."}, "properties": {"scanner": "scanner-primary", "layer": "quality", "severity": "info", "confidence": 1.0}}, {"id": "scanner-f586a66ed8491453", "name": "Commented-code block (7 lines) in ui/src/lib/api.ts:4", "shortDescription": {"text": "Commented-code block (7 lines) in ui/src/lib/api.ts:4"}, "fullDescription": {"text": "A long run of `//` or `#` lines usually means abandoned code. Delete or move to git history. Keeps the canvas + dead-code detection honest."}, "properties": {"scanner": "scanner-primary", "layer": "quality", "severity": "info", "confidence": 1.0}}, {"id": "scanner-678a65ad9e869148", "name": "Commented-code block (7 lines) in ui/src/lib/pb.ts:13", "shortDescription": {"text": "Commented-code block (7 lines) in ui/src/lib/pb.ts:13"}, "fullDescription": {"text": "A long run of `//` or `#` lines usually means abandoned code. Delete or move to git history. Keeps the canvas + dead-code detection honest."}, "properties": {"scanner": "scanner-primary", "layer": "quality", "severity": "info", "confidence": 1.0}}, {"id": "scanner-cfc6ad1c503ad1f5", "name": "Commented-code block (8 lines) in ui/src/lib/instanceStatus.ts:1", "shortDescription": {"text": "Commented-code block (8 lines) in ui/src/lib/instanceStatus.ts:1"}, "fullDescription": {"text": "A long run of `//` or `#` lines usually means abandoned code. Delete or move to git history. Keeps the canvas + dead-code detection honest."}, "properties": {"scanner": "scanner-primary", "layer": "quality", "severity": "info", "confidence": 1.0}}, {"id": "scanner-badf849f41252908", "name": "Commented-code block (8 lines) in ui/src/lib/inventory.ts:1", "shortDescription": {"text": "Commented-code block (8 lines) in ui/src/lib/inventory.ts:1"}, "fullDescription": {"text": "A long run of `//` or `#` lines usually means abandoned code. Delete or move to git history. Keeps the canvas + dead-code detection honest."}, "properties": {"scanner": "scanner-primary", "layer": "quality", "severity": "info", "confidence": 1.0}}, {"id": "scanner-db80e9b9bb09483d", "name": "Unused endpoint: POST /api/kiosk/cart/cancel", "shortDescription": {"text": "Unused endpoint: POST /api/kiosk/cart/cancel"}, "fullDescription": {"text": "`ui/src/composables/useCart.ts` declares `POST /api/kiosk/cart/cancel` but no frontend code we scanned calls it. This is fine if the endpoint serves external clients (mobile app, third-party, server-side webhooks). Otherwise it's dead code \u2014 consider removing or documenting who consumes it."}, "properties": {"scanner": "scanner-primary", "layer": "api", "severity": "low", "confidence": 1.0}}]}}, "automationDetails": {"id": "repobility/19777"}, "properties": {"repository": "skeeeon/kiosk", "repoUrl": "https://github.com/skeeeon/kiosk", "branch": "main"}, "results": [{"ruleId": "foundry_blueprint_gap", "level": "warning", "message": {"text": "Foundry mined blueprint gap alignment: skeeeon/kiosk"}, "properties": {"repobilityId": 356095, "scanner": "foundry_dataset", "fingerprint": "2d3856743916cb55d115db68bedbd3bb215668d9aa220850568568c708d407a6", "category": "tech_debt", "severity": "medium", "confidence": 0.7, "triageState": "open", "verdict": "needs_review", "isResolved": false, "reason": "Imported from mined Foundry/Fable5 evidence with real GitHub/source provenance. Review source_id before acting.", "evidence": {"meta": {"kind": "graph_query_record", "title": "Human feedback aligned with blueprint or architecture gaps", "intent": "Curriculum-gap examples connecting issue threads to helicopter-view gaps.", "labels": {"bug_fix": 1, "api_or_backend": 7, "commit_general": 1, "ui_or_frontend": 7, "source_or_other": 10, "api_integration_gap": 1, "partial blueprint fit": 2, "verification_or_tests": 3, "issue_or_pull_request_thread": 1, "blueprint_human_gap_alignment": 2, "thread_has_human_issue_and_fix_context": 2, "claimed_resolved_with_verification_signal": 3, "human_reported_issue_then_verified_fix_attempt": 1}, "source": "graph_query_export", "motif_id": "blueprint_gap_alignment", "outcomes": {"claimed_resolved_with_verification_signal": 6}, "polarity": "mixed", "query_id": "blueprint_gap_alignment", "severity": "medium", "ci_labels": {}, "synthetic": false, "edge_count": 72, "edge_types": {"repo_has_thread": 1, "comment_has_chain": 1, "thread_has_comment": 1, "thread_touches_file": 24, "alignment_uses_comment": 2, "alignment_uses_finding": 2, "chain_has_link_quality": 5, "comment_aligns_finding": 2, "thread_has_fix_outcome": 1, "thread_has_issue_chain": 1, "issue_chain_touches_file": 12, "thread_has_comment_chain": 1, "comment_chain_links_commit": 5, "comment_chain_touches_file": 12, "issue_chain_has_fix_outcome": 1, "issue_chain_has_comment_chain": 1}, "node_count": 44, "node_types": {"repo": 1, "commit": 5, "thread": 1, "comment": 1, "pr_file": 24, "alignment": 2, "fix_outcome": 1, "issue_chain": 1, "link_quality": 5, "comment_chain": 1, "blueprint_finding": 2}, "query_type": "motif_query", "thread_key": "skeeeon/kiosk#1", "issue_number": "1", "quality_tiers": {"high_confidence": 3, "assumption_check": 2}, "repo_full_name": "skeeeon/kiosk", "training_usage": "curriculum_gap", "source_motif_id": "graph-pattern-motif-thread-cf41ddd7100e7d25", "graph_gold_label": "supported_by_verification_signal", "changed_file_labels": {"api_or_backend": 28, "ui_or_frontend": 28, "source_or_other": 40}}, "text": "Graph query export: Human feedback aligned with blueprint or architecture gaps\nQuery id: blueprint_gap_alignment\nQuery type: motif_query\nIntent: Curriculum-gap examples connecting issue threads to helicopter-view gaps.\nMotif: blueprint_gap_alignment\nTraining usage: curriculum_gap\nGraph gold label: supported_by_verification_signal\nRepo: skeeeon/kiosk\nThread: skeeeon/kiosk#1\nEvidence:\nGraph motif: Human feedback aligns with blueprint or architecture gaps\nMotif id: blueprint_gap_alignment\nPolarity: mixed\nTraining usage: curriculum_gap\nSeverity: medium\nRepo: skeeeon/kiosk\nThread: skeeeon/kiosk#1\nGraph gold label: supported_by_verification_signal\nThread graph evidence:\nGitHub issue/PR evidence subgraph\nThread: skeeeon/kiosk#1\nRepo: skeeeon/kiosk\nIssue/PR number: 1\nGraph consistency label: supported_by_verification_signal\nNodes: 44\nEdges: 72\nNode types: {'pr_file': 24, 'commit': 5, 'link_quality': 5, 'alignment': 2, 'blueprint_finding': 2, 'thread': 1, 'repo': 1, 'comment': 1, 'comment_chain': 1, 'issue_chain': 1, 'fix_outcome': 1}\nEdge types: {'thread_touches_file': 24, 'comment_chain_touches_file': 12, 'issue_chain_touches_file': 12, 'comment_chain_links_commit': 5, 'chain_has_link_quality': 5, 'alignment_uses_comment': 2, 'alignment_uses_finding': 2, 'comment_aligns_finding': 2, 'repo_has_thread': 1, 'thread_has_comment': 1, 'thread_has_comment_chain': 1, 'comment_has_chain': 1, 'thread_has_issue_chain': 1, 'issue_chain_has_comment_chain': 1, 'thread_has_fix_outcome': 1, 'issue_chain_has_fix_outcome': 1}\nLabels: {'source_or_other': 10, 'api_or_backend': 7, 'ui_or_frontend': 7, 'verification_or_tests': 3, 'claimed_resolved_with_verification_signal': 3, 'thread_has_human_issue_and_fix_context': 2, 'blueprint_human_gap_alignment': 2, 'partial blueprint fit': 2, 'issue_or_pull_request_thread': 1, 'api_integration_gap': 1, 'human_reported_issue_then_verified_fix_attempt': 1, 'commit_general': 1, 'bug_fix': 1}\nOutcomes: {'claimed_resolved_with_verification_signal': 6}\nQuality tiers: {'high_confidence': 3, 'assumption_check': 2}\nCI labels: {}\nCurriculum targets:\n- Use helicopter-view architecture/schema/design evidence beside issue threads.\n- Teach models to compare requested product class against implementation layers.\nAssumption checks:\n- Which blueprint layer is absent: frontend, API, data, auth, tests, or deployment?\n- Does human feedback confirm the same architectural gap?", "source": "foundry_mined_dataset", "repo_url": "https://github.com/skeeeon/kiosk", "source_id": "graph-query-motif_query-72e57ee27a7a9938", "synthetic": false, "gold_label": "", "graph_label": "", "source_path": "/data/distillate/foundry_data/graph_queries/blueprint_gap_alignment/shard-0.jsonl", "bundle_label": "", "priority_band": "", "priority_score": 0, "repo_full_name": "skeeeon/kiosk", "source_dataset": "graph_queries/blueprint_gap_alignment", "training_usage": "curriculum_gap"}}}, {"ruleId": "foundry_assumption_check", "level": "warning", "message": {"text": "Foundry mined assumption checks: skeeeon/kiosk"}, "properties": {"repobilityId": 312337, "scanner": "foundry_dataset", "fingerprint": "8d2c62c047a5043e4df417395b60fd6240f5b435e722cb0dcb71882c5eed3eef", "category": "practices", "severity": "medium", "confidence": 0.62, "triageState": "open", "verdict": "needs_review", "isResolved": false, "reason": "Imported from mined Foundry/Fable5 evidence with real GitHub/source provenance. Review source_id before acting.", "evidence": {"meta": {"kind": "comment_chain_pattern_product", "source": "comment_chain_pattern_miner", "product": "assumption_checks", "synthetic": false, "thread_key": "skeeeon/kiosk#2", "human_labels": ["api_or_backend", "docs_or_claims", "schema_or_data", "security_auth_secret", "source_or_other", "ui_or_frontend"], "issue_number": "2", "thread_label": "thread_has_human_issue_and_fix_context", "outcome_label": "claimed_resolved_unverified", "source_backed": true, "max_confidence": 0.82, "repo_full_name": "skeeeon/kiosk", "training_usage": "gold_candidate", "confidence_tier": "high_confidence", "source_chain_id": "evidence-chain-issue_chain-6601261da33727a1", "helicopter_views": {"schemas": 2}, "artifact_families": {"docs": 2, "tests": 2, "routes_api": 1, "generated_claims": 3}, "source_chain_kind": "issue_chain", "changed_file_count": 71, "source_graph_label": "source_backed_multi_signal_graph", "changed_file_labels": {"api_or_backend": 18, "docs_or_claims": 10, "schema_or_data": 5, "ui_or_frontend": 13, "source_or_other": 25}, "linked_commit_count": 3, "helicopter_view_count": 2, "source_artifact_count": 8, "classification_reasons": ["source_graph_has_real_artifacts", "source_graph_has_verification_artifacts", "repo_has_isolated_helicopter_views", "link_quality_high_confidence", "high_risk_human_feedback_label"], "linked_ci_commit_count": 0, "verification_artifact_count": 2, "design_schema_api_artifact_count": 1}, "text": "Comment chain pattern product: assumption_checks\nRepo: skeeeon/kiosk\nThread: skeeeon/kiosk#2\nOutcome: claimed_resolved_unverified\nThread label: thread_has_human_issue_and_fix_context\nSource graph label: source_backed_multi_signal_graph\nReasons: source_graph_has_real_artifacts, source_graph_has_verification_artifacts, repo_has_isolated_helicopter_views, link_quality_high_confidence, high_risk_human_feedback_label\nChain evidence:\nIssue/PR evidence chain: skeeeon/kiosk#2\nRepo: skeeeon/kiosk\nThread label: thread_has_human_issue_and_fix_context\nOutcome: claimed_resolved_unverified\nComment count: 1\nLinked commit count: 3\nLinked CI commit count: 0\nLinked CI labels: {}\nChanged file count: 71\nLabels: {'security_auth_secret': 1}\nPolarities: {'bad': 1}\nChanged file labels: {'source_or_other': 25, 'docs_or_claims': 10, 'api_or_backend': 18, 'schema_or_data': 5, 'ui_or_frontend': 13}\nExamples:\n[\n  {\n    \"id\": \"github-feedback-comment-0b2a47ace186939d\",\n    \"kind\": \"pull_request_body\",\n    \"label\": \"security_auth_secret\",\n    \"polarity\": \"bad\",\n    \"url\": \"https://github.com/skeeeon/kiosk/pull/2\",\n    \"text\": \"GitHub feedback: security_auth_secret\\nPolarity: bad\\nKind: pull_request_body\\nRepo: skeeeon/kiosk\\nAuthor: skeeeon (User)\\nURL: https://github.com/skeeeon/kiosk/pull/2\\nTitle: feat(timeclock): clock-in/out punch ledger + virtual self-service terminal\\nBody:\\n## Summary\\n\\nAdds the **timeclock** feature to the kiosk platform: an append-only\\nclock-in/clock-out punch ledger with optional tool-ledger interlocks, plus a\\ndedicated **virtual self-service terminal** so workers can punch from their\\nphones \u2014 no badge scanner or physical station.\\n\\nThis branch is the full feature (5 commits). Highlights:\\n\\n### Punch ledger + interlocks\\n- New append-only `time_punches` collection, **funnel-only** writes via\\n  `timeclock.PerformPunch` (same discipline as the tool ledger \u2014 never edited\\n  or deleted; corrections are new punches with a reason). \\\"Clocked in\\\" is\\n  derived from the latest punch, no materialized open-shifts table.\\n- Config-gated interlocks: `require_clock_in_for_checkout` (no checkout/consume\\n  unless clocked in; returns always allowed, one-tap \\\"clock in now?\\\") and\\n  `block_clock_out_with_open_checkouts` (per-kiosk, admin `force` overrides).\\n- Foremen punch crew in their group (re-enforced insid\"\n  }\n]\nChanged files:\n[\n  {\n    \"id\": \"github-pr-file-file-319dc3bbc8dfc248\",\n    \"filename\": \".gitignore\",\n    \"label\": \"source_or_other\",\n    \"status\": \"modified\",\n    \"additions\": 8,\n    \"deletions\": 0,\n    \"changes\": 8,\n    \"blob_url\": \"https://github.com/skeeeon/kiosk/blob/e0ef55f298fc7a140a75a471ca87fd47da7fb532/.gitignore\"\n  },\n  {\n    \"id\": \"github-pr-file-file-05bd96c641a238bf\",\n    \"filename\": \"CLAUDE.md\",\n    \"label\": \"docs_or_claims\",\n    \"status\": \"modified\",\n    \"additions\": 115,\n    \"deletions\": 2,\n    \"changes\": 117,\n    \"blob_url\": \"https://github.com/skeeeon/kiosk/blob/e0ef55f298fc7a140a75a471ca87fd\n[truncated by importer]", "source": "foundry_mined_dataset", "repo_url": "https://github.com/skeeeon/kiosk", "source_id": "comment-chain-pattern-assumption_checks-68f183c0b9705aca", "synthetic": false, "gold_label": "", "graph_label": "source_backed_multi_signal_graph", "source_path": "/data/distillate/foundry_data/comment_chain_patterns/assumption_checks/shard-0.jsonl", "bundle_label": "", "priority_band": "", "priority_score": 0, "repo_full_name": "skeeeon/kiosk", "source_dataset": "comment_chain_patterns/assumption_checks", "training_usage": "gold_candidate"}}}, {"ruleId": "foundry_schema_ui_api_gap", "level": "error", "message": {"text": "Foundry mined schema ui api mismatch: skeeeon/kiosk"}, "properties": {"repobilityId": 330958, "scanner": "foundry_dataset", "fingerprint": "a1dc7578186b4f66fc75616f144066a23e80c5798bcac7ae34dacda557b1513b", "category": "quality", "severity": "high", "confidence": 0.76, "triageState": "open", "verdict": "needs_review", "isResolved": false, "reason": "Imported from mined Foundry/Fable5 evidence with real GitHub/source provenance. Review source_id before acting.", "evidence": {"meta": {"kind": "graph_query_record", "title": "Schema, UI, and API mismatch", "intent": "Assumption-check examples for data-path consistency across layers.", "labels": {"bug_fix": 2, "api_or_backend": 18, "commit_general": 1, "docs_or_claims": 10, "schema_or_data": 5, "ui_or_frontend": 13, "source_or_other": 25, "security_auth_secret": 1, "claimed_resolved_unverified": 3, "issue_or_pull_request_thread": 1, "human_reported_issue_then_fix_attempt": 1, "thread_has_human_issue_and_fix_context": 2}, "source": "graph_query_export", "motif_id": "schema_ui_api_mismatch", "outcomes": {"claimed_resolved_unverified": 6}, "polarity": "bad", "query_id": "schema_ui_api_mismatch", "severity": "high", "ci_labels": {}, "synthetic": false, "edge_count": 109, "edge_types": {"repo_has_thread": 1, "comment_has_chain": 1, "thread_has_comment": 1, "thread_touches_file": 71, "chain_has_link_quality": 3, "thread_has_fix_outcome": 1, "thread_has_issue_chain": 1, "issue_chain_touches_file": 12, "thread_has_comment_chain": 1, "comment_chain_links_commit": 3, "comment_chain_touches_file": 12, "issue_chain_has_fix_outcome": 1, "issue_chain_has_comment_chain": 1}, "node_count": 83, "node_types": {"repo": 1, "commit": 3, "thread": 1, "comment": 1, "pr_file": 71, "fix_outcome": 1, "issue_chain": 1, "link_quality": 3, "comment_chain": 1}, "query_type": "motif_query", "thread_key": "skeeeon/kiosk#2", "issue_number": "2", "quality_tiers": {"high_confidence": 3}, "repo_full_name": "skeeeon/kiosk", "training_usage": "assumption_check", "source_motif_id": "graph-pattern-motif-thread-2a33b2a2fdf45109", "graph_gold_label": "supported_by_high_confidence_link", "changed_file_labels": {"api_or_backend": 72, "docs_or_claims": 40, "schema_or_data": 20, "ui_or_frontend": 52, "source_or_other": 100}}, "text": "Graph query export: Schema, UI, and API mismatch\nQuery id: schema_ui_api_mismatch\nQuery type: motif_query\nIntent: Assumption-check examples for data-path consistency across layers.\nMotif: schema_ui_api_mismatch\nTraining usage: assumption_check\nGraph gold label: supported_by_high_confidence_link\nRepo: skeeeon/kiosk\nThread: skeeeon/kiosk#2\nEvidence:\nGraph motif: Schema, UI, and API evidence do not line up\nMotif id: schema_ui_api_mismatch\nPolarity: bad\nTraining usage: assumption_check\nSeverity: high\nRepo: skeeeon/kiosk\nThread: skeeeon/kiosk#2\nGraph gold label: supported_by_high_confidence_link\nThread graph evidence:\nGitHub issue/PR evidence subgraph\nThread: skeeeon/kiosk#2\nRepo: skeeeon/kiosk\nIssue/PR number: 2\nGraph consistency label: supported_by_high_confidence_link\nNodes: 83\nEdges: 109\nNode types: {'pr_file': 71, 'commit': 3, 'link_quality': 3, 'thread': 1, 'repo': 1, 'comment': 1, 'comment_chain': 1, 'issue_chain': 1, 'fix_outcome': 1}\nEdge types: {'thread_touches_file': 71, 'comment_chain_touches_file': 12, 'issue_chain_touches_file': 12, 'comment_chain_links_commit': 3, 'chain_has_link_quality': 3, 'repo_has_thread': 1, 'thread_has_comment': 1, 'thread_has_comment_chain': 1, 'comment_has_chain': 1, 'thread_has_issue_chain': 1, 'issue_chain_has_comment_chain': 1, 'thread_has_fix_outcome': 1, 'issue_chain_has_fix_outcome': 1}\nLabels: {'source_or_other': 25, 'api_or_backend': 18, 'ui_or_frontend': 13, 'docs_or_claims': 10, 'schema_or_data': 5, 'claimed_resolved_unverified': 3, 'bug_fix': 2, 'thread_has_human_issue_and_fix_context': 2, 'issue_or_pull_request_thread': 1, 'security_auth_secret': 1, 'human_reported_issue_then_fix_attempt': 1, 'commit_general': 1}\nOutcomes: {'claimed_resolved_unverified': 6}\nQuality tiers: {'high_confidence': 3}\nCI labels: {}\nCurriculum targets:\n- Create schema-to-API-to-UI consistency tasks with migrations and tests.\n- Teach models to verify persistence, route contracts, and UI state together.\nAssumption checks:\n- Do schema changes have matching API and UI handling?\n- Are migrations and tests present for the data path?", "source": "foundry_mined_dataset", "repo_url": "https://github.com/skeeeon/kiosk", "source_id": "graph-query-motif_query-467761d28c754846", "synthetic": false, "gold_label": "", "graph_label": "", "source_path": "/data/distillate/foundry_data/graph_queries/schema_ui_api_mismatch/shard-0.jsonl", "bundle_label": "", "priority_band": "", "priority_score": 0, "repo_full_name": "skeeeon/kiosk", "source_dataset": "graph_queries/schema_ui_api_mismatch", "training_usage": "assumption_check"}}}, {"ruleId": "foundry_auth_guardrail_gap", "level": "error", "message": {"text": "Foundry mined security auth guardrail gaps: skeeeon/kiosk"}, "properties": {"repobilityId": 334907, "scanner": "foundry_dataset", "fingerprint": "7fb78bf237184f3b27c245064876f56881b90276c65dde9c5eb3c8da9f2b5bfd", "category": "auth", "severity": "critical", "confidence": 0.78, "triageState": "open", "verdict": "needs_review", "isResolved": false, "reason": "Imported from mined Foundry/Fable5 evidence with real GitHub/source provenance. Review source_id before acting.", "evidence": {"meta": {"kind": "graph_query_record", "title": "Security/auth changes without enough guardrails", "intent": "Assumption-check security/auth examples requiring stronger tests or CI.", "labels": {"bug_fix": 2, "api_or_backend": 18, "commit_general": 1, "docs_or_claims": 10, "schema_or_data": 5, "ui_or_frontend": 13, "source_or_other": 25, "security_auth_secret": 1, "claimed_resolved_unverified": 3, "issue_or_pull_request_thread": 1, "human_reported_issue_then_fix_attempt": 1, "thread_has_human_issue_and_fix_context": 2}, "source": "graph_query_export", "motif_id": "security_auth_without_guardrails", "outcomes": {"claimed_resolved_unverified": 6}, "polarity": "bad", "query_id": "security_auth_guardrail_gaps", "severity": "critical", "ci_labels": {}, "synthetic": false, "edge_count": 109, "edge_types": {"repo_has_thread": 1, "comment_has_chain": 1, "thread_has_comment": 1, "thread_touches_file": 71, "chain_has_link_quality": 3, "thread_has_fix_outcome": 1, "thread_has_issue_chain": 1, "issue_chain_touches_file": 12, "thread_has_comment_chain": 1, "comment_chain_links_commit": 3, "comment_chain_touches_file": 12, "issue_chain_has_fix_outcome": 1, "issue_chain_has_comment_chain": 1}, "node_count": 83, "node_types": {"repo": 1, "commit": 3, "thread": 1, "comment": 1, "pr_file": 71, "fix_outcome": 1, "issue_chain": 1, "link_quality": 3, "comment_chain": 1}, "query_type": "motif_query", "thread_key": "skeeeon/kiosk#2", "issue_number": "2", "quality_tiers": {"high_confidence": 3}, "repo_full_name": "skeeeon/kiosk", "training_usage": "assumption_check", "source_motif_id": "graph-pattern-motif-thread-32f4de5e377cbab9", "graph_gold_label": "supported_by_high_confidence_link", "changed_file_labels": {"api_or_backend": 72, "docs_or_claims": 40, "schema_or_data": 20, "ui_or_frontend": 52, "source_or_other": 100}}, "text": "Graph query export: Security/auth changes without enough guardrails\nQuery id: security_auth_guardrail_gaps\nQuery type: motif_query\nIntent: Assumption-check security/auth examples requiring stronger tests or CI.\nMotif: security_auth_without_guardrails\nTraining usage: assumption_check\nGraph gold label: supported_by_high_confidence_link\nRepo: skeeeon/kiosk\nThread: skeeeon/kiosk#2\nEvidence:\nGraph motif: Security/auth change without enough guardrails\nMotif id: security_auth_without_guardrails\nPolarity: bad\nTraining usage: assumption_check\nSeverity: critical\nRepo: skeeeon/kiosk\nThread: skeeeon/kiosk#2\nGraph gold label: supported_by_high_confidence_link\nThread graph evidence:\nGitHub issue/PR evidence subgraph\nThread: skeeeon/kiosk#2\nRepo: skeeeon/kiosk\nIssue/PR number: 2\nGraph consistency label: supported_by_high_confidence_link\nNodes: 83\nEdges: 109\nNode types: {'pr_file': 71, 'commit': 3, 'link_quality': 3, 'thread': 1, 'repo': 1, 'comment': 1, 'comment_chain': 1, 'issue_chain': 1, 'fix_outcome': 1}\nEdge types: {'thread_touches_file': 71, 'comment_chain_touches_file': 12, 'issue_chain_touches_file': 12, 'comment_chain_links_commit': 3, 'chain_has_link_quality': 3, 'repo_has_thread': 1, 'thread_has_comment': 1, 'thread_has_comment_chain': 1, 'comment_has_chain': 1, 'thread_has_issue_chain': 1, 'issue_chain_has_comment_chain': 1, 'thread_has_fix_outcome': 1, 'issue_chain_has_fix_outcome': 1}\nLabels: {'source_or_other': 25, 'api_or_backend': 18, 'ui_or_frontend': 13, 'docs_or_claims': 10, 'schema_or_data': 5, 'claimed_resolved_unverified': 3, 'bug_fix': 2, 'thread_has_human_issue_and_fix_context': 2, 'issue_or_pull_request_thread': 1, 'security_auth_secret': 1, 'human_reported_issue_then_fix_attempt': 1, 'commit_general': 1}\nOutcomes: {'claimed_resolved_unverified': 6}\nQuality tiers: {'high_confidence': 3}\nCI labels: {}\nCurriculum targets:\n- Train auth boundary repair with tests, permission matrices, and secret-handling checks.\n- Keep risky auth changes separate from ordinary bug-fix examples.\nAssumption checks:\n- Are auth/permission paths covered by tests?\n- Are secrets, CORS, or access rules verified rather than summarized?", "source": "foundry_mined_dataset", "repo_url": "https://github.com/skeeeon/kiosk", "source_id": "graph-query-motif_query-f74f9dece0b68b1e", "synthetic": false, "gold_label": "", "graph_label": "", "source_path": "/data/distillate/foundry_data/graph_queries/security_auth_guardrail_gaps/shard-0.jsonl", "bundle_label": "", "priority_band": "", "priority_score": 0, "repo_full_name": "skeeeon/kiosk", "source_dataset": "graph_queries/security_auth_guardrail_gaps", "training_usage": "assumption_check"}}}, {"ruleId": "scanner-4601e3ad3bb28677", "level": "warning", "message": {"text": "No CI/CD pipelines detected"}, "properties": {"repobilityId": "c3ee439bce2bc51e", "scanner": "scanner-primary", "fingerprint": "4601e3ad3bb28677", "layer": "cicd", "severity": "medium", "confidence": 1.0, "tags": ["coverage"]}}, {"ruleId": "scanner-141b30a41e03817b", "level": "note", "message": {"text": "No license file detected"}, "properties": {"repobilityId": "6e0ce5f40228b644", "scanner": "scanner-primary", "fingerprint": "141b30a41e03817b", "layer": "quality", "severity": "low", "confidence": 1.0, "tags": ["license", "repo-hardening", "generated-repo-pattern"]}}, {"ruleId": "scanner-72b2a6250083a784", "level": "warning", "message": {"text": "Placeholder or mock-heavy implementation detected"}, "properties": {"repobilityId": "e4e381921d861fdf", "scanner": "scanner-primary", "fingerprint": "72b2a6250083a784", "layer": "quality", "severity": "medium", "confidence": 1.0, "tags": ["placeholder", "mock-data", "incomplete", "generated-repo-pattern"]}}, {"ruleId": "scanner-2d0c7b7ab8f8aacf", "level": "warning", "message": {"text": "Critical user flow still appears backed by mock or placeholder data"}, "properties": {"repobilityId": "4c512e5be288a27b", "scanner": "scanner-primary", "fingerprint": "2d0c7b7ab8f8aacf", "layer": "quality", "severity": "medium", "confidence": 1.0, "tags": ["placeholder", "mock-data", "critical-flow", "generated-repo-pattern"]}}, {"ruleId": "scanner-b9088664ace7f748", "level": "warning", "message": {"text": "Composite production-readiness gap"}, "properties": {"repobilityId": "0cf4c2aae00af97c", "scanner": "scanner-primary", "fingerprint": "b9088664ace7f748", "layer": "quality", "severity": "medium", "confidence": 1.0, "tags": ["production-readiness", "repo-hardening", "generated-repo-pattern"]}}, {"ruleId": "scanner-749d4bc1bd66df5f", "level": "warning", "message": {"text": "Agent instructions exist but release-hardening basics are missing"}, "properties": {"repobilityId": "b08bf85889c0310c", "scanner": "scanner-primary", "fingerprint": "749d4bc1bd66df5f", "layer": "quality", "severity": "medium", "confidence": 1.0, "tags": ["agent-instructions", "repo-hardening", "generated-repo-pattern"]}}, {"ruleId": "scanner-ea8f3013f588db25", "level": "note", "message": {"text": "Shallow git history limits provenance confidence"}, "properties": {"repobilityId": "ae4ffaf2ac6d179f", "scanner": "scanner-primary", "fingerprint": "ea8f3013f588db25", "layer": "quality", "severity": "low", "confidence": 1.0, "tags": ["provenance", "git-history", "generated-repo-pattern"]}}, {"ruleId": "scanner-8424db9c75e04ba4", "level": "none", "message": {"text": "Very short observed git history"}, "properties": {"repobilityId": "9533cfa341194f46", "scanner": "scanner-primary", "fingerprint": "8424db9c75e04ba4", "layer": "quality", "severity": "info", "confidence": 1.0, "tags": ["provenance", "git-history", "generated-repo-pattern"]}}, {"ruleId": "scanner-825d69d12ab4d236", "level": "none", "message": {"text": "Commented-code block (9 lines) in ui/src/types.ts:289"}, "properties": {"repobilityId": "fb089e06f132b001", "scanner": "scanner-primary", "fingerprint": "825d69d12ab4d236", "layer": "quality", "severity": "info", "confidence": 1.0, "tags": ["integrity", "commented-code", "dead-code"]}}, {"ruleId": "scanner-2a3b34f2d5b157a2", "level": "none", "message": {"text": "Commented-code block (7 lines) in ui/src/stores/workerAuth.ts:10"}, "properties": {"repobilityId": "dd015ad46d720187", "scanner": "scanner-primary", "fingerprint": "2a3b34f2d5b157a2", "layer": "quality", "severity": "info", "confidence": 1.0, "tags": ["integrity", "commented-code", "dead-code"]}}, {"ruleId": "scanner-17f2354528a06d7a", "level": "none", "message": {"text": "Commented-code block (11 lines) in ui/src/composables/useCartEvents.ts:8"}, "properties": {"repobilityId": "987ac14e6b7fd26e", "scanner": "scanner-primary", "fingerprint": "17f2354528a06d7a", "layer": "quality", "severity": "info", "confidence": 1.0, "tags": ["integrity", "commented-code", "dead-code"]}}, {"ruleId": "scanner-21de23e99edf6339", "level": "none", "message": {"text": "Commented-code block (6 lines) in ui/src/composables/useKioskIdentity.ts:14"}, "properties": {"repobilityId": "ca72d71bcd1c2652", "scanner": "scanner-primary", "fingerprint": "21de23e99edf6339", "layer": "quality", "severity": "info", "confidence": 1.0, "tags": ["integrity", "commented-code", "dead-code"]}}, {"ruleId": "scanner-0b3abc6cd4c1be40", "level": "none", "message": {"text": "Commented-code block (5 lines) in ui/src/composables/useUrlQuerySync.ts:6"}, "properties": {"repobilityId": "358427124e083551", "scanner": "scanner-primary", "fingerprint": "0b3abc6cd4c1be40", "layer": "quality", "severity": "info", "confidence": 1.0, "tags": ["integrity", "commented-code", "dead-code"]}}, {"ruleId": "scanner-c739e7288626441b", "level": "none", "message": {"text": "Commented-code block (6 lines) in ui/src/composables/useCart.ts:90"}, "properties": {"repobilityId": "592e166f491a419b", "scanner": "scanner-primary", "fingerprint": "c739e7288626441b", "layer": "quality", "severity": "info", "confidence": 1.0, "tags": ["integrity", "commented-code", "dead-code"]}}, {"ruleId": "scanner-4e9f62fda399c805", "level": "none", "message": {"text": "Commented-code block (5 lines) in ui/src/lib/onlineStatus.ts:1"}, "properties": {"repobilityId": "8d65a9aa66be22c0", "scanner": "scanner-primary", "fingerprint": "4e9f62fda399c805", "layer": "quality", "severity": "info", "confidence": 1.0, "tags": ["integrity", "commented-code", "dead-code"]}}, {"ruleId": "scanner-f586a66ed8491453", "level": "none", "message": {"text": "Commented-code block (7 lines) in ui/src/lib/api.ts:4"}, "properties": {"repobilityId": "e7ac53a0f19f6c1c", "scanner": "scanner-primary", "fingerprint": "f586a66ed8491453", "layer": "quality", "severity": "info", "confidence": 1.0, "tags": ["integrity", "commented-code", "dead-code"]}}, {"ruleId": "scanner-678a65ad9e869148", "level": "none", "message": {"text": "Commented-code block (7 lines) in ui/src/lib/pb.ts:13"}, "properties": {"repobilityId": "d1dce1c3bce7826d", "scanner": "scanner-primary", "fingerprint": "678a65ad9e869148", "layer": "quality", "severity": "info", "confidence": 1.0, "tags": ["integrity", "commented-code", "dead-code"]}}, {"ruleId": "scanner-cfc6ad1c503ad1f5", "level": "none", "message": {"text": "Commented-code block (8 lines) in ui/src/lib/instanceStatus.ts:1"}, "properties": {"repobilityId": "b5ea5f9c67287350", "scanner": "scanner-primary", "fingerprint": "cfc6ad1c503ad1f5", "layer": "quality", "severity": "info", "confidence": 1.0, "tags": ["integrity", "commented-code", "dead-code"]}}, {"ruleId": "scanner-badf849f41252908", "level": "none", "message": {"text": "Commented-code block (8 lines) in ui/src/lib/inventory.ts:1"}, "properties": {"repobilityId": "9896f92c172fb022", "scanner": "scanner-primary", "fingerprint": "badf849f41252908", "layer": "quality", "severity": "info", "confidence": 1.0, "tags": ["integrity", "commented-code", "dead-code"]}}, {"ruleId": "scanner-db80e9b9bb09483d", "level": "note", "message": {"text": "Unused endpoint: POST /api/kiosk/cart/cancel"}, "properties": {"repobilityId": "14aff3de65ebf95b", "scanner": "scanner-primary", "fingerprint": "db80e9b9bb09483d", "layer": "api", "severity": "low", "confidence": 1.0, "tags": ["wiring", "unused-endpoint"]}}]}]}