CodeIssuesPull RequestsActionsSecurityInsights
✨ AI
More
Settings

feat(health): "how to improve" engine + honest scoring on the health page #5439

Merged⚡ AI-generatedXSccantynz wants to mergefeat/health-improvement-enginemainopened 24d ago
ccantynzcommented 24d ago

The health page graded verom-ai-immigration-compliance D/45 and gave no path to change it, while contradicting itself three ways (Dependencies "100 — 0 deps" on a detected-Python repo; "Strong test suite" beside Testing 50; Security 0 from one repeated pattern).

Note: alters scoring semantics in §4.4-locked intelligence.ts, under the owner's explicit direction this session ("we need far better intelligence").

  • computeImprovements() — ranked to-do list with exact overall-point gains, computed from the scorer's own constants so the advice can't drift. Rendered at the top of the page: "Completing everything below takes this repo from 45 to about 78/100."
  • Security per-rule caps — medium 20 / high 40 per rule, criticals uncapped. 65 innerHTML hits no longer scores the same 0/100 as committed AWS keys.
  • Dependencies honesty — pyproject.toml/Pipfile/Gemfile/composer.json are manifests now; when NO manifest exists the category reads "not scored" and weights renormalize instead of counting a perfect 100.
  • Score attribution — every card shows "N of M possible overall points (weight X%)".
  • Insights — praise only when the score agrees.

21/21 tests (new health-improvements.test.ts + existing intelligence suite), tsc clean.

🤖 Generated with Claude Code

gluecron[bot]🤖 botAI Reviewcommented 24d ago

AI review unavailable

The platform's AI balance is exhausted, so AI generation is temporarily unavailable. Nothing was lost. You can queue this as a repair for the internal agent from the repository's Health page, or try again once the balance is restored. The PR is otherwise unchanged.

ccantynzAI Reviewcommented 24d ago

AI Triage

(no summary)

Priority: medium Risk area: mixed

Suggested labels: (no label suggestions) Suggested reviewers: (no reviewer suggestions)

Suggestions only — nothing has been applied. The PR author stays in control.

Cross-repo impact

See what breaks downstream if this PR merges.

Analyze →
⮌ Merged

This pull request was merged into main.

c comment · e edit title · m merge · a approve · r request changes · ? shortcuts