diff --git a/.claude/settings.json b/.claude/settings.json index a536a96..b173bd4 100644 --- a/.claude/settings.json +++ b/.claude/settings.json @@ -23,28 +23,10 @@ }, "enabledPlugins": { "asana@claude-plugins-official": true, - "typescript-lsp@code-intelligence": true, "plugin-dev@claude-plugins-official": true, "claude-md-management@claude-plugins-official": true, - "dev-tools@passionfactory": true, - "context@passionfactory": true, - "review@passionfactory": true, - "please@passionfactory": true, - "backend@passionfactory": true, "gatekeeper@pleaseai": true, - "github@passionfactory": true, "mcp-dev@pleaseai": true, - "testing@passionfactory": true, - "standards@passionfactory": true, - "tidy-first@passionfactory": true, "vitest@pleaseai": true - }, - "extraKnownMarketplaces": { - "code-intelligence": { - "source": { - "source": "directory", - "path": "./" - } - } } } diff --git a/.github/ISSUE_TEMPLATE/bug_report.md b/.github/ISSUE_TEMPLATE/bug_report.md new file mode 100644 index 0000000..45e3d02 --- /dev/null +++ b/.github/ISSUE_TEMPLATE/bug_report.md @@ -0,0 +1,31 @@ +--- +name: Bug report +about: Report a problem to help us improve +title: "" +labels: ["bug"] +--- + +## Describe the bug + +A clear and concise description of what the bug is. + +## To reproduce + +Steps to reproduce the behavior: + +1. ... +2. ... +3. See error + +## Expected behavior + +What you expected to happen. + +## Environment + +- Package version: +- Runtime/OS: + +## Additional context + +Logs, screenshots, or anything else that helps. diff --git a/.github/ISSUE_TEMPLATE/config.yml b/.github/ISSUE_TEMPLATE/config.yml new file mode 100644 index 0000000..81e3bce --- /dev/null +++ b/.github/ISSUE_TEMPLATE/config.yml @@ -0,0 +1,8 @@ +blank_issues_enabled: false +contact_links: + - name: Question or discussion + url: https://github.com/chatbot-pf/code-intelligence/discussions + about: Ask questions and discuss ideas here instead of opening an issue. + - name: Security vulnerability + url: https://github.com/chatbot-pf/code-intelligence/security/advisories/new + about: Report security issues privately — do not open a public issue. diff --git a/.github/ISSUE_TEMPLATE/feature_request.md b/.github/ISSUE_TEMPLATE/feature_request.md new file mode 100644 index 0000000..f1cf4e8 --- /dev/null +++ b/.github/ISSUE_TEMPLATE/feature_request.md @@ -0,0 +1,22 @@ +--- +name: Feature request +about: Suggest an idea or improvement +title: "" +labels: ["enhancement"] +--- + +## Problem + +What problem does this feature solve? What is the use case? + +## Proposed solution + +A clear and concise description of what you want to happen. + +## Alternatives considered + +Other approaches you've thought about, and why this one is preferable. + +## Additional context + +Anything else that helps explain the request. diff --git a/.github/PULL_REQUEST_TEMPLATE.md b/.github/PULL_REQUEST_TEMPLATE.md new file mode 100644 index 0000000..1012c08 --- /dev/null +++ b/.github/PULL_REQUEST_TEMPLATE.md @@ -0,0 +1,17 @@ + + +## Summary + + + +## Related issue + + + +## Checklist + +- [ ] PR title follows Conventional Commits +- [ ] Tests added or updated, and the suite passes (`bun run test`) +- [ ] Lint/format pass (`bun run lint`) +- [ ] Documentation updated if behavior changed +- [ ] No breaking change, or a `BREAKING CHANGE:` note is included diff --git a/.github/workflows/ci.yml b/.github/workflows/ci.yml index 932d9f5..93c9d27 100644 --- a/.github/workflows/ci.yml +++ b/.github/workflows/ci.yml @@ -18,15 +18,15 @@ jobs: lint: runs-on: ubuntu-latest steps: - - uses: actions/checkout@v4 + - uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4.3.1 with: fetch-depth: 0 - - uses: oven-sh/setup-bun@v2 + - uses: oven-sh/setup-bun@0c5077e51419868618aeaa5fe8019c62421857d6 # v2.2.0 with: bun-version: latest - - uses: actions/cache@v4 + - uses: actions/cache@0057852bfaa89a56745cba8c7296529d2fc39830 # v4.3.0 with: path: ~/.bun/install/cache key: bun-cache-${{ hashFiles('**/bun.lock') }} @@ -46,13 +46,13 @@ jobs: typecheck: runs-on: ubuntu-latest steps: - - uses: actions/checkout@v4 + - uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4.3.1 - - uses: oven-sh/setup-bun@v2 + - uses: oven-sh/setup-bun@0c5077e51419868618aeaa5fe8019c62421857d6 # v2.2.0 with: bun-version: latest - - uses: actions/cache@v4 + - uses: actions/cache@0057852bfaa89a56745cba8c7296529d2fc39830 # v4.3.0 with: path: ~/.bun/install/cache key: bun-cache-${{ hashFiles('**/bun.lock') }} @@ -67,13 +67,13 @@ jobs: test: runs-on: ubuntu-latest steps: - - uses: actions/checkout@v4 + - uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4.3.1 - - uses: oven-sh/setup-bun@v2 + - uses: oven-sh/setup-bun@0c5077e51419868618aeaa5fe8019c62421857d6 # v2.2.0 with: bun-version: latest - - uses: actions/cache@v4 + - uses: actions/cache@0057852bfaa89a56745cba8c7296529d2fc39830 # v4.3.0 with: path: ~/.bun/install/cache key: bun-cache-${{ hashFiles('**/bun.lock') }} @@ -93,7 +93,7 @@ jobs: continue-on-error: true - name: Upload coverage to Codecov - uses: codecov/codecov-action@v5 + uses: codecov/codecov-action@0fb7174895f61a3b6b78fc075e0cd60383518dac # v5.5.5 with: token: ${{ secrets.CODECOV_TOKEN }} files: | diff --git a/.github/workflows/release-please.yml b/.github/workflows/release-please.yml index 1d45654..8808f52 100644 --- a/.github/workflows/release-please.yml +++ b/.github/workflows/release-please.yml @@ -33,7 +33,7 @@ jobs: release_created: ${{ steps.release.outputs.release_created }} tag_name: ${{ steps.release.outputs.tag_name }} steps: - - uses: actions/create-github-app-token@v3 + - uses: actions/create-github-app-token@bcd2ba49218906704ab6c1aa796996da409d3eb1 # v3.2.0 id: app-token with: # client-id is the recommended input (supersedes the legacy app-id). @@ -41,7 +41,7 @@ jobs: client-id: ${{ vars.RELEASE_GITHUB_APP_CLIENT_ID }} private-key: ${{ secrets.RELEASE_GITHUB_APP_PRIVATE_KEY }} - - uses: googleapis/release-please-action@v4 + - uses: googleapis/release-please-action@5c625bfb5d1ff62eadeeb3772007f7f66fdcf071 # v4.4.1 id: release with: token: ${{ steps.app-token.outputs.token }} @@ -56,18 +56,18 @@ jobs: contents: read id-token: write steps: - - uses: actions/checkout@v4 + - uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4.3.1 - - uses: oven-sh/setup-bun@v2 + - uses: oven-sh/setup-bun@0c5077e51419868618aeaa5fe8019c62421857d6 # v2.2.0 with: bun-version: latest - - uses: actions/setup-node@v4 + - uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 # v4.4.0 with: node-version: '24' registry-url: 'https://registry.npmjs.org' - - uses: actions/cache@v4 + - uses: actions/cache@0057852bfaa89a56745cba8c7296529d2fc39830 # v4.3.0 with: path: | ~/.bun/install/cache @@ -82,8 +82,6 @@ jobs: - name: Publish to npm run: | for dir in npm/code-*; do - (cd "$dir" && npm publish --access public) + (cd "$dir" && npm publish --provenance --access public) done - cd npm/code && npm publish --access public - env: - NPM_CONFIG_PROVENANCE: false + cd npm/code && npm publish --provenance --access public diff --git a/CODE_OF_CONDUCT.md b/CODE_OF_CONDUCT.md new file mode 100644 index 0000000..456e5c6 --- /dev/null +++ b/CODE_OF_CONDUCT.md @@ -0,0 +1,132 @@ +# Contributor Covenant Code of Conduct + +## Our Pledge + +We as members, contributors, and leaders pledge to make participation in our +community a harassment-free experience for everyone, regardless of age, body +size, visible or invisible disability, ethnicity, sex characteristics, gender +identity and expression, level of experience, education, socio-economic status, +nationality, personal appearance, race, caste, color, religion, or sexual +identity and orientation. + +We pledge to act and interact in ways that contribute to an open, welcoming, +diverse, inclusive, and healthy community. + +## Our Standards + +Examples of behavior that contributes to a positive environment for our +community include: + +- Demonstrating empathy and kindness toward other people +- Being respectful of differing opinions, viewpoints, and experiences +- Giving and gracefully accepting constructive feedback +- Accepting responsibility and apologizing to those affected by our mistakes, + and learning from the experience +- Focusing on what is best not just for us as individuals, but for the overall + community + +Examples of unacceptable behavior include: + +- The use of sexualized language or imagery, and sexual attention or advances of + any kind +- Trolling, insulting or derogatory comments, and personal or political attacks +- Public or private harassment +- Publishing others' private information, such as a physical or email address, + without their explicit permission +- Other conduct which could reasonably be considered inappropriate in a + professional setting + +## Enforcement Responsibilities + +Community leaders are responsible for clarifying and enforcing our standards of +acceptable behavior and will take appropriate and fair corrective action in +response to any behavior that they deem inappropriate, threatening, offensive, +or harmful. + +Community leaders have the right and responsibility to remove, edit, or reject +comments, commits, code, wiki edits, issues, and other contributions that are +not aligned to this Code of Conduct, and will communicate reasons for moderation +decisions when appropriate. + +## Scope + +This Code of Conduct applies within all community spaces, and also applies when +an individual is officially representing the community in public spaces. +Examples of representing our community include using an official email address, +posting via an official social media account, or acting as an appointed +representative at an online or offline event. + +## Enforcement + +Instances of abusive, harassing, or otherwise unacceptable behavior may be +reported to the community leaders responsible for enforcement at +**security@passionfactory.ai**. +All complaints will be reviewed and investigated promptly and fairly. + +All community leaders are obligated to respect the privacy and security of the +reporter of any incident. + +## Enforcement Guidelines + +Community leaders will follow these Community Impact Guidelines in determining +the consequences for any action they deem in violation of this Code of Conduct: + +### 1. Correction + +**Community Impact**: Use of inappropriate language or other behavior deemed +unprofessional or unwelcome in the community. + +**Consequence**: A private, written warning from community leaders, providing +clarity around the nature of the violation and an explanation of why the +behavior was inappropriate. A public apology may be requested. + +### 2. Warning + +**Community Impact**: A violation through a single incident or series of +actions. + +**Consequence**: A warning with consequences for continued behavior. No +interaction with the people involved, including unsolicited interaction with +those enforcing the Code of Conduct, for a specified period of time. This +includes avoiding interactions in community spaces as well as external channels +like social media. Violating these terms may lead to a temporary or permanent +ban. + +### 3. Temporary Ban + +**Community Impact**: A serious violation of community standards, including +sustained inappropriate behavior. + +**Consequence**: A temporary ban from any sort of interaction or public +communication with the community for a specified period of time. No public or +private interaction with the people involved, including unsolicited interaction +with those enforcing the Code of Conduct, is allowed during this period. +Violating these terms may lead to a permanent ban. + +### 4. Permanent Ban + +**Community Impact**: Demonstrating a pattern of violation of community +standards, including sustained inappropriate behavior, harassment of an +individual, or aggression toward or disparagement of classes of individuals. + +**Consequence**: A permanent ban from any sort of public interaction within the +community. + +## Attribution + +This Code of Conduct is adapted from the [Contributor Covenant][homepage], +version 2.1, available at +[https://www.contributor-covenant.org/version/2/1/code_of_conduct.html][v2.1]. + +Community Impact Guidelines were inspired by +[Mozilla's code of conduct enforcement ladder][mozilla coc]. + +For answers to common questions about this code of conduct, see the FAQ at +[https://www.contributor-covenant.org/faq][faq]. Translations are available at +[https://www.contributor-covenant.org/translations][translations]. + +[homepage]: https://www.contributor-covenant.org +[v2.1]: https://www.contributor-covenant.org/version/2/1/code_of_conduct.html +[mozilla coc]: https://github.com/mozilla/diversity +[faq]: https://www.contributor-covenant.org/faq +[translations]: https://www.contributor-covenant.org/translations diff --git a/CONTRIBUTING.md b/CONTRIBUTING.md new file mode 100644 index 0000000..fb20ba0 --- /dev/null +++ b/CONTRIBUTING.md @@ -0,0 +1,44 @@ +# Contributing + +Thanks for your interest in contributing! This guide covers how to get from a clone to a merged pull request. + +By participating, you agree to abide by our [Code of Conduct](./CODE_OF_CONDUCT.md). All documentation, code, comments, and commit messages in this repository are written in **English**. + +## Getting started + +```bash +git clone https://github.com/chatbot-pf/code-intelligence.git +cd code-intelligence +mise install # install pinned tool versions (if the repo uses mise) +bun install # install dependencies +``` + +If the repo does not use mise, follow the setup in its `README.md`. + +## Development workflow + +1. Create a branch from `main` (e.g. `feat/short-description` or `fix/issue-123`). +2. Make focused changes — keep each pull request to one logical change. +3. Run the checks below and make sure they pass. +4. Open a pull request and fill out the template. + +```bash +bun run lint # lint and format +bun run test # run the test suite +bun run build # ensure it builds +``` + +## Commit messages + +We follow [Conventional Commits](https://www.conventionalcommits.org/): `type(scope): subject`, where `type` is one of `feat`, `fix`, `docs`, `refactor`, `test`, `chore`, etc. Breaking changes include a `BREAKING CHANGE:` footer. Versioning and the changelog are generated automatically from these messages, so accurate types matter. + +## Pull requests + +- Reference the issue your PR addresses (e.g. `Closes #123`). +- Use a Conventional-Commit-style PR title — it becomes the squash-merge commit. +- Make sure CI is green before requesting review. + +## Reporting bugs and requesting features + +Open an issue using the bug report or feature request template. For security +vulnerabilities, **do not** open a public issue — follow [SECURITY.md](./SECURITY.md). diff --git a/SECURITY.md b/SECURITY.md new file mode 100644 index 0000000..b6054c8 --- /dev/null +++ b/SECURITY.md @@ -0,0 +1,39 @@ +# Security Policy + +## Supported Versions + +Security fixes are provided for the latest released major version. Older +versions may receive fixes at the maintainers' discretion. + +| Version | Supported | +| ------- | ------------------ | +| latest | :white_check_mark: | +| older | :x: | + +## Reporting a Vulnerability + +**Please do not report security vulnerabilities through public GitHub issues, +discussions, or pull requests.** + +Instead, report them privately through GitHub's +[private vulnerability reporting](https://docs.github.com/en/code-security/security-advisories/guidance-on-reporting-and-writing-information-about-vulnerabilities/privately-reporting-a-security-vulnerability): +go to the repository's **Security** tab and click **"Report a vulnerability"**. + +If you cannot use that channel, email **security@passionfactory.ai** instead. + +Please include: + +- A description of the vulnerability and its impact +- Steps to reproduce, or a proof of concept +- Affected versions, and any known mitigations + +## What to Expect + +- We aim to acknowledge your report within **72 hours**. +- We will keep you informed of progress toward a fix and may ask for additional + detail. +- Once a fix is released, we will credit you in the advisory unless you prefer + to remain anonymous. + +We ask that you give us a reasonable opportunity to address the issue before any +public disclosure. diff --git a/package.json b/package.json index 03032e0..29d5542 100644 --- a/package.json +++ b/package.json @@ -4,6 +4,11 @@ "version": "0.1.22", "packageManager": "bun@1.3.5", "description": "Auto-format and type-check hooks for AI coding", + "license": "MIT", + "repository": { + "type": "git", + "url": "git+https://github.com/pleaseai/code-intelligence.git" + }, "workspaces": [ "packages/*", "apps/*", @@ -21,7 +26,7 @@ "test": "turbo test", "build": "turbo build", "build:npm": "bun run scripts/generate-packages.ts", - "publish:npm": "bun run build:npm && for dir in npm/code-*; do (cd \"$dir\" && bun publish --access public --tolerate-republish); done && cd npm/code && bun publish --access public --tolerate-republish", + "publish:npm": "bun run build:npm && for dir in npm/code-*; do (cd \"$dir\" && npm publish --access public); done && cd npm/code && npm publish --access public", "prepare": "husky", "build:docs": "turbo run build --filter=@pleaseai/code-please-docs-site...", "ref:clone": "git clone https://github.com/oraios/serena ref/serena && (cd ref/serena && git checkout 192510e1fa0bb171d5aaf094ab32496b2d7bae3f) && git clone https://github.com/JetBrains/mcp-server-plugin ref/mcp-server-plugin && (cd ref/mcp-server-plugin && git checkout b614766ebcfdd46d495a741799bc68df5d08644c) && git clone https://github.com/sst/opencode ref/opencode && (cd ref/opencode && git checkout be8116e2ea3aed66c9d63e0cac2af47bd3e91be5) && git clone https://github.com/microsoft/multilspy ref/multilspy && (cd ref/multilspy && git checkout ee0f6dcd1c0f4c5471d8078580343203b0c73fa7) && git clone https://github.com/code-yeongyu/oh-my-opencode ref/oh-my-opencode && (cd ref/oh-my-opencode && git checkout c37d41edb2f221dbda6a0a2254d782f1f6e3fbeb) && git clone https://github.com/pleaseai/docs ref/docs-please && (cd ref/docs-please && git checkout 119cf8284b493d1a07aeb09d8d559bfba8a19299) && git clone https://github.com/NeoLabHQ/context-engineering-kit ref/context-engineering-kit && (cd ref/context-engineering-kit && git checkout 49be11a06d5e2a8c31e924ef55a771d9229fbca2)" diff --git a/packages/binaries/package.json b/packages/binaries/package.json index dd3be4b..af788c8 100644 --- a/packages/binaries/package.json +++ b/packages/binaries/package.json @@ -7,7 +7,7 @@ "license": "MIT", "repository": { "type": "git", - "url": "https://github.com/chatbot-pf/code-please" + "url": "https://github.com/pleaseai/code-intelligence" }, "keywords": [ "binary", diff --git a/packages/code/package.json b/packages/code/package.json index bcb83ee..f5f06ea 100644 --- a/packages/code/package.json +++ b/packages/code/package.json @@ -7,7 +7,7 @@ "license": "MIT", "repository": { "type": "git", - "url": "https://github.com/pleaseai/code" + "url": "https://github.com/pleaseai/code-intelligence" }, "keywords": [ "claude-code", diff --git a/packages/dora/package.json b/packages/dora/package.json index 926564d..718e3b3 100644 --- a/packages/dora/package.json +++ b/packages/dora/package.json @@ -7,7 +7,7 @@ "license": "MIT", "repository": { "type": "git", - "url": "https://github.com/chatbot-pf/code-please" + "url": "https://github.com/pleaseai/code-intelligence" }, "keywords": [ "mcp", diff --git a/packages/format/package.json b/packages/format/package.json index 4517ce2..e076403 100644 --- a/packages/format/package.json +++ b/packages/format/package.json @@ -7,7 +7,7 @@ "license": "MIT", "repository": { "type": "git", - "url": "https://github.com/chatbot-pf/code-please" + "url": "https://github.com/pleaseai/code-intelligence" }, "keywords": [ "formatter", diff --git a/packages/logger/package.json b/packages/logger/package.json index dc607ab..1802f8a 100644 --- a/packages/logger/package.json +++ b/packages/logger/package.json @@ -7,7 +7,7 @@ "license": "MIT", "repository": { "type": "git", - "url": "https://github.com/chatbot-pf/code-please" + "url": "https://github.com/pleaseai/code-intelligence" }, "keywords": [ "logger", diff --git a/packages/lsp/package.json b/packages/lsp/package.json index 94c5e53..832e6a0 100644 --- a/packages/lsp/package.json +++ b/packages/lsp/package.json @@ -7,7 +7,7 @@ "license": "MIT", "repository": { "type": "git", - "url": "https://github.com/chatbot-pf/code-please" + "url": "https://github.com/pleaseai/code-intelligence" }, "keywords": [ "lsp", diff --git a/scripts/generate-packages.ts b/scripts/generate-packages.ts index bed9b22..dc3edeb 100644 --- a/scripts/generate-packages.ts +++ b/scripts/generate-packages.ts @@ -152,7 +152,7 @@ async function generateNativePackage(target: Target, rootManifest: Record