{
  "schema_version": "2.1",
  "slug": "omyarewar-phantom",
  "name": "OmYarewar/PHANTOM",
  "agent_url": "https://github.com/OmYarewar/PHANTOM",
  "repo_url": "https://github.com/OmYarewar/PHANTOM",
  "category": "MCP Server",
  "run_id": "run-omyarewar-phantom-repotrack-2026-07-16",
  "run_at": "2026-07-16T13:14:00Z",
  "source": "hlido-repo-track",
  "review_track": "repo-surface",
  "evidence_tier": "repo-surface",
  "methodology_note": "Repo-surface track: this product is distributed as a repository (MCP server) with no web product surface, so the score derives ONLY from measurable public-repository signals — documentation, licensing, maintenance activity, releases, traction, agent-consumability. Each checklist item carries its evidence. Score ceiling 82/100: VITAL requires hands-on behavioral testing that repo signals cannot provide. Replaces a 2026-06/07 stub that carried a default score with no evidence.",
  "checklist": [
    {
      "id": "repo_reachable",
      "task": "Repository is publicly reachable",
      "required": true,
      "pass": true,
      "evidence": "GH API 200 for OmYarewar/PHANTOM"
    },
    {
      "id": "readme_present",
      "task": "README documents the product (≥500 chars)",
      "required": true,
      "pass": true,
      "evidence": "README length 10117"
    },
    {
      "id": "license_present",
      "task": "License declared",
      "required": true,
      "pass": true,
      "evidence": "MIT"
    },
    {
      "id": "install_documented",
      "task": "Install/usage instructions present",
      "required": true,
      "pass": true,
      "evidence": "install/usage section found in README"
    },
    {
      "id": "active_12mo",
      "task": "Maintained: pushed within 12 months and not archived",
      "required": true,
      "pass": true,
      "evidence": "last push 0d ago"
    },
    {
      "id": "releases_present",
      "task": "Tagged releases exist",
      "required": false,
      "pass": false,
      "evidence": "no releases"
    },
    {
      "id": "community_traction",
      "task": "Community traction (≥50 stars)",
      "required": false,
      "pass": true,
      "evidence": "59 stars"
    },
    {
      "id": "ci_or_tests",
      "task": "CI workflows present",
      "required": false,
      "pass": true,
      "evidence": "2 workflow file(s)"
    },
    {
      "id": "recent_commit_90d",
      "task": "Actively developed (push within 90 days)",
      "required": false,
      "pass": true,
      "evidence": "last push 0d ago"
    },
    {
      "id": "agent_consumable",
      "task": "Agent-consumable surface documented (MCP config or CLI install)",
      "required": false,
      "pass": true,
      "evidence": "MCP server markers in README"
    }
  ],
  "repo_metrics": {
    "stars": 59,
    "forks": 8,
    "open_issues": 17,
    "archived": false,
    "pushed_at": "2026-07-16T03:07:58Z",
    "license": "MIT",
    "language": "JavaScript"
  },
  "evidence_urls": [
    "https://github.com/OmYarewar/PHANTOM",
    "https://api.github.com/repos/OmYarewar/PHANTOM"
  ],
  "laddoo_score": 82,
  "score": 82,
  "tier": "STEADY",
  "confidence": "medium",
  "summary": "OmYarewar/PHANTOM — 👻 AI-Powered Pentesting Command Center — Autonomous security testing with real-time streaming, self-improving AI, unlimited tool iterations, and beautiful dark UI. Repo-surface review: measured from the public repository (59 stars, MIT, last push 2026-07-16); not hands-on tested.",
  "staleness_after": "2026-10-14",
  "marking_signal": {
    "marking_statement": false,
    "detection_tool": false,
    "cop_signatory": null,
    "evidence_url": null,
    "checked_at": "2026-07-28",
    "source": "engine-browser-marking-retrofit"
  },
  "evidence_images": {
    "run_id": "run-c1b452d18d9dc5da-github-com",
    "base": "https://images.hlido.eu/reviews/omyarewar-phantom/run-c1b452d18d9dc5da-github-com",
    "files": [
      "home.png"
    ],
    "urls": [
      "https://images.hlido.eu/reviews/omyarewar-phantom/run-c1b452d18d9dc5da-github-com/home.png"
    ],
    "verified_at": "2026-07-31T09:31:39.580Z",
    "verified_count": 1,
    "note": "Screenshots captured by the Hlido engine during the reviewed run, served from R2. Every URL here was HEAD-verified at the timestamp above. `run_id` is the ENGINE run id — it differs from `scorecard.run_id` and is the only one these keys resolve under."
  }
}
