Bodo, the TrustScope mascotTrustScope

Changelog

What changed in TrustScope, newest first — currently v0.3.0.

  1. v0.3.0

    14 July 2026
    • Light and dark mode — TrustScope follows your system theme, and a toggle in the header lets you override it.
    • Share a report in one click — every report now has its own preview card, a share action, and a badge you can paste into your README.
    • A shared report link now previews the real scores wherever you paste it, instead of coming up empty.
    • A new side-by-side page shows how TrustScope differs from the OpenSSF Scorecard it is built on.
    • Easier to read in bright light — a contrast pass across the landing pages and the whole report.
    • A new FAQ answer on install scripts: what it means when a package runs its own code during installation, and how to look before you adopt.
    • Plus the smaller things — Bodo on your browser tab, a reworked landing headline, binding Impressum and Datenschutz, and the usual upkeep.
  2. v0.2.0

    11 July 2026
    • Meet Bodo — TrustScope’s beaver mascot now guides you from the landing page through the report and into every export.
    • A cleaner report — a fixed pillar order (Security → Trust → Community), each with its own colour, so the shape of a project reads at a glance.
    • Three pillars, clearly named — the free report assesses exactly three, and never fakes a score it can't stand behind.
    • A smoother start — a faster repository picker that fills your choice instead of jumping ahead.
  3. v0.1.0

    6 July 2026
    • Deterministic trust reports built on the OpenSSF Scorecard — see where a project is strong or weak, never one misleading single score.
    • “Show your work” — an orientation summary up front, expandable per-finding evidence, and a Due-Diligence panel that surfaces quiet signals like install-script detection.
    • A searchable repository picker with a Recently-Viewed strip — from landing to report in a couple of keystrokes.
    • File findings upstream as yourself, per pillar, each carrying a transparent “via TrustScope” attribution.
    • Take any report with you — Markdown or HTML export — plus dedicated adopter and maintainer paths.
    • A trust surface you can check — Impressum, Datenschutz, an Open-Graph preview card, and a dogfooded security-hardening pass.