Skip to content

active 2026-02-262026-04-25 (UTC)

Complete coverage26,651 / 26,651 hourly files (100%) · 2 absent upstream2023-08-152026-08-29 (UTC)
Events
41
Pushes
7
Pull requests
1
Issues
29
Stars
0
Forks
0

Activity over time

Daily event counts in the loaded window

Line chart, 59 days from 2026-02-26 to 2026-04-25. Pushes: 7 total, peak 4 in a day. Pull requests: 1 total, peak 1 in a day. Issues: 29 total, peak 8 in a day. Comments: 0 total, peak 0 in a day. Stars: 0 total, peak 0 in a day.

  • Pushes
  • Pull requests
  • Issues
  • Comments
  • Stars

Stars, PRs, issues and forks are under-captured in the later part of this window. GH Archive progressively stopped capturing non-push events during 2026 — −95% or worse by the end of the window. Every series here except Pushes fades for that reason, so a decline above reflects the archive, not this repository. Pushes stay reliable throughout, so read them, and the contributor counts derived from them, as the real signal. Data health has the measurements.

Top contributors

Pushes, PRs, issues, reviews and comments — stars and forks excluded, so this is contribution rather than popularity

ContributorContributionsPushesPRsComments
AndrewCromar37710

Recent activity

Latest issues, pull requests and releases

  • Issue#28AndrewCromar2026-04-25 00:01
    Wishlist consumer: self-XSS via item name/link rendered with innerHTML
  • Issue#28AndrewCromar2026-04-25 00:01
    Wishlist consumer: self-XSS via item name/link rendered with innerHTML
  • Issue#27AndrewCromar2026-04-25 00:00
    Wishlist consumer (AuthCheck.php) trusts $_SERVER['HTTP_HOST'] in dev
  • Issue#27AndrewCromar2026-04-25 00:00
    Wishlist consumer (AuthCheck.php) trusts $_SERVER['HTTP_HOST'] in dev
  • Issue#25AndrewCromar2026-04-24 23:59
    Login code is included in the email Subject line
  • Issue#25AndrewCromar2026-04-24 23:59
    Login code is included in the email Subject line
  • Issue#20AndrewCromar2026-04-24 23:58
    validate_token.php is a public, unauthenticated session-token oracle
  • Issue#20AndrewCromar2026-04-24 23:58
    validate_token.php is a public, unauthenticated session-token oracle
  • Issue#19AndrewCromar2026-04-24 23:58
    Open redirect via 'redirect' parameter on verify_link.php and verify.html
  • Issue#19AndrewCromar2026-04-24 23:58
    Open redirect via 'redirect' parameter on verify_link.php and verify.html
  • Issue#18AndrewCromar2026-04-24 23:57
    Login code is brute-forceable: 6-digit code, no rate limit, no attempt cap
  • Issue#18AndrewCromar2026-04-24 23:57
    Login code is brute-forceable: 6-digit code, no rate limit, no attempt cap
  • Issue#16AndrewCromar2026-03-11 05:21
    Use Claude AI to check for vounlerabilities.
  • Issue#2AndrewCromar2026-03-11 05:21
    Setup subdomain.
  • Issue#5AndrewCromar2026-03-11 05:21
    Setup database.
  • Issue#15AndrewCromar2026-03-11 05:20
    Login button in email does not redirect.
  • Issue#15AndrewCromar2026-03-11 05:20
    Login button in email does not redirect.
  • Issue#15AndrewCromar2026-03-11 05:20
    Login button in email does not redirect.
  • Issue#4AndrewCromar2026-03-02 21:14
    Merge into main.
  • Issue#13AndrewCromar2026-03-02 21:01
    Make user.
  • Issue#6AndrewCromar2026-03-02 21:00
    Update global.php.
  • Pull request#12AndrewCromar2026-03-02 20:55
  • Issue#3AndrewCromar2026-03-02 20:51
    Pull website to server.
  • Issue#10AndrewCromar2026-02-26 21:10
    Refactor backend to have each function in its own file.
  • Issue#6AndrewCromar2026-02-26 21:06
    Update global.php.

Totals cover only the window loaded into ClickHouse and count events, not GitHub's lifetime totals — 0 stars here means stars gained during the window, not the repo's star count.