# Changelog of CVE Security Advisory Monitor — AI Agent Vulnerability API (`logiover/cve-security-advisory-monitor`) Actor

- **URL**: https://apify.com/logiover/cve-security-advisory-monitor/changelog.md
- **Full Actor documentation**: https://apify.com/logiover/cve-security-advisory-monitor.md

## Changelog

### 2026-09-23

- Fleet-wide quality audit. Verified end to end against live data and re-checked the input schema, the output columns and the run configuration.
- Output verified on a live run: 18 columns returned, 66.5% of cells populated.
- Run reliability reviewed: 100.0% of public runs succeeded in the last 30 days.
- Input schema, output schema and pricing configuration reviewed.
- Noted that 4 column(s) came back empty in this sample (`ghsaId`, `osvId`, `affected`, `patchedVersion`); these are under review.

### 2026-09-01

- Fleet-wide health check. Verified against this Actor's real run history: 30-day success rate, output row counts, per-field fill rates, and peak memory against the configured memory limit.
- Reviewed for the failure patterns that have cost this fleet runs — unguarded proxy setup, retry loops that can outlast the run's own time budget, and full-page HTML parsing that can exhaust a small container.
- No change to input, output fields or scraping logic.

### 2026-08-11

- Maintenance release: refreshed the build and dependencies.
- Re-verified live execution, non-empty structured output and dataset field/type integrity.
- Reviewed reliability (retries, pagination) and output quality as part of a full-fleet QA pass.

### 2026-08-01

- Completed the August 2026 full health check: verified empty/programmatic default, Console UI default, and two source-informed alternative inputs on Apify.
- Confirmed successful live execution, non-empty structured output, dataset-field/type integrity, and logical sample quality within the 5-minute quality window.

### 2026-07-18

- Maintenance & reliability pass — re-verified end-to-end against live data via the Apify API; confirmed the Actor completes successfully and returns non-empty, well-formed results within the 5-minute quality window on its default input.
- Refreshed build so the latest version is current; no change to inputs, output fields or scraping logic.

### 2026-07-12 — v1.1

- **Zero-config runs:** no field is required anymore. Empty input `{}` returns recent CVEs (default `recent` mode, no severity filter). If the default 1-day window is empty, it now auto-widens (1 → 7 → 30 days) so a zero-input run always returns data.
- **Dropdown for sources:** `Sources` is now a multi-select (NVD / GitHub Advisory / OSV) instead of free text.
- **Real CVSS numbers from OSV:** OSV records now get a computed numeric CVSS v3.x base score (and derived severity) parsed from their vector string, instead of always `null`.
- Proxy label corrected to Apify AUTO group (no forced datacenter). Pay-per-result event unchanged.

### 2026-07-02 — v1.0

- Initial release: 4 modes (recent/search/product/bulk), 3 sources (NVD/GitHub Advisory/OSV), cross-source dedup, CVSS+severity+CWE+affected+patch, minCvss filter, proxy IP rotation. Pay-per-result.
