Skip to content
CAI
Software that uses CAICheck a score

gabrielmissio/set-up-projects-like-a-pro

39.1

Weak · 21 September 2026

188

lines of production code

JavaScript

primary language

4

measurements over time

CAI band scale
CAI trend line
CAI lens gauges

What this system is

This system is a Node.js and Express-based backend service that manages user data through a RESTful API with full CRUD capabilities. It utilizes MongoDB for data persistence and enforces code quality through ESLint and Husky pre-commit hooks. The project also includes comprehensive setup documentation in English and Portuguese.

Features

Expanded project setup guide with ESLint, lint-staged, and dotenvx integration

The project now includes a comprehensive setup guide (README.md) covering NPM, linting with ESLint, Git hooks via Husky, and environment variable management using dotenvx. A Portuguese (Brazil) translation of the guide has been added (README-pt-br.md). Configuration files for ESLint (.eslintrc.js) and lint-staged (.lintstagedrc) have been introduced to enforce code quality standards. Additionally, a .TODO file outlines future improvements such as adding mongo-express, route validations, and tests.

(repo-wide) · high confidence

Introduce user management API with full CRUD operations

The API now supports creating, retrieving, updating, and deleting users. The implementation includes a new user repository for MongoDB interactions, a controller handling HTTP requests and validation, and route definitions for /users. Additionally, a demo seed script is provided to populate the database with sample user data, and environment variables for MongoDB connection are configured for local and demo environments.

api · high confidence

Behavioural changes

Added pre-commit hook for linting

A new pre-commit hook has been added to the .husky directory, which automatically runs 'npx lint-staged' before each commit. This ensures that staged files are linted before being committed to the repository.

.husky · high confidence

Dependencies

Initial project setup with Node.js, Express, MongoDB, and linting tools

The project is initialized with a Node.js backend using Express and MongoDB, alongside development tools including ESLint, Husky, and lint-staged for code quality and pre-commit checks. The API layer depends on express and mongodb, while the root package manages dev dependencies for static analysis and git hooks.

(dependencies) · high confidence

Written by watchdog.canine.dev from the codebase's own history, inside the signed delivery this page is composed from.

How this codebase got here

Score

  • CAI 39 → 39 (+0.3)
  • Rubric changed (rubric-2026.08.19 → rubric-2026.09.15) — scores are not directly comparable.

Lenses

  • Code Health 45 → 46 (+0.9)
  • Architecture 69 → 69 (+0.0)
  • Maturity 63 → 57 (-5.2)
  • Readiness 19 → 20 (+1.6)
  • Security 86 → 88 (+2.1)

Resolved (16)

  • Dependency hygiene not measured — dependency manifest found but not parsed for hygiene
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (api/package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (api/package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (api/package-lock.json)
  • Low CVE: [GHSA redacted] (api/package-lock.json)
  • Medium CVE: [GHSA redacted] (package-lock.json)
  • Medium CVE: [GHSA redacted] (package-lock.json)
  • Medium CVE: [GHSA redacted] (api/package-lock.json)
  • No exposed public API
  • early-stage repository — too little history to judge knowledge freshness
  • single-maintainer — knowledge-concentration (bus factor) risk

New (17)

  • Documentation: no installation or build instructions (README.md)
  • Documentation: no usage examples (README.md)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (api/package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (api/package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (api/package-lock.json)
  • High IaC: WD-COMPOSE-0002 (api/docker-compose.yaml)
  • Low CVE: [GHSA redacted] (api/package-lock.json)
  • Medium CVE: [GHSA redacted] (package-lock.json)
  • Medium CVE: [GHSA redacted] (package-lock.json)
  • Medium CVE: [GHSA redacted] (api/package-lock.json)
  • Outdated (npm): express
  • Outdated (npm): mongodb

Written by watchdog.canine.dev from the codebase's own history, inside the signed delivery this page is composed from.

Survey your own repository

gabrielmissio/set-up-projects-like-a-pro was measured the same way every project in this corpus was: the same rubric, at a pinned commit, with the result published in full. Point a surveyor at a repository you know and see whether you agree with it.

About this page

  • The score is its most recent published measurement, taken on 21 September 2026 at a pinned commit. It is not a live figure and does not change until the project is measured again.
  • Measured at commit 988fa3e12429f1b3735432f0a29d3498d7003db3 — the exact code this score is about.
  • Scored under rubric-2026.09.15 — the same rubric and the same method as every other entry in this index.
  • Measured by watchdog.canine.dev using codehealth-analyzer preprod-fa71c66cabd8.