Skip to content
CAI
Software that uses CAICheck a score

zhuravlevma/prisma-unit-of-work

53.9

Adequate · 21 September 2026

238

lines of production code

TypeScript

with JavaScript

4

measurements over time

CAI band scale
CAI trend line
CAI lens gauges

What this system is

Features

Add user management endpoints and data access layer

The user module now includes a controller exposing GET and POST endpoints for listing and creating users, backed by a new DTO for input validation and a repository layer that interacts with the database via Prisma. The service layer orchestrates these components, including a transactional create operation that updates user data.

src/user · high confidence

Initial project scaffolding and configuration

The repository has been initialized with essential configuration files to support a TypeScript/NestJS project. This includes a .gitignore to exclude build artifacts and IDE files, a .prettierrc for code formatting, and a README.md documenting the Unit of Work pattern implementation. Additionally, project tooling is configured via eslint.config.mjs for linting, nest-cli.json for the NestJS build process, and tsconfig.json/tsconfig.build.json for TypeScript compilation settings.

(repo-wide) · high confidence

Initial project structure and entry points

The application is initialized with the core entry point (main.ts) and the root module configuration (app.module.ts). The app bootstraps a NestJS application, configures Swagger for API documentation at the '/api' path, and sets up dependency injection for the User module, including the UserService, UserRepository, and Prisma database provider.

src · medium confidence

Introduce Prisma database provider with async local storage for transactional context

Added a new Prisma provider implementation that manages database connections and supports transactional operations using Node's AsyncLocalStorage to maintain the correct client context during nested database calls. The provider exposes a transaction method that wraps execution in a transaction and stores the transaction client in local storage, ensuring that subsequent database calls within the same execution context use the transactional client rather than the global one. This change also includes the module configuration to register the provider and export the UnitOfWork abstraction.

src/prisma · high confidence

Behavioural changes

Initial Prisma schema and database migrations for the User model

The application's database schema is now defined using Prisma, introducing a 'User' model that maps to a PostgreSQL 'User' table. The schema specifies fields for id, username, email, name, and age, along with timestamps. The corresponding SQL migration creates the 'User' table and enforces unique constraints on the 'username' and 'email' columns. A subsequent migration removes the unique index on 'email', indicating a change in data constraints for that field.

prisma · high confidence

Test coverage

Added end-to-end test suite for the application

Added an end-to-end test for the root route that verifies the application returns a 200 status and the 'Hello World!' response. A Jest configuration file was also added to support running these e2e tests.

test · high confidence

Dependencies

Initial project setup with NestJS and Prisma dependencies

The project was initialized with a new package configuration defining the application's dependencies. This includes the core NestJS framework (v10.4.15), along with supporting libraries such as @nestjs/config, @nestjs/swagger, and @prisma/client. Development tooling and testing frameworks like Jest, TypeScript, ESLint, and Prettier were also added to support the build, lint, and test workflows.

(dependencies) · high confidence

Written by watchdog.canine.dev from the codebase's own history, inside the signed delivery this page is composed from.

How this codebase got here

This is the PUBLIC form of this artifact. Findings are listed in full, but the details of SECURITY findings — which rule fired, in which file, on which line, and how to fix it — are deliberately withheld, and any secret-scanner results are excluded entirely. Where detail is absent here it was REMOVED FOR PUBLICATION; it is not missing from the analysis. The complete artifact is available from the repository owner.

Score

  • CAI 52 → 54 (+2.3)
  • Rubric changed (rubric-2026.08.18 → rubric-2026.09.15) — scores are not directly comparable.

Lenses

  • Code Health 100 → 91 (-8.7)
  • Architecture 69 → 69 (+0.0)
  • Maturity 39 → 39 (+0.0)
  • Readiness 54 → 62 (+8.3)
  • Security 57 → 68 (+11.6)

Resolved (40)

  • Coverage not included — suite not readable by the collector
  • Critical CVE: [GHSA redacted] (package-lock.json)
  • Dependency hygiene not measured — dependency manifest found but not parsed for hygiene
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High vulnerability: [GHSA redacted] (package-lock.json)
  • High: security finding (details withheld)
  • High: security finding (details withheld)
  • High: security finding (details withheld)
  • High: security finding (details withheld)
  • High: security finding (details withheld)
  • High: security finding (details withheld)
  • …and 20 more

New (57)

  • Coverage not measured — JavaScript/TypeScript suite
  • Critical CVE: [GHSA redacted] (package-lock.json)
  • Documentation: no installation or build instructions (README.md)
  • Documentation: no usage examples (README.md)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • High CVE: [GHSA redacted] (package-lock.json)
  • …and 37 more

Written by watchdog.canine.dev from the codebase's own history, inside the signed delivery this page is composed from.

Survey your own repository

zhuravlevma/prisma-unit-of-work was measured the same way every project in this corpus was: the same rubric, at a pinned commit, with the result published in full. Point a surveyor at a repository you know and see whether you agree with it.

About this page

  • The score is its most recent published measurement, taken on 21 September 2026 at a pinned commit. It is not a live figure and does not change until the project is measured again.
  • Measured at commit e17ea1089718b6aa9a05fc580ebc6c5908f5316b — the exact code this score is about.
  • Scored under rubric-2026.09.15 — the same rubric and the same method as every other entry in this index.
  • Measured by watchdog.canine.dev using codehealth-analyzer preprod-28e75b8e3254.