Hope this helps folks out who also need to make it easier for teams to address vulnerabilities as part of their normal process.
I generated it with codex and gpt-5.4, for those who want to know the code provenance.