Scan timing: clone 28.47s · analysis 27.1s · 80.8 MB · GitHub API rate-limit (preflight)
https://github.com/ghostty-org/ghostty
· scanned 2026-06-05 10:18 UTC (5 days, 14 hours ago)
· 10 languages
134 raw signals (106 security + 28 graph) 11/13 scanners ran 60th percentile · Swift · medium (20-100K LoC) System graph score 88 (lower by 15)
Last scanned 5 days, 14 hours ago · v2 · 49 actionable findings from 2 signal sources. 70 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
65.0 | 0.15 | 9.75 |
security_score |
100.0 | 0.25 | 25.00 |
testing_score |
34.0 | 0.20 | 6.80 |
documentation_score |
82.0 | 0.15 | 12.30 |
practices_score |
84.0 | 0.15 | 12.60 |
code_quality |
66.0 | 0.10 | 6.60 |
| Overall | 1.00 | 73.0 |
Showing 26 of 49 actionable findings. 119 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
pkg/wuffs/src/swizzle.zig:9src/apprt/gtk/portal.zig:38src/config/command.zig:98src/font/nerd_font_codegen.py:86, 93, 115, 120, 121, 161, 166 (7 hits).github/workflows/flatpak.yml:20
src/os/xdg.zig:106
src/build/docker/debian/Dockerfile:37
CI/CD securitycontainers
.github/workflows/test.yml:329, 639, 1071, 1131, 1371, 1593 (6 hits).github/workflows/release-tip.yml:312, 404, 660, 857 (4 hits).github/workflows/release-tag.yml:146src/font/nerd_font_codegen.py:130
Eval used
.dockerignore
CI/CD securitycontainers
src/build/docker/lib-c-docs/Dockerfile:26
CI/CD securitycontainers
src/build/docker/debian/Dockerfile:2
CI/CD securitycontainers
src/build/docker/lib-c-docs/Dockerfile:4
CI/CD securitycontainers
.github/workflows/release-tip.yml:97
.github/workflows/release-tag.yml:299
.github/workflows/update-colorschemes.yml
CI/CD securitySupply chainGithub actions
flatpak/dependencies.yml
Ports
flatpak/dependencies.yml
Ports
flatpak/dependencies.yml
Ports
example/zig-formatter/src/main.zig:6example/zig-vt-stream/src/main.zig:6example/zig-vt/src/main.zig:8macos/Sources/Features/AppleScript/ScriptMouseButtonCommand.swift:11, 29 (2 hits)macos/Sources/Features/AppleScript/ScriptMousePosCommand.swift:15, 31 (2 hits)macos/Sources/Features/App Intents/FocusTerminalIntent.swift:10macos/Sources/Features/AppleScript/ScriptKeyEventCommand.swift:10macos/Sources/Features/AppleScript/ScriptMouseScrollCommand.swift:15macos/Sources/Features/AppleScript/ScriptTerminal.swift:55macos/Sources/Helpers/Cursor.swift:30dist:1
src/font/nerd_font_codegen.py:77
src/font/nerd_font_codegen.py:88
This page is publicly accessible at:
https://repobility.com/scan/15245132-025c-481e-bc73-2d2f4b6d88a3/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/15245132-025c-481e-bc73-2d2f4b6d88a3/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.