Scan timing: clone 11.33s · analysis 22.7s · 35.1 MB · GitHub API rate-limit (preflight)
https://github.com/temporalio/temporal
· scanned 2026-06-05 20:12 UTC (4 days, 12 hours ago)
· 10 languages
467 raw signals (125 security + 342 graph) 11/13 scanners ran 30th percentile · Go · huge (>500K LoC) System graph score 76 (higher by 5)
Last scanned 4 days, 12 hours ago · v2 · 155 actionable findings from 2 signal sources. 141 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
60.0 | 0.15 | 9.00 |
security_score |
100.0 | 0.25 | 25.00 |
testing_score |
85.0 | 0.20 | 17.00 |
documentation_score |
80.0 | 0.15 | 12.00 |
practices_score |
72.0 | 0.15 | 10.80 |
code_quality |
70.0 | 0.10 | 7.00 |
| Overall | 1.00 | 80.8 |
Showing 17 of 155 actionable findings. 296 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
develop/docker-compose/docker-compose.yml:5, 27 (2 hits)develop/github/docker-compose.yml:20, 33 (2 hits)common/goro/adaptive_pool.go:4
common/backoff/jitter.go:3
develop/github/docker-compose.yml:6, 20, 33, 47, 62, 78, 94 (7 hits)develop/docker-compose/docker-compose.yml:5, 16, 27, 37 (4 hits)develop/github/docker-compose.yml:6, 20, 33, 47, 62, 78, 94 (7 hits)develop/docker-compose/docker-compose.yml:5, 16, 27, 37 (4 hits).github/workflows/run-tests.yml:40, 220, 224, 232, 240, 247, 270, 276, +10 more (22 hits).github/workflows/ci-success-report.yml:35, 42, 48 (6 hits).github/workflows/optimize-test-sharding.yml:23, 30, 36 (6 hits).github/workflows/build-and-publish.yml:25, 49 (4 hits).github/workflows/check-release-dependencies.yml:17, 20 (4 hits).github/workflows/features-integration.yml:23, 59 (4 hits).github/workflows/flaky-tests-report.yml:35, 42, 49, 78 (4 hits).github/workflows/promote-docker-image.yml:36, 100 (2 hits).github/workflows/features-integration.yml:72, 82, 90, 105, 113, 121, 129 (7 hits)develop/docker-compose/docker-compose.yml:59, 69, 77, 84 (4 hits).dockerignore
CI/CD securitycontainers
develop/docker-compose/docker-compose.yml:5, 16, 27, 37 (4 hits)chasm/lib/workflow/workflow_update.go:1
chasm/path_encoder.go:66cmd/server/main.go:30cmd/tools/check-dependencies/main.go:207develop/github/docker-compose.yml:6
CI/CD securitycontainers
develop/docker-compose/docker-compose.yml:16
CI/CD securitycontainers
develop/github/docker-compose.yml:6
CI/CD securitycontainers
develop/docker-compose/docker-compose.yml:16
CI/CD securitycontainers
common/archiver/s3store/util.go:111, 205, 218 (3 hits)common/archiver/s3store/query_parser.go:2, 63 (2 hits)chasm/lib/nexusoperation/validator.go:291client/history/metric_client.go:73common/archiver/gcloud/history_archiver.go:231common/archiver/gcloud/query_parser.go:57common/archiver/gcloud/query_parser_mock.go:2common/archiver/gcloud/util.go:98
This page is publicly accessible at:
https://repobility.com/scan/19ff4f2c-b153-470f-8aae-2d732aee401a/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/19ff4f2c-b153-470f-8aae-2d732aee401a/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.