https://github.com/yugabyte/yugabyte-db
· scanned 2026-06-05 22:30 UTC (4 days, 3 hours ago)
· 10 languages
487 findings 11/13 scanners ran 55th percentile · Java · huge (>500K LoC)
149 actionable findings from 1 signal source. 338 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
65.0 | 0.15 | 9.75 |
security_score |
100.0 | 0.25 | 25.00 |
testing_score |
81.0 | 0.20 | 16.20 |
documentation_score |
68.0 | 0.15 | 10.20 |
practices_score |
83.0 | 0.15 | 12.45 |
code_quality |
51.0 | 0.10 | 5.10 |
| Overall | 1.00 | 78.7 |
Showing 85 of 149 actionable findings. 487 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
src/lint/cpplint.py:5677
managed/node-agent/yb_release.py:95
.github/workflows/pr-title.yml:66
.github/workflows/pr-title.yml:23, 39, 45, 65 (4 hits)src/postgres/third-party-extensions/pg_stat_monitor/.github/workflows/postgresql-11-pmm.yaml:18src/postgres/third-party-extensions/pg_stat_monitor/.github/workflows/postgresql-12-pmm.yaml:18src/postgres/third-party-extensions/pg_stat_monitor/.github/workflows/postgresql-13-pmm.yaml:18src/postgres/third-party-extensions/pg_stat_monitor/.github/workflows/postgresql-14-pmm.yaml:18src/postgres/third-party-extensions/pg_stat_monitor/.github/workflows/postgresql-15-pmm.yaml:18src/postgres/third-party-extensions/pg_duckdb/.github/workflows/docker.yaml:52
src/postgres/third-party-extensions/mage/drivers/docker-compose.yml:2
CI/CD securitycontainers
managed/docker-compose.yml:42
CI/CD securitycontainers
src/postgres/third-party-extensions/pg_duckdb/.github/workflows/docker.yaml:40, 113 (2 hits)src/postgres/third-party-extensions/pg_parquet/.github/workflows/ci.yml:188managed/project/UIRunHook.scala:34
managed/devops/opscli/ybops/scripts/generateMetadataFiles.py:96
build-support/stabilize_auto_flags_list.py:54
python/yugabyte/dependency_graph.py:581
python/yugabyte/dependency_graph.py:564
python/yugabyte/dependency_graph.py:575
managed/devops/opscli/ybops/cloud/onprem/method.py:281
python/yugabyte/dependency_graph.py:590
python/yugabyte/dependency_graph.py:538
python/yugabyte/dependency_graph.py:598
python/yugabyte/dependency_graph.py:546
python/yugabyte/dependency_graph.py:557
bin/ybcontrol.py:138, 144, 150, 212, 232, 237, 240, 247, +7 more (17 hits)bin/yb-prof.py:80, 92, 97, 190, 197, 198, 199, 200 (8 hits)src/odyssey/docker/Dockerfile:1, 13 (2 hits)src/postgres/third-party-extensions/mage/docker/Dockerfile:20, 37 (2 hits)troubleshoot/backend/docker/Dockerfile:1, 10 (2 hits)yugabyted-ui/apiserver/cmd/server/Dockerfile:1, 7 (2 hits)yugabyted-ui/apiserver/conf/templates/go-echo-server/Dockerfile.mustache:1, 7 (2 hits).claude/Dockerfile:1.cursor/Dockerfile:1.devcontainer/Dockerfile:1src/postgres/third-party-extensions/pgtap/.github/workflows/release.yml:9
src/postgres/third-party-extensions/postgresql_anonymizer/.pre-commit-config.yaml:3
managed/byoc-api-proxy/gradle/wrapper/gradle-wrapper.jar:1
managed/lint/google-java-format-1.17.0-all-deps.jar:1
troubleshoot/backend/gradle/wrapper/gradle-wrapper.jar:1
managed/node-agent/yb_release.py:112
managed/node-agent/ynp/yba/request.go:45
arcanist_util/check-diff-name.py:69
src/postgres/third-party-extensions/pg_parquet/.devcontainer/docker-compose.yml:1, 26, 41, 53, 66 (5 hits)managed/ui/src/redesign/features/rbac/common/RbacApiPermValidator.tsx:79
src/postgres/third-party-extensions/postgresql_anonymizer/docker/docker-compose.yml:4
CI/CD securitycontainers
managed/docker-compose.yml:42src/postgres/third-party-extensions/postgresql_anonymizer/docker/docker-compose.yml:4troubleshoot/backend/docker/docker-compose.yml:3managed/devops/Dockerfile:6
CI/CD securitycontainers
managed/devops/Dockerfile:25managed/devops/pex/Dockerfile:30python/ai/rag_agent/Dockerfile:20src/odyssey/docker/Dockerfile:52src/odyssey/docker/dpkg/Dockerfile:7src/postgres/third-party-extensions/mage/docker/Dockerfile:29src/postgres/third-party-extensions/mage/docker/Dockerfile.dev:37src/postgres/third-party-extensions/pgrx/.github/docker/Dockerfile.alpine:41src/postgres/third-party-extensions/pg_parquet/.devcontainer/Dockerfile:45src/postgres/third-party-extensions/pgrx/.github/docker/Dockerfile.alpine:48src/postgres/third-party-extensions/pgrx/.github/docker/Dockerfile.amazon_2:76src/postgres/third-party-extensions/pgrx/.github/docker/Dockerfile.debian_bullseye:54src/postgres/third-party-extensions/pgrx/.github/docker/Dockerfile.fedora:47src/postgres/third-party-extensions/pg_stat_monitor/.github/workflows/postgresql-15-build.yml:10, 76, 110, 137 (4 hits)src/postgres/third-party-extensions/pg_stat_monitor/.github/workflows/postgresql-16-build.yml:10, 76, 110, 137 (4 hits).github/workflows/oss-commit-tracker.yml:35, 41 (2 hits).github/workflows/yugabyted-test.yml:29, 32 (2 hits)src/odyssey/.github/workflows/coverity.yml:13, 16 (2 hits)src/postgres/third-party-extensions/pg_stat_monitor/.github/workflows/postgresql-13-ppg-package.yml:10, 77 (2 hits)src/postgres/third-party-extensions/pg_stat_monitor/.github/workflows/postgresql-16-ppg-package.yml:10, 78 (2 hits).github/workflows/pr-lint.yml:14src/odyssey/.github/workflows/clang-format.yml:8src/odyssey/.github/workflows/cmake.yml:51managed/devops/opscli/ybops/cloud/azure/utils.py:747, 863, 890 (3 hits)src/lint/cpplint.py:6083, 6234, 6367 (3 hits)python/yugabyte/lto.py:130, 164 (2 hits)managed/devops/opscli/ybops/cloud/common/command.py:85managed/devops/opscli/ybops/utils/replicated.py:98python/yugabyte/download_and_extract_archive.py:128python/yugabyte/inline_thirdparty.py:239python/yugabyte/run_tests_on_spark.py:275managed/devops/bin/yb_backup.py:1788, 2298 (2 hits)managed/devops/opscli/ybops/cloud/azure/utils.py:430python/ai/rag_agent/html_processing/process_html.py:173python/ai/rag_agent/pdf_processing/process_pdf.py:186python/ai/rag_agent/rag_pipeline/partition_chunk_pipeline.py:86python/yugabyte/yb_dist_tests.py:79requirements.txt:1, 2, 3, 4, 5, 6, 7, 8, +17 more (25 hits)managed/devops/opscli/ybops/scripts/generateMetadataFiles.py:61
build-support/stabilize_auto_flags_list.py:54managed/src/main/java/com/yugabyte/yw/common/ConfigHelper.java:107managed/src/main/java/com/yugabyte/yw/common/PrometheusConfigManager.java:98managed/src/main/java/com/yugabyte/yw/models/FileData.java:199
managed/src/main/java/com/yugabyte/yw/common/utils/FileUtils.java:275
managed/src/main/java/com/yugabyte/yw/common/ConfigHelper.java:107
managed/src/main/java/com/yugabyte/yw/common/utils/FileUtils.java:193
src/postgres/third-party-extensions/pg_parquet/.devcontainer/docker-compose.yml:1
CI/CD securitycontainers
managed/devops/opscli/ybops/scripts/generateMetadataFiles.py:67, 87, 111, 140, 168 (5 hits)managed/node-agent/ybops/node_agent/rpc.py:194, 247, 292, 378 (4 hits)managed/devops/bin/yb_backup.py:2994, 3650, 4121 (3 hits)managed/devops/bin/yb_netprob.py:252, 280, 374 (3 hits)managed/devops/bin/run_node_action.py:431, 449 (2 hits)managed/devops/opscli/ybops/utils/remote_shell.py:244, 322 (2 hits)build-support/lint.py:430managed/devops/bin/yb_platform_util.py:75managed/ui/src/actions/customers.js:212, 216 (2 hits)managed/ui/src/actions/universe.js:855managed/ui/src/components/common/forms/LoginForm/LoginFormContainer.js:28managed/ui/src/components/common/forms/RegisterForm/RegisterFormContainer.js:24managed/ui/src/components/profile/UserProfileForm.jsx:40managed/ui/src/components/restore/GlobalRestoreModal.tsx:55managed/ui/src/config.js:29managed/ui/src/routes.jsx:100managed/docker-compose.yml:4, 28, 42, 60, 95 (5 hits)src/postgres/third-party-extensions/postgresql_anonymizer/docs/how-to/docker-compose.yml:2src/postgres/third-party-extensions/pg_parquet/.devcontainer/docker-compose.yml:1
CI/CD securitycontainers
src/postgres/third-party-extensions/pg_duckdb/docker-compose.yml:1
CI/CD securitycontainers
.dockerignore
CI/CD securitycontainers
managed/docker-compose.yml:42src/postgres/third-party-extensions/postgresql_anonymizer/docker/docker-compose.yml:4troubleshoot/backend/docker/docker-compose.yml:3src/postgres/third-party-extensions/pg_parquet/.devcontainer/docker-compose.yml:26
CI/CD securitycontainers
src/postgres/third-party-extensions/mage/drivers/docker-compose.yml:2
CI/CD securitycontainers
.dockerignore
CI/CD securitycontainers
.dockerignore
CI/CD securitycontainers
.claude/Dockerfile:1.cursor/Dockerfile:1.devcontainer/Dockerfile:1managed/devops/pex/Dockerfile:2managed/ui/Dockerfile:1managed/yba-installer/integrationtests/resources/Dockerfile:1src/odyssey/docker/Dockerfile:14src/odyssey/docker/dev/Dockerfile:1.claude/Dockerfile:1.cursor/Dockerfile:1.devcontainer/Dockerfile:1src/odyssey/docker/Dockerfile:1src/postgres/third-party-extensions/postgresql_anonymizer/docker/Dockerfile:10src/postgres/third-party-extensions/pg_parquet/.devcontainer/Dockerfile:9, 23 (2 hits)src/postgres/third-party-extensions/pgaudit/test/Dockerfile.debian:4, 21 (2 hits)src/postgres/third-party-extensions/pgrx/.github/docker/Dockerfile.debian_bullseye:17, 21 (2 hits)src/postgres/third-party-extensions/documentdb/.devcontainer/Dockerfile:41src/postgres/third-party-extensions/documentdb/.github/containers/Build-Ubuntu/Dockerfile:41src/postgres/third-party-extensions/mage/docker/Dockerfile.dev:22src/postgres/src/include/optimizer/geqo_copy.h:1
src/postgres/src/backend/utils/adt/tsquery_rewrite.c:1
bin/configure_clockbound.sh:245
docs/layouts/sitemap.xml
managed/src/main/java/db/migration/default_/common/V160__Provider_Config_Encryption_Update.java:1managed/src/main/java/db/migration/default_/common/V289__Universe_Details_Arch_Update.java:1managed/src/main/java/db/migration/default_/postgres/V195__DB_Encryption_Update.java:1managed/src/main/java/db/migration/default_/postgres/V417__Add_First_Snapshot_Time_Backup.java:1managed/node-agent/ynp/config/setup_logger.go:61
managed/node-agent/app/task/module/download_setup_package.go:23
managed/docker-compose.yml:4
CI/CD securitycontainers
src/odyssey/docker-compose.yml:3, 15, 29, 40 (4 hits)managed/docker-compose.yml:4, 77 (2 hits)src/postgres/third-party-extensions/mage/drivers/docker-compose.yml:2src/postgres/third-party-extensions/pg_duckdb/docker-compose.yml:1src/postgres/third-party-extensions/pg_parquet/.devcontainer/docker-compose.yml:1src/postgres/third-party-extensions/pgtap/test/docker-compose.yml:3troubleshoot/backend/docker/docker-compose.yml:17src/odyssey/docker-compose.yml:3, 15, 29, 40 (4 hits)managed/docker-compose.yml:4, 77 (2 hits)src/postgres/third-party-extensions/pg_parquet/.devcontainer/docker-compose.yml:1src/postgres/third-party-extensions/pgtap/test/docker-compose.yml:3troubleshoot/backend/docker/docker-compose.yml:17troubleshoot/backend/docker/docker-compose.yml:3
CI/CD securitycontainers
src/postgres/third-party-extensions/postgresql_anonymizer/docker/docker-compose.yml:4
CI/CD securitycontainers
src/postgres/third-party-extensions/pg_duckdb/docker-compose.yml:1
CI/CD securitycontainers
src/postgres/third-party-extensions/mage/drivers/docker-compose.yml:2
CI/CD securitycontainers
src/postgres/third-party-extensions/documentdb/.devcontainer/Dockerfile:11, 106 (2 hits)src/postgres/third-party-extensions/documentdb/.github/containers/Build-Ubuntu/Dockerfile:11, 99 (2 hits)src/postgres/third-party-extensions/pg_duckdb/Dockerfile:9, 61 (2 hits)src/postgres/third-party-extensions/pgaudit/test/Dockerfile.debian:5, 26 (2 hits)src/postgres/third-party-extensions/pgrx/.github/docker/Dockerfile.debian_bullseye:18, 22 (2 hits)src/postgres/third-party-extensions/pg_parquet/.devcontainer/Dockerfile:18managed/devops/pex/Dockerfile:19
CI/CD securitycontainers
docker/images/yugabyte/Dockerfile:90
CI/CD securitycontainers
src/odyssey/docker/Dockerfile:20, 35 (2 hits)src/odyssey/docker/dev/Dockerfile:11, 22 (2 hits)src/postgres/third-party-extensions/mage/docker/Dockerfile:22, 39 (2 hits)src/odyssey/docker/dpkg/Dockerfile:13src/postgres/third-party-extensions/pg_duckdb/Dockerfile:61src/postgres/third-party-extensions/pg_parquet/.devcontainer/Dockerfile:18src/yb/yql/cql/ql/ptree/pt_update.h:1
java/yb-client/src/main/java/org/yb/client/CdcSdkCheckpoint.java:15java/yb-client/src/main/java/org/yb/client/ChangeConfigResponse.java:8java/yb-client/src/main/java/org/yb/client/ChangeLoadBalancerStateResponse.java:8java/yb-client/src/main/java/org/yb/client/ChangeMasterClusterConfigResponse.java:9java/yb-client/src/main/java/org/yb/client/ChangeXClusterRoleResponse.java:8java/yb-client/src/main/java/org/yb/client/CreateKeyspaceResponse.java:8java/yb-client/src/main/java/org/yb/client/CreateXClusterReplicationResponse.java:8java/yb-client/src/main/java/org/yb/client/DeleteSnapshotScheduleResponse.java:8managed/src/main/java/db/migration/default_/common/V160__Provider_Config_Encryption_Update.java:1managed/src/main/java/db/migration/default_/common/V289__Universe_Details_Arch_Update.java:1managed/src/main/java/db/migration/default_/postgres/V195__DB_Encryption_Update.java:1managed/src/main/java/db/migration/default_/postgres/V417__Add_First_Snapshot_Time_Backup.java:1src/postgres/src/backend/optimizer/geqo/geqo_copy.c:1src/postgres/src/include/catalog/pg_rewrite.h:1src/postgres/third-party-extensions/documentdb/pg_documentdb/include/update/bson_update.h:1src/postgres/third-party-extensions/documentdb/pg_documentdb/src/update/bson_update.c:1
This page is publicly accessible at:
https://repobility.com/scan/1ef6c72a-4ac4-42c5-8abb-dfdbe54f196e/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/1ef6c72a-4ac4-42c5-8abb-dfdbe54f196e/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.