Scan timing: clone 2.61s · analysis 1.87s · 0.4 MB · GitHub API rate-limit (preflight)
https://github.com/devops-infra/action-pull-request
· scanned 2026-06-05 17:38 UTC (4 days, 21 hours ago)
· 10 languages
48 raw signals (12 security + 36 graph) 96th percentile · Python · tiny (<2K LoC)
Last scanned 4 days, 21 hours ago · v2 · 16 actionable findings from 2 signal sources. 14 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
45.0 | 0.15 | 6.75 |
security_score |
97.1 | 0.25 | 24.27 |
testing_score |
85.0 | 0.20 | 17.00 |
documentation_score |
75.0 | 0.15 | 11.25 |
practices_score |
89.0 | 0.15 | 13.35 |
code_quality |
80.0 | 0.10 | 8.00 |
| Overall | 1.00 | 80.6 |
Showing 13 of 16 actionable findings. 30 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
scripts/split_content_bytes.py:60
Dockerfile:1
.github/workflows/auto-pull-request-create.yml:19 (2 hits).github/workflows/auto-release-create.yml:29 (2 hits).github/workflows/cron-dependency-update.yml:16 (2 hits).github/workflows/manual-release-branch-prepare.yml:34 (2 hits).github/workflows/manual-release-create.yml:33 (2 hits).github/workflows/manual-e2e-validate.yml:28
CI/CD securitySupply chainGitHub Actions
.pre-commit-config.yaml:2
.github/workflows/manual-e2e-validate.yml:28
CI/CD securitySupply chainGithub actions
Dockerfile:1
CI/CD securitycontainers
.github/workflows/auto-pull-request-create.yml.github/workflows/auto-release-create.yml.github/workflows/cron-dependency-update.yml.github/workflows/manual-e2e-validate.yml.github/workflows/manual-release-branch-prepare.yml.github/workflows/manual-release-create.yml.dockerignore
CI/CD securitycontainers
Dockerfile:1
containersPinned dependencies
This page is publicly accessible at:
https://repobility.com/scan/2368cd81-0e9f-4d73-a031-6ca41589207d/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/2368cd81-0e9f-4d73-a031-6ca41589207d/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.