https://github.com/thClaws/thClaws
· scanned 2026-05-31 01:25 UTC (1 week, 6 days ago)
· 10 languages
239 raw signals (93 security + 146 graph) 11/13 scanners ran 65th percentile · Rust · large (100-500K LoC)
Last scanned 1 week, 6 days ago · v2 · 113 actionable findings from 2 signal sources. 63 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
60.0 | 0.15 | 9.00 |
security_score |
100.0 | 0.25 | 25.00 |
testing_score |
20.0 | 0.20 | 4.00 |
documentation_score |
96.0 | 0.15 | 14.40 |
practices_score |
90.0 | 0.15 | 13.50 |
code_quality |
50.0 | 0.10 | 5.00 |
| Overall | 1.00 | 70.9 |
Showing 57 of 113 actionable findings. 176 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
.github/workflows/ci.yml:30, 41, 45, 56, 68, 79, 100, 110, +2 more (10 hits).github/workflows/cargo-audit.yml:19, 25 (3 hits).github/workflows/ci.yml:31, 42, 69, 72, 101, 102, 141, 142 (8 hits).github/workflows/cargo-audit.yml:22 (2 hits)crates/core/src/research/pipeline.rs:1063
Eval used
crates/core/src/workflow/runtime.rs:49
Eval used
frontend/src/components/ShellPicker.tsx:179
user-manual-th/ch26-gui-shells.md:185
CI/CD securityagent runtimepermissions
user-manual/ch26-gui-shells.md:189
CI/CD securityagent runtimepermissions
docker-compose.yml:20
CI/CD securitycontainers
frontend/src/components/ModelPickerModal.tsx:33
user-manual-th/ch02-installation.md:270user-manual-th/ch05-permissions.md:121user-manual-th/ch11-built-in-tools.md:35user-manual/ch05-permissions.md:106user-manual/ch11-built-in-tools.md:35.github/workflows/release.yml
CI/CD securitySupply chainGithub actions
frontend/src/components/KmsViewerOverlay.tsx:350
Dangerous innerhtml
.dockerignore
CI/CD securitycontainers
docker-compose.yml:20
CI/CD securitycontainers
docker-compose.yml:20
CI/CD securitycontainers
crates/core/src/telegram/approver.rs:51, 108 (2 hits)frontend/src/components/PlanSidebar.tsx:83, 107 (2 hits)frontend/src/components/TodoSidebar.tsx:41, 57 (2 hits)crates/core/src/deploy_client.rs:14crates/core/src/gui_shell/serve.rs:118crates/core/src/messenger/approver.rs:9crates/core/src/messenger/bootstrap.rs:42crates/core/src/messenger/client.rs:23Dockerfile:24
containersPinned dependencies
Dockerfile:43
containersPinned dependencies
This page is publicly accessible at:
https://repobility.com/scan/35c0bd90-7a84-43f2-96fa-aa9e363646bc/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/35c0bd90-7a84-43f2-96fa-aa9e363646bc/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.