https://github.com/huangjunsen0406/py-xiaozhi
· scanned 2026-05-15 09:54 UTC (2 weeks, 6 days ago)
· 10 languages
89 findings (23 legacy + 66 scanner) 60th percentile · Python · medium (20-100K LoC) Scanner says 90 (lower by 28)
Last scanned 2 weeks, 6 days ago · v1 · 19 findings from 1 source. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
85.0 | 0.15 | 12.75 |
security_score |
84.5 | 0.25 | 21.12 |
testing_score |
0.0 | 0.20 | 0.00 |
documentation_score |
73.6 | 0.15 | 11.04 |
practices_score |
80.0 | 0.15 | 12.00 |
code_quality |
56.6 | 0.10 | 5.66 |
| Overall | 1.00 | 62.6 |
agent: 4.2 ·
threat: 11.3
Showing 17 of 19 findings. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
scripts/keyword_generator.py:319
path_traversallegacy
.claude/hooks/inject-subagent-context.py:183
error_handlinglegacy
.trellis/scripts/common/task_store.py:277
error_handlinglegacy
main.py:154
error_handlinglegacy
.trellis/scripts/common/task_utils.py:240
injectionlegacy
src/activation/service.py:555
cryptolegacy
.trellis/scripts/common/cli_adapter.py:344
qualitylegacy
.claude/hooks/session-start.py:38
qualitylegacy
src/ui/gpio/manager.py:113
qualitylegacy
src/mcp/tools/app/scanner_mac.py:92
qualitylegacy
.trellis/scripts/common/paths.py:133
qualitylegacy
.claude/hooks/session-start.py:75
qualitylegacy
.claude/hooks/session-start.py:65
qualitylegacy
.claude/hooks/inject-workflow-state.py:36
qualitylegacy
documents/docs/guide/系统依赖安装.md:155
dependencylegacy
.trellis/tasks/research/linux-audio-deps.md:204
dependencylegacy
documents/docs/guide/设备激活流程.md
qualitylegacy
This page is publicly accessible at:
https://repobility.com/scan/57263f9d-e867-4072-a691-2b0ee18162b6/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/57263f9d-e867-4072-a691-2b0ee18162b6/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.