https://github.com/huangjunsen0406/py-xiaozhi
· scanned 2026-05-15 09:54 UTC (3 weeks ago)
· 10 languages
89 findings (23 legacy + 66 scanner) 58th percentile · Python · medium (20-100K LoC) Scanner says 90 (lower by 28)
Last scanned 3 weeks ago · v1 · 19 findings from 1 source. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
85.0 | 0.15 | 12.75 |
security_score |
84.5 | 0.25 | 21.12 |
testing_score |
0.0 | 0.20 | 0.00 |
documentation_score |
73.6 | 0.15 | 11.04 |
practices_score |
80.0 | 0.15 | 12.00 |
code_quality |
56.6 | 0.10 | 5.66 |
| Overall | 1.00 | 62.6 |
agent: 4.2 ·
threat: 11.3
Bug-class explainers. Each card groups findings of the same shape — these are the patterns most likely to ship to prod and reappear in future scans unless you systematically fix the cause, not just the instance.
.claude/hooks/inject-subagent-context.py:183
.trellis/scripts/common/task_store.py:277
main.py:154
.trellis/scripts/common/cli_adapter.py:344
.claude/hooks/session-start.py:38
src/ui/gpio/manager.py:113
src/mcp/tools/app/scanner_mac.py:92
.trellis/scripts/common/paths.py:133
.claude/hooks/session-start.py:75
.claude/hooks/session-start.py:65
.claude/hooks/inject-workflow-state.py:36
documents/docs/guide/设备激活流程.md
This page is publicly accessible at:
https://repobility.com/scan/57263f9d-e867-4072-a691-2b0ee18162b6/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/57263f9d-e867-4072-a691-2b0ee18162b6/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.