Scan timing: clone 8.79s · analysis 44.89s · 139.8 MB · GitHub API rate-limit (preflight)
https://github.com/pulumi/pulumi-kubernetes
· scanned 2026-06-05 16:40 UTC (4 days, 23 hours ago)
· 10 languages
675 raw signals (95 security + 580 graph) 11/13 scanners ran 17th percentile · Csharp · huge (>500K LoC) System graph score 77 (lower by 6)
Last scanned 4 days, 23 hours ago · v2 · 278 actionable findings from 2 signal sources. 107 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
40.0 | 0.15 | 6.00 |
security_score |
100.0 | 0.25 | 25.00 |
testing_score |
25.0 | 0.20 | 5.00 |
documentation_score |
100.0 | 0.15 | 15.00 |
practices_score |
94.0 | 0.15 | 14.10 |
code_quality |
60.0 | 0.10 | 6.00 |
| Overall | 1.00 | 71.1 |
Showing 260 of 278 actionable findings. 385 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
sdk/python/pulumi_kubernetes/core/v1/_inputs.py:6514, 6892, 25527 (3 hits)sdk/python/pulumi_kubernetes/meta/v1/_inputs.py:430, 910 (2 hits)sdk/python/pulumi_kubernetes/resource/v1/_inputs.py:1851, 4646 (2 hits)sdk/python/pulumi_kubernetes/resource/v1beta1/_inputs.py:2247, 5192 (2 hits)sdk/python/pulumi_kubernetes/resource/v1beta2/_inputs.py:1863, 5121 (2 hits)sdk/python/pulumi_kubernetes/apiextensions/v1/_inputs.py:2510sdk/python/pulumi_kubernetes/apiextensions/v1beta1/_inputs.py:2600sdk/python/pulumi_kubernetes/batch/v1/_inputs.py:2121.github/workflows/gh-aw-pr-review.lock.yml:472, 474, 493, 494, 738, 983, 984, 1164, +4 more (12 hits).github/workflows/weekly-pulumi-update.yml:32
.github/workflows/kubernetes-update-check.yml:14
.github/workflows/prerelease.yml:329, 600 (4 hits).github/workflows/release.yml:329, 600 (4 hits).github/workflows/build.yml:373 (2 hits).github/workflows/run-acceptance-tests.yml:472 (2 hits).github/workflows/build.yml:260.github/workflows/release_command.yml:27.github/workflows/release_command.yml:27
CI/CD securitySupply chainGithub actions
.github/workflows/build.yml:260
CI/CD securitySupply chainGithub actions
sdk/java/src/main/java/com/pulumi/kubernetes/core/v1/inputs/LifecycleHandlerArgs.java:36
Exec used
sdk/java/src/main/java/com/pulumi/kubernetes/core/v1/inputs/LifecycleHandlerPatchArgs.java:36
Exec used
sdk/java/src/main/java/com/pulumi/kubernetes/core/v1/inputs/ProbeArgs.java:37
Exec used
sdk/java/src/main/java/com/pulumi/kubernetes/core/v1/inputs/ProbePatchArgs.java:37
Exec used
sdk/java/src/main/java/com/pulumi/kubernetes/core/v1/outputs/LifecycleHandler.java:43
Exec used
sdk/java/src/main/java/com/pulumi/kubernetes/core/v1/outputs/LifecycleHandlerPatch.java:43
Exec used
sdk/java/src/main/java/com/pulumi/kubernetes/core/v1/outputs/Probe.java:74
Exec used
sdk/java/src/main/java/com/pulumi/kubernetes/core/v1/outputs/ProbePatch.java:74
Exec used
sdk/python/pulumi_kubernetes/_utilities.py:54, 64 (2 hits).github/workflows/build.yml.github/workflows/claude.yml.github/workflows/command-dispatch.yml.github/workflows/export-repo-secrets.yml.github/workflows/gh-aw-pr-rereview.lock.yml.github/workflows/gh-aw-pr-review.lock.yml.github/workflows/kubernetes-update-check.yml.github/workflows/lint.ymlprovider/pkg/await/internal/awaiter.go:174provider/pkg/await/job.go:174provider/pkg/await/watchers.go:135sdk/dotnet/AdmissionRegistration/V1/Inputs/RuleWithOperationsPatchArgs.cs:9, 20 (2 hits)sdk/dotnet/AdmissionRegistration/V1/Outputs/ValidatingWebhookPatch.cs:32, 33 (2 hits)sdk/dotnet/AdmissionRegistration/V1Alpha1/Inputs/NamedRuleWithOperationsPatchArgs.cs:7, 9 (2 hits)provider/pkg/await/statefulset.go:5provider/pkg/await/util.go:34provider/pkg/provider/yaml/v2/configgroup.go:83sdk/dotnet/AdmissionRegistration/V1/Inputs/NamedRuleWithOperationsPatchArgs.cs:9sdk/dotnet/AdmissionRegistration/V1/Inputs/RuleWithOperationsArgs.cs:9repo-level (12 hits)repo-level (4 hits)sdk/python/pulumi_kubernetes/_utilities.py:255
sdk/python/pulumi_kubernetes/_utilities.py:208
sdk/python/pulumi_kubernetes/_utilities.py:193
sdk/python/pulumi_kubernetes/_utilities.py:308
sdk/python/pulumi_kubernetes/helm/v3/helm.py:617
sdk/python/pulumi_kubernetes/_utilities.py:235
sdk/python/pulumi_kubernetes/_utilities.py:241
sdk/python/pulumi_kubernetes/kustomize/kustomize.py:133
sdk/python/pulumi_kubernetes/yaml/yaml.py:351
sdk/python/pulumi_kubernetes/kustomize/kustomize.py:130
sdk/python/pulumi_kubernetes/yaml/yaml.py:348
This page is publicly accessible at:
https://repobility.com/scan/5cba0fe7-668a-4a52-be35-240edd9c8fba/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/5cba0fe7-668a-4a52-be35-240edd9c8fba/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.