Scan timing: clone 4.12s · analysis 21.99s · 17.8 MB · GitHub API rate-limit (preflight)
https://github.com/github/copilot-sdk
· scanned 2026-06-04 23:18 UTC (16 hours, 42 minutes ago)
· 10 languages
1079 findings (223 legacy + 856 scanner) 12th percentile · Java · large (100-500K LoC) Scanner says 80 (lower by 14)
Last scanned 16 hours, 41 minutes ago · v4 · 437 findings from 2 sources. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
40.0 | 0.15 | 6.00 |
security_score |
34.6 | 0.25 | 8.65 |
testing_score |
100.0 | 0.20 | 20.00 |
documentation_score |
100.0 | 0.15 | 15.00 |
practices_score |
82.0 | 0.15 | 12.30 |
code_quality |
44.7 | 0.10 | 4.47 |
| Overall | 1.00 | 66.4 |
Bug-class explainers. Each card groups findings of the same shape — these are the patterns most likely to ship to prod and reappear in future scans unless you systematically fix the cause, not just the instance.
.github/workflows/java-smoke-test.yml:77
python/copilot/session.py:1709
python/copilot/session.py:1658
python/copilot/session_fs_provider.py:303
python/copilot/session_fs_provider.py:262
python/copilot/session_fs_provider.py:255
python/copilot/session_fs_provider.py:241
python/copilot/session_fs_provider.py:233
python/copilot/session_fs_provider.py:226
python/copilot/session_fs_provider.py:206
python/copilot/session_fs_provider.py:193
python/copilot/session_fs_provider.py:186
This page is publicly accessible at:
https://repobility.com/scan/5ef0a980-c2f9-417c-a367-43c5f959e224/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/5ef0a980-c2f9-417c-a367-43c5f959e224/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.