Scan timing: clone 5.56s · analysis 31.72s · 14.2 MB · GitHub API rate-limit (preflight)
https://github.com/earendil-works/pi
· scanned 2026-06-05 09:45 UTC (5 days, 16 hours ago)
· 10 languages
461 raw signals (111 security + 350 graph) 62nd percentile · Typescript · large (100-500K LoC) System graph score 76 (higher by 2)
Last scanned 5 days, 16 hours ago · v2 · 214 actionable findings from 2 signal sources. 72 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
60.0 | 0.15 | 9.00 |
security_score |
80.0 | 0.25 | 20.00 |
testing_score |
95.0 | 0.20 | 19.00 |
documentation_score |
77.6 | 0.15 | 11.64 |
practices_score |
91.0 | 0.15 | 13.65 |
code_quality |
45.7 | 0.10 | 4.57 |
| Overall | 1.00 | 77.9 |
Showing 165 of 214 actionable findings. 286 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
package-lock.json
packages/coding-agent/src/core/export-html/index.ts:296
packages/ai/src/providers/amazon-bedrock.ts:83
.github/workflows/approve-contributor.yml:16, 22, 149 (6 hits).github/workflows/ci.yml:18, 21 (4 hits).github/workflows/npm-audit.yml:16, 19 (4 hits).github/workflows/issue-gate.yml:15 (2 hits).github/workflows/openclaw-gate.yml:18 (2 hits).github/workflows/pr-gate.yml:16 (2 hits)packages/agent/src/harness/types.ts:323
Exec used
packages/coding-agent/src/core/extensions/loader.ts:275
Exec used
packages/coding-agent/src/core/extensions/types.ts:1218
Exec used
packages/agent/src/proxy.ts:143
packages/coding-agent/src/utils/tools-manager.ts:275
packages/coding-agent/src/core/agent-session.ts:1804
packages/coding-agent/src/core/export-html/template.js:1706
packages/ai/package.json
packages/coding-agent/package.json
packages/agent/package.json
packages/tui/package.json
packages/coding-agent/package.json
packages/coding-agent/package.json
packages/coding-agent/package.json
packages/ai/package.json
packages/ai/package.json
packages/tui/package.json
packages/coding-agent/package.json
packages/coding-agent/docs/index.md:18
.github/workflows/approve-contributor.yml
CI/CD securitySupply chainGithub actions
.github/workflows/build-binaries.yml
CI/CD securitySupply chainGithub actions
packages/ai/src/providers/google.ts:20, 54, 56 (3 hits)packages/ai/src/providers/google-vertex.ts:68, 70 (2 hits)packages/ai/src/providers/mistral.ts:108, 110 (2 hits)packages/ai/src/providers/openai-responses.ts:76, 78 (2 hits)packages/ai/src/providers/register-builtins.ts:127, 129 (2 hits)packages/coding-agent/src/core/model-registry.ts:188, 787 (2 hits)packages/coding-agent/src/core/skills.ts:15, 256 (2 hits)packages/agent/src/harness/session/memory-storage.ts:9packages/ai/package.jsonpackages/coding-agent/examples/extensions/custom-provider-anthropic/package.jsonpackages/ai/package.json
package.json
packages/agent/package.jsonpackages/ai/package.jsonpackages/coding-agent/package.jsonpackages/ai/CHANGELOG.md
packages/coding-agent/src/utils/windows-self-update.ts:1
package.json
CI/CD securitySupply chainNpm
This page is publicly accessible at:
https://repobility.com/scan/6e92d278-8528-4308-bc39-5eac0ee1c20e/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/6e92d278-8528-4308-bc39-5eac0ee1c20e/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.