Scan timing: clone 2.1s · analysis 40.89s · 10.3 MB · GitHub API rate-limit (preflight)
https://github.com/eclipse-sw360/sw360
· scanned 2026-06-05 14:53 UTC (5 days, 4 hours ago)
· 10 languages
274 raw signals (78 security + 196 graph) 14th percentile · Java · large (100-500K LoC) System graph score 70 (lower by 4)
Last scanned 5 days, 4 hours ago · v2 · 129 actionable findings from 2 signal sources. 44 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
60.0 | 0.15 | 9.00 |
security_score |
26.9 | 0.25 | 6.72 |
testing_score |
80.0 | 0.20 | 16.00 |
documentation_score |
96.0 | 0.15 | 14.40 |
practices_score |
89.0 | 0.15 | 13.35 |
code_quality |
66.5 | 0.10 | 6.65 |
| Overall | 1.00 | 66.1 |
Top 10 actions, ranked by impact × ease. Severity drives impact; tag-based fix-clarity drives ease.
clients/client/src/main/java/org/eclipse/sw360/clients/rest/resource/SW360Attributes.java:35DockerfileDockerfilethird-party/thrift/Dockerfilebackend/fossology/src/main/java/org/eclipse/sw360/fossology/rest/FossologyRestClient.java:735.github/workflows/thrift_container.yml.github/workflows/scorecard.yml.github/workflows/sw360_container.ymlClick "Find this gap" on any action above to jump to it on the Findings tab. Adjust the chip bar to filter by impact (severity), layer, or source.
This page is publicly accessible at:
https://repobility.com/scan/7f6605cc-6a16-4dff-84b8-571aaccfc3aa/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/7f6605cc-6a16-4dff-84b8-571aaccfc3aa/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.