https://github.com/FuelLabs/fuel-core
· scanned 2026-06-05 09:58 UTC (5 days, 14 hours ago)
· 10 languages
250 raw signals (64 security + 186 graph) 11/13 scanners ran 37th percentile · Rust · medium (20-100K LoC) System graph score 82 (lower by 17)
Last scanned 5 days, 14 hours ago · v2 · 40 actionable findings from 2 signal sources. 116 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
60.0 | 0.15 | 9.00 |
security_score |
100.0 | 0.25 | 25.00 |
testing_score |
20.0 | 0.20 | 4.00 |
documentation_score |
65.0 | 0.15 | 9.75 |
practices_score |
68.0 | 0.15 | 10.20 |
code_quality |
70.0 | 0.10 | 7.00 |
| Overall | 1.00 | 65.0 |
Showing 32 of 40 actionable findings. 156 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
.github/workflows/create_version.yml:26
.github/workflows/ci.yml:387, 437 (2 hits).github/workflows/delete-test-env.yml:31.github/workflows/deploy-test-env.yml:31.github/workflows/dependencies.yml:33, 42, 48, 63, 66, 70 (12 hits).github/workflows/ci.yml:38, 62, 75, 87, 157, 184, 356, 375, +1 more (10 hits).github/workflows/chaos-test.yml:65, 74, 117 (5 hits).github/workflows/docker-images.yml:39, 110, 204 (3 hits).github/workflows/nightly-benchmark.yml:26, 47, 66 (3 hits).github/workflows/delete-test-env.yml:17 (2 hits).github/workflows/spellcheck.yml:11 (2 hits).github/workflows/create_version.yml:18.github/workflows/ci.yml:64, 76 (2 hits).github/workflows/dependencies.yml:34.github/workflows/spellcheck.yml:14.github/workflows/docker-images.yml:42, 49, 55, 62, 68, 82, 113, 116, +9 more (17 hits).github/workflows/ci.yml:164, 174, 190, 211, 384, 422, 426, 434, +2 more (10 hits).github/workflows/chaos-test.yml:68 (2 hits).github/workflows/nightly-benchmark.yml:38.github/workflows/nightly-cargo-audit.yml:12.github/workflows/publish-codecov.yml:36.github/workflows/ci.yml:64, 252, 294, 378, 456 (5 hits).github/workflows/nightly-benchmark.yml:29.github/workflows/publish-codecov.yml:30.github/workflows/spellcheck.yml:14deployment/Dockerfile:2
containersPinned dependencies
.github/workflows/ci.yml.github/workflows/create_version.yml.github/workflows/dependencies.yml.github/workflows/docker-images.yml.github/workflows/nightly-benchmark.yml.github/workflows/publish-codecov.yml.github/workflows/update_readme_versions.ymlcrates/client/assets/debugAdapterProtocol.json:3729
Weak hash
crates/fuel-core/src/service/genesis/importer.rs:37, 38 (2 hits)crates/client/src/client/schema/tx/transparent_tx.rs:49crates/compression/src/compressed_block_payload/v1.rs:1crates/compression/src/lib.rs:13crates/fuel-core/src/graphql_api/ports.rs:37crates/fuel-core/src/schema/message.rs:171crates/fuel-core/src/schema/scalars/tx_pointer.rs:1crates/fuel-core/src/schema/scalars/utxo_id.rs:1deployment/Dockerfile:68
containersPinned dependencies
deployment/Dockerfile:3
containersPinned dependencies
This page is publicly accessible at:
https://repobility.com/scan/9397444c-88f7-4bf5-bb3b-5b5e06094887/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/9397444c-88f7-4bf5-bb3b-5b5e06094887/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.