Scan timing: clone 3.1s · analysis 1.05s · 4.5 MB · GitHub API rate-limit (preflight)
https://github.com/DoD-Platform-One/bigbang
· scanned 2026-06-05 18:33 UTC (4 days, 17 hours ago)
· 10 languages
36 raw signals (12 security + 24 graph) 10th percentile · Unknown · System graph score 85 (lower by 24)
Last scanned 4 days, 17 hours ago · v2 · 18 actionable findings from 2 signal sources. 6 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
30.0 | 0.15 | 4.50 |
security_score |
45.0 | 0.25 | 11.25 |
testing_score |
70.0 | 0.20 | 14.00 |
documentation_score |
85.0 | 0.15 | 12.75 |
practices_score |
70.0 | 0.15 | 10.50 |
code_quality |
77.8 | 0.10 | 7.78 |
| Overall | 1.00 | 60.8 |
Showing 16 of 18 actionable findings. 24 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
docs/community/development/package-integration/storage.md:48, 136 (2 hits)chart/templates/backstage/values.yaml:114docs/packages/core/twistlock.md:101
chart/ingress-certs.yaml:9docs/configuration/gateways.md:171docs/configuration/sample-prod-config.md:162docs/installation/environments/airgap.md:426docs/reference/configs/example/vault-production-values.yaml:9chart/ingress-certs.yaml:9
Private key in repo
chart/values.yaml:2360
docs/reference/scripts/airgap-dev/package-repos.sh:10
docs/reference/scripts/developer/k3d-dev.sh:843
scripts/install_flux.sh:50
docs/reference/scripts/airgap-dev/package-repos.sh:3
docs/reference/scripts/airgap-zarf/zarf-dev.sh:27
chart/templates/gatekeeper/values.yaml:65
base/flux/gotk-components.yaml:4828
Weak hash
docs/reference/configs/zarf/metallb/metallb-native-0.13.9.yaml:638
Weak hash
docs/reference/scripts/developer/k3d-dev.sh
Ports
This page is publicly accessible at:
https://repobility.com/scan/9cd71d44-cae5-42c5-8ec6-b380cbe0bd7b/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/9cd71d44-cae5-42c5-8ec6-b380cbe0bd7b/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.