Scan timing: clone 16.4s · analysis 24.93s · 80.2 MB · GitHub API rate-limit (preflight)
https://github.com/zed-industries/zed
· scanned 2026-06-05 07:19 UTC (5 days, 22 hours ago)
· 10 languages
718 raw signals (164 security + 554 graph) 11/13 scanners ran 0th percentile · Rust · huge (>500K LoC) System graph score 72 (lower by 5)
Last scanned 5 days, 22 hours ago · v2 · 324 actionable findings from 2 signal sources. 90 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
60.0 | 0.15 | 9.00 |
security_score |
100.0 | 0.25 | 25.00 |
testing_score |
22.0 | 0.20 | 4.40 |
documentation_score |
91.0 | 0.15 | 13.65 |
practices_score |
76.0 | 0.15 | 11.40 |
code_quality |
44.0 | 0.10 | 4.40 |
| Overall | 1.00 | 67.9 |
Showing 295 of 324 actionable findings. 414 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
crates/client/src/proxy/http_proxy.rs:181
compose.yml:1
CI/CD securitycontainers
.github/workflows/run_bundling.yml:20, 21, 32, 59, 60, 71, 98, 99, +17 more (25 hits)crates/client/src/proxy/http_proxy.rs:189
crates/client/src/proxy/socks_proxy.rs:206
crates/collab/.env.toml:6
crates/language_models/src/provider/deepseek.rs:649
crates/language_models/src/provider/open_ai.rs:566
crates/language_models/src/provider/opencode.rs:755
crates/repl/src/outputs.rs:1190, 1203 (2 hits)crates/eval_cli/Dockerfile:9
.github/workflows/deploy_collab.yml:76.github/workflows/release.yml:103.github/workflows/release_nightly.yml:86.github/workflows/run_tests.yml:402crates/zed/resources/windows/bin/x64/OpenConsole.exe:1
crates/gpui_linux/src/linux/x11/xim_handler.rs:37
crates/http_client/src/async_body.rs:68
compose.yml:1
CI/CD securitycontainers
crates/eval_cli/Dockerfile:39
CI/CD securitycontainers
.github/workflows/deploy_collab.yml:90, 120 (4 hits).github/workflows/run_tests.yml:797, 802 (4 hits).github/workflows/after_release.yml:44.github/workflows/deploy_nightly_docs.yml:13.github/workflows/after_release.yml:44
CI/CD securitySupply chainGithub actions
.github/workflows/deploy_nightly_docs.yml:13
CI/CD securitySupply chainGithub actions
crates/agent/src/tools/evals.rs:27
Eval used
crates/agent_ui/src/inline_assistant.rs:2058
Eval used
crates/gpui_macos/src/platform.rs:316
Eval used
crates/project/src/lsp_store.rs:14140
Eval used
script/github-track-duplicate-bot-effectiveness.py:497
Error handlingquality
script/github-assign-contributor-issue.py:334
Error handlingquality
compose.yml:1
CI/CD securitycontainers
.dockerignore
CI/CD securitycontainers
ci/Dockerfile.namespace:4
CI/CD securitycontainers
.github/workflows/background_agent_mvp.yml:47
.github/workflows/background_agent_mvp.yml.github/workflows/docs_suggestions.yml.github/workflows/extension_auto_bump.yml.github/workflows/bump_collab_staging.yml
Ports
compose.yml:13
CI/CD securitycontainers
compose.yml:13
CI/CD securitycontainers
compose.yml:1
CI/CD securitycontainers
ci/Dockerfile.namespace:9
CI/CD securitycontainers
ci/Dockerfile.namespace:9
CI/CD securitycontainers
crates/agent/src/tools/delete_path_tool.rs:112, 221 (2 hits)crates/agent/src/tools/rename_tool.rs:43, 84 (2 hits)crates/dap_adapters/src/javascript.rs:183, 202 (2 hits)crates/agent/src/thread_store.rs:124crates/agent/src/tools/create_directory_tool.rs:139crates/agent/src/tools/evals/write_file.rs:100crates/agent/src/tools/get_code_actions_tool.rs:41crates/agent/src/tools/go_to_definition_tool.rs:37AGENTS.md:1
crates/auto_update/src/auto_update.rs:1
crates/eval_cli/Dockerfile:9
containersPinned dependencies
crates/eval_cli/zed_eval/agent.py:103
script/github-label-issues-to-triage.py:63
script/github-check-new-issue-for-duplicates.py:409
crates/eval_cli/zed_eval/agent.py:348
This page is publicly accessible at:
https://repobility.com/scan/a119af50-ee8c-43d5-8bbf-b3fa8f6264d6/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/a119af50-ee8c-43d5-8bbf-b3fa8f6264d6/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.