Scan timing: clone 2.68s · analysis 5.74s · 0.5 MB · GitHub API rate-limit (preflight)
https://github.com/meshery/meshery-operator
· scanned 2026-06-05 16:46 UTC (4 days, 23 hours ago)
· 10 languages
125 raw signals (69 security + 56 graph) 50th percentile · Go · small (2-20K LoC) System graph score 90 (lower by 12)
Last scanned 4 days, 23 hours ago · v2 · 46 actionable findings from 2 signal sources. 51 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
100.0 | 0.15 | 15.00 |
security_score |
53.7 | 0.25 | 13.43 |
testing_score |
80.0 | 0.20 | 16.00 |
documentation_score |
80.0 | 0.15 | 12.00 |
practices_score |
98.0 | 0.15 | 14.70 |
code_quality |
75.5 | 0.10 | 7.55 |
| Overall | 1.00 | 78.7 |
Showing 43 of 46 actionable findings. 97 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
go.mod
go.mod
pkg/broker/resources.go:82
pkg/broker/resources.go:82
Dockerfile:2, 23 (2 hits).github/workflows/slack.yaml:21, 36 (4 hits).github/workflows/integration-tests-ci.yml:47, 49 (3 hits).github/workflows/approve-to-run-ci.yml:22 (2 hits).github/workflows/build-and-release.yml:21 (2 hits).github/workflows/error-ref-publisher.yaml:37 (2 hits).github/workflows/label-commenter.yml:26 (2 hits).github/workflows/release-drafter.yml:22 (2 hits).github/workflows/build-and-release.yml:17.github/workflows/label-commenter.yml:21.github/workflows/newcomer-alert.yml:16.github/workflows/approve-to-run-ci.yml:15, 16, 30, 32, 47, 49, 68, 70 (15 hits).github/workflows/error-ref-publisher.yaml:20, 27, 48 (5 hits).github/workflows/integration-tests-ci.yml:39, 43, 66 (5 hits)go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
.github/workflows/newcomer-alert.yml:16
CI/CD securitySupply chainGithub actions
.github/workflows/build-and-release.yml:17
CI/CD securitySupply chainGithub actions
.dockerignore
CI/CD securitycontainers
go.mod
.github/workflows/error-ref-publisher.yaml
CI/CD securitySupply chainGithub actions
pkg/meshsync/meshsync.go:1, 45 (2 hits)api/v1alpha1/meshsync_types.go:1controllers/error.go:1controllers/meshsync_controller.go:1pkg/meshsync/error.go:12pkg/meshsync/resources.go:1go.mod
Dockerfile:23
containersPinned dependencies
Dockerfile:2
containersPinned dependencies
This page is publicly accessible at:
https://repobility.com/scan/bc4addc2-37af-4ccb-a213-bcdbcd3c7240/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/bc4addc2-37af-4ccb-a213-bcdbcd3c7240/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.