Scan timing: clone 14.65s · analysis 7.4s · 30.5 MB · GitHub API rate-limit (preflight)
https://github.com/traefik/traefik
· scanned 2026-06-05 09:03 UTC (5 days, 18 hours ago)
· 10 languages
322 raw signals (96 security + 226 graph) 11/13 scanners ran 88th percentile · Go · large (100-500K LoC) System graph score 83 (higher by 6)
Last scanned 5 days, 18 hours ago · v2 · 134 actionable findings from 2 signal sources. 75 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
85.0 | 0.15 | 12.75 |
security_score |
100.0 | 0.25 | 25.00 |
testing_score |
80.0 | 0.20 | 16.00 |
documentation_score |
92.0 | 0.15 | 13.80 |
practices_score |
100.0 | 0.15 | 15.00 |
code_quality |
70.0 | 0.10 | 7.00 |
| Overall | 1.00 | 89.5 |
Showing 107 of 134 actionable findings. 209 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
docs/content/user-guides/docker-compose/acme-dns/docker-compose.yml:2
CI/CD securitycontainers
docs/content/user-guides/docker-compose/acme-dns/docker-compose.yml:2docs/content/user-guides/docker-compose/acme-http/docker-compose.yml:2docs/content/user-guides/docker-compose/acme-tls/docker-compose.yml:2docs/content/user-guides/docker-compose/basic-example/docker-compose.yml:2docs/content/reference/dynamic-configuration/file.toml:337
docs/content/reference/static-configuration/file.toml:106, 123, 228, 276, 286, 291, 301 (7 hits)Dockerfile:2docs/check.Dockerfile:1docs/docs.Dockerfile:1webui/buildx.Dockerfile:1go.mod:426
pkg/provider/acme/local_store.go:106
pkg/provider/consulcatalog/connect_tls.go:67
pkg/middlewares/ingressnginx/snippet/collector.go:252
Eval used
pkg/proxy/fast/upgrade.go:98
pkg/proxy/httputil/proxy.go:164
pkg/tls/version.go:9
pkg/tls/certificate.go:18
Dockerfile:2
CI/CD securitycontainers
.github/workflows/validate.yaml:52
.github/workflows/documentation.yaml:35
repo-level (12 hits).github/workflows/sync-docker-images.yaml
CI/CD securitySupply chainGithub actions
docs/content/reference/dynamic-configuration/file.yaml
Ports
docs/content/reference/dynamic-configuration/kubernetes-crd-resource.yml
Ports
integration/resources/compose/tcp.yml
Ports
.dockerignore
CI/CD securitycontainers
cmd/traefik/logger.go:73internal/anchors.go:192pkg/cli/loader_file.go:28pkg/api/handler_udp.go:1, 44, 47 (3 hits)pkg/api/handler_tcp.go:61, 64 (2 hits)pkg/config/dynamic/udp_config.go:38, 53 (2 hits)pkg/provider/kubernetes/crd/kubernetes_udp.go:88, 145 (2 hits)pkg/provider/kubernetes/gateway/tlsroute.go:29, 97 (2 hits)pkg/api/handler_http.go:68pkg/config/dynamic/tcp_config.go:79pkg/config/runtime/runtime_tcp.go:45docs/content/expose/docker/basic.md
pkg/middlewares/gatewayapi/urlrewrite/url_rewrite.go:1
Dockerfile:2
containersPinned dependencies
This page is publicly accessible at:
https://repobility.com/scan/bc92cf09-808a-4e61-9f1d-3c2b3896ea73/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/bc92cf09-808a-4e61-9f1d-3c2b3896ea73/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.