Scan timing: clone 4.63s · analysis 10.16s · 27.9 MB · GitHub API rate-limit (preflight)
https://github.com/astral-sh/uv
· scanned 2026-05-31 01:25 UTC (1 week, 6 days ago)
· 10 languages
493 raw signals (142 security + 351 graph) 11/13 scanners ran 50th percentile · Rust · huge (>500K LoC) System graph score 73 (higher by 11)
Last scanned 1 week, 6 days ago · v2 · 203 actionable findings from 2 signal sources. 117 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
60.0 | 0.15 | 9.00 |
security_score |
100.0 | 0.25 | 25.00 |
testing_score |
84.0 | 0.20 | 16.80 |
documentation_score |
100.0 | 0.15 | 15.00 |
practices_score |
100.0 | 0.15 | 15.00 |
code_quality |
35.0 | 0.10 | 3.50 |
| Overall | 1.00 | 84.3 |
Showing 20 of 203 actionable findings. 320 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
scripts/scenarios/generate.py:84
scripts/benchmark/src/benchmark/resolver.py:94, 96, 98, 100, 102, 104, 389, 416, +12 more (20 hits)scripts/benchmark/src/benchmark/tools.py:36, 38, 40 (3 hits)scripts/scenarios/generate.py:82, 85 (2 hits)crates/uv-dev/builder.dockerfile:3
.github/workflows/test-system.yml:102, 126, 299, 377, 790 (5 hits).github/workflows/build-release-binaries.yml:361.github/workflows/test-smoke.yml:78.pre-commit-config.yaml:9, 13, 45 (3 hits)crates/uv-trampoline-builder/trampolines/uv-trampoline-aarch64-console.exe:1
crates/uv-trampoline-builder/trampolines/uv-trampoline-aarch64-gui.exe:1
crates/uv-trampoline-builder/trampolines/uv-trampoline-i686-console.exe:1
crates/uv-trampoline-builder/trampolines/uv-trampoline-i686-gui.exe:1
crates/uv-trampoline-builder/trampolines/uv-trampoline-x86_64-console.exe:1
crates/uv-trampoline-builder/trampolines/uv-trampoline-x86_64-gui.exe:1
scripts/update_schemastore.py:38
scripts/publish-crates.py:80
scripts/repair-sdist-cargo-lock.py:32
crates/uv-trampoline/Dockerfile:38
CI/CD securitycontainers
crates/uv-trampoline/Dockerfile:63
CI/CD securitycontainers
docs/reference/installer.md:57
docs/getting-started/installation.md:16
crates/uv/src/commands/self_update.rs:1
crates/uv/src/commands/cache_clean.rs:1
This page is publicly accessible at:
https://repobility.com/scan/bee51646-a8dc-410c-9ffa-753bd32e1390/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/bee51646-a8dc-410c-9ffa-753bd32e1390/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.