Scan timing: clone 2.75s · analysis 3.52s · 0.9 MB · GitHub API rate-limit (preflight)
https://github.com/redpanda-data/kminion
· scanned 2026-06-05 13:20 UTC (5 days, 6 hours ago)
· 10 languages
58 raw signals (44 security + 14 graph) 10th percentile · Go · small (2-20K LoC) System graph score 92 (lower by 39)
Last scanned 5 days, 6 hours ago · v2 · 40 actionable findings from 2 signal sources. 11 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
75.0 | 0.15 | 11.25 |
security_score |
37.3 | 0.25 | 9.32 |
testing_score |
15.0 | 0.20 | 3.00 |
documentation_score |
62.0 | 0.15 | 9.30 |
practices_score |
77.0 | 0.15 | 11.55 |
code_quality |
80.0 | 0.10 | 8.00 |
| Overall | 1.00 | 52.4 |
Showing 33 of 40 actionable findings. 51 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
docker-compose.yml:5, 15 (2 hits)Dockerfile:18
CI/CD securitycontainers
Dockerfile:4, 30 (2 hits).github/workflows/docker-image.yml:15, 19, 51, 56 (4 hits).github/workflows/goreleaser.yml:18.github/workflows/goreleaser.yml:12, 15 (2 hits).github/workflows/docker-image.yml:24go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
go.mod
docker-compose.yml:5, 15 (2 hits)docker-compose.yml:5, 15 (2 hits).dockerignore
CI/CD securitycontainers
.github/workflows/docker-image.yml
CI/CD securitySupply chainGithub actions
.github/workflows/goreleaser.yml
CI/CD securitySupply chainGithub actions
logging/logger.go:20
docker-compose.yml:33
CI/CD securitycontainers
docker-compose.yml:33
CI/CD securitycontainers
docker-compose.yml:5, 15 (2 hits)Dockerfile:30
containersPinned dependencies
Dockerfile:4
containersPinned dependencies
This page is publicly accessible at:
https://repobility.com/scan/c58f3377-b01f-4e72-88bc-6df502faf969/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/c58f3377-b01f-4e72-88bc-6df502faf969/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.