https://github.com/elastic/elasticsearch
· scanned 2026-06-05 07:40 UTC (5 days, 22 hours ago)
· 10 languages
2776 raw signals (132 security + 2644 graph) 11/13 scanners ran 100th percentile · Java · huge (>500K LoC) System graph score 66 (higher by 19)
Last scanned 5 days, 22 hours ago · v2 · 1339 actionable findings from 2 signal sources. 114 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
40.0 | 0.15 | 6.00 |
security_score |
100.0 | 0.25 | 25.00 |
testing_score |
100.0 | 0.20 | 20.00 |
documentation_score |
91.0 | 0.15 | 13.65 |
practices_score |
77.0 | 0.15 | 11.55 |
code_quality |
80.0 | 0.10 | 8.00 |
| Overall | 1.00 | 84.2 |
Bug-class explainers. Each card groups findings of the same shape — these are the patterns most likely to ship to prod and reappear in future scans unless you systematically fix the cause, not just the instance.
x-pack/plugin/security/qa/multi-cluster/src/javaR…:322
libs/ssl-config/src/main/java/org/elasticsearch/c…:159
libs/ssl-config/src/main/java/org/elasticsearch/c…:59
libs/ssl-config/src/main/java/org/elasticsearch/c…:63
libs/ssl-config/src/main/java/org/elasticsearch/c…:219
This page is publicly accessible at:
https://repobility.com/scan/d4be5fa3-841a-4364-9c0a-d77b4a437a6b/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/d4be5fa3-841a-4364-9c0a-d77b4a437a6b/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.