Scan timing: clone 1.55s · analysis 8.89s · 2.3 MB · GitHub API rate-limit (preflight)
https://github.com/open-telemetry/opentelemetry-kotlin
· scanned 2026-06-05 17:15 UTC (4 days, 21 hours ago)
· 10 languages
64 raw signals (48 security + 16 graph) 71st percentile · Kotlin · medium (20-100K LoC) System graph score 85 (lower by 21)
Last scanned 4 days, 21 hours ago · v2 · 16 actionable findings from 2 signal sources. 38 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
40.0 | 0.15 | 6.00 |
security_score |
98.7 | 0.25 | 24.68 |
testing_score |
15.0 | 0.20 | 3.00 |
documentation_score |
89.0 | 0.15 | 13.35 |
practices_score |
72.0 | 0.15 | 10.80 |
code_quality |
60.7 | 0.10 | 6.07 |
| Overall | 1.00 | 63.9 |
Showing 7 of 16 actionable findings. 54 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
.github/workflows/ci-build.yml:50
CI/CD securityworkflow secretsGitHub Actions
gradle/wrapper/gradle-wrapper.jar:1
kotlin-js-store/yarn.lock
.github/workflows/prepare-release-branch.yml.github/workflows/release.yml.github/workflows/scorecard.yml.github/workflows/update-semconv.yml.github/workflows/scorecard.yml
Ports
.github/workflows/scorecard.yml
Ports
compat/src/jvmAndAndroidMain/kotlin/io/opentelemetry/kotlin/tracing/model/ReadWriteSpanAdapter.kt:68compat/src/jvmAndAndroidMain/kotlin/io/opentelemetry/kotlin/tracing/model/SpanAdapter.kt:57compat/src/jvmTest/kotlin/io/opentelemetry/kotlin/fakes/otel/java/FakeOtelJavaSpanExporter.kt:10compat/src/jvmTest/kotlin/io/opentelemetry/kotlin/tracing/SpanExportTest.kt:100compat/src/jvmTest/kotlin/io/opentelemetry/kotlin/tracing/export/SpanExporterAdapterTest.kt:20compat/src/jvmTest/kotlin/io/opentelemetry/kotlin/tracing/export/SpanProcessorAdapterTest.kt:17compat/src/jvmTest/kotlin/io/opentelemetry/kotlin/tracing/model/ReadableSpanAdapterTest.kt:41exporters-core/src/commonMain/kotlin/io/opentelemetry/kotlin/tracing/export/BatchSpanProcessorImpl.kt:20
This page is publicly accessible at:
https://repobility.com/scan/de553085-6ba4-4e2b-b556-6744ee469b1b/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/de553085-6ba4-4e2b-b556-6744ee469b1b/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.