https://github.com/NixOS/nixpkgs
· scanned 2026-06-06 00:06 UTC (4 days, 2 hours ago)
· 10 languages
763 raw signals (249 security + 514 graph) 11/13 scanners ran 78th percentile · Python · medium (20-100K LoC) System graph score 83 (lower by 4)
Last scanned 4 days, 2 hours ago · v2 · 349 actionable findings from 2 signal sources. 147 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
65.0 | 0.15 | 9.75 |
security_score |
100.0 | 0.25 | 25.00 |
testing_score |
82.0 | 0.20 | 16.40 |
documentation_score |
66.0 | 0.15 | 9.90 |
practices_score |
81.0 | 0.15 | 12.15 |
code_quality |
59.0 | 0.10 | 5.90 |
| Overall | 1.00 | 79.1 |
Showing 245 of 349 actionable findings. 496 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
maintainers/scripts/copy-tarballs.pl:169maintainers/scripts/feature-freeze-teams.pl:38maintainers/scripts/fix-maintainers.pl:10maintainers/scripts/remove-old-aliases.py:75nixos/modules/system/boot/loader/refind/refind-install.py:341pkgs/by-name/an/anyk/patch_paths.py:7pkgs/by-name/ni/nix-required-mounts/nix_required_mounts.py:153pkgs/desktops/gnome/extensions/update-extensions.py:58pkgs/desktops/gnome/find-latest-version.py:25pkgs/development/tools/build-managers/gradle/compress-deps-json.py:74pkgs/by-name/hy/hylafaxplus/post-install.sh:20
pkgs/development/julia-modules/resolve_packages.jl:29
pkgs/development/julia-modules/extract_artifacts.jl:48
pkgs/by-name/ni/nixos-rebuild-ng/src/nixos_rebuild/process.py:190
maintainers/scripts/copy-tarballs.pl:259nixos/modules/programs/command-not-found/command-not-found.pl:60pkgs/development/r-modules/generate-r-packages.R:64maintainers/scripts/copy-tarballs.pl:259pkgs/by-name/br/brscan4/preload.c:163pkgs/by-name/li/libredirect/test.c:86pkgs/applications/networking/instant-messengers/discord/disable-breaking-updates.py:21
pkgs/by-name/dp/dprint/plugins/update-plugins.py:55
pkgs/build-support/binary-cache/make-binary-cache.py:21
pkgs/by-name/mi/microsoft-edge/update.py:42
pkgs/development/python-modules/maubot/plugins/update.py:31
pkgs/by-name/ni/nixos-render-docs/src/nixos_render_docs/commonmark.py:47, 48, 51, 61, 63, 67, 69, 74, +5 more (13 hits)pkgs/games/papermc/update.py:90, 109 (2 hits)maintainers/scripts/update.py:548
pkgs/applications/editors/emacs/elisp-packages/update-from-overlay.py:172pkgs/applications/office/libreoffice/generate-libreoffice-srcs.py:75pkgs/build-support/fetchitchio/fetchitchio.py:36pkgs/applications/networking/cluster/linkerd/update-edge.sh:4
pkgs/applications/networking/cluster/k3s/update-script.sh:4
pkgs/servers/web-apps/lemmy/update.py:41
ci/github-script/get-teams.js:22
pkgs/development/libraries/libxcrypt/check_passthru_matches.py:45
maintainers/scripts/update-typst-packages.py:88pkgs/applications/networking/browsers/chromium/get-commit-message.py:35pkgs/by-name/ac/acli/update.py:36pkgs/build-support/fetchcvs/builder.sh:2
pkgs/build-support/node/fetch-yarn-deps/index.js:55
Exec used
pkgs/development/interpreters/python/run_setup.py:8
Exec used
pkgs/by-name/au/auto-patchelf/source/auto-patchelf.py:313, 440 (2 hits)pkgs/by-name/fl/flatten-references-graph/src/flatten_references_graph/lib.py:234pkgs/by-name/ni/nixos-render-docs/src/nixos_render_docs/parallel.py:30pkgs/desktops/gnome/extensions/update-extensions.py:235pkgs/development/python-modules/nixpkgs-plugin-update/nixpkgs-plugin-update/src/nixpkgs_plugin_update/__init__.py:1390nixos/lib/test-driver/src/test_driver/logger.py:29, 34, 39, 92, 96, 106, 165, 170, +4 more (12 hits)pkgs/build-support/fetchitchio/fetchitchio.py:44pkgs/development/python-modules/nixpkgs-plugin-update/nixpkgs-plugin-update/src/nixpkgs_plugin_update/__init__.py:1390pkgs/servers/dict/wiktionary/wiktionary2dict.py:216pkgs/build-support/binary-cache/make-binary-cache.py:21pkgs/by-name/dp/dprint/plugins/update-plugins.py:55pkgs/development/skaware-packages/sdnotify-wrapper/sdnotify-wrapper.c:154pkgs/development/python-modules/maubot/plugins/update.py:31
maintainers/scripts/update-typst-packages.py:217pkgs/by-name/mu/music-assistant/update-providers.py:119pkgs/os-specific/bsd/freebsd/update.py:96pkgs/build-support/fetchpypilegacy/fetch-legacy.py:81
pkgs/by-name/ya/yazi/plugins/update.py:483, 610, 614, 714 (4 hits)pkgs/desktops/gnome/find-latest-version.py:109, 152, 280 (3 hits)maintainers/scripts/hydra-eval-failures.py:49, 111 (2 hits)pkgs/by-name/oc/ocis_5-bin/update.py:211, 237 (2 hits)pkgs/development/tools/electron/update_util.py:67, 96 (2 hits)pkgs/applications/editors/jetbrains/updater/jetbrains_nix_updater/fetcher.py:93pkgs/applications/editors/jetbrains/updater/jetbrains_nix_updater/update_bin.py:39pkgs/applications/editors/jetbrains/updater/jetbrains_nix_updater/update_src.py:209.well-known/security.txt
nixos/doc/manual/release-notes/rl-1903.section.md:50
nixos/doc/manual/installation/installing-from-other-distro.section.md:24
pkgs/by-name/we/wemeet/wemeet-x11-fix.c:1
pkgs/by-name/vs/vscode-extension-update/vscode_extension_update.py:1
pkgs/build-support/binary-cache/make-binary-cache.py:24
Subprocess shell true
pkgs/by-name/dp/dprint/plugins/update-plugins.py:58
Subprocess shell true
pkgs/by-name/ya/yazi/plugins/update.py:34
Subprocess shell true
pkgs/development/compilers/chicken/5/deps.toml:1861
Weak hash
pkgs/tools/package-management/akku/deps.toml:157
Weak hash
pkgs/stdenv/generic/setup.sh
Ports
pkgs/stdenv/generic/setup.sh
Ports
pkgs/stdenv/generic/setup.sh
Ports
pkgs/by-name/de/deterministic-uname/deterministic-uname.sh
Ports
pkgs/tools/package-management/nix/update-all.sh
Ports
pkgs/by-name/de/deterministic-uname/deterministic-uname.sh
Ports
pkgs/by-name/de/deterministic-uname/deterministic-uname.sh
Ports
pkgs/by-name/de/deterministic-uname/deterministic-uname.sh
Ports
pkgs/by-name/de/deterministic-uname/deterministic-uname.sh
Ports
ci/github-script/manual-file-edits.js:21maintainers/scripts/kde/generate-sources.py:47nixos/modules/system/boot/loader/refind/refind-install.py:20pkgs/build-support/node/fetch-yarn-deps/index.js:155pkgs/build-support/rust/fetch-cargo-vendor-util.py:12pkgs/by-name/gc/gclient2nix/gclient2nix.py:44pkgs/by-name/li/libfprint-2-tod1-broadcom/wrapper-lib.c:2pkgs/by-name/nd/ndi/update.py:17pkgs/by-name/we/wemeet/wemeet-x11-fix.c:1
pkgs/by-name/vs/vscode-extension-update/vscode_extension_update.py:1
repo-level (12 hits)repo-level (2 hits)repo-level (5 hits)pkgs/by-name/ni/nixos-render-docs/src/nixos_render_docs/commonmark.py:127
pkgs/by-name/ni/nixos-render-docs/src/nixos_render_docs/commonmark.py:125
pkgs/by-name/ni/nixos-render-docs/src/nixos_render_docs/commonmark.py:131
pkgs/by-name/ni/nixos-render-docs/src/nixos_render_docs/commonmark.py:129
pkgs/by-name/ni/nixos-render-docs/src/nixos_render_docs/commonmark.py:123
pkgs/by-name/ni/nixos-render-docs/src/nixos_render_docs/commonmark.py:121
pkgs/by-name/ap/apache-airflow/update-providers.py:76
pkgs/by-name/ni/nixos-render-docs/src/nixos_render_docs/commonmark.py:135
pkgs/by-name/ni/nixos-render-docs/src/nixos_render_docs/commonmark.py:133
pkgs/by-name/ni/nixos-render-docs/src/nixos_render_docs/commonmark.py:139
pkgs/by-name/ni/nixos-render-docs/src/nixos_render_docs/commonmark.py:137
This page is publicly accessible at:
https://repobility.com/scan/df1ef4a5-237f-47f0-ba66-b6f11e592205/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/df1ef4a5-237f-47f0-ba66-b6f11e592205/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.