Good shape overall. A few tweaks would push it into the top tier.
Find and fix vulnerabilities by chatting with AI
Documentation
82
No CONTRIBUTING.md found (−47 pts base + up to −53 pts more for content).
→ Add a CONTRIBUTING.md telling newcomers how to get involved. Include setup, code style, test, and PR instructions.
README documents how to install the project.
README is present.
Licensed under Other.
Engineering
82
No issue or PR templates found (−100 pts).
→ Add .github/ISSUE_TEMPLATE/ with bug_report.md and feature_request.md to guide contributors. It dramatically improves issue quality.
CI is configured (.github/workflows/test.yml).
Lockfile present (pnpm-lock.yaml). Installs are reproducible.
Test files detected (app/api/chat/[id]/__tests__).
Linter or formatter configured (eslint.config.mjs).
Project health
89
Dependency manifest found (package.json).
Repository has a description.
Actively maintained (pushed within the last month).
.gitignore present.
Repository health signals
Activity, community, and responsiveness at scan time
Activity
- —Commits (30d / 90d)
- 123Forks
- 32Releaseslatest 5mo ago
Community
- —Community health
- —authors own >50% of commits
- 591Watchers
Responsiveness
- 1d 15hMedian issue response
- 12hMedian PR merge time
- 1Open issues
Repository files45 root entries
- __mocks__
- .agents
- .claude
- .cursor
- .githubGood: CI is configured (.github/workflows/test.yml).Good: Dependabot configured for github-actions.
- .husky
- appGood: Test files detected (app/api/chat/[id]/__tests__).
- components
- convex
- dockerGood: Environment pinned via docker/Dockerfile.
- docs
- e2b
- e2e
- hooks
- lib
- packages
- patches
- public
- scripts
- trigger
- types
- .env.e2e.example
- .env.local.example
- .gitignoreGood: .gitignore present.
- .prettierignore
- .worktreeinclude
- components.json
- eslint.config.mjsGood: Linter or formatter configured (eslint.config.mjs).
- global.d.ts
- instrumentation.ts
- jest.config.js
- jest.setup.js
- LICENSEGood: Licensed under Other.
- next.config.ts
- package.jsonGood: Dependency manifest found (package.json).
- playwright.config.ts
- pnpm-lock.yamlGood: Lockfile present (pnpm-lock.yaml). Installs are reproducible.
- pnpm-workspace.yaml
- postcss.config.mjs
- proxy.ts
- README.mdGood: README is present.Good: README is well structured with multiple sections.Good: README includes screenshots or visuals. Great for first impressions.Good: README has code examples.Good: README links to a live demo or deployed app.Good: README includes status badges.Good: README documents how to install the project.Good: README documents how to run the project.
- skills-lock.json
- trigger.config.ts
- tsconfig.json
- vercel.json