Public-interest software inspection versioned methodology

A public record of software health.

Bridges, elevators, and food have condition records kept in public. The software underneath all three does not. This is that record: maintainability, engineering quality, security posture, ecosystem adoption, and governance, measured the same way for every repository.

01Evidence attached02Results independent of payment03Method versioned

Request a scan

Free for high public-value repositories. Private and niche repositories follow the documented certification route.

Public queue operational
Reproducible evidenceEvery published result links to inspectable source evidence and methodology.
Independent resultsPayment, sponsorship, and vendor alignment cannot alter a published result.
Signals, not warrantiesResults inform review and procurement; they do not replace expert judgement.
Live catalogue

The record, as it stands.

Every repository admitted so far, searchable and rankable, each entry opening on a full report with its evidence.

Indexed repositories
44,609
Monthly downloads under inspection
386B
Median health index
57 Moderate
11,133 recordsRanked by popularity · browse by tag · record statistics
Go
41At riskhealth index
zyr-ai/agentcore
A minimal, composable Go library for building AI agent applications.
Go★ 0Jul 22, 2026
Apache-2.0Jul 22, 2026 · metrics 1.13.0
Go
42At riskhealth index
zyr-ai/litellm
LiteLLM for Go, the easiest way to write LLM-based programs in Go
Go★ 0Jul 22, 2026
Apache-2.0Jul 22, 2026 · metrics 1.13.0
Go
45At riskhealth index
zztkm/soopentui
Third-party Solod (So) bindings for OpenTUI
Go · C★ 0Jul 23, 2026
MITJul 23, 2026 · metrics 1.13.0