← back to leaderboard

google/osv-scannerGitHub

https://github.com/google/osv-scanner
Stars:
9.1k
Default branch:
main
Last scored:
4h ago
Overall

Strengths

  • CI configuration
  • CONTRIBUTING guide
  • Dependency manifest
  • Reproducible dev env
  • License file

Gaps

  • AGENTS.md / CLAUDE.md
  • Pre-commit / git hooks

Suggestions to improve for a specific model

  1. 1
    AGENTS.md / CLAUDE.md
    Add an AGENTS.md covering project goals, layout, setup commands, and conventions. Aim for 800+ chars of real guidance (not boilerplate).
    +13.2 pts
  2. 2
    Pre-commit / git hooks
    Set up pre-commit (.pre-commit-config.yaml), husky, or lefthook to run format+lint on every commit.
    +5.3 pts
  3. 3
    Test suite
    Add a tests/ (or test/, __tests__/, spec/) directory with runnable tests. Document how to run them in AGENTS.md.
    +3.9 pts

Per-model scores

Claude Code
Weights AGENTS.md and tests heavily — Claude Code leans on an instructions file and a fast feedback loop.
76.3
Cursor
Weights type config and a detailed README highly — Cursor's inline edits benefit from static types and skim-readable docs.
83.2
Devin
Weights CI and reproducible envs highly — Devin runs in a sandboxed VM and needs end-to-end automation.
81.4
GPT-5 Codex
Balanced profile as a reference point.
80.3

Signal breakdown

AGENTS.md / CLAUDE.md· 0% pass
No agent instructions file found
CI configuration· 100% pass
18 GitHub Actions workflow(s)
.github/workflows
CONTRIBUTING guide· 100% pass
Guide present
CONTRIBUTING.md
Dependency manifest· 100% pass
Manifest present
go.mod
Reproducible dev env· 100% pass
3 env artifacts (Makefile, makefile)
Makefile
License file· 100% pass
License present
LICENSE
Linter / formatter config· 100% pass
Config detected
.prettierrc.json
Pre-commit / git hooks· 0% pass
No pre-commit / husky / lefthook found
README· 100% pass
README detailed (10967 chars)
README.md
Manageable size· 80% pass
734 files
Test suite· 70% pass
Test files detected (cmd/osv-reporter/main_test.go)
cmd/osv-reporter/main_test.go
Type configuration· 100% pass
Typed language (Rust/Go)