0

/ 100

GradeB

Good shape overall. A few tweaks would push it into the top tier.

Top 24% of 5,156 graded repos

Open source container update monitoring — 23 registries, 20 notification triggers, audit log, OIDC auth, Prometheus metrics, and a modern dashboard.

TypeScript203AGPL-3.01mo ago

Top fixes

Highest-impact changes first, ranked by point weight

8 to address
  1. 1
    Tests18pt

    Set scripts.test in package.json to your actual test command, e.g. "vitest" or "jest".

  2. 2
    Install and run instructions9pt

    Add a .env.example listing all required environment variables so contributors know what to set up.

  3. 3
    Reproducibility6pt

    Add .github/dependabot.yml with at least one package-ecosystem entry so dependencies are updated automatically.

  4. 4
    Dependency manifest6pt

    Add a one-line description to package.json. It appears in npm search and on GitHub.

Working through the fixes? Let every push regrade itself.

The free GitHub App rescans this repo on every push and posts the grade as a commit check, so the score climbs without coming back to rescan by hand.

Install the GitHub App

Scorecard

Every check, grouped by category and sorted worst-first

Documentation

97

Install and run instructions9pt90

README documents how to install the project.

README12pt100

README is present.

License6pt100

Licensed under AGPL-3.0.

Contributing guide5pt100

Contributing guide is detailed and thorough.

Engineering

74

Tests18pt35

Test files detected (.github/tests).

Reproducibility6pt80

Lockfile present (package-lock.json). Installs are reproducible.

CI/CD14pt100

CI is configured (.github/workflows/ci-verify.yml).

Linting and formatting5pt100

Linter or formatter configured (biome.json).

Issue and PR templates6pt100

Issue or PR templates present.

Project health

86

Dependency manifest6pt55

Dependency manifest found (package.json).

Repository metadata5pt100

Repository has a description.

Activity5pt100

Actively maintained (pushed within the last month).

Housekeeping3pt100

.gitignore present.

Repository health signals

Activity, community, and responsiveness at scan time

Activity

  • -
    Commits (30d / 90d)
  • 10
    Forks
  • 74
    Releaseslatest 5mo ago

Community

  • -
    Community health
  • -
    authors own >50% of commits
  • 203
    Watchers

Responsiveness

  • 1h
    Median issue response
  • 1h
    Median PR merge time
  • 0
    Open issues
Repository files37 root entries
  • .github
    Good: Test files detected (.github/tests).
    Good: CI is configured (.github/workflows/ci-verify.yml).
    Good: Issue or PR templates present.
  • .qlty
  • app
  • apps
  • content
  • docs
  • e2e
  • grafana
  • scripts
  • test
  • ui
  • .dockerignore
  • .gitignore
    Good: .gitignore present.
  • .grype.yaml
  • .markdownlint.json
  • .node-version
  • .nvmrc
  • .yamllint.yml
  • biome.json
    Good: Linter or formatter configured (biome.json).
  • CHANGELOG.md
  • CODE_OF_CONDUCT.md
    Good: Code of conduct present.
  • codecov.yml
  • CONTRIBUTING.md
    Good: Contributing guide is detailed and thorough.
    Good: Contributing guide includes setup/install instructions.
    Good: Contributing guide describes code style expectations.
    Good: Contributing guide explains how to run tests.
    Good: Contributing guide describes the PR/review workflow.
    Good: Contributing guide includes code examples.
  • crowdin.yml
  • DEPRECATIONS.md
  • Docker.entrypoint.sh
  • Dockerfile
    Good: Environment pinned via Dockerfile.
  • drydock.png
  • healthcheck.c
  • lefthook.yml
  • LICENSE
    Good: Licensed under AGPL-3.0.
  • package-lock.json
    Good: Lockfile present (package-lock.json). Installs are reproducible.
  • package.json
    Good: Dependency manifest found (package.json).
  • README.md
    Good: README is present.
    Good: README is well structured with multiple sections.
    Good: README includes screenshots or visuals. Great for first impressions.
    Good: README has code examples.
    Good: README links to a live demo or deployed app.
    Good: README includes status badges.
    Good: README documents how to install the project.
    Good: README documents how to run the project.
  • renovate.json
  • SECURITY.md
    Good: Security policy present.
  • UPGRADE-NOTES.md
RepoGrade badge preview

Add this badge to your README

It updates automatically each time the repo is re-graded.

[![RepoGrade](https://www.repo-grade.com/api/badge/codeswhat/drydock)](https://www.repo-grade.com/report/codeswhat/drydock)

More graded TypeScript repos