0
/ 100
Solid engineering. The biggest lever is CI. It has gone quiet lately, though.
Firmware for Passport v1
Top fixes
Highest-impact changes first, ranked by point weight
- 1Tests18pt
Wire your tests to a documented command (e.g. a test script in your build config) so the suite is reproducible.
- 2CI/CD14pt
Add a step like `run: npm test`, `run: pytest`, or `run: tox` to your workflow file.
- 3CI/CD14pt
Add `pull_request:` to the workflow `on:` triggers.
- 4CI/CD14pt
Add a lint step to catch style issues automatically.
Working through the fixes? Let every push regrade itself.
The free GitHub App rescans this repo on every push and posts the grade as a commit check, so the score climbs without coming back to rescan by hand.
Scorecard
Every check, grouped by category and sorted worst-first
Documentation
90
CONTRIBUTING guide found.
README is present.
README documents how to install the project.
A license file is present.
Engineering
75
CI is configured (.github/workflows/validate_and_build.yaml).
Test files detected (drivers/display/lcd160cr_test.py).
Lockfile present (requirements.txt). Installs are reproducible.
Linter or formatter configured (ports/stm32/boards/Passport/trezor-firmware/.editorconfig).
Issue or PR templates present.
Project health
69
No pushes in over 2 years. Looks unmaintained (−95 pts).
→ A recent commit signals the project is alive and worth using.
.gitignore present.
Dependency manifest found (requirements.txt).
Repository has a description.
Repository health signals
Activity, community, and responsiveness at scan time
Activity
- -Commits (30d / 90d)
- 17Forks
- 11Releaseslatest 4y ago
Community
- 25% - WeakCommunity health
- 1 bus factorlowauthor own >50% of commits
- 53Watchers
Responsiveness
- 1d 21hMedian issue response
- 2hMedian PR merge time
- 10Open issues
Repository files31 root entries
- .githooks
- .githubGood: CI is configured (.github/workflows/validate_and_build.yaml).
- .reuse
- docsGood: A license file is present.
- driversGood: Test files detected (drivers/display/lcd160cr_test.py).
- examples
- extmod
- libGood: CONTRIBUTING guide found.Issue: CONTRIBUTING guide contents could not be read (−28 pts vs a readable file).Fix: Move the file to the repo root or docs/CONTRIBUTING.md so its setup, style, test, and PR sections can be graded.Good: Code of conduct present.Good: Issue or PR templates present.
- LICENSES
- logo
- mpy-cross
- portsGood: Linter or formatter configured (ports/stm32/boards/Passport/trezor-firmware/.editorconfig).Good: Dependabot is configured. Dependencies update automatically.Issue: Build artifacts or local files may be committed (ports/stm32/boards/Passport/graphics/.DS_Store) (−40 pts).Fix: Remove them and add to .gitignore.
- py
- SECURITYGood: Security policy present.
- tests
- tools
- .dockerignore
- .gitattributes
- .gitignoreGood: .gitignore present.
- .gitmodules
- .travis.yml
- DEVELOPMENT.md
- DockerfileGood: Environment pinned via Dockerfile.
- Justfile
- MP-ACKNOWLEDGEMENTS
- MP-CODECONVENTIONS.md
- MP-CODEOFCONDUCT.md
- MP-CONTRIBUTING.md
- MP-README.mdGood: README is present.Good: README is well structured with multiple sections.Good: README includes screenshots or visuals. Great for first impressions.Good: README has code examples.Good: README links to a live demo or deployed app.Issue: No status badges in the README (−10 pts).Fix: Add CI/build status badges from shields.io or your CI provider to signal project health.Good: README documents how to install the project.Good: README documents how to run the project.
- README.md
- requirements.txtGood: Lockfile present (requirements.txt). Installs are reproducible.Good: Dependency manifest found (requirements.txt).
Add this badge to your README
It updates automatically each time the repo is re-graded.
[](https://www.repo-grade.com/report/foundation-devices/passport-firmware)