73

/ 100

GradeD

Getting some notice. Tests and CI would be the fastest wins.

Top 47% of 5,156 graded repos

Post-quantum cryptography certificates

A low grade is a to-do list, not a judgment of your code

Most gaps here are documentation, tests, and setup, not the code itself. Closing your top 3 gaps alone would lift this repo to B (83).

See your top fixes
Now
D
69
Potential
B
83

Top fixes

Highest-impact changes first, ranked by point weight

15 to address
  1. 1
    Tests18pt

    Wire your tests to a documented command (e.g. a test script in your build config) so the suite is reproducible.

  2. 2
    CI/CD14pt

    Add a step like `run: npm test`, `run: pytest`, or `run: tox` to your workflow file.

  3. 3
    CI/CD14pt

    Add a lint step to catch style issues automatically.

  4. 4
    CI/CD14pt

    Add `tsc --noEmit`, `mypy`, or `cargo check` to catch type errors before they merge.

Working through the fixes? Let every push regrade itself.

The free GitHub App rescans this repo on every push and posts the grade as a commit check, so the score climbs without coming back to rescan by hand.

Install the GitHub App

Scorecard

Every check, grouped by category and sorted worst-first

Documentation

74

Contributing guide5pt25

Contributing guidance is in the README, not a dedicated CONTRIBUTING.md (−20 pts).

Moving it to a CONTRIBUTING.md makes it easier to find and keeps the README focused. A dedicated file earns +47 pts base.

README12pt70

README is present.

Install and run instructions9pt90

README documents how to install the project.

License6pt100

Licensed under Other.

Engineering

54

Linting and formatting5pt0

No linter or formatter config found.

Add a linter config such as .eslintrc.json, .prettierrc, ruff.toml, or .golangci.yml to enforce consistent code style.

Issue and PR templates6pt0

No issue or PR templates found (−100 pts).

Add .github/ISSUE_TEMPLATE/ with bug_report.md and feature_request.md to guide contributors. It dramatically improves issue quality.

CI/CD14pt57

CI is configured (.github/workflows/artifact_validation.yaml).

Reproducibility6pt70

Lockfile present (src/requirements.txt). Installs are reproducible.

Tests18pt80

Test files detected (providers/openjdk/Test.java).

Project health

100

Dependency manifest6pt100

Dependency manifest found (cmp/bouncycastle/build.gradle.kts).

Repository metadata5pt100

Repository has a description.

Activity5pt100

Actively maintained (pushed within the last month).

Housekeeping3pt100

.gitignore present.

Repository health signals

Activity, community, and responsiveness at scan time

Activity

  • 12 / 18
    Commits (30d / 90d)
  • 44
    Forks
  • 0
    Releases

Community

  • 37% - Weak
    Community health
  • 3 bus factor
    authors own >50% of commits
  • 86
    Watchers

Responsiveness

  • 9d 2h
    Median issue response
  • 12h
    Median PR merge time
  • 12
    Open issues
Repository files10 root entries
  • .github
    Good: CI is configured (.github/workflows/artifact_validation.yaml).
  • cmp
    Good: Dependency manifest found (cmp/bouncycastle/build.gradle.kts).
  • docs
  • providers
    Good: Test files detected (providers/openjdk/Test.java).
  • src
    Good: Lockfile present (src/requirements.txt). Installs are reproducible.
  • .gitattributes
  • .gitignore
    Good: .gitignore present.
  • license.txt
    Good: Licensed under Other.
  • Makefile
  • readme.md
    Good: README is present.
    Good: README is well structured with multiple sections.
    Issue: No screenshots or images in the README (−20 pts).Fix: Add a GIF, screenshot, or logo image. It is the fastest way to show what your project does.
    Good: README has code examples.
    Good: README links to a live demo or deployed app.
    Issue: No status badges in the README (−10 pts).Fix: Add CI/build status badges from shields.io or your CI provider to signal project health.
    Good: README documents how to install the project.
    Good: README documents how to run the project.
RepoGrade badge preview

Add this badge to your README

It updates automatically each time the repo is re-graded.

[![RepoGrade](https://www.repo-grade.com/api/badge/ietf-hackathon/pqc-certificates)](https://www.repo-grade.com/report/ietf-hackathon/pqc-certificates)

More graded Java repos