Item detail
github.com

OSS Scanner

OSS Scanner is a developer tool in RepoRadar's Radar section, holding Silver tier and a 'try now' verdict. Its strongest signal is workflow potential, scored 10.0 out of 10.

Score8.6
Popularity100.0
Riskconditional
TierSilver
Score breakdown
Usefulness8.5
Novelty9.0
Momentum8.0
Maturity8.7
Open-source/build8.4
Evidence7.2
Workflow potential10.0
Setup ease6.4

Popularity is tracked separately. Support, ads, sponsorships, and tips never affect these signals.

Why it matters

Maintainers get free vulnerability reports with reproducers; enrollment is a pull request, so trying it on one project costs almost nothing.

Where this stands now

OSS Scanner ranks #108 of 3231 tracked Radar items by composite score (8.6 against a section median of 4.9). The section currently carries 2115 Bronze, 645 Gold, 471 Silver. RepoRadar has retained observations for this record since 2026-10-09 (1 days in the current window). Signal extremes versus the section: momentum at the 85th percentile; novelty at the 94th percentile.

Who should use it

open-source maintainers security-minded teams

Who should skip it

Skip OSS Scanner if the source repository or demo is inactive, unmaintained, or no longer matches the description shown here.

About this signal

OSS Scanner is tracked by RepoRadar as a developer tool in the Radar section. First seen 2026-10-09; the source record was last checked on 2026-10-09. The current verdict is 'try now' with a Silver tier and Moderate setup difficulty. The standout signals for OSS Scanner are workflow potential (10.0) and novelty (9.0), while setup ease (6.4) trails — that balance shapes where it fits best. This page summarizes the public evidence on the linked source page and states where additional review is still needed.

How this item is evaluated

The OSS Scanner record combines a 8.6/10 composite score with separate popularity (100.0), risk (conditional), and setup (Moderate) signals. See the scoring methodology for the current weights and evidence definitions.

Questions worth asking before you adopt this

Putting this into practice? Read How to vet an AI agent or MCP server before you wire it in for the checklist behind this score.

Risk explanation

scanner receives enrolled project source code.

Evidence links
Closest alternatives / related signals
security vulnerability-scanning open-source anthropic
Verification record

What RepoRadar actually verified

Discovered

Automated discovery and source capture. Last checked 2026-10-10T17:09:29.745535Z.

No editorial or hands-on review is claimed. This record remains at Discovered.

Verification sources

Longitudinal intelligence

How this decision record is moving

Raw history JSON →

2 dated snapshots retained from 2026-10-09 through 2026-10-10; see the snapshot index for explicit coverage gaps. Stars, version, release, pricing, integration, risk, maintenance, verdict, score, and momentum fields remain explicit even when a source has not reported them. Repository momentum is a normalized 0–10 RepoRadar signal; GitHub stars appear only where the popularity monitor retained exact timestamped observations.

RepoRadar score8.6 current · +0.0 net
Repository momentum9.0 current · +0.0 net
GitHub stars (observed)597 current · +301 net
GitHub stars597 exact observation
VersionNot reported by source
Last releaseNot reported by source
MaintenanceActive
Current riskConditional
Current verdictTry now
Pricing baselineNo structured commercial pricing baseline
Pricing checkedNot applicable or not recorded
Pricing freshnessNo dated commercial pricing review
Integrations baselineNo structured integrations recorded

Recent dated points

DateScoreMomentumStarsRiskVerdictMaintenance
2026-10-108.69.0597ConditionalTry nowActive
2026-10-098.69.0296ConditionalTry nowActive

Why the record changed

Stars change

Stars changed: 410 → 597.

Stars change

Stars changed: 296 → 410.

New entry

Newly added to RepoRadar's decision catalog.