Skip to content

spacebot

本页为离线静态分析自动生成;分数为信号驱动启发式,请结合证据与人工复核使用。

项目概况

  • 名称: spacebot
  • 版本: 0.1.15
  • Git HEAD: fba2b7e673f1
  • 最近提交: 2026-02-24T01:50:39-08:00
  • 许可证: LICENSE
  • 语言: Rust(128), TypeScript(92), Markdown(26), JSON(14), Shell(4), TOML(4)

README 摘要

An AI agent for teams, communities, and multi-user environments. Thinks, executes, and responds — concurrently, not sequentially. Never blocks. Never forgets.

评分(0-10)

维度分数
代码质量3.5
可维护性4.0
健壮性4.5
可持续性6.5
可迁移性2.0
综合4.1

工程信号

CI / 测试

  • CI: 2 个 workflow
    • .github/workflows/ci.yml, .github/workflows/release.yml
  • CI 操作系统: linux
  • Docker: 有
  • 测试信号: dir:tests/

代码质量工具

  • 校验库: rust:schemars, rust:serde

架构与发布

  • 发布信号: ci-file:.github/workflows/release.yml, ci:release:.github/workflows/release.yml, rust:versioned-package
  • 可观测性: rust:opentelemetry, rust:tracing

技术栈与依赖

  • Rust: name=spacebot cargo_lock=True
    • deps: aes-gcm, anyhow, arc-swap, arrow-array, arrow-schema, async-stream, async-trait, axum, base64, bollard, chromiumoxide, chromiumoxide_cdp, chrono, chrono-tz, clap, config

评分依据(信号 → 证据)

代码质量

  • +2 CI: 2 workflow(s)
  • +2.5 tests: 1 signal(s)
  • -1 risky code patterns present (review needed)

可维护性

  • +1 README present
  • +1 docs dirs: docs/
  • +1 Cargo.lock present
  • +1 CI present

健壮性

  • +2 tests present
  • +1 config signals: dir:docs/
  • +1 validation libs: rust:schemars, rust:serde
  • +0.5 retry/timeout libs (signals): rust:reqwest, rust:tokio
  • +1 CI present
  • -1 risky code patterns present (review needed)

可持续性

  • +1 license present
  • +1 version: 0.1.15
  • +0.5 alerting/observability (signals): rust:opentelemetry, rust:tracing
  • +1 release signals: ci-file:.github/workflows/release.yml, ci:release:.github/workflows/release.yml, rust:versioned-package
  • +1 tags: 15 tag(s)
  • +2 recent commit (≤30d)

可迁移性

  • +2 Docker present

安全与风险信号(静态扫描)

疑似凭据(已编辑)

  • Slack Token at docs/content/docs/(messaging)/slack-setup.mdx:91 value=***已编辑***

高风险模式(需人工复核)

  • curl|bash (code) at Dockerfile:16
  • 文档中的风险模式:1 条(curl|bash 等安装指引,通常为预期行为)

改进建议

  • 在 CI 中启用 Rust 静态检查:cargo fmt --check + cargo clippy -D warnings
  • 在 CI 增加安全扫描(依赖审计/secret 扫描/静态分析等)并设为质量闸门。
  • 审计高风险执行路径(eval/exec/shell=True/curl|bash 等):最小权限、输入验证、隔离执行。

离线静态分析 · 信号驱动启发式评分 · 不使用外部平台指标