Zum Hauptinhalt springen
tsecurity.de LIVE
Echtzeit-Radar & Feeds
Alle RSS Feeds
👥 Community & Social
Sichere ProgrammierungRefreshed repository pull requests page generally available(22.09.2026 um 03:25 Uhr)
Sichere ProgrammierungThe Joy of Learning the Basics Again(22.09.2026 um 03:28 Uhr)
Sichere ProgrammierungZero-Code OpenTelemetry Tracing for Dagster(22.09.2026 um 03:39 Uhr)
Linux Tipps & Hardening`prime-all`(22.09.2026 um 02:28 Uhr)
IT Security Toolsopensoho v0.15.2(22.09.2026 um 03:33 Uhr)
IT Security NachrichtenUS Proposes AI Incident Alert System in Talks With China, Bessent Says(22.09.2026 um 04:01 Uhr)
Sichere ProgrammierungRefreshed repository pull requests page generally available(22.09.2026 um 03:25 Uhr)
Sichere ProgrammierungThe Joy of Learning the Basics Again(22.09.2026 um 03:28 Uhr)
Sichere ProgrammierungZero-Code OpenTelemetry Tracing for Dagster(22.09.2026 um 03:39 Uhr)
Linux Tipps & Hardening`prime-all`(22.09.2026 um 02:28 Uhr)
IT Security Toolsopensoho v0.15.2(22.09.2026 um 03:33 Uhr)
IT Security NachrichtenUS Proposes AI Incident Alert System in Talks With China, Bessent Says(22.09.2026 um 04:01 Uhr)
Intelligence View
⚡ tsecurity.de Intelligence

From CLI to GitHub Bot: Building a Code Management AI for Python

Four months ago, I built a CLI tool to scan my own messy Python code. Today it's a GitHub bot that audits entire repositories. Here's how it evolved and what I learned at each stage. Stage 1: pyscn CLI — Measure First It s…

0
↗ Quelle (dev.to)
Reagiere als Erste:r — dein Feedback zählt!

Four months ago, I built a CLI tool to scan my own messy Python code.



Today it's a GitHub bot that audits entire repositories. Here's how it evolved and what I learned at each stage.






Stage 1: pyscn CLI — Measure First



It started with a frustration. I was vibe-coding fast with AI tools, but my codebase was getting worse. I needed numbers, not feelings.



So I built pyscn — a static analysis engine in Go with tree-sitter. It scans Python code and gives you a Health Score (0–100) based on:




  • Cyclomatic complexity

  • Dead code

  • Code clones (copy-paste detection)

  • Module coupling




uvx pyscn analyze .






One command. Full HTML report.



I wrote about the details here: Pyscn: The Code Quality Analyzer for Vibe Coders






What surprised me



I ran pyscn on Flask and FastAPI to see how "clean" famous open-source projects actually are. The results were eye-opening — even well-maintained projects have hidden complexity.



Full breakdown: How Clean Is Famous Open Source Code? I Measured Flask and FastAPI.






Stage 2: MCP Server — Let AI Use It



The CLI worked, but I wanted Claude and other AI tools to use pyscn directly during coding sessions. So I wrapped it as an MCP server.



Now your AI assistant can check code quality in real-time while you're working.



Details: Analyzing Python Code Quality via MCP






Stage 3: pyscn-bot — Automate Everything



The CLI and MCP were useful, but they required someone to remember to run them. The real problem is: nobody audits the codebase regularly.



So I built pyscn-bot — a GitHub App that:





  • Weekly audits your full repository and posts findings as GitHub Issues


  • Reviews PRs with architecture-aware comments


  • Reports in 8 languages — English, Japanese, Chinese, and more


  • Zero config — install and it just works



The key difference from other code review bots: pyscn-bot doesn't just look at diffs. It analyzes your entire codebase every time.



Full writeup: pyscn-bot: A Periodic Code Audit AI Agent for Vibe Coders






What's Next



pyscn-bot is launching on Product Hunt today:



👉 Pyscn Bot on Product Hunt



If you vibe-code in Python, try the Health Score on your repo. It's free.



I'd love to hear what you think — drop a comment here or find me on X (@pyscn_official).

Ähnliche Beiträge
🔍 Verwandte News

Auch interessante Nachrichten From CLI to GitHub Bot: Building a Code Management AI for Python

Thematisch verwandte Begriffe: From, GitHub, Building, Code · 6 Treffer

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Zum Aktualisieren ziehen
ZERO-DAY CVE-2026-61647 | NotebookLM MCP is an MCP server and HTTP service for interacting with Go…
Advisory →
TTS Reader • tsecurity.de Voice
tsecurity.de Icon
tsecurity.de App
Offline-Lesen, Eilmeldungen & 0ms Ladezeit

Installiere tsecurity.de direkt auf deinen Home-Bildschirm für das ultimative Vollbild-Magazinerlebnis ohne Browser-Leisten.

Nächster Beitrag
Themen-Radar & Intelligence Matrix
Echtzeit-Taxonomie nach Angriffsvektoren & Plattformen

tsecurity.de Live Threat Radar

🔴 LIVE RADAR
MONITORING
AKTIV
CVE-DATENBANK
LIVE
🔍
Community Radar & Live Chat
Sentinel Bot online • Live-Stream
Dein Cluster: Security Explorer
Match:
lädt…
Verbindung zum Community-Stream wird aufgebaut...
Bearbeitungsmodus — Senden überschreibt deine Nachricht
Community-Puls — was gerade passiert
lädt…
Aktivitäten deiner Analysten
lädt…
Neues Thema oder Eilmeldung einreichen

Reiche interessante Links, Zero-Days oder Debatten ein. Die Community entscheidet per Upvote über die Veröffentlichung.

Heiß diskutierte Einreichungen
🔖 Gespeicherte Artikel
📂 Keine gespeicherten Artikel vorhanden.
Zurück Ziehen Vor
Links: vorheriger Artikel Rechts: nächster Artikel unten: schließen
News NIS-2 Frühwarnung Tier-1 Intel ⏱️ 3 Min vor 10 Min
Artikeldaten werden geladen...

Zurück: vorheriger Vor: nächster
↗ Original-Quelle
Social Reaktionen Deine Reaktion zählt
Einstufung & Relevanz-Poll 0 Stimmen
In sozialen Netzwerken teilen 1-Klick