01 · Roasts
1207 PRs, 0 Collaborators
You merged 1,207 pull requests this year into your own repos with soloPct of 100%. That's not a review culture, that's a man having a very formal argument with himself every single day.
232 Repos, 145 Total Stars
You've built 232 repositories and collected 145 stars — that's a batting average of 0.625 stars per repo. keyhog carries the entire team on its back with 98 of them.
14,020 Commits and Zero Days Off
14,020 commits in a year works out to 38.4 commits per day. Your heatmap saturates to '4' for the last 15 weeks straight. At some point the question becomes: are you a developer or a git cron job?
Confidently BETA
wafrift (BETA), openpack (beta), vyre (0.7.2 but 3 stars) — you version things with enterprise discipline and ship them to crates.io with zero users. You're running a very well-documented one-man SaaS with no customers.
codewalk: A Crate That Re-exports a Crate
codewalk's entire value proposition is re-exporting walkkit. You wrote a README, ARCHITECTURE.md, and a full CI pipeline for a file that calls use walkkit::*. Commitment to process is undeniable.
Built using
Zoral
Shadows one worker for a week, then takes over their job with zero extra setup. Behaves exactly like the original.
zoral.ai
02 · Category breakdown
- Impact25% weight73B
- Consistency20% weight95S
- Quality20% weight82A
- Depth15% weight75B
- Breadth10% weight65C
- Community10% weight55D
03 · Stats
365-day commit heatmap
295 active days
Language distribution
- Rust55%
- TypeScript39%
- Python3%
- Shell1%
- HTML1%
- JavaScript0%
- Other1%
04 · Numbers
Owned repos
non-fork
69
Commits
last 12 months
14,020
Followers
41
Joined GitHub
Apr 2020
05 · Top repos
santhreal /
procjail
Rust security sandbox library with multi-strategy containment (bubblewrap/firejail/unshare), comprehensive seccomp filtering, environment variable stripping, and cgroups v2 resource limits. Ships with full CI/CD, 207KB codebase, structured architecture, and production-ready error handling.
santhreal /
keyhog
GPU-accelerated Rust secret scanner with 934 detectors, comprehensive TOML-based detector system, multi-backend verification, and production-class architecture. 98 stars, ~70KB codebase with 6-month trajectory and strict CI/test discipline.
santhreal /
vyre
Compiler-grade GPU compute substrate with strict type safety, extensive test suites, and multi-backend support (CUDA, WGPU, SPIR-V, Metal). Production-ready artifact pipeline with conformance gates and rigorous architecture documentation.
santhreal /
veyyon
A comprehensive terminal coding agent (CLI + TUI) in TypeScript + Rust with sophisticated architecture, full test/CI coverage, extensive docs, and mature development practices; 30 of 30 recent commits show sustained engineering but indie adoption at 19 stars limits impact.
santhreal /
wafrift
Production-grade Rust WAF-evasion toolkit with 16-crate workspace, comprehensive CI (cargo clippy, audit, docker), structured documentation, and active-learning WAF modeling. BETA status, sparse cloud-WAF coverage, but ships locally-tested tactics (ModSec, Coraza, BunkerWeb).
santhreal /
openpack
Security-focused ZIP archive reader supporting APK/IPA/CRX with strict limits, comprehensive tests (unit/adversarial/property-based), CI/CD pipeline, and feature-gated format extensions. Experimental but well-engineered.
santhreal /
lurien-driver
lurien-driver: production-ready Rust stealth browser driver with comprehensive CI, extensive documentation (ARCHITECTURE.md, docs/), typed codebase (Rust), and modular persona/fingerprint architecture across 9 workspace crates; 0 stars but part of named lurien-browser ecosystem with working HTTP daemon, MCP server, and
santhreal /
gossan
Comprehensive Rust-based attack surface recon tool with 22 modular crates, CI/CD, substantial documentation, and feature-gated architecture. Early-stage production tool with clear security focus and structured codebase.
santhreal /
secfinding
Production-ready Rust library providing typed security finding types with builder API, 20+ evidence variants, and Reportable trait for scanner integration. Well-documented with CI/tests, but zero adoption signals (0 stars/forks, unpublished despite crates.io infrastructure).
santhreal /
ziftsieve
High-quality Rust library for literal extraction from compressed data without decompression. Supports LZ4, Snappy, Gzip, Zstd with full CI, tests, and docs. Specialized compression search tool with polished craftsmanship.
santhreal /
attackstr
Rust security payload generation library with TOML grammar engine, 19 encodings, mutation strategies, comprehensive tests, CI/CD pipeline, and solid documentation. Part of Santh ecosystem; shipped but early-stage (0 stars, beta status).
santhreal /
codewalk
Lightweight Rust facade crate re-exporting walkkit; ships with CI, tests, ARCHITECTURE.md, binary detection, bounded I/O, but 0 stars, experimental status, and minimal independent code.
06 · Timeline
- Apr 28, 2020Joined GitHub
- Mar 20, 2026Created keyhog — GPU-accelerated secret scanner for code, Git history, containers, cloud, browser assets, and CI. 923 detectors, live verification, CUDA, Metal, WGPU.
- Mar 26, 2026Created procjail — Process sandbox for untrusted code - Linux namespaces, firejail, bubblewrap, watchdog timeout
- Mar 26, 2026Created codewalk — Fast security-aware file tree walker - gitignore, binary detection, memmap2, parallel
- Mar 26, 2026Created secfinding — Universal security finding types - Severity, Evidence, Finding, Reportable trait
- Mar 26, 2026Created attackstr — Grammar-based security payload generation - TOML-driven, composable, mutation engine, 19 encodings
- Mar 26, 2026Created openpack — Safe archive-reader for ZIP-derived formats (ZIP, CRX, JAR, APK, IPA) with BOM-safe checks.
- Mar 27, 2026Created gossan — Attack surface management and recon - subdomain enumeration, port scanning, tech fingerprinting, hidden endpoints, cloud discovery
- Apr 8, 2026Created ziftsieve — Search compressed data without full decompression
- Apr 25, 2026Created wafrift — WAF evasion testing toolkit. Grammar + encoding mutation, dialect-specific bypasses, evolutionary search, per-WAF gene-bank persistence. Rust.
- Apr 29, 2026Created vyre — Compiler-grade sequential GPU compute. Workgroup-local stacks, queues, hashmaps, dominator trees, fixed-point dataflow. CUDA + WGPU + SPIR-V with bit-exact conformance gate. Rust.
- Jul 16, 2026Created veyyon — Local terminal coding agent: CLI + TUI. Bring your own key/sub. Fork of oh-my-pi. Determined to end Human Slop
- Aug 17, 2026Created lurien-driver — lurien-driver: the Rust face of lurien-browser. One verb registry behind a CLI, an MCP server, and an HTTP daemon, plus the guise persona crates.
- Aug 27, 2026Most recent push to veyyon
07 · Compare
08 · Rubric
How this score was produced
Overall = Σ (category × weight) + gentle top-end curve
Tier thresholds
▸ How the pipeline works
- 01Scrape.Pull every non-fork repo pushed in the last 90 days, plus your contribution calendar, followers, and language byte counts — straight from GitHub's REST & GraphQL APIs.
- 02Triage.A small model reads every repo's file tree + README and picks the 20 files per repo that actually reveal how you code.
- 03Grade each repo. All repos run in parallel through a fast scoring model that reads the picked files and rates each one independently on Impact, Quality, and Depth — with evidence citations.
- 04Aggregate. A larger reasoning model combines the per-repo scores with server-computed stats (heatmap, commit cadence, language entropy, follower count) to produce the 6-dimension profile score + roasts.
- 05Correct.Deterministic server-side checks enforce anchor-scale floors (e.g. a profile with 2,000+ public commits can't score 30 Consistency) and recompute the final verdict.
~90 seconds per profile, ~$0.25 in compute. Total of ~240 files read across your top-12 repos. One rating per GitHub account per day.
▸ Data sources & caveats
- Heatmap & commit totals: GitHub GraphQL
contributionsCollection— covers the last 365 days, includes private repos when the user has opted in (default). - Language %: byte totals across the top 30 owned non-fork repos.
- Curve: a small upward nudge centered on raw score ≈ 70, capping at 100. Prevents specialists from being unfairly penalised for narrow breadth.
- Anchor corrections: when server-measured signals (e.g. privateWorkLikely, multiRepoVolume, follower count) mandate a minimum category score, the aggregation step enforces it. These are signal-conditional, not identity-based floors.