Software Passport · public repository

politrons/LetsGO

Observed by SPR on 2026-09-18 at commit 0e91de2a49e079543c43cb2eb3252c5d1f5e9098 (master). Source: github.com/politrons/LetsGO.

SBOM components12
Open findings12
Critical / high0 / 0
Evidence items16

What was observed

Syft generated the software bill of materials from the repository's manifests; each component was checked against the OSV vulnerability database; the tree was scanned for secrets, infrastructure-as-code issues and licence signals. Vendor-supplied attestations: none — this page contains only independent observation.

Open findings

SeverityFindingComponentFixed in
MEDIUMLicense not observedgopkg.in/check.v1
MEDIUMLicense not observedgoogle.golang.org/grpc
MEDIUMLicense not observedgolang.org/x/net
MEDIUMLicense not observedgithub.com/sony/gobreaker
MEDIUMLicense not observedgithub.com/segmentio/kafka-go
MEDIUMLicense not observedgithub.com/satori/go.uuid
MEDIUMLicense not observedgithub.com/onsi/gomega
MEDIUMLicense not observedgithub.com/onsi/ginkgo
MEDIUMLicense not observedgithub.com/klauspost/cpuid
MEDIUMLicense not observedgithub.com/golang/protobuf
MEDIUMLicense not observedgithub.com/bsm/sarama-cluster
MEDIUMLicense not observedgithub.com/Shopify/sarama

Get the full passport

Continuous verification, evidence ledger, plain-English and auditor reports, and a shareable signed passport are available to SPR customers.

See plans   Review your own repository free

Software Passport Registry Ltd. Every number on this page was observed by SPR's own scan of the public repository at the commit shown; nothing is estimated or vendor-supplied. Absence of a finding is not proof of safety. Terms · Privacy