Skip to content
CAI
Software that uses CAICheck a score

arctikant/fastapi-modular-monolith-starter-kit

54.5

Adequate · 20 September 2026

2.1k

lines of production code

Python

primary language

4

measurements over time

CAI band scale
CAI trend line
CAI lens gauges

What this system is

This system is a FastAPI-based modular monolith starter kit designed to provide a complete development and deployment environment for Python applications. It establishes foundational infrastructure including database management with SQLAlchemy, caching with Redis, and asynchronous task queuing via TaskIQ. The initial implementation focuses on a robust authentication subsystem, handling user registration, login, and profile management with JWT security. The project is configured for modern Python development using uv, Docker, and comprehensive testing tools.

Features

Initial database migration for authentication tables

The application now includes an initial Alembic migration that creates the \auth\_users\ and \auth\_refresh\_tokens\ tables in the database. This migration establishes the schema for user accounts (including username, email, and password hash) and refresh tokens, along with necessary indexes and foreign key constraints, enabling the authentication module to persist data.

docker, migrations · high confidence

Initial project scaffolding with uv-based build and Docker support

The repository is initialized as a FastAPI Modular Monolith Starter Kit, introducing a complete development and deployment environment. The build system has migrated from Poetry to uv, utilizing \uv.lock\ for dependency resolution and a \Dockerfile\ that installs \uv\ to manage packages. Docker Compose is configured to orchestrate the application alongside PostgreSQL, Redis, and Mailhog, while shell scripts (\start.sh\, \prestart.sh\) handle server startup and database migrations. Configuration is managed via \.env\ files, with \.sample.env\ and \.test.env\ provided for local and testing environments respectively.

(repo-wide) · high confidence

Initial release of the authentication and user management module

This change introduces the complete authentication subsystem for the application. It provides user registration, login, and password reset capabilities via the \/auth\ API endpoints, alongside user profile management (\/profile\) and user listing (\/users\) via the \/users\ API endpoints. The implementation includes stateless dependency injection for repositories and services, JWT-based access and refresh token security, email templates for registration and password recovery, and a database seeding script to create an initial admin user.

app/auth · high confidence

Introduces core application infrastructure and service abstractions

This change establishes the foundational architecture for the application by introducing a comprehensive set of core modules. It adds a Pydantic-based configuration system (AppConfig) for managing environment settings, a database layer with SQLAlchemy models, a generic BaseRepository for data access, and a FastAPI-compatible API layer featuring standardized response schemas, a configurable rate limiter, and a list parameters builder for consistent pagination and filtering. Additionally, it implements a service-oriented structure with abstract interfaces and concrete providers for caching (Redis/aiocache), asynchronous event handling (fastapi-events), logging (structlog), email delivery (aiosmtplib), and background task queuing (TaskIQ), all wired together via FastAPI dependency injection.

app/core · high confidence

Test coverage

Initial test suite for authentication and core services

Added comprehensive integration and unit tests for the authentication module, covering user registration, login, token refresh, password reset, and profile management endpoints, as well as unit tests for the underlying user and refresh token repositories and services. The suite also includes tests for core infrastructure components, including the base repository, list parameter builder, AioCache service and decorators, FastAPI events provider, and StructLog service.

tests · high confidence

Dependencies

Initial project configuration with Python 3.12 and FastAPI dependencies

The project now defines its build and dependency configuration in pyproject.toml, targeting Python 3.12. It establishes a FastAPI-based stack including uvicorn, SQLAlchemy, psycopg, and Redis, alongside development tooling for linting (ruff), type checking (mypy), and testing (pytest).

(dependencies) · high confidence

Written by watchdog.canine.dev from the codebase's own history, inside the signed delivery this page is composed from.

How this codebase got here

Score

  • CAI 55 → 55 (-0.0)
  • Rubric changed (rubric-2026.08.17 → rubric-2026.09.15) — scores are not directly comparable.

Lenses

  • Code Health 100 → 100 (-0.2)
  • Architecture 100 → 90 (-10.2)
  • Maturity 72 → 72 (+0.0)
  • Readiness 18 → 23 (+4.2)
  • Security 96 → 87 (-8.2)
  • Domain Modelling 100 → 100 (+0.0)

Resolved (8)

  • Coverage not included — suite not readable by the collector
  • Dependency hygiene not measured — no supported dependency manifest was read
  • No exposed public API
  • Test reliability not included
  • early-stage repository — too little history to judge knowledge freshness
  • git history depth insufficient
  • git history depth insufficient
  • single-maintainer — knowledge-concentration (bus factor) risk

New (20)

  • Critical CVE: [GHSA redacted] (uv.lock)
  • Dependency hygiene PARTLY measured — Python dependencies read, no exact pin to grade for currency
  • Documentation: no installation or build instructions (README.md)
  • Documentation: no usage examples (README.md)
  • Duplicated block (8 lines × 2) (app/core/services/events/base_event.py)
  • High CVE: [GHSA redacted] (uv.lock)
  • High CVE: [GHSA redacted] (uv.lock)
  • High CVE: [GHSA redacted] (uv.lock)
  • High CVE: [GHSA redacted] (uv.lock)
  • High CVE: [GHSA redacted] (uv.lock)
  • High IaC: WD-COMPOSE-0002 (docker-compose.yaml)
  • High IaC: WD-COMPOSE-0002 (docker-compose.yaml)
  • Medium CVE: [GHSA redacted] (uv.lock)
  • Medium CVE: [GHSA redacted] (uv.lock)
  • Medium CVE: [GHSA redacted] (uv.lock)
  • Medium CVE: [GHSA redacted] (uv.lock)
  • Medium CVE: PYSEC-2026-2132 (uv.lock)
  • Medium IaC: WD-COMPOSE-0002 (docker-compose.yaml)
  • Medium IaC: WD-COMPOSE-0002 (docker-compose.yaml)
  • Medium IaC: WD-DOCKER-0003 (Dockerfile)

Written by watchdog.canine.dev from the codebase's own history, inside the signed delivery this page is composed from.

Survey your own repository

arctikant/fastapi-modular-monolith-starter-kit was measured the same way every project in this corpus was: the same rubric, at a pinned commit, with the result published in full. Point a surveyor at a repository you know and see whether you agree with it.

About this page

  • The score is its most recent published measurement, taken on 20 September 2026 at a pinned commit. It is not a live figure and does not change until the project is measured again.
  • Measured at commit 9d30883604c910b92da9d7651fc0c992d6e061ec — the exact code this score is about.
  • Scored under rubric-2026.09.15 — the same rubric and the same method as every other entry in this index.
  • Measured by watchdog.canine.dev using codehealth-analyzer preprod-28e75b8e3254.