Skip to content
CAI
Software that uses CAICheck a score

ekzhang/bore

61.1

Adequate · 29 September 2026

536

lines of production code

Rust

primary language

2

measurements over time

CAI band scale
CAI trend line
CAI lens gauges

What this system is

This system is a lightweight TCP tunneling service implemented in Rust, consisting of a client and server that establish secure, bidirectional proxy connections over TCP. It supports HMAC-based authentication for access control and utilizes a framed JSON protocol for control messages while forwarding data streams. The project includes a CI pipeline for automated building and testing, along with integration tests to verify authentication and proxying reliability.

Features

Initial release of the bore TCP tunnel client and server

This change introduces the core functionality of the bore service, replacing the placeholder stub with a complete implementation. It adds a client component that establishes a control connection to a remote server, supports optional HMAC-based authentication via a shared secret, and proxies local TCP connections to the remote endpoint. The server component listens for incoming client connections, manages a configurable range of public ports (supporting random port allocation when port 0 is requested), and handles bidirectional data forwarding. The implementation uses a framed JSON protocol over TCP for control messages and includes configurable bind addresses for both the control interface and the tunnel listeners.

src · high confidence

Introduction of CI build and test automation scripts

The CI pipeline now includes dedicated shell scripts to handle Rust project builds and testing. The new \ci/build.bash\ script supports cross-compilation for specific target triples and distinguishes between debug and release builds. The \ci/test.bash\ script implements a retry mechanism, attempting to run tests up to three times before failing. Supporting utilities include \ci/common.bash\ for argument validation and \ci/set\_rust\_version.bash\ for configuring the Rust toolchain environment.

ci · high confidence

Test coverage

Added integration tests for authentication and end-to-end proxying

New integration tests have been added to verify the correctness of the authentication handshake mechanism and the end-to-end proxying functionality. These tests cover successful and failed authentication scenarios, basic data proxying with and without secrets, invalid address handling, protection against unbounded buffers via long frames, and proper handling of half-closed TCP streams.

tests · high confidence

Dependencies

Upgrade to clap v4 and refine Tokio dependencies

The bore CLI has been updated to use clap v4 for command-line argument parsing, which may alter help text or argument behavior compared to the previous v3 version. Additionally, the Tokio dependency has been switched from the 'full' feature set to a specific subset of features (rt-multi-thread, io-util, macros, net, time), reducing binary size and build time while maintaining required functionality.

(dependencies) · high confidence

Written by watchdog.canine.dev from the codebase's own history, inside the signed delivery this page is composed from.

How this codebase got here

Score

  • CAI 61 → 61 (+0.4)
  • Rubric changed (rubric-2026.09.8 → rubric-2026.09.17) — scores are not directly comparable.

Lenses

  • Code Health 99 → 99 (+0.0)
  • Architecture 69 → 69 (+0.0)
  • Maturity 55 → 55 (+0.0)
  • Readiness 59 → 57 (-2.3)
  • Security 59 → 66 (+6.8)
  • Performance 100 (new)

Resolved (1)

  • Documentation: no architecture or design documentation (README.md)

New (11)

  • Inverted test pyramid
  • Outdated: anyhow
  • Outdated: clap
  • Outdated: serde
  • Outdated: serde_json
  • Outdated: tokio
  • Outdated: tokio-util
  • Outdated: tracing
  • Outdated: tracing-subscriber
  • Outdated: uuid
  • Yanked release: futures-util

Written by watchdog.canine.dev from the codebase's own history, inside the signed delivery this page is composed from.

Survey your own repository

ekzhang/bore was measured the same way every project in this corpus was: the same rubric, at a pinned commit, with the result published in full. Point a surveyor at a repository you know and see whether you agree with it.

About this page

  • The score is its most recent published measurement, taken on 29 September 2026 at a pinned commit. It is not a live figure and does not change until the project is measured again.
  • Measured at commit 00a735a89917642df62d84336a90d9476fa175b5 — the exact code this score is about.
  • Scored under rubric-2026.09.17 — the same rubric and the same method as every other entry in this index.
  • Measured by watchdog.canine.dev using codehealth-analyzer preprod-fbec9b1e08c2.