oguzhantasimaz/Go-Clean-Architecture-Template
50.3
Adequate · 20 September 2026
1.2k
lines of production code
Go
primary language
4
measurements over time
What this system is
This system is a Go-based backend service designed for user identity management, structured using a clean architecture pattern. It provides a RESTful API that handles user registration, login via email/password or Google OAuth, and profile management, secured by JWT tokens stored in cookies. The implementation relies on MySQL for data persistence and includes foundational infrastructure for configuration, logging, and testing.
Features
Initial release of user authentication and management API
This commit introduces the complete backend foundation for user identity management, implementing a clean architecture pattern across controllers, use cases, repositories, and domain models. Users can now sign up and log in via standard email/password or Google OAuth, with session management handled by JWT access and refresh tokens stored in cookies. The API exposes endpoints for managing user profiles (CRUD operations) behind JWT-protected routes, while public routes handle authentication flows. The system is bootstrapped with MySQL connectivity, environment configuration via Viper, and request logging middleware.
(repo-wide) · high confidence
Dependencies
Initial dependency setup for Go Clean Architecture Template
The project initializes its Go module with Go 1.19 and establishes a set of core dependencies including the MySQL driver (go-sql-driver/mysql), JWT library (golang-jwt/jwt), HTTP router (gorilla/mux), database ORM (jmoiron/sqlx), and configuration management (spf13/viper). It also includes standard libraries for cryptography and OAuth2, along with logging (logrus) and testing utilities (testify).
(dependencies) · high confidence
Written by watchdog.canine.dev from the codebase's own history, inside the signed delivery this page is composed from.
How this codebase got here
This is the PUBLIC form of this artifact. Findings are listed in full, but the details of SECURITY findings — which rule fired, in which file, on which line, and how to fix it — are deliberately withheld, and any secret-scanner results are excluded entirely. Where detail is absent here it was REMOVED FOR PUBLICATION; it is not missing from the analysis. The complete artifact is available from the repository owner.
Score
- CAI 45 → 50 (+5.7)
- Rubric changed (rubric-2026.08.17 → rubric-2026.09.15) — scores are not directly comparable.
Lenses
- Code Health 97 → 99 (+1.6)
- Architecture 69 → 69 (+0.0)
- Maturity 85 → 63 (-21.2)
- Readiness 26 → 38 (+11.9)
- Security 97 → 86 (-10.9)
- Domain Modelling 40 → 50 (+10.1)
Resolved (17)
- Coverage not included — suite not readable by the collector
- Dependency hygiene not measured — no supported dependency manifest was read
- Duplicated block (10 lines × 2) (api/controller/user.go)
- Duplicated block (13 lines × 2) (usecase/refresh_token_usecase.go)
- Duplicated block (14 lines × 2) (usecase/login_usecase.go)
- Duplicated block (14–15 lines × 2) (repository/user_repository.go)
- Duplicated block (14–15 lines × 2) (usecase/google_usecase.go)
- Duplicated block (7 lines × 3) (api/controller/login.go)
- Duplicated block (8 lines × 2) (internal/tokenutil/tokenutil.go)
- Low IaC: DS-0005 (Dockerfile)
- Low IaC: DS-0026 (Dockerfile)
- No exposed public API
- Test reliability not included
- early-stage repository — too little history to judge knowledge freshness
- git history depth insufficient
- git history depth insufficient
- single-maintainer — knowledge-concentration (bus factor) risk
New (32)
- Critical CVE: [GHSA redacted] (go.mod)
- Documentation: no usage examples (README.md)
- Duplicated block (11–14 lines × 4) (usecase/google_usecase.go)
- Duplicated block (13 lines × 2) (repository/user_repository.go)
- Duplicated block (5 lines × 3) (api/controller/login.go)
- Duplicated block (6 lines × 2) (internal/tokenutil/tokenutil.go)
- Duplicated block (8 lines × 2) (api/controller/user.go)
- High CVE: [GHSA redacted] (go.mod)
- High CVE: [GHSA redacted] (go.mod)
- High CVE: [GHSA redacted] (go.mod)
- Low IaC: DS-0005 (Dockerfile)
- Low IaC: DS-0005 (Dockerfile)
- Medium CVE: [GHSA redacted] (go.mod)
- Medium CVE: GO-2023-2041 (go.mod)
- Medium CVE: GO-2026-5024 (go.mod)
- Medium CVE: GO-2026-5970 (go.mod)
- Medium IaC: WD-DOCKER-0003 (Dockerfile)
- Medium: security finding (details withheld)
- Medium: security finding (details withheld)
- Medium: security finding (details withheld)
- …and 12 more
Written by watchdog.canine.dev from the codebase's own history, inside the signed delivery this page is composed from.
Survey your own repository
oguzhantasimaz/Go-Clean-Architecture-Template was measured the same way every project in this corpus was: the same rubric, at a pinned commit, with the result published in full. Point a surveyor at a repository you know and see whether you agree with it.
About this page
- The score is its most recent published measurement, taken on 20 September 2026 at a pinned commit. It is not a live figure and does not change until the project is measured again.
- Measured at commit 4e68383860516336a6d040fb1bb4adbca1327438 — the exact code this score is about.
- Scored under rubric-2026.09.15 — the same rubric and the same method as every other entry in this index.
- Measured by watchdog.canine.dev using codehealth-analyzer preprod-28e75b8e3254.