Skip to content
CAI
Software that uses CAICheck a score

yinebebt/hexagonal-architecture

70.7

Strong · 21 September 2026

992

lines of production code

Go

primary language

4

measurements over time

CAI band scale
CAI trend line
CAI lens gauges

What this system is

This system is a Go-based video management application that provides both REST and GraphQL APIs for creating, updating, and retrieving video entities along with their associated directors. It features a web-based gallery interface for browsing and playing videos, backed by a domain layer that enforces business rules for data integrity. The application supports flexible data persistence by allowing users to choose between SQLite for development or PostgreSQL for production environments.

Features

New HTML templates have been added to render a video gallery interface. The index.html template displays a grid of video cards using Bootstrap styling, embedding a header and footer. Each card contains an iframe for video playback, along with the video's title and description. The header includes the Bootstrap CSS framework, and the footer displays a configurable message.

internal/adapter/templates · high confidence

Application entry point with multi-adapter support and Swagger documentation

The application now initializes a Gin-based HTTP server that exposes REST endpoints under /v1, a GraphQL endpoint with a playground at /v1/graphql, and interactive Swagger documentation at /v1/swagger. The server supports configurable database backends (SQLite or PostgreSQL) via command-line flags and includes graceful shutdown handling along with custom logging to app.log.

cmd · high confidence

New GraphQL API for video management

A new GraphQL driving adapter has been added to expose video operations via an HTTP endpoint. Users can now query for a list of all videos or retrieve a specific video by ID. The API also supports mutations to create, update, and delete videos, including associating a director (person) with each video. A playground interface is enabled for interactive API exploration.

internal/adapter/graphql · high confidence

Video domain core implementation with service and repository contracts

The internal/core package now defines the complete video domain logic, including the Video and Person entity models, the VideoRepository and VideoService interface contracts, and the concrete service implementation that enforces business rules (such as title/URL validation and ID requirements for updates). This change establishes the core behavioral layer for video operations, supported by integration tests that verify save, find, update, and delete workflows against the repository.

internal/core · high confidence

Video repository now supports PostgreSQL alongside SQLite

The video repository adapter now includes a new implementation using the PostgreSQL database via the pgx driver, in addition to the existing SQLite support. This allows the application to persist video data and associated director information in PostgreSQL, providing an alternative to the default SQLite storage for production or testing environments.

internal/adapter/repository · high confidence

Dependencies

Initial Go module setup with Gin, GraphQL, and PostgreSQL drivers

The project initializes its Go module dependencies, introducing the Gin web framework (v1.9.1) for HTTP routing, GraphQL libraries (v0.8.1 and handler v0.2.4) for API support, and the Jackc PostgreSQL driver (v4.18.3) for database connectivity. The manifest also includes SQLite support (v1.14.22), Swagger documentation tools (v1.16.3), and testing utilities (v1.9.0).

(dependencies) · high confidence

Written by watchdog.canine.dev from the codebase's own history, inside the signed delivery this page is composed from.

How this codebase got here

This is the PUBLIC form of this artifact. Findings are listed in full, but the details of SECURITY findings — which rule fired, in which file, on which line, and how to fix it — are deliberately withheld, and any secret-scanner results are excluded entirely. Where detail is absent here it was REMOVED FOR PUBLICATION; it is not missing from the analysis. The complete artifact is available from the repository owner.

Score

  • CAI 70 → 71 (+0.8)
  • Rubric changed (rubric-2026.08.18 → rubric-2026.09.15) — scores are not directly comparable.

Lenses

  • Code Health 98 → 99 (+0.9)
  • Architecture 69 → 66 (-3.3)
  • Maturity 66 → 66 (+0.0)
  • Readiness 64 → 70 (+5.6)
  • Security 92 → 93 (+0.5)
  • Domain Modelling 100 → 100 (+0.0)

Resolved (16)

  • Coverage not included — suite not readable by the collector
  • Critical CVE: [GHSA redacted] (go.mod)
  • Dependency hygiene not measured — dependency manifest found but not parsed for hygiene
  • Duplicated block (11 lines × 2) (internal/adapter/graphql/handler.go)
  • Duplicated block (13 lines × 2) (internal/adapter/repository/sqlite/video.go)
  • Duplicated block (6 lines × 2) (internal/adapter/graphql/handler.go)
  • Duplicated block (6 lines × 2) (internal/adapter/graphql/handler.go)
  • High CVE: [GHSA redacted] (go.mod)
  • Medium CVE: [GHSA redacted] (go.mod)
  • Medium CVE: GO-2026-5004 (go.mod)
  • Medium CVE: GO-2026-5024 (go.mod)
  • Medium CVE: GO-2026-5970 (go.mod)
  • No exposed public API
  • Test reliability not included
  • The project structure diagram shows only adapter directories (adapter/rest, adapter/postgres), while the architecture outline later names core/ as the hexagon where business logic resides; the repository adapters live in adapter/, not core/. This is a structural inconsistency. (README.md)
  • single-maintainer — knowledge-concentration (bus factor) risk

New (27)

  • Critical CVE: [GHSA redacted] (go.mod)
  • Documentation: no contributor guidance (README.md)
  • Documentation: no installation or build instructions (README.md)
  • Duplicated block (13 lines × 2) (internal/adapter/graphql/handler.go)
  • Duplicated block (15 lines × 2) (internal/adapter/repository/sqlite/video.go)
  • Duplicated block (5 lines × 2) (internal/adapter/graphql/handler.go)
  • Duplicated block (5 lines × 2) (internal/adapter/graphql/handler.go)
  • High CVE: [GHSA redacted] (go.mod)
  • High: security finding (details withheld)
  • High: security finding (details withheld)
  • High: security finding (details withheld)
  • High: security finding (details withheld)
  • High: security finding (details withheld)
  • High: security finding (details withheld)
  • High: security finding (details withheld)
  • Medium CVE: [GHSA redacted] (go.mod)
  • Medium CVE: GO-2026-5004 (go.mod)
  • Medium CVE: GO-2026-5024 (go.mod)
  • Medium CVE: GO-2026-5970 (go.mod)
  • Medium: security finding (details withheld)
  • …and 7 more

Written by watchdog.canine.dev from the codebase's own history, inside the signed delivery this page is composed from.

Survey your own repository

yinebebt/hexagonal-architecture was measured the same way every project in this corpus was: the same rubric, at a pinned commit, with the result published in full. Point a surveyor at a repository you know and see whether you agree with it.

About this page

  • The score is its most recent published measurement, taken on 21 September 2026 at a pinned commit. It is not a live figure and does not change until the project is measured again.
  • Measured at commit 20d750fdf34de0970b7e7554f5b431c54e4b8261 — the exact code this score is about.
  • Scored under rubric-2026.09.15 — the same rubric and the same method as every other entry in this index.
  • Measured by watchdog.canine.dev using codehealth-analyzer preprod-28e75b8e3254.