Scan timing: clone 3.11s · analysis 4.08s · 5.2 MB · GitHub API rate-limit (preflight)
https://github.com/TauricResearch/TradingAgents
· scanned 2026-06-01 04:00 UTC (4 days, 3 hours ago)
· 10 languages
288 findings (151 legacy + 137 scanner) 53rd percentile · Python · small (2-20K LoC) Scanner says 91 (lower by 19)
Last scanned 4 days, 3 hours ago · v4 · 186 findings from 2 sources. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
75.0 | 0.15 | 11.25 |
security_score |
49.8 | 0.25 | 12.45 |
testing_score |
100.0 | 0.20 | 20.00 |
documentation_score |
91.0 | 0.15 | 13.65 |
practices_score |
54.0 | 0.15 | 8.10 |
code_quality |
62.4 | 0.10 | 6.24 |
| Overall | 1.00 | 71.7 |
Showing 133 of 186 findings. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
tradingagents/graph/checkpointer.py:85
qualitylegacy
tradingagents/graph/checkpointer.py:87
qualitylegacy
tradingagents/dataflows/yfinance_news.py:33
qualitylegacy
tradingagents/__init__.py:15
qualitylegacy
tradingagents/default_config.py:3
qualitylegacy
tradingagents/graph/checkpointer.py:85
injectionlegacy
cli/main.py:160
qualitylegacy
cli/main.py:189
qualitylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
Dockerfile:12
dependencylegacy
Dockerfile:1
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
main.py:12
qualitylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
tradingagents/dataflows/alpha_vantage_indicator.py:225
qualitylegacy
tradingagents/dataflows/y_finance.py:453
qualitylegacy
tradingagents/dataflows/y_finance.py:426
qualitylegacy
tradingagents/dataflows/y_finance.py:391
qualitylegacy
tradingagents/dataflows/y_finance.py:356
qualitylegacy
tradingagents/dataflows/y_finance.py:321
qualitylegacy
tradingagents/dataflows/y_finance.py:249
qualitylegacy
tradingagents/dataflows/y_finance.py:174
qualitylegacy
tradingagents/dataflows/interface.py:167
qualitylegacy
tradingagents/dataflows/alpha_vantage_common.py:132
qualitylegacy
cli/main.py:1279
qualitylegacy
cli/utils.py:185
qualitylegacy
tradingagents/dataflows/yfinance_news.py:201
qualitylegacy
tradingagents/dataflows/yfinance_news.py:107
qualitylegacy
tradingagents/dataflows/market_data_validator.py:81
qualitylegacy
cli/announcements.py:23
qualitylegacy
docker-compose.yml:10
dockerlegacy
Dockerfile:10
dockerlegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
tradingagents/graph/trading_graph.py:55
qualitylegacy
tradingagents/graph/setup.py:32
qualitylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
requirements.txt:1
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
.dockerignore
dockerlegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
docker-compose.yml:17
dockerlegacy
docker-compose.yml:1
dockerlegacy
tradingagents/agents/researchers/bull_researcher.py:10
qualitylegacy
tradingagents/agents/analysts/market_analyst.py:43
qualitylegacy
tradingagents/agents/analysts/news_analyst.py:23
qualitylegacy
tradingagents/agents/analysts/news_analyst.py:21
qualitylegacy
uv.lock
dependencylegacy
uv.lock
dependencylegacy
Dockerfile:1
supply-chaindockerpinned-dependencies
Dockerfile:12
supply-chaindockerpinned-dependencies
cli/main.py:1026
owaspdebug_true
main.py:12
owaspdebug_true
tradingagents/agents/risk_mgmt/aggressive_debator.py:8
dead-code
tradingagents/agents/researchers/bull_researcher.py:8
dead-code
tradingagents/dataflows/utils.py:57
dead-code
tradingagents/agents/risk_mgmt/conservative_debator.py:8
dead-code
tradingagents/dataflows/utils.py:56
dead-code
tradingagents/dataflows/y_finance.py:10
dead-code
tradingagents/agents/risk_mgmt/neutral_debator.py:8
dead-code
tradingagents/dataflows/utils.py:46
dead-code
tradingagents/dataflows/reddit.py:41
qualitylegacy
tradingagents/llm_clients/capabilities.py:30
qualitylegacy
tradingagents/dataflows/alpha_vantage_common.py:79
qualitylegacy
cli/announcements.py:16
qualitylegacy
This page is publicly accessible at:
https://repobility.com/scan/079f1bd0-c494-4d7d-898d-1981499462db/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/079f1bd0-c494-4d7d-898d-1981499462db/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.