https://github.com/unslothai/unsloth
· scanned 2026-05-15 07:28 UTC (3 weeks ago)
· 10 languages
519 findings (57 legacy + 462 scanner) 19th percentile · Typescript · large (100-500K LoC) Scanner says 63 (higher by 5)
Last scanned 3 weeks ago · v1 · 44 findings from 1 source. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
60.0 | 0.15 | 9.00 |
security_score |
53.3 | 0.25 | 13.32 |
testing_score |
96.0 | 0.20 | 19.20 |
documentation_score |
83.0 | 0.15 | 12.45 |
practices_score |
65.0 | 0.15 | 9.75 |
code_quality |
39.6 | 0.10 | 3.96 |
| Overall | 1.00 | 67.7 |
web: 1.6 ·
agent: 10.4 ·
threat: 27.4 ·
journey: 7.4
Showing 41 of 44 findings. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
unsloth/tokenizer_utils.py:1692
injectionlegacy
unsloth/_gpu_init.py:294
injectionlegacy
studio/install_llama_prebuilt.py:853
path_traversallegacy
unsloth/chat_templates.py:1793
llm_injectionlegacy
scripts/scan_npm_packages.py:1334
error_handlinglegacy
studio/install_llama_prebuilt.py:970
error_handlinglegacy
studio/install_python_stack.py:104
error_handlinglegacy
studio/frontend/src/features/chat/runtime-provider.tsx:863
error_handlinglegacy
studio/frontend/src/features/chat/chat-page.tsx:1040
error_handlinglegacy
studio/frontend/src/components/assistant-ui/model-selector/pickers.tsx:579
error_handlinglegacy
unsloth/save.py:1137
injectionlegacy
unsloth/chat_templates.py:1793
llm_injectionlegacy
install.sh:410
qualitylegacy
studio/frontend/src/features/auth/session.ts:45
authlegacy
studio/frontend/src/features/auth/session.ts:44
authlegacy
studio/frontend/src/features/auth/session.ts:35
authlegacy
studio/frontend/src/features/auth/session.ts:30
authlegacy
studio/frontend/src/features/auth/session.ts:25
authlegacy
studio/frontend/src/features/auth/session.ts:20
authlegacy
studio/frontend/src/features/onboarding/components/steps/model-type-step.tsx:143
qualitylegacy
studio/frontend/src/features/onboarding/components/steps/model-selection-step.tsx:185
qualitylegacy
studio/frontend/src/features/onboarding/components/steps/model-selection-step.tsx:1
qualitylegacy
studio/frontend/src/features/onboarding/components/steps/hyperparameters-step.tsx:122
qualitylegacy
studio/frontend/src/features/native-intents/use-native-drop.ts:108
qualitylegacy
studio/frontend/src/features/chat/api/providers-api.ts:33
qualitylegacy
studio/frontend/src/components/tauri/update-screen.tsx:16
qualitylegacy
studio/frontend/src/components/tauri/update-banner.tsx:46
qualitylegacy
studio/frontend/src/components/assistant-ui/tool-ui-terminal.tsx:13
qualitylegacy
studio/frontend/src/components/assistant-ui/tool-group.tsx:50
qualitylegacy
studio/frontend/src/components/assistant-ui/tool-fallback.tsx:46
qualitylegacy
studio/backend/core/inference/worker.py:623
qualitylegacy
studio/frontend/src/features/training/hooks/use-max-steps-epochs-toggle.ts:26
qualitylegacy
studio/frontend/src/features/settings/stores/theme-store.ts:80
qualitylegacy
studio/frontend/src/features/settings/stores/settings-dialog-store.ts:58
qualitylegacy
studio/frontend/src/features/chat/stores/chat-runtime-store.ts:78
qualitylegacy
studio/frontend/src/features/chat/external-providers.ts:170
qualitylegacy
studio/frontend/src/features/chat/chat-settings-sheet.tsx:111
qualitylegacy
.well-known/security.txt
qualitylegacy
studio/frontend/src/features/settings/components/update-studio-instructions.tsx:14
dependencylegacy
README.md:26
dependencylegacy
studio/frontend/src/hooks/use-tauri-update.ts:1
qualitylegacy
This page is publicly accessible at:
https://repobility.com/scan/098a2aee-fee1-458b-bcaa-d4f661adc5a3/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/098a2aee-fee1-458b-bcaa-d4f661adc5a3/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.