https://github.com/fastlane/fastlane.git
· scanned 2026-05-16 13:31 UTC (1 day, 4 hours ago)
· 10 languages
383 findings (20 legacy + 363 scanner) 8/10 scanners ran Scanner says 70 (lower by 8)
Last scanned 1 day, 7 hours ago · v3 · 141 findings from 2 sources. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
Showing 58 of 141 findings. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
credentials_manager/lib/credentials_manager/cli.rb:27
secrets
fastlane/lib/fastlane/actions/artifactory.rb:79
secrets
fastlane/lib/fastlane/actions/jira.rb:137
secrets
fastlane/lib/fastlane/actions/jira.rb:145
secrets
fastlane/lib/fastlane/actions/nexus_upload.rb:208
secrets
fastlane/lib/fastlane/actions/nexus_upload.rb:222
secrets
fastlane/lib/fastlane/actions/onesignal.rb:184
secrets
fastlane/lib/fastlane/actions/onesignal.rb:196
secrets
fastlane/lib/fastlane/actions/unlock_keychain.rb:113
secrets
fastlane/lib/fastlane/actions/unlock_keychain.rb:117
secrets
fastlane/lib/fastlane/actions/unlock_keychain.rb:122
secrets
fastlane/lib/fastlane/actions/unlock_keychain.rb:127
secrets
fastlane_core/lib/fastlane_core/keychain_importer.rb:76
secrets
.github/workflows/announce_release.yml:49
supply-chaingithub-actionspinned-dependencies
.github/workflows/pull-requests.yml:16
supply-chaingithub-actionspinned-dependencies
credentials_manager/lib/credentials_manager/appfile_config.rb:46
owaspeval_used
fastlane/lib/fastlane/fast_file.rb:61
owaspeval_used
fastlane_core/lib/fastlane_core/configuration/configuration_file.rb:46
owaspeval_used
spaceship/lib/spaceship/connect_api/api_client.rb:364
owaspeval_used
fastlane/lib/fastlane/actions/update_fastlane.rb:82
owaspexec_used
fastlane/lib/fastlane/plugins/plugin_manager.rb:184
owaspexec_used
.github/workflows/release_step_1_create_version_bump.yml:29
supply-chaingithub-actionspinned-dependencies
.github/workflows/release_step_2_create_github_release.yml:35
supply-chaingithub-actionspinned-dependencies
.github/workflows/ci.yml:30
supply-chaingithub-actionspinned-dependencies
.github/workflows/ci.yml:41
supply-chaingithub-actionspinned-dependencies
.github/workflows/release_step_1_create_version_bump.yml
supply-chaingithub-actionsleast-privilege
.github/workflows/release_step_2_create_github_release.yml
supply-chaingithub-actionsleast-privilege
deliver/lib/deliver/screenshot_comparable.rb:46
owaspweak_hash
deliver/lib/deliver/sync_app_previews.rb:116
owaspweak_hash
deliver/lib/deliver/upload_app_clip_default_experience_header_images.rb:185
owaspweak_hash
deliver/lib/deliver/upload_screenshots.rb:277
owaspweak_hash
fastlane/lib/fastlane/actions/artifactory.rb:25
owaspweak_hash
fastlane_core/lib/fastlane_core/cert_checker.rb:213
owaspweak_hash
fastlane_core/lib/fastlane_core/ipa_upload_package_builder.rb:39
owaspweak_hash
fastlane_core/lib/fastlane_core/pkg_upload_package_builder.rb:25
owaspweak_hash
sigh/lib/assets/resign.sh:834
owaspweak_hash
snapshot/lib/snapshot/collector.rb:43
owaspweak_hash
snapshot/lib/snapshot/simulator_launchers/simulator_launcher_base.rb:217
owaspweak_hash
spaceship/lib/spaceship/connect_api/models/app_clip_header_image.rb:112
owaspweak_hash
spaceship/lib/spaceship/connect_api/models/app_preview.rb:84
owaspweak_hash
spaceship/lib/spaceship/connect_api/models/app_screenshot.rb:142
owaspweak_hash
spaceship/lib/spaceship/connect_api/models/app_store_review_attachment.rb:58
owaspweak_hash
spaceship/lib/spaceship/du/upload_file.rb:36
owaspweak_hash
spaceship/lib/spaceship/du/utilities.rb:94
owaspweak_hash
spaceship/lib/spaceship/portal/portal_client.rb:198
owaspweak_hash
.rubocop_todo.yml
securityports
.github/workflows/release_step_1_create_version_bump.yml:26
supply-chaingithub-actionspinned-dependencies
.github/workflows/release_step_2_create_github_release.yml:32
supply-chaingithub-actionspinned-dependencies
.github/workflows/announce_release.yml:29
supply-chaingithub-actionspinned-dependencies
.github/workflows/ci.yml:77
supply-chaingithub-actionspinned-dependencies
.github/workflows/ci.yml:85
supply-chaingithub-actionspinned-dependencies
This page is publicly accessible at:
https://repobility.com/scan/2365195e-4868-4912-8920-a579d4df5cfd/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/2365195e-4868-4912-8920-a579d4df5cfd/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.