https://github.com/HKUDS/Vibe-Trading
· scanned 2026-05-15 05:01 UTC (3 weeks ago)
· 10 languages
128 findings (39 legacy + 89 scanner) 70th percentile · Python · medium (20-100K LoC)
Last scanned 3 weeks ago · v1 · 35 findings from 1 source. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
60.0 | 0.15 | 9.00 |
security_score |
58.3 | 0.25 | 14.57 |
testing_score |
95.0 | 0.20 | 19.00 |
documentation_score |
88.0 | 0.15 | 13.20 |
practices_score |
75.0 | 0.15 | 11.25 |
code_quality |
61.2 | 0.10 | 6.12 |
| Overall | 1.00 | 73.1 |
web: 1.6 ·
agent: 6.9 ·
authz: 8.4 ·
threat: 21.6 ·
journey: 3.3
Showing 30 of 35 findings. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
agent/api_server.py:1683
authlegacy
agent/src/session/service.py:151
llm_injectionlegacy
agent/mcp_server.py:89
llm_injectionlegacy
frontend/src/pages/Settings.tsx:297
authlegacy
agent/api_server.py:1079
authlegacy
agent/api_server.py:1357
authlegacy
agent/api_server.py:1606
authlegacy
agent/api_server.py:1613
authlegacy
agent/api_server.py:1530
authlegacy
agent/src/ui_services.py:421
error_handlinglegacy
agent/cli.py:342
error_handlinglegacy
agent/api_server.py:731
error_handlinglegacy
frontend/src/components/layout/Layout.tsx:38
error_handlinglegacy
frontend/src/components/chat/RunCompleteCard.tsx:29
error_handlinglegacy
frontend/src/pages/Compare.tsx:214
error_handlinglegacy
agent/src/tools/background_tools.py:41
injectionlegacy
agent/src/tools/bash_tool.py:43
injectionlegacy
agent/src/session/service.py:151
llm_injectionlegacy
frontend/src/pages/Compare.tsx:107
qualitylegacy
wiki/theme.js:26
qualitylegacy
wiki/main.js:29
qualitylegacy
wiki/docs/main.js:44
qualitylegacy
.well-known/security.txt
qualitylegacy
.dockerignore
dockerlegacy
docker-compose.yml:14
dockerlegacy
docker-compose.yml:14
dockerlegacy
docker-compose.yml:1
dockerlegacy
This page is publicly accessible at:
https://repobility.com/scan/24442ceb-919f-4593-9d71-d90f26482ad7/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/24442ceb-919f-4593-9d71-d90f26482ad7/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.