https://github.com/HKUDS/Vibe-Trading
· scanned 2026-05-15 05:01 UTC (3 weeks ago)
· 10 languages
128 findings (39 legacy + 89 scanner) 71st percentile · Python · medium (20-100K LoC)
Last scanned 3 weeks ago · v1 · 35 findings from 1 source. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
60.0 | 0.15 | 9.00 |
security_score |
58.3 | 0.25 | 14.57 |
testing_score |
95.0 | 0.20 | 19.00 |
documentation_score |
88.0 | 0.15 | 13.20 |
practices_score |
75.0 | 0.15 | 11.25 |
code_quality |
61.2 | 0.10 | 6.12 |
| Overall | 1.00 | 73.1 |
web: 1.6 ·
agent: 6.9 ·
authz: 8.4 ·
threat: 21.6 ·
journey: 3.3
Bug-class explainers. Each card groups findings of the same shape — these are the patterns most likely to ship to prod and reappear in future scans unless you systematically fix the cause, not just the instance.
.well-known/security.txt
frontend/src/components/layout/Layout.tsx:38
frontend/src/components/chat/RunCompleteCard.tsx:29
frontend/src/pages/Compare.tsx:214
agent/src/ui_services.py:421
agent/cli.py:342
agent/api_server.py:731
wiki/theme.js:26
wiki/main.js:29
wiki/docs/main.js:44
frontend/src/pages/Compare.tsx:107
agent/backtest/runner.py:203
This page is publicly accessible at:
https://repobility.com/scan/24442ceb-919f-4593-9d71-d90f26482ad7/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/24442ceb-919f-4593-9d71-d90f26482ad7/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.