https://github.com/langflow-ai/openrag
· scanned 2026-05-15 19:40 UTC (2 weeks, 6 days ago)
· 10 languages
456 findings (97 legacy + 359 scanner) 17th percentile · Python · large (100-500K LoC) Scanner says 65 (lower by 4)
Last scanned 2 weeks, 6 days ago · v1 · 82 findings from 1 source. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
85.0 | 0.15 | 12.75 |
security_score |
16.1 | 0.25 | 4.03 |
testing_score |
71.0 | 0.20 | 14.20 |
documentation_score |
88.0 | 0.15 | 13.20 |
practices_score |
75.0 | 0.15 | 11.25 |
code_quality |
57.9 | 0.10 | 5.79 |
| Overall | 1.00 | 61.2 |
web: 1.6 ·
agent: 2.1 ·
authz: 11.4 ·
docker: 46.5 ·
threat: 18.9 ·
journey: 44.4
Showing 79 of 82 findings. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
src/tui/_assets/docker-compose.yml:144
dockerlegacy
docker-compose.yml:144
dockerlegacy
src/services/chat_service.py:334
llm_injectionlegacy
src/tui/_assets/docker-compose.yml:35
dockerlegacy
docker-compose.yml:35
dockerlegacy
src/tui/_assets/docker-compose.yml:35
dockerlegacy
src/tui/_assets/docker-compose.yml:1
dockerlegacy
docker-compose.yml:35
dockerlegacy
docker-compose.yml:1
dockerlegacy
Dockerfile.langflow:14
dockerlegacy
Dockerfile.backend:11
dockerlegacy
src/api/config.py:32
authlegacy
src/api/admin/rbac.py:236
authlegacy
src/api/admin/rbac.py:336
authlegacy
src/api/users.py:52
authlegacy
src/api/users.py:86
authlegacy
src/api/admin/rbac.py:388
authlegacy
src/api/admin/rbac.py:167
authlegacy
src/api/admin/rbac.py:179
authlegacy
src/api/admin/rbac.py:191
authlegacy
src/api/admin/rbac.py:397
authlegacy
src/api/admin/rbac.py:303
authlegacy
alembic/env.py:36
error_handlinglegacy
src/agent.py:517
error_handlinglegacy
warm_up_docling.py:25
error_handlinglegacy
sdks/typescript/src/chat.ts:172
error_handlinglegacy
src/services/chat_service.py:334
llm_injectionlegacy
src/main.py:4
qualitylegacy
src/tui/_assets/docker-compose.yml:35
dockerlegacy
docker-compose.yml:35
dockerlegacy
Dockerfile.langflow.dev:4
dockerlegacy
Dockerfile.backend:55
dockerlegacy
Dockerfile:41
dockerlegacy
frontend/app/settings/_components/users-and-roles-section.tsx:18
qualitylegacy
frontend/app/settings/_components/s3-settings-form.tsx:37
qualitylegacy
frontend/app/settings/_components/s3-settings-dialog.tsx:79
qualitylegacy
frontend/app/settings/_components/openai-settings-dialog.tsx:66
qualitylegacy
frontend/app/settings/_components/openai-settings-dialog.tsx:30
qualitylegacy
frontend/app/settings/_components/ollama-settings-dialog.tsx:89
qualitylegacy
frontend/app/settings/_components/ingest-settings-section.tsx:53
qualitylegacy
frontend/app/onboarding/_components/openai-onboarding.tsx:49
qualitylegacy
frontend/app/onboarding/_components/openai-onboarding.tsx:48
qualitylegacy
frontend/app/onboarding/_components/ibm-onboarding.tsx:99
qualitylegacy
frontend/app/api/queries/useGetSettingsQuery.ts:41
qualitylegacy
flows/components/mcp_component.py:124
qualitylegacy
frontend/app/api/mutations/useSyncConnector.ts:18
qualitylegacy
frontend/app/api/mutations/useS3ConfigureMutation.ts:13
qualitylegacy
frontend/app/api/mutations/useRevokeRoleMutation.ts:14
qualitylegacy
frontend/app/api/mutations/useRevokeApiKeyMutation.ts:26
qualitylegacy
frontend/app/api/mutations/useRefreshOpenragDocs.ts:11
qualitylegacy
frontend/app/api/mutations/useOnboardingRollbackMutation.ts:34
qualitylegacy
frontend/app/api/mutations/useOnboardingMutation.ts:46
qualitylegacy
frontend/app/api/mutations/useIBMCOSConfigureMutation.ts:20
qualitylegacy
frontend/app/api/mutations/useDisconnectConnectorMutation.ts:11
qualitylegacy
frontend/app/api/mutations/useDeleteFilter.ts:15
qualitylegacy
frontend/app/api/mutations/useDeleteDocument.ts:19
qualitylegacy
frontend/app/api/mutations/useCreateFilter.ts:19
qualitylegacy
frontend/app/api/mutations/useCreateApiKeyMutation.ts:30
qualitylegacy
frontend/app/api/mutations/useCancelTaskMutation.ts:27
qualitylegacy
frontend/app/api/mutations/useAssignRoleMutation.ts:13
qualitylegacy
.well-known/security.txt
qualitylegacy
src/tui/utils/startup_checks.py:225
dependencylegacy
.dockerignore
dockerlegacy
src/tui/_assets/docker-compose.yml:144
dockerlegacy
src/tui/_assets/docker-compose.yml:47
dockerlegacy
docker-compose.yml:144
dockerlegacy
docker-compose.yml:47
dockerlegacy
src/tui/_assets/docker-compose.yml:144
dockerlegacy
src/tui/_assets/docker-compose.yml:131
dockerlegacy
src/tui/_assets/docker-compose.yml:47
dockerlegacy
docker-compose.yml:144
dockerlegacy
docker-compose.yml:131
dockerlegacy
docker-compose.yml:47
dockerlegacy
Dockerfile.langflow.dev:18
dockerlegacy
Dockerfile.langflow.dev:29
dockerlegacy
Dockerfile.langflow:6
dockerlegacy
src/app/routes/public_v1.py:1
qualitylegacy
This page is publicly accessible at:
https://repobility.com/scan/2450297c-75ff-442e-9242-a0e495d24189/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/2450297c-75ff-442e-9242-a0e495d24189/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.