Scan timing: clone 2.11s · analysis 23.64s · 14.6 MB · GitHub API rate-limit (preflight)
https://github.com/ansible-collections/community.general
· scanned 2026-05-31 01:24 UTC (5 days, 6 hours ago)
· 10 languages
1015 findings (291 legacy + 724 scanner) 24th percentile · Python · large (100-500K LoC) Scanner says 75 (lower by 11)
Last scanned 5 days, 6 hours ago · v2 · last Δ -0.1 (diff) · 655 findings from 2 sources. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
40.0 | 0.15 | 6.00 |
security_score |
21.2 | 0.25 | 5.30 |
testing_score |
100.0 | 0.20 | 20.00 |
documentation_score |
100.0 | 0.15 | 15.00 |
practices_score |
89.0 | 0.15 | 13.35 |
code_quality |
41.9 | 0.10 | 4.19 |
| Overall | 1.00 | 63.8 |
Showing 370 of 655 findings. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
plugins/modules/vertica_role.py:130
qualitylegacy
plugins/modules/vertica_configuration.py:128
qualitylegacy
plugins/modules/mssql_db.py:120
qualitylegacy
docs/docsite/reformat-yaml.py:17
qualitylegacy
plugins/cache/pickle.py:60
qualitylegacy
docs/docsite/reformat-yaml.py:17
qualitylegacy
plugins/cache/pickle.py:60
qualitylegacy
docs/docsite/reformat-yaml.py:17
deserializationlegacy
plugins/modules/office_365_connector_card.py:68
dependencylegacy
plugins/modules/vexata_eg.py:89
qualitylegacy
plugins/modules/vexata_volume.py:87
qualitylegacy
plugins/modules/imc_rest.py:323
qualitylegacy
plugins/modules/jira.py:709
qualitylegacy
plugins/lookup/dnstxt.py:96
qualitylegacy
plugins/modules/logstash_plugin.py:95
qualitylegacy
plugins/modules/iptables_state.py:329
qualitylegacy
plugins/modules/kibana_plugin.py:125
qualitylegacy
plugins/modules/archive.py:233
qualitylegacy
plugins/modules/elasticsearch_plugin.py:123
qualitylegacy
plugins/modules/maven_artifact.py:402
qualitylegacy
plugins/become/doas.py:132
secrets
plugins/become/dzdo.py:92
secrets
plugins/become/machinectl.py:104
secrets
plugins/become/pbrun.py:91
secrets
plugins/become/pmrun.py:68
secrets
plugins/become/run0.py:91
secrets
plugins/become/sesu.py:80
secrets
plugins/become/sudosu.py:99
secrets
plugins/lookup/keyring.py:35
secrets
plugins/lookup/onepassword_raw.py:43
secrets
plugins/lookup/passwordstore.py:184
secrets
plugins/lookup/passwordstore.py:190
secrets
plugins/lookup/tss.py:139
secrets
plugins/lookup/tss.py:161
secrets
plugins/lookup/tss.py:249
secrets
plugins/lookup/tss.py:272
secrets
plugins/modules/datadog_downtime.py:109
secrets
plugins/modules/datadog_monitor.py:207
secrets
plugins/modules/datadog_monitor.py:214
secrets
plugins/modules/datadog_monitor.py:222
secrets
plugins/modules/datadog_monitor.py:229
secrets
plugins/modules/datadog_monitor.py:237
secrets
plugins/modules/etcd3.py:100
secrets
plugins/modules/github_deploy_key.py:101
secrets
plugins/modules/github_deploy_key.py:111
secrets
plugins/modules/github_deploy_key.py:130
secrets
plugins/modules/github_deploy_key.py:139
secrets
plugins/modules/github_deploy_key.py:151
secrets
plugins/modules/gitlab_group.py:191
secrets
plugins/modules/gitlab_group.py:202
secrets
plugins/modules/gitlab_group.py:214
secrets
plugins/modules/gitlab_project.py:357
secrets
plugins/modules/gitlab_project.py:371
secrets
plugins/modules/gitlab_user.py:164
secrets
plugins/modules/hponcfg.py:54
secrets
plugins/modules/htpasswd.py:81
secrets
plugins/modules/icinga2_host.py:116
secrets
plugins/modules/imc_rest.py:381
secrets
plugins/modules/jenkins_credential.py:193
secrets
plugins/modules/keycloak_authentication_required_actions.py:90
secrets
plugins/modules/keycloak_authentication_required_actions.py:105
secrets
plugins/modules/keycloak_authentication_required_actions.py:118
secrets
plugins/modules/ldap_entry.py:99
secrets
plugins/modules/linode.py:184
secrets
plugins/modules/linode.py:201
secrets
plugins/modules/linode.py:236
secrets
plugins/modules/linode.py:252
secrets
plugins/modules/linode.py:260
secrets
plugins/modules/linode.py:268
secrets
plugins/modules/linode.py:189
secrets
plugins/modules/linode.py:207
secrets
plugins/modules/linode.py:241
secrets
plugins/modules/manageiq_alert_profiles.py:67
secrets
plugins/modules/manageiq_alert_profiles.py:77
secrets
plugins/modules/manageiq_alerts.py:84
secrets
plugins/modules/manageiq_alerts.py:111
secrets
plugins/modules/manageiq_alerts.py:121
secrets
plugins/modules/manageiq_group.py:97
secrets
plugins/modules/manageiq_group.py:108
secrets
plugins/modules/manageiq_group.py:134
secrets
plugins/modules/manageiq_group.py:144
secrets
plugins/modules/manageiq_policies.py:83
secrets
plugins/modules/manageiq_policies.py:96
secrets
plugins/modules/manageiq_policies_info.py:64
secrets
plugins/modules/manageiq_provider.py:318
secrets
plugins/modules/manageiq_provider.py:350
secrets
plugins/modules/manageiq_provider.py:362
secrets
plugins/modules/manageiq_provider.py:389
secrets
plugins/modules/manageiq_provider.py:399
secrets
plugins/modules/manageiq_provider.py:408
secrets
plugins/modules/manageiq_provider.py:421
secrets
plugins/modules/manageiq_provider.py:438
secrets
plugins/modules/manageiq_provider.py:442
secrets
plugins/modules/manageiq_provider.py:454
secrets
plugins/modules/manageiq_provider.py:478
secrets
plugins/modules/manageiq_tags.py:86
secrets
plugins/modules/manageiq_tags.py:101
secrets
plugins/modules/manageiq_tags.py:117
secrets
plugins/modules/manageiq_tags_info.py:62
secrets
plugins/modules/manageiq_tenant.py:79
secrets
plugins/modules/manageiq_tenant.py:90
secrets
plugins/modules/manageiq_tenant.py:101
secrets
plugins/modules/manageiq_tenant.py:115
secrets
plugins/modules/manageiq_user.py:68
secrets
plugins/modules/manageiq_user.py:74
secrets
plugins/modules/manageiq_user.py:81
secrets
plugins/modules/manageiq_user.py:96
secrets
plugins/modules/manageiq_user.py:115
secrets
plugins/modules/sudoers.py:220
secrets
plugins/cache/redis.py:166
qualitylegacy
plugins/action/shutdown.py:28
qualitylegacy
plugins/action/iptables_state.py:170
qualitylegacy
plugins/modules/jboss.py:141
qualitylegacy
plugins/modules/iso_extract.py:199
qualitylegacy
plugins/modules/bitbucket_pipeline_known_host.py:131
qualitylegacy
plugins/modules/vertica_info.py:295
qualitylegacy
plugins/modules/vertica_configuration.py:191
qualitylegacy
plugins/callback/logentries.py:164
qualitylegacy
plugins/module_utils/_ssh.py:18
qualitylegacy
plugins/inventory/scaleway.py:320
qualitylegacy
plugins/inventory/opennebula.py:126
qualitylegacy
docs/docsite/reformat-yaml.py:17
qualitylegacy
plugins/modules/redis_data.py:188
injectionlegacy
plugins/modules/mssql_db.py:120
injectionlegacy
plugins/modules/ipwcli_dns.py:255
injectionlegacy
plugins/lookup/cyberarkpassword.py:142
path_traversallegacy
plugins/modules/packet_sshkey.py:156
path_traversallegacy
plugins/modules/kernel_blacklist.py:72
file_uploadlegacy
plugins/modules/aix_lvol.py:166
injectionlegacy
plugins/module_utils/_consul.py:86
injectionlegacy
.azure-pipelines/scripts/combine-coverage.py:40
injectionlegacy
.github/workflows/docs.yml:28
dependencylegacy
.github/workflows/nox.yml:24
dependencylegacy
.github/workflows/codeql-analysis.yml:27
dependencylegacy
.github/workflows/docs.yml:32
dependencylegacy
.github/workflows/nox.yml:28
dependencylegacy
.github/workflows/codeql-analysis.yml:38
dependencylegacy
.github/workflows/codeql-analysis.yml:33
dependencylegacy
.github/workflows/nox.yml:28
supply-chaingithub-actionspinned-dependencies
.github/workflows/docs.yml:32
supply-chaingithub-actionspinned-dependencies
plugins/modules/ali_instance.py:862
owaspeval_used
plugins/modules/memset_dns_reload.py:159
owaspeval_used
plugins/modules/memset_zone_domain.py:229
owaspeval_used
plugins/modules/memset_zone_record.py:354
owaspeval_used
plugins/modules/hwc_smn_topic.py:259
error_handlinglegacy
plugins/modules/bzr.py:91
error_handlinglegacy
plugins/module_utils/_ldap.py:101
error_handlinglegacy
plugins/cache/pickle.py:60
deserializationlegacy
docs/docsite/reformat-yaml.py:17
deserializationlegacy
plugins/modules/irc.py:252
cryptolegacy
plugins/modules/mqtt.py:149
cryptolegacy
plugins/module_utils/_mh/base.py:58
qualitylegacy
plugins/modules/gitlab_project_badge.py:86
qualitylegacy
plugins/module_utils/_gitlab.py:62
qualitylegacy
plugins/lookup/etcd.py:131
qualitylegacy
plugins/modules/nmcli.py:152
qualitylegacy
plugins/modules/mail.py:409
qualitylegacy
plugins/modules/capabilities.py:162
qualitylegacy
plugins/modules/utm_proxy_frontend_info.py:138
qualitylegacy
plugins/modules/datadog_monitor.py:498
qualitylegacy
plugins/modules/datadog_monitor.py:485
qualitylegacy
plugins/modules/datadog_monitor.py:462
qualitylegacy
plugins/modules/datadog_monitor.py:417
qualitylegacy
plugins/modules/datadog_monitor.py:384
qualitylegacy
plugins/modules/datadog_monitor.py:249
qualitylegacy
plugins/modules/utm_network_interface_address.py:129
qualitylegacy
plugins/modules/ipa_hbacrule.py:432
qualitylegacy
plugins/modules/runit.py:204
qualitylegacy
plugins/modules/btrfs_subvolume.py:273
qualitylegacy
plugins/modules/consul.py:625
qualitylegacy
plugins/modules/manageiq_group.py:484
qualitylegacy
plugins/modules/manageiq_group.py:394
qualitylegacy
plugins/modules/manageiq_group.py:315
qualitylegacy
plugins/modules/gitlab_project_approvals.py:146
qualitylegacy
plugins/modules/gitlab_project_approvals.py:131
qualitylegacy
.well-known/security.txt
qualitylegacy
.devcontainer/requirements-dev.txt:10
dependencylegacy
.devcontainer/requirements-dev.txt:9
dependencylegacy
.devcontainer/requirements-dev.txt:7
dependencylegacy
.devcontainer/requirements-dev.txt:5
dependencylegacy
.devcontainer/requirements-dev.txt:8
dependencylegacy
.devcontainer/requirements-dev.txt:6
dependencylegacy
plugins/modules/scaleway_database_backup.py:1
qualitylegacy
.github/workflows/codeql-analysis.yml:33
supply-chaingithub-actionspinned-dependencies
.github/workflows/codeql-analysis.yml:38
supply-chaingithub-actionspinned-dependencies
plugins/modules/cronvar.py:167
owaspsubprocess_shell_true
plugins/modules/keyring.py:107
owaspsubprocess_shell_true
plugins/modules/keyring_info.py:86
owaspsubprocess_shell_true
plugins/modules/openbsd_pkg.py:252
owaspsubprocess_shell_true
plugins/modules/portinstall.py:75
owaspsubprocess_shell_true
plugins/modules/keycloak_user_federation.py:796
owaspweak_hash
plugins/modules/nsupdate.py:242
owaspweak_hash
plugins/modules/mail.py
securityports
plugins/modules/lvm_pv.py:101
race_conditionlegacy
plugins/modules/gunicorn.py:120
race_conditionlegacy
plugins/module_utils/_stormssh.py:113
race_conditionlegacy
plugins/modules/scaleway_database_backup.py:1
qualitylegacy
plugins/modules/django_loaddata.py:43
qualitylegacy
plugins/modules/django_loaddata.py:40
qualitylegacy
plugins/modules/django_loaddata.py:36
qualitylegacy
plugins/modules/django_createcachetable.py:27
qualitylegacy
plugins/modules/datadog_monitor.py:228
qualitylegacy
plugins/modules/datadog_monitor.py:10
qualitylegacy
plugins/modules/consul_token.py:11
qualitylegacy
plugins/modules/consul_binding_rule.py:11
qualitylegacy
plugins/modules/consul_binding_rule.py:9
qualitylegacy
plugins/modules/consul_auth_method.py:11
qualitylegacy
plugins/modules/cobbler_system.py:14
qualitylegacy
plugins/modules/btrfs_subvolume.py:153
qualitylegacy
plugins/modules/bitbucket_pipeline_variable.py:18
qualitylegacy
plugins/modules/bitbucket_pipeline_variable.py:7
qualitylegacy
plugins/modules/bitbucket_pipeline_known_host.py:15
qualitylegacy
plugins/modules/bitbucket_pipeline_key_pair.py:7
qualitylegacy
plugins/module_utils/_scaleway.py:135
qualitylegacy
plugins/lookup/onepassword_ssh_key.py:72
qualitylegacy
plugins/lookup/onepassword_ssh_key.py:69
qualitylegacy
plugins/lookup/onepassword_raw.py:46
qualitylegacy
plugins/lookup/onepassword_doc.py:48
qualitylegacy
plugins/lookup/onepassword_raw.py:53
qualitylegacy
plugins/filter/remove_keys.py:21
qualitylegacy
plugins/connection/zone.py:137
qualitylegacy
plugins/connection/zone.py:110
qualitylegacy
plugins/connection/lxd.py:45
qualitylegacy
plugins/connection/jail.py:91
qualitylegacy
plugins/cache/yaml.py:19
qualitylegacy
plugins/cache/redis.py:19
qualitylegacy
plugins/become/run0.py:77
qualitylegacy
plugins/modules/scaleway_database_backup.py:1
qualitylegacy
.github/workflows/codeql-analysis.yml:27
supply-chaingithub-actionspinned-dependencies
.github/workflows/nox.yml:24
supply-chaingithub-actionspinned-dependencies
.github/workflows/docs.yml:28
supply-chaingithub-actionspinned-dependencies
plugins/callback/elastic.py:286
owaspdebug_true
Showing first 300 of 370. Refine filters or use the legacy findings page for deep search.
This page is publicly accessible at:
https://repobility.com/scan/29433b5c-fbf4-4b2b-a41c-fe10525cb172/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/29433b5c-fbf4-4b2b-a41c-fe10525cb172/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.