https://github.com/google-ai-edge/gallery.git
· scanned 2026-05-17 03:24 UTC (12 hours, 57 minutes ago)
· 10 languages
45 findings (21 legacy + 24 scanner) Scanner says 90 (lower by 33)
Last scanned 12 hours, 57 minutes ago · v2 · 33 findings from 2 sources. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
Showing 33 of 33 findings. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
Android/src/app/src/main/java/com/google/ai/edge/gallery/customtasks/agentchat/SkillManagerViewModel.kt:184
path_traversallegacy
Android/src/app/src/main/java/com/google/ai/edge/gallery/customtasks/agentchat/AddSkillFromFeaturedListBottomSheet.kt:114
ssrflegacy
Android/src/app/src/main/java/com/google/ai/edge/gallery/common/Utils.kt:76
ssrflegacy
Android/src/app/src/main/java/com/google/ai/edge/gallery/FcmMessagingService.kt:103
ssrflegacy
Android/src/app/src/main/java/com/google/ai/edge/gallery/worker/DownloadWorker.kt:283
path_traversallegacy
.github/workflows/static.yml
supply-chaingithub-actionsleast-privilege
Android/src/app/src/main/java/com/google/ai/edge/gallery/ui/common/SmallOutlinedButton.kt:30
qualitylegacy
Android/src/app/src/main/java/com/google/ai/edge/gallery/customtasks/agentchat/McpToolManagerBottomSheet.kt:82
qualitylegacy
Android/src/app/src/main/java/com/google/ai/edge/gallery/customtasks/agentchat/McpManagerBottomSheet.kt:202
qualitylegacy
Android/src/app/src/main/java/com/google/ai/edge/gallery/customtasks/agentchat/AddSkillFromLocalImportDialog.kt:125
qualitylegacy
Android/src/app/src/main/java/com/google/ai/edge/gallery/ui/notifications/NotificationsScreen.kt:99
qualitylegacy
Android/src/app/src/main/java/com/google/ai/edge/gallery/ui/modelmanager/ModelImportDialog.kt:155
qualitylegacy
Android/src/app/src/main/java/com/google/ai/edge/gallery/ui/llmsingleturn/LlmSingleTurnTaskModule.kt:53
qualitylegacy
Android/src/app/src/main/java/com/google/ai/edge/gallery/ui/llmsingleturn/LlmSingleTurnTaskModule.kt:32
qualitylegacy
Android/src/app/src/main/java/com/google/ai/edge/gallery/ui/llmchat/LlmChatModelHelper.kt:39
qualitylegacy
Android/src/app/src/main/java/com/google/ai/edge/gallery/ui/common/chat/TextInputHistorySheet.kt:157
qualitylegacy
Android/src/app/src/main/java/com/google/ai/edge/gallery/ui/home/SettingsDialog.kt:91
qualitylegacy
Android/src/app/src/main/java/com/google/ai/edge/gallery/ui/common/textandvoiceinput/HoldToDictate.kt:47
qualitylegacy
Android/src/app/src/main/java/com/google/ai/edge/gallery/ui/common/modelitem/ModelItem.kt:399
qualitylegacy
Android/src/app/src/main/java/com/google/ai/edge/gallery/customtasks/tinygarden/TinyGardenScreen.kt:115
qualitylegacy
Android/src/app/src/main/java/com/google/ai/edge/gallery/customtasks/agentchat/AddSkillFromUrlDialog.kt:129
qualitylegacy
.github/workflows/build_android.yaml:23
supply-chaingithub-actionspinned-dependencies
.github/workflows/static.yml:35
supply-chaingithub-actionspinned-dependencies
.github/workflows/static.yml:43
supply-chaingithub-actionspinned-dependencies
.github/workflows/static.yml:45
supply-chaingithub-actionspinned-dependencies
.github/workflows/static.yml:51
supply-chaingithub-actionspinned-dependencies
This page is publicly accessible at:
https://repobility.com/scan/329edd7e-4b0b-4a56-a4f1-b89a21424c7f/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/329edd7e-4b0b-4a56-a4f1-b89a21424c7f/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.