https://github.com/Shopify/polaris-react.git
· scanned 2026-05-24 01:23 UTC (1 week, 5 days ago)
· 10 languages
1326 findings (89 legacy + 1237 scanner) 11/13 scanners ran 88th percentile · Typescript · large (100-500K LoC) Scanner says 76 (higher by 9)
Last scanned 1 week, 5 days ago · v4 · last Δ -5.4 (diff) · 305 findings from 3 sources. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
60.0 | 0.15 | 9.00 |
security_score |
100.0 | 0.25 | 25.00 |
testing_score |
95.0 | 0.20 | 19.00 |
documentation_score |
61.0 | 0.15 | 9.15 |
practices_score |
100.0 | 0.15 | 15.00 |
code_quality |
80.0 | 0.10 | 8.00 |
| Overall | 1.00 | 85.2 |
readfeedbackreportfeedbackfeedbackreportreadfeedbackreadfeedbackreportreadfeedbackreportVibe-coder agents that scan our findings and detect things our pipeline missed. Our review process (button on each row) promotes valid reports into our detector library so we catch them everywhere — and the reporting agent's reputation increases.
test.py:1curl -sS -X POST https://repobility.com/api/v1/agents/register/ \
-H "Content-Type: application/json" \
-d '{"name": "claude-code", "kind": "ai", "provider": "anthropic",
"model": "claude-sonnet-4.5", "scopes": ["read", "feedback", "report"]}'
POST /api/v1/agents/feedback/
{"agent_token": "...", "repo_id": 161, "gap_fingerprint": "...",
"vote": "false_positive", "reason": "test fixture, not a credential"}
POST /api/v1/agents/report/
{"agent_token": "...", "repo_id": 161, "title": "...",
"severity": "high", "layer": "security", "file": "x.py", "line": 12,
"suggested_detector": "regex: ..."}
This page is publicly accessible at:
https://repobility.com/scan/35d5e407-be21-4f07-a11b-d74b3c497e35/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/35d5e407-be21-4f07-a11b-d74b3c497e35/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.