https://github.com/lightseekorg/tokenspeed
· scanned 2026-05-16 22:31 UTC (17 hours, 49 minutes ago)
· 10 languages
746 findings (51 legacy + 695 scanner) 60th percentile · Python · large (100-500K LoC) Scanner says 70 (higher by 3)
Last scanned 17 hours, 49 minutes ago · v1 · 746 findings from 2 sources. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
Showing 739 of 746 findings. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
python/tokenspeed/runtime/pd/mini_lb.py:60
ssrflegacy
python/tokenspeed/runtime/cache/storage/mooncake_store/mooncake_store.py:288
ssrflegacy
python/tokenspeed/bench.py:285
ssrflegacy
docker/Dockerfile:4
dockerlegacy
python/tokenspeed/runtime/pd/mini_lb.py:433
authowaspauth.fastapi.unauth_mutation
python/tokenspeed/runtime/pd/mini_lb.py:585
authowaspauth.fastapi.unauth_mutation
python/tokenspeed/runtime/pd/mini_lb.py:590
authowaspauth.fastapi.unauth_mutation
python/tokenspeed/runtime/pd/mini_lb.py:494
authowaspauth.fastapi.unauth_mutation
.github/workflows/release-docker.yml:24
supply-chaingithub-actionspinned-dependencies
python/tokenspeed/runtime/model_loader/loader.py:397
owaspeval_used
python/tokenspeed/runtime/models/extensible.py:150
owaspeval_used
python/tokenspeed/runtime/models/deepseek_v4.py:2808
error_handlinglegacy
python/tokenspeed/runtime/layers/deepseek_v4_mhc.py:62
error_handlinglegacy
python/tokenspeed/_logging.py:109
error_handlinglegacy
python/tokenspeed/runtime/utils/common.py:418
deserializationlegacy
python/tokenspeed/runtime/distributed/utils.py:132
deserializationlegacy
python/tokenspeed/runtime/model_loader/weight_utils.py:333
deserializationlegacy
python/tokenspeed/bench.py:742
cryptolegacy
python/tokenspeed/cli/serve_smg.py:13
qualitylegacy
docker/Dockerfile:11
dockerlegacy
.github/workflows/docs.yml:35
supply-chaingithub-actionspinned-dependencies
.github/workflows/release-tokenspeed-kernel.yml
supply-chaingithub-actionsleast-privilege
.github/workflows/release-tokenspeed-scheduler.yml
supply-chaingithub-actionsleast-privilege
.github/workflows/docs.yml
supply-chaingithub-actionsleast-privilege
.github/workflows/update-tokenspeed-kernel-mla.yml
supply-chaingithub-actionsleast-privilege
.github/workflows/update-tokenspeed-mla-version.yml
supply-chaingithub-actionsleast-privilege
.github/workflows/update-tokenspeed-kernel-flashinfer.yml
supply-chaingithub-actionsleast-privilege
.dockerignore
dockerlegacy
docker/Dockerfile:16
dockerlegacy
python/tokenspeed/runtime/models/deepseek_v3.py:1
qualitylegacy
python/tokenspeed/runtime/models/deepseek_v4.py:1
qualitylegacy
python/tokenspeed/runtime/models/qwen2.py:355
qualitylegacy
python/tokenspeed/runtime/models/minimax_m2.py:660
qualitylegacy
python/tokenspeed/runtime/models/minimax_m2.py:565
qualitylegacy
python/tokenspeed/runtime/models/minimax_m2.py:530
qualitylegacy
python/tokenspeed/runtime/models/llama_eagle3.py:118
qualitylegacy
python/tokenspeed/runtime/models/llama_eagle3.py:47
qualitylegacy
python/tokenspeed/runtime/layers/moe/backends/w8a8_fp8/triton.py:44
qualitylegacy
python/tokenspeed/runtime/layers/moe/backends/unquantized/triton.py:28
qualitylegacy
python/tokenspeed/runtime/layers/moe/backends/unquantized/flashinfer_trtllm.py:47
qualitylegacy
python/tokenspeed/runtime/layers/moe/backends/nvfp4/flashinfer_cutlass.py:33
qualitylegacy
python/tokenspeed/runtime/layers/moe/backends/fp8/triton.py:23
qualitylegacy
python/tokenspeed/runtime/layers/dense/w8a8_fp8.py:86
qualitylegacy
python/tokenspeed/runtime/layers/attention/linear/wy_fast.py:26
qualitylegacy
python/tokenspeed/runtime/layers/attention/linear/wy_fast.py:25
qualitylegacy
python/tokenspeed/runtime/layers/attention/linear/solve_tril.py:17
qualitylegacy
python/tokenspeed/runtime/layers/attention/linear/cumsum.py:31
qualitylegacy
python/tokenspeed/runtime/layers/attention/kv_cache/mla.py:31
qualitylegacy
python/tokenspeed/runtime/layers/attention/configs/mla.py:19
qualitylegacy
python/tokenspeed/runtime/layers/attention/backends/trtllm_mla.py:182
qualitylegacy
python/tokenspeed/runtime/layers/attention/backends/trtllm_mla.py:65
qualitylegacy
python/tokenspeed/runtime/layers/attention/backends/trtllm.py:379
qualitylegacy
python/tokenspeed/runtime/layers/attention/backends/triton.py:711
qualitylegacy
python/tokenspeed/runtime/layers/attention/backends/triton.py:650
qualitylegacy
python/tokenspeed/runtime/layers/attention/backends/tokenspeed_mla.py:204
qualitylegacy
python/tokenspeed/runtime/engine/scheduler_control_client.py:59
qualitylegacy
python/tokenspeed/runtime/engine/request.py:212
qualitylegacy
python/tokenspeed/runtime/distributed/comm_backend/trtllm_allreduce.py:114
qualitylegacy
python/tokenspeed/runtime/distributed/comm_backend/triton_allreduce.py:53
qualitylegacy
python/tokenspeed/runtime/configs/qwen3_config.py:118
qualitylegacy
python/tokenspeed/runtime/configs/qwen3_config.py:46
qualitylegacy
tokenspeed-kernel/python/tokenspeed_kernel/ops/attention/triton/deepseek_v4.py:1
qualitylegacy
python/tokenspeed/runtime/models/deepseek_v3.py:1
qualitylegacy
python/tokenspeed/runtime/layers/attention/kv_cache/deepseek_v4.py:1
qualitylegacy
python/tokenspeed/runtime/layers/attention/backends/deepseek_v4.py:1
qualitylegacy
docker/Dockerfile:2
supply-chaindockerpinned-dependencies
.github/workflows/release-tokenspeed-kernel.yml:46
supply-chaingithub-actionspinned-dependencies
.github/workflows/release-tokenspeed-kernel.yml:49
supply-chaingithub-actionspinned-dependencies
.github/workflows/release-tokenspeed-kernel.yml:119
supply-chaingithub-actionspinned-dependencies
.github/workflows/release-tokenspeed-kernel.yml:209
supply-chaingithub-actionspinned-dependencies
.github/workflows/release-tokenspeed-kernel.yml:220
supply-chaingithub-actionspinned-dependencies
.github/workflows/release-tokenspeed-kernel.yml:223
supply-chaingithub-actionspinned-dependencies
.github/workflows/release-tokenspeed-kernel.yml:240
supply-chaingithub-actionspinned-dependencies
.github/workflows/release-tokenspeed-kernel.yml:251
supply-chaingithub-actionspinned-dependencies
.github/workflows/release-tokenspeed-kernel.yml:254
supply-chaingithub-actionspinned-dependencies
.github/workflows/release-tokenspeed-scheduler.yml:29
supply-chaingithub-actionspinned-dependencies
.github/workflows/release-tokenspeed-scheduler.yml:32
supply-chaingithub-actionspinned-dependencies
.github/workflows/release-tokenspeed-scheduler.yml:44
supply-chaingithub-actionspinned-dependencies
.github/workflows/release-tokenspeed-scheduler.yml:54
supply-chaingithub-actionspinned-dependencies
.github/workflows/release-tokenspeed-scheduler.yml:57
supply-chaingithub-actionspinned-dependencies
.github/workflows/release-tokenspeed-scheduler.yml:69
supply-chaingithub-actionspinned-dependencies
.github/workflows/release-tokenspeed-scheduler.yml:80
supply-chaingithub-actionspinned-dependencies
.github/workflows/release-tokenspeed-scheduler.yml:83
supply-chaingithub-actionspinned-dependencies
.github/workflows/release-tokenspeed-scheduler.yml:108
supply-chaingithub-actionspinned-dependencies
.github/workflows/lint.yml:16
supply-chaingithub-actionspinned-dependencies
.github/workflows/docs.yml:32
supply-chaingithub-actionspinned-dependencies
.github/workflows/docs.yml:49
supply-chaingithub-actionspinned-dependencies
.github/workflows/docs.yml:63
supply-chaingithub-actionspinned-dependencies
.github/workflows/update-tokenspeed-kernel-mla.yml:24
supply-chaingithub-actionspinned-dependencies
.github/workflows/update-tokenspeed-mla-version.yml:24
supply-chaingithub-actionspinned-dependencies
.github/workflows/release-docker.yml:34
supply-chaingithub-actionspinned-dependencies
.github/workflows/release-pypi.yml:17
supply-chaingithub-actionspinned-dependencies
.github/workflows/release-pypi.yml:22
supply-chaingithub-actionspinned-dependencies
.github/workflows/update-tokenspeed-kernel-flashinfer.yml:24
supply-chaingithub-actionspinned-dependencies
tokenspeed-kernel/python/tokenspeed_kernel/ops/moe/triton.py:825
dead-code
tokenspeed-mla/python/tokenspeed_mla/utils.py:343
dead-code
tokenspeed-mla/python/tokenspeed_mla/utils.py:267
dead-code
tokenspeed-kernel/python/tokenspeed_kernel/_triton.py:61
dead-code
tokenspeed-mla/python/tokenspeed_mla/utils.py:64
dead-code
tokenspeed-kernel/python/tokenspeed_kernel/registry.py:328
dead-code
tokenspeed-kernel/python/tokenspeed_kernel/registry.py:387
dead-code
tokenspeed-kernel/python/setup.py:753
dead-code
tokenspeed-mla/python/tokenspeed_mla/fmha.py:3513
dead-code
tokenspeed-mla/python/tokenspeed_mla/mla_decode_fp8.py:4371
dead-code
tokenspeed-mla/python/tokenspeed_mla/mla_decode_fp16.py:4189
dead-code
tokenspeed-kernel/python/tokenspeed_kernel/ops/gemm/triton.py:439
dead-code
tokenspeed-kernel/python/setup.py:750
dead-code
tokenspeed-mla/python/tokenspeed_mla/mla_decode_fp8.py:4506
dead-code
tokenspeed-mla/python/tokenspeed_mla/mla_decode_fp16.py:4329
dead-code
tokenspeed-mla/python/tokenspeed_mla/fmha.py:3625
dead-code
tokenspeed-kernel/python/tokenspeed_kernel/ops/moe/deepep.py:116
dead-code
tokenspeed-mla/python/tokenspeed_mla/fmha.py:2349
dead-code
tokenspeed-kernel/python/tokenspeed_kernel/numerics/quantize.py:46
dead-code
tokenspeed-kernel/python/tokenspeed_kernel/numerics/moe.py:44
dead-code
tokenspeed-kernel/python/tokenspeed_kernel/numerics/gemm.py:61
dead-code
tokenspeed-kernel/python/tokenspeed_kernel/thirdparty/cuda/trtllm.py:402
dead-code
tokenspeed-kernel/python/tokenspeed_kernel/thirdparty/cuda/trtllm.py:550
dead-code
tokenspeed-kernel/python/tokenspeed_kernel/thirdparty/cuda/trtllm.py:448
dead-code
tokenspeed-kernel/python/tokenspeed_kernel/thirdparty/cuda/trtllm.py:874
dead-code
tokenspeed-kernel/python/tokenspeed_kernel/thirdparty/cuda/trtllm.py:595
dead-code
Showing first 300 of 739. Refine filters or use the legacy findings page for deep search.
{# ── 2026-05-17 Round 14: AI-agent bridge footer ────────────────────── Discoverability: the /agents/voting/ guide + MCP manifest exist but aren't linked from anywhere users actually land. Small, opt-in footer. #}
This page is publicly accessible at:
https://repobility.com/scan/36c59998-1773-42d3-8cb0-456402726f35/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/36c59998-1773-42d3-8cb0-456402726f35/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.