https://github.com/threahq/threa
· scanned 2026-06-16 00:36 UTC (2 months, 2 weeks ago)
603 raw signals (0 security + 603 graph)
Last scanned 2 months, 2 weeks ago · v1 · 565 actionable findings from 1 signal source. 38 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
Showing 202 of 565 actionable findings. 603 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
apps/public-site/src/scripts/playground.ts:37
.env.remote-dev
ConfigEnv fileRuntime env
CLAUDE.md:311
SecretsClaude instruction
.claude/commands/pr-review-response.md
VerificationClaude instruction
.claude/settings.json
VerificationClaude instruction
.mcp.json
VerificationMcp config
apps/frontend/AGENTS.md
VerificationAgents md
.github/workflows/deploy-cloudflare.yml:29, 40, 67, 78, 105, 113, 140, 151, +2 more (10 hits).github/workflows/ci.yml:26, 69, 139, 148 (4 hits).coderabbit.yaml:63
Dangerous innerhtml
apps/frontend/src/components/ui/chart.tsx:70
Dangerous innerhtml
apps/frontend/src/lib/markdown/code-block.tsx:213
Dangerous innerhtml
apps/frontend/vite.config.ts:5
Node child process
extensions/pi-remote/src/threa-remote.ts:1
Node child process
CLAUDE.md
Ports
.github/workflows/deploy-cloudflare.yml:19, 24, 57, 62, 95, 100, 130, 135, +2 more (10 hits).github/workflows/browser-tests.yml:92, 186, 195, 204, 218, 279, 291 (7 hits).github/workflows/slash-commands.yml:26, 46, 67, 114, 128 (5 hits).github/workflows/ci.yml:23, 66, 134 (3 hits).github/workflows/staging.yml:113apps/backend/package.json
LockfileReproducibilityGenerated repo pattern
apps/backoffice-router/package.json
LockfileReproducibilityGenerated repo pattern
apps/backoffice/package.json
LockfileReproducibilityGenerated repo pattern
apps/control-plane/package.json
LockfileReproducibilityGenerated repo pattern
apps/db-read-proxy/package.json
LockfileReproducibilityGenerated repo pattern
apps/enclave/package.json
LockfileReproducibilityGenerated repo pattern
apps/frontend/package.json
LockfileReproducibilityGenerated repo pattern
apps/public-site/package.json
LockfileReproducibilityGenerated repo pattern
apps/workspace-router/package.json
LockfileReproducibilityGenerated repo pattern
extensions/pi-remote/package.json
LockfileReproducibilityGenerated repo pattern
packages/agent-runtime/package.json
LockfileReproducibilityGenerated repo pattern
packages/backend-common/package.json
LockfileReproducibilityGenerated repo pattern
packages/crypto/package.json
LockfileReproducibilityGenerated repo pattern
packages/prosemirror/package.json
LockfileReproducibilityGenerated repo pattern
packages/types/package.json
LockfileReproducibilityGenerated repo pattern
package.json
CI/CD securitySupply chainNpm
This page is publicly accessible at:
https://repobility.com/scan/39e94e9e-110a-4d61-9a44-76acc238ea2c/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/39e94e9e-110a-4d61-9a44-76acc238ea2c/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.