Scan timing: clone 2.41s · analysis 6.51s · 4.2 MB · GitHub API rate-limit (preflight)
https://github.com/e2b-dev/E2B
· scanned 2026-05-31 01:23 UTC (5 days, 7 hours ago)
· 10 languages
661 findings (208 legacy + 453 scanner) 86th percentile · Python · medium (20-100K LoC) Scanner says 73 (higher by 8)
Last scanned 5 days, 7 hours ago · v2 · 436 findings from 2 sources. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
60.0 | 0.15 | 9.00 |
security_score |
89.6 | 0.25 | 22.40 |
testing_score |
100.0 | 0.20 | 20.00 |
documentation_score |
79.0 | 0.15 | 11.85 |
practices_score |
84.0 | 0.15 | 12.60 |
code_quality |
54.1 | 0.10 | 5.41 |
| Overall | 1.00 | 81.3 |
Showing 315 of 436 findings. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
packages/js-sdk/src/undici.ts:16
qualitylegacy
packages/python-sdk/e2b/sandbox_sync/commands/command_handle.py:121
qualitylegacy
packages/python-sdk/e2b/sandbox_async/filesystem/watch_handle.py:39
qualitylegacy
packages/python-sdk/e2b/sandbox_async/commands/command_handle.py:143
qualitylegacy
packages/cli/src/commands/sandbox/info.ts:97
xsslegacy
packages/python-sdk/e2b/template/dockerfile_parser.py:1
dockerlegacy
packages/js-sdk/src/template/dockerfileParser.ts:1
dockerlegacy
packages/js-sdk/src/utils.ts:99
qualitylegacy
packages/python-sdk/e2b_connect/client.py:341
qualitylegacy
packages/python-sdk/e2b/connection_config.py:138
qualitylegacy
packages/python-sdk/e2b_connect/client.py:410
qualitylegacy
packages/python-sdk/e2b_connect/client.py:376
qualitylegacy
packages/python-sdk/e2b_connect/client.py:298
qualitylegacy
packages/python-sdk/e2b_connect/client.py:277
qualitylegacy
packages/python-sdk/e2b_connect/client.py:306
qualitylegacy
packages/python-sdk/e2b_connect/client.py:285
qualitylegacy
packages/python-sdk/e2b/connection_config.py:158
qualitylegacy
packages/python-sdk/e2b/connection_config.py:160
qualitylegacy
packages/python-sdk/e2b/connection_config.py:145
qualitylegacy
packages/python-sdk/e2b/connection_config.py:151
qualitylegacy
packages/python-sdk/e2b/connection_config.py:211
qualitylegacy
packages/python-sdk/e2b_connect/client.py:499
qualitylegacy
packages/python-sdk/e2b_connect/client.py:483
qualitylegacy
packages/python-sdk/e2b_connect/client.py:488
qualitylegacy
packages/python-sdk/e2b_connect/client.py:470
qualitylegacy
.github/workflows/publish_packages.yml:27
dependencylegacy
.github/workflows/pkg_artifacts.yml:18
dependencylegacy
.github/workflows/publish_packages.yml:20
dependencylegacy
.github/workflows/pkg_artifacts.yml:32
dependencylegacy
.github/workflows/publish_packages.yml:56
dependencylegacy
.github/workflows/publish_packages.yml:39
dependencylegacy
.github/workflows/pkg_artifacts.yml:62
dependencylegacy
.github/workflows/publish_packages.yml:81
dependencylegacy
.github/workflows/pkg_artifacts.yml:26
dependencylegacy
.github/workflows/publish_packages.yml:50
dependencylegacy
.github/workflows/publish_packages.yml:44
dependencylegacy
.github/workflows/pkg_artifacts.yml:21
dependencylegacy
.github/workflows/publish_packages.yml:32
dependencylegacy
packages/js-sdk/src/envd/schema.gen.ts:56
authlegacy
codegen.Dockerfile:1
dependencylegacy
codegen.Dockerfile:11
dependencylegacy
templates/base/e2b.Dockerfile:1
dependencylegacy
packages/python-sdk/e2b/template/dockerfile_parser.py:276
error_handlinglegacy
packages/python-sdk/e2b/sandbox_async/filesystem/watch_handle.py:39
error_handlinglegacy
packages/python-sdk/e2b/sandbox_async/commands/command_handle.py:143
error_handlinglegacy
packages/cli/src/commands/sandbox/create.ts:116
error_handlinglegacy
packages/python-sdk/e2b/template/dockerfile_parser.py:5
dockerlegacy
packages/python-sdk/e2b/sandbox_sync/main.py:193
qualitylegacy
packages/python-sdk/e2b/sandbox_async/main.py:195
qualitylegacy
packages/python-sdk/e2b/sandbox/sandbox_api.py:1
qualitylegacy
packages/python-sdk/e2b/sandbox_sync/commands/command_handle.py:123
qualitylegacy
packages/python-sdk/e2b/sandbox/_git/parse.py:46
qualitylegacy
packages/python-sdk/e2b/sandbox/_git/parse.py:41
qualitylegacy
packages/python-sdk/e2b/sandbox_async/filesystem/watch_handle.py:61
qualitylegacy
packages/python-sdk/e2b/sandbox_async/commands/command_handle.py:163
qualitylegacy
packages/python-sdk/e2b/sandbox_async/git.py:224
qualitylegacy
packages/python-sdk/e2b/sandbox_async/git.py:210
qualitylegacy
packages/python-sdk/e2b/sandbox_async/git.py:144
qualitylegacy
packages/python-sdk/e2b/sandbox_sync/git.py:245
qualitylegacy
packages/python-sdk/e2b/sandbox_sync/git.py:231
qualitylegacy
packages/python-sdk/e2b/sandbox_sync/git.py:144
qualitylegacy
packages/python-sdk/e2b/template/utils.py:348
qualitylegacy
packages/js-sdk/src/sandbox/sandboxApi.ts:854
qualitylegacy
packages/cli/src/commands/sandbox/list.ts:98
qualitylegacy
.dockerignore
dockerlegacy
packages/python-sdk/e2b/template_async/build_api.py:203
qualitylegacy
packages/python-sdk/e2b/template_sync/build_api.py:202
qualitylegacy
.well-known/security.txt
qualitylegacy
packages/connect-python/requirements-dev.txt:4
dependencylegacy
packages/connect-python/requirements-dev.txt:3
dependencylegacy
packages/connect-python/requirements-dev.txt:5
dependencylegacy
.github/workflows/publish_packages.yml:32
supply-chaingithub-actionspinned-dependencies
.github/workflows/publish_packages.yml:44
supply-chaingithub-actionspinned-dependencies
.github/workflows/publish_packages.yml:81
supply-chaingithub-actionspinned-dependencies
.github/workflows/pkg_artifacts.yml:21
supply-chaingithub-actionspinned-dependencies
.github/workflows/pkg_artifacts.yml:89
supply-chaingithub-actionspinned-dependencies
.github/workflows/typecheck.yml:18
supply-chaingithub-actionspinned-dependencies
.github/workflows/typecheck.yml:48
supply-chaingithub-actionspinned-dependencies
.github/workflows/lint.yml:18
supply-chaingithub-actionspinned-dependencies
.github/workflows/lint.yml:48
supply-chaingithub-actionspinned-dependencies
.github/workflows/supabase.yml:31
supply-chaingithub-actionspinned-dependencies
.github/workflows/templates.yml:27
supply-chaingithub-actionspinned-dependencies
.github/workflows/templates.yml:30
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:66
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:73
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:156
supply-chaingithub-actionspinned-dependencies
.github/workflows/publish_candidates.yml:38
supply-chaingithub-actionspinned-dependencies
.github/workflows/publish_candidates.yml:76
supply-chaingithub-actionspinned-dependencies
.github/workflows/generated_files.yml:18
supply-chaingithub-actionspinned-dependencies
.github/workflows/generated_files.yml:25
supply-chaingithub-actionspinned-dependencies
.github/workflows/generated_files.yml:47
supply-chaingithub-actionspinned-dependencies
.github/workflows/generated_files.yml:50
supply-chaingithub-actionspinned-dependencies
.github/workflows/publish_packages.yml
supply-chaingithub-actionsleast-privilege
.github/workflows/release.yml
supply-chaingithub-actionsleast-privilege
.github/workflows/publish_candidates.yml
supply-chaingithub-actionsleast-privilege
packages/python-sdk/e2b/template/dockerfile_parser.py:1
dockerlegacy
packages/js-sdk/src/template/dockerfileParser.ts:1
dockerlegacy
packages/python-sdk/e2b/api/client/api/tags/post_templates_tags.py:26
qualitylegacy
packages/python-sdk/e2b/api/client/api/tags/delete_templates_tags.py:29
qualitylegacy
packages/python-sdk/e2b/api/client/api/tags/delete_templates_tags.py:26
qualitylegacy
packages/python-sdk/e2b/api/client/api/sandboxes/put_sandboxes_sandbox_id_network.py:22
qualitylegacy
packages/python-sdk/e2b/api/client/api/sandboxes/put_sandboxes_sandbox_id_network.py:21
qualitylegacy
packages/python-sdk/e2b/api/client/api/sandboxes/put_sandboxes_sandbox_id_network.py:17
qualitylegacy
packages/python-sdk/e2b/api/client/api/sandboxes/post_sandboxes_sandbox_id_timeout.py:23
qualitylegacy
packages/python-sdk/e2b/api/client/api/sandboxes/post_sandboxes_sandbox_id_timeout.py:19
qualitylegacy
packages/python-sdk/e2b/api/client/api/sandboxes/post_sandboxes_sandbox_id_snapshots.py:33
qualitylegacy
packages/python-sdk/e2b/api/client/api/sandboxes/post_sandboxes_sandbox_id_snapshots.py:30
qualitylegacy
packages/python-sdk/e2b/api/client/api/sandboxes/post_sandboxes_sandbox_id_snapshots.py:29
qualitylegacy
packages/python-sdk/e2b/api/client/api/sandboxes/post_sandboxes_sandbox_id_resume.py:42
qualitylegacy
packages/python-sdk/e2b/api/client/api/sandboxes/post_sandboxes_sandbox_id_resume.py:37
qualitylegacy
packages/python-sdk/e2b/api/client/api/sandboxes/post_sandboxes_sandbox_id_resume.py:28
qualitylegacy
packages/python-sdk/e2b/api/client/api/sandboxes/post_sandboxes_sandbox_id_refreshes.py:23
qualitylegacy
packages/python-sdk/e2b/api/client/api/sandboxes/post_sandboxes_sandbox_id_pause.py:14
qualitylegacy
packages/python-sdk/e2b/api/client/api/sandboxes/post_sandboxes_sandbox_id_connect.py:40
qualitylegacy
packages/js-sdk/src/envd/http2.ts:51
qualitylegacy
packages/python-sdk/e2b/api/client/api/sandboxes/post_sandboxes_sandbox_id_connect.py:34
qualitylegacy
packages/python-sdk/e2b/api/client/api/sandboxes/post_sandboxes_sandbox_id_connect.py:31
qualitylegacy
packages/python-sdk/e2b/api/client/api/sandboxes/post_sandboxes.py:27
qualitylegacy
packages/python-sdk/e2b/api/client/api/sandboxes/get_v_2_sandboxes_sandbox_id_logs.py:43
qualitylegacy
packages/python-sdk/e2b/api/client/api/sandboxes/get_v_2_sandboxes_sandbox_id_logs.py:42
qualitylegacy
packages/python-sdk/e2b/api/client/api/sandboxes/get_v2_sandboxes.py:32
qualitylegacy
packages/python-sdk/e2b/api/client/api/sandboxes/get_sandboxes_sandbox_id_metrics.py:36
qualitylegacy
packages/python-sdk/e2b/api/client/api/sandboxes/get_sandboxes_sandbox_id_logs.py:29
qualitylegacy
packages/python-sdk/e2b/api/client/api/sandboxes/get_sandboxes_sandbox_id_logs.py:28
qualitylegacy
packages/python-sdk/e2b/api/client/api/sandboxes/get_sandboxes_sandbox_id.py:22
qualitylegacy
packages/python-sdk/e2b/api/client/api/sandboxes/get_sandboxes_metrics.py:26
qualitylegacy
packages/js-sdk/src/envd/process/process_pb.ts:1
qualitylegacy
.github/workflows/publish_packages.yml:27
supply-chaingithub-actionspinned-dependencies
.github/workflows/publish_packages.yml:39
supply-chaingithub-actionspinned-dependencies
.github/workflows/publish_packages.yml:56
supply-chaingithub-actionspinned-dependencies
.github/workflows/pkg_artifacts.yml:18
supply-chaingithub-actionspinned-dependencies
.github/workflows/pkg_artifacts.yml:32
supply-chaingithub-actionspinned-dependencies
.github/workflows/pkg_artifacts.yml:62
supply-chaingithub-actionspinned-dependencies
.github/workflows/pkg_artifacts.yml:78
supply-chaingithub-actionspinned-dependencies
.github/workflows/pkg_artifacts.yml:84
supply-chaingithub-actionspinned-dependencies
.github/workflows/pkg_artifacts.yml:104
supply-chaingithub-actionspinned-dependencies
.github/workflows/typecheck.yml:15
supply-chaingithub-actionspinned-dependencies
.github/workflows/typecheck.yml:29
supply-chaingithub-actionspinned-dependencies
.github/workflows/typecheck.yml:43
supply-chaingithub-actionspinned-dependencies
.github/workflows/lint.yml:15
supply-chaingithub-actionspinned-dependencies
.github/workflows/lint.yml:29
supply-chaingithub-actionspinned-dependencies
.github/workflows/lint.yml:43
supply-chaingithub-actionspinned-dependencies
.github/workflows/supabase.yml:28
supply-chaingithub-actionspinned-dependencies
.github/workflows/templates.yml:24
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:63
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:79
supply-chaingithub-actionspinned-dependencies
.github/workflows/publish_candidates.yml:35
supply-chaingithub-actionspinned-dependencies
.github/workflows/publish_candidates.yml:50
supply-chaingithub-actionspinned-dependencies
.github/workflows/publish_candidates.yml:70
supply-chaingithub-actionspinned-dependencies
.github/workflows/generated_files.yml:31
supply-chaingithub-actionspinned-dependencies
packages/python-sdk/e2b_connect/client.py:441
dead-code
packages/python-sdk/e2b_connect/client.py:438
dead-code
packages/python-sdk/e2b_connect/client.py:137
dead-code
packages/python-sdk/e2b/exceptions.py:13
dead-code
packages/python-sdk/e2b/exceptions.py:1
dead-code
packages/python-sdk/e2b_connect/client.py:124
dead-code
packages/python-sdk/e2b/api/client/client.py:252
dead-code
packages/python-sdk/e2b/api/client/client.py:218
dead-code
packages/python-sdk/e2b/api/client/api/templates/post_v2_templates.py:98
dead-code
packages/python-sdk/e2b/api/client/api/templates/patch_templates_template_id.py:100
dead-code
packages/python-sdk/e2b/api/client/api/templates/get_templates_template_id_builds_build_id_status.py:122
dead-code
packages/python-sdk/e2b/api/client/api/templates/get_templates_template_id_builds_build_id_logs.py:144
dead-code
packages/python-sdk/e2b/api/client/api/templates/get_templates_aliases_alias.py:93
dead-code
packages/python-sdk/e2b/api/client/api/templates/post_templates_template_id_builds_build_id.py:87
dead-code
packages/python-sdk/e2b/api/client/api/templates/post_templates.py:98
dead-code
packages/python-sdk/e2b/api/client/api/templates/post_templates_template_id.py:98
dead-code
packages/python-sdk/e2b/api/client/api/templates/post_v3_templates.py:102
dead-code
packages/python-sdk/e2b/api/client/api/templates/patch_v_2_templates_template_id.py:102
dead-code
packages/python-sdk/e2b/api/client/api/templates/get_templates_template_id.py:103
dead-code
packages/python-sdk/e2b/api/client/api/templates/post_v_2_templates_template_id_builds_build_id.py:100
dead-code
packages/python-sdk/e2b/api/client/api/templates/get_templates.py:98
dead-code
packages/python-sdk/e2b/api/client/api/templates/get_templates_template_id_files_hash.py:97
dead-code
packages/python-sdk/e2b/api/client/api/templates/delete_templates_template_id.py:83
dead-code
packages/python-sdk/e2b/api/client/api/sandboxes/put_sandboxes_sandbox_id_network.py:107
dead-code
packages/python-sdk/e2b/api/client/api/sandboxes/post_sandboxes_sandbox_id_timeout.py:104
dead-code
packages/python-sdk/e2b/api/client/api/sandboxes/post_sandboxes_sandbox_id_resume.py:106
dead-code
packages/python-sdk/e2b/api/client/api/sandboxes/post_sandboxes_sandbox_id_connect.py:110
dead-code
packages/python-sdk/e2b/api/client/types.py:36
dead-code
packages/python-sdk/e2b/api/client/client.py:202
dead-code
packages/python-sdk/e2b/api/client/client.py:194
dead-code
Showing first 300 of 315. Refine filters or use the legacy findings page for deep search.
This page is publicly accessible at:
https://repobility.com/scan/40abc3d1-0134-4adb-a0b0-f6d2e010ea31/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/40abc3d1-0134-4adb-a0b0-f6d2e010ea31/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.