https://github.com/kubernetes-sigs/headlamp
· scanned 2026-05-15 11:08 UTC (3 weeks ago)
· 10 languages
197 findings (34 legacy + 163 scanner) 59th percentile · Typescript · large (100-500K LoC) Scanner says 88 (lower by 10)
Last scanned 3 weeks ago · v1 · 25 findings from 1 source. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
85.0 | 0.15 | 12.75 |
security_score |
88.3 | 0.25 | 22.07 |
testing_score |
74.0 | 0.20 | 14.80 |
documentation_score |
74.6 | 0.15 | 11.19 |
practices_score |
75.0 | 0.15 | 11.25 |
code_quality |
60.0 | 0.10 | 6.00 |
| Overall | 1.00 | 78.1 |
Showing 23 of 25 findings. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
frontend/src/stateless/deleteClusterKubeconfig.ts:69
deserializationlegacy
frontend/src/stateless/findKubeconfigByClusterName.ts:68
deserializationlegacy
frontend/src/helpers/backstageMessageReceiver.ts:43
authlegacy
frontend/src/helpers/backstageMessageReceiver.ts:32
authlegacy
Dockerfile.plugins:28
dockerlegacy
frontend/src/components/App/Settings/ClusterSelector.stories.tsx:15
qualitylegacy
backend/pkg/portforward/store.go:1
qualitylegacy
backend/pkg/helm/repository.go:1
qualitylegacy
backend/pkg/helm/release.go:2
qualitylegacy
backend/pkg/helm/release.go:1
qualitylegacy
backend/pkg/helm/handler.go:1
qualitylegacy
backend/pkg/exec/syscallattr_windows.go:1
qualitylegacy
backend/pkg/auth/cookies.go:1
qualitylegacy
backend/cmd/stateless.go:1
qualitylegacy
backend/cmd/server.go:1
qualitylegacy
backend/cmd/multiplexer.go:1
qualitylegacy
app/windows/codesign.js:2
qualitylegacy
.dockerignore
dockerlegacy
docker-extension/docker-compose.yml:2
dockerlegacy
docker-extension/docker-compose.yml:2
dockerlegacy
Dockerfile:68
dockerlegacy
Dockerfile:68
dockerlegacy
frontend/public/robots.txt
qualitylegacy
This page is publicly accessible at:
https://repobility.com/scan/5145cc36-1cd4-41ae-9163-2dd7117aa847/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/5145cc36-1cd4-41ae-9163-2dd7117aa847/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.