https://github.com/alumnium-hq/alumnium
· scanned 2026-05-31 01:23 UTC (5 days, 6 hours ago)
· 10 languages
425 findings (123 legacy + 302 scanner) 11/13 scanners ran 88th percentile · Typescript · medium (20-100K LoC) Scanner says 71 (higher by 14)
Last scanned 5 days, 6 hours ago · v2 · last Δ +0.1 (diff) · 277 findings from 2 sources. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
60.0 | 0.15 | 9.00 |
security_score |
100.0 | 0.25 | 25.00 |
testing_score |
100.0 | 0.20 | 20.00 |
documentation_score |
83.0 | 0.15 | 12.45 |
practices_score |
77.0 | 0.15 | 11.55 |
code_quality |
78.0 | 0.10 | 7.80 |
| Overall | 1.00 | 85.8 |
Showing 213 of 277 findings. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
packages/python/src/alumnium/accessibility/uiautomator2_accessibility_tree.py:43
qualitylegacy
packages/python/src/alumnium/accessibility/uiautomator2_accessibility_tree.py:31
qualitylegacy
packages/python/src/alumnium/drivers/selenium_driver.py:71
qualitylegacy
packages/python/src/alumnium/clients/http_client.py:229
qualitylegacy
packages/python/src/alumnium/accessibility/chromium_accessibility_tree.py:203
qualitylegacy
packages/python/src/alumnium/drivers/selenium_driver.py:63
qualitylegacy
packages/python/src/alumnium/drivers/selenium_driver.py:85
qualitylegacy
packages/python/src/alumnium/accessibility/chromium_accessibility_tree.py:112
qualitylegacy
packages/python/src/alumnium/accessibility/chromium_accessibility_tree.py:119
qualitylegacy
packages/python/src/alumnium/accessibility/chromium_accessibility_tree.py:53
qualitylegacy
packages/python/src/alumnium/tools/upload_tool.py:22
qualitylegacy
packages/python/src/alumnium/clients/http_client.py:242
qualitylegacy
packages/python/src/alumnium/clients/http_client.py:86
qualitylegacy
packages/python/src/alumnium/accessibility/chromium_accessibility_tree.py:106
qualitylegacy
packages/python/src/alumnium/accessibility/chromium_accessibility_tree.py:101
qualitylegacy
packages/python/src/alumnium/accessibility/chromium_accessibility_tree.py:89
qualitylegacy
packages/python/src/alumnium/drivers/selenium_driver.py:59
qualitylegacy
packages/python/src/alumnium/accessibility/chromium_accessibility_tree.py:141
qualitylegacy
packages/python/src/alumnium/accessibility/uiautomator2_accessibility_tree.py:56
qualitylegacy
packages/python/src/alumnium/accessibility/chromium_accessibility_tree.py:172
qualitylegacy
packages/python/src/alumnium/accessibility/uiautomator2_accessibility_tree.py:85
qualitylegacy
.github/workflows/ci.yml:41
dependencylegacy
.github/workflows/release.yml:199
dependencylegacy
.github/workflows/release.yml:241
dependencylegacy
.github/workflows/release.yml:223
dependencylegacy
.github/workflows/release.yml:149
dependencylegacy
.github/workflows/release.yml:115
dependencylegacy
.github/workflows/release.yml:85
dependencylegacy
.github/workflows/release.yml:45
dependencylegacy
.github/workflows/ci.yml:30
dependencylegacy
.github/workflows/deployment.yml:25
dependencylegacy
.github/workflows/ci-java.yml:91
dependencylegacy
.github/workflows/ci-java.yml:57
dependencylegacy
.github/workflows/deployment.yml:47
dependencylegacy
.github/workflows/deployment.yml:33
dependencylegacy
.github/workflows/deployment.yml:26
dependencylegacy
.github/workflows/release.yml:282
dependencylegacy
.github/workflows/release.yml:207
dependencylegacy
.github/workflows/release.yml:133
dependencylegacy
.github/workflows/release.yml:101
dependencylegacy
.github/workflows/release.yml:70
dependencylegacy
.github/workflows/ci.yml:93
dependencylegacy
.github/workflows/ci-java.yml:106
dependencylegacy
.github/workflows/ci-java.yml:81
dependencylegacy
.github/workflows/release.yml:64
dependencylegacy
.github/workflows/release.yml:59
dependencylegacy
Dockerfile:1
dependencylegacy
Dockerfile:6
dependencylegacy
packages/java/gradle/wrapper/gradle-wrapper.jar:1
dependencylegacy
packages/java/src/main/java/ai/alumnium/accessibility/ChromiumAccessibilityTree.java:245
xxelegacy
packages/typescript/src/tools/BaseTool.ts:30
xsslegacy
packages/typescript/src/server/agents/PlannerAgent.ts:155
xsslegacy
packages/typescript/src/drivers/AppiumDriver.ts:205
xsslegacy
packages/typescript/src/server/agents/RetrieverAgent.ts:156
qualitylegacy
packages/typescript/src/server/cache/ElementsCache/ElementsCacheMask.ts:127
qualitylegacy
packages/typescript/src/standalone/setupEmbeddedDependencies.ts:188
path_traversallegacy
packages/typescript/src/mcp/tools/startMcpTool.ts:81
path_traversallegacy
.github/workflows/ci.yml
supply-chaingithub-actionspull-request-target
packages/typescript/src/server/ServerCommand.ts:281
error_handlinglegacy
packages/python/src/alumnium/accessibility/chromium_accessibility_tree.py:178
qualitylegacy
packages/python/src/alumnium/drivers/appium_driver.py:64
qualitylegacy
telemetry/docker-compose.yml:1
dockerlegacy
Dockerfile:1
dockerlegacy
Dockerfile:7
dockerlegacy
websites/docs/src/content/blog/2026-05-13-release-0.20.0.md:27
dependencylegacy
Dockerfile:6
supply-chaindockerchecksum
.github/workflows/ci-java.yml:81
supply-chaingithub-actionspinned-dependencies
.github/workflows/ci-java.yml:106
supply-chaingithub-actionspinned-dependencies
.github/workflows/ci.yml:41
supply-chaingithub-actionspinned-dependencies
.github/workflows/ci.yml:93
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:59
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:64
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:70
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:101
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:133
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:158
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:161
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:164
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:175
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:185
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:207
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:282
supply-chaingithub-actionspinned-dependencies
.github/workflows/ci-typescript.yml:83
supply-chaingithub-actionspinned-dependencies
.github/workflows/ci-typescript.yml:108
supply-chaingithub-actionspinned-dependencies
.github/workflows/ci-typescript.yml:134
supply-chaingithub-actionspinned-dependencies
.github/workflows/ci-eval.yml:56
supply-chaingithub-actionspinned-dependencies
.github/workflows/ci-python.yml:90
supply-chaingithub-actionspinned-dependencies
.github/workflows/ci-python.yml:117
supply-chaingithub-actionspinned-dependencies
.github/workflows/ci-python.yml:148
supply-chaingithub-actionspinned-dependencies
.github/workflows/deployment.yml
supply-chaingithub-actionsleast-privilege
.github/workflows/release.yml
supply-chaingithub-actionsleast-privilege
.dockerignore
dockerlegacy
packages/java/src/main/java/ai/alumnium/accessibility/UIAutomator2AccessibilityTree.java:63
qualitylegacy
packages/java/src/main/java/ai/alumnium/accessibility/ChromiumAccessibilityTree.java:183
qualitylegacy
telemetry/docker-compose.yml:1
dockerlegacy
telemetry/docker-compose.yml:1
dockerlegacy
packages/python/src/alumnium/drivers/playwright_driver.py:66
qualitylegacy
packages/java/src/main/java/ai/alumnium/driver/SeleniumDriver.java:144
qualitylegacy
packages/java/src/main/java/ai/alumnium/driver/SeleniumDriver.java:54
qualitylegacy
packages/java/src/main/java/ai/alumnium/Area.java:96
qualitylegacy
packages/typescript/src/tools/ScrollTool.ts:6
qualitylegacy
packages/typescript/src/tools/HoverTool.ts:7
qualitylegacy
packages/typescript/src/server/cache/ResponseCache.ts:111
qualitylegacy
packages/typescript/src/server/agents/LocatorAgent.ts:59
qualitylegacy
packages/typescript/src/drivers/scripts/waiter.js:1
qualitylegacy
packages/typescript/src/client/Area.ts:53
qualitylegacy
Dockerfile:1
supply-chaindockerpinned-dependencies
.github/workflows/ci-java.yml:57
supply-chaingithub-actionspinned-dependencies
.github/workflows/ci-java.yml:91
supply-chaingithub-actionspinned-dependencies
.github/workflows/ci.yml:30
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:45
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:85
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:115
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:149
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:199
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:223
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:241
supply-chaingithub-actionspinned-dependencies
.github/workflows/ci-typescript.yml:56
supply-chaingithub-actionspinned-dependencies
.github/workflows/ci-typescript.yml:93
supply-chaingithub-actionspinned-dependencies
.github/workflows/ci-typescript.yml:116
supply-chaingithub-actionspinned-dependencies
.github/workflows/ci-eval.yml:44
supply-chaingithub-actionspinned-dependencies
.github/workflows/ci-python.yml:64
supply-chaingithub-actionspinned-dependencies
.github/workflows/ci-python.yml:100
supply-chaingithub-actionspinned-dependencies
.github/workflows/ci-python.yml:125
supply-chaingithub-actionspinned-dependencies
packages/python/examples/behave/features/environment.py:235
dead-code
packages/python/examples/behave/features/environment.py:220
dead-code
packages/python/examples/behave/features/environment.py:229
dead-code
packages/python/src/alumnium/drivers/selenium_driver.py:159
dead-code
packages/typescript/src/server/ServerCommand.ts:151
qualitylegacy
packages/python/src/alumnium/clients/http_client.py:245
qualitylegacy
packages/java/src/main/java/ai/alumnium/accessibility/ChromiumAccessibilityTree.java:257
qualitylegacy
packages/typescript/src/mcp/tools/checkMcpTool.ts:37
qualitylegacy
packages/typescript/src/cli/CliCommand.ts:114
qualitylegacy
packages/typescript/src/Env.ts:309
qualitylegacy
packages/typescript/src/mcp/McpServer.ts:52
qualitylegacy
packages/typescript/src/client/Alumni.ts:247
qualitylegacy
packages/typescript/src/Xml.ts:16
qualitylegacy
packages/python/src/alumnium/result.py:4
qualitylegacy
This page is publicly accessible at:
https://repobility.com/scan/53d869c3-eb18-4fe6-aa71-30c3aa648529/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/53d869c3-eb18-4fe6-aa71-30c3aa648529/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.