https://github.com/WGlynn/VibeSwap
· scanned 2026-06-16 00:58 UTC (2 months, 1 week ago)
728 raw signals (0 security + 728 graph)
Last scanned 2 months, 1 week ago · v1 · 696 actionable findings from 1 signal source. 32 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
Showing 470 of 696 actionable findings. 728 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
jarvis-bot/scraper/server.py:152
securityAuth fastapi unauth mutation
jarvis-bot/scraper/server.py:65
securityAuth fastapi unauth mutation
.github/workflows/ci.yml:263
CI/CD securitySupply chainGithub actions
jarvis-bot/src/nyx.js:113
Exec used
jarvis-bot/src/tools-utility.js:229
New function used
jarvis-template/.claude/memory/autopilot-loop.md
VerificationClaude instruction
jarvis-template/.claude/memory/feedback_50pct-context-reboot.md
VerificationClaude instruction
jarvis-template/.claude/memory/feedback_crash-resilient-memory.md
VerificationClaude instruction
jarvis-template/.claude/memory/primitive_verbal-to-gate.md
VerificationClaude instruction
jarvis-template/.claude/session-chain/README.md
VerificationClaude instruction
repo-level (9 hits).github/workflows/ci.yml:144, 174, 198 (3 hits).github/workflows/jarvis-shard.yml:33, 41, 49 (3 hits).github/workflows/security.yml:54.github/workflows/jarvis-shard.yml
CI/CD securitySupply chainGithub actions
.github/workflows/x-feed-daily.yml
CI/CD securitySupply chainGithub actions
cogproof/src/api/server.js:50
Cors wildcard
frontend/api/chat.js:51
Cors wildcard
frontend/api/mind.js:38
Cors wildcard
frontend/api/prices.js:184
Cors wildcard
jarvis-bot/src/index.js:8831
Cors wildcard
frontend/src/components/JarvisPage.jsx:459
Dangerous innerhtml
frontend/index.html:139
Direct innerhtml assignment
frontend/public/decks.html:442
Direct innerhtml assignment
frontend/public/papers/index.html:431
Direct innerhtml assignment
frontend/public/wardenclyffe.html:233
Direct innerhtml assignment
frontend/public/youtube-e01.html:665
Direct innerhtml assignment
frontend/src/utils/entropyPassword.js:236
Direct innerhtml assignment
jarvis-bot/src/constellation.js:322
Direct innerhtml assignment
jarvis-bot/src/nyx.js:553
Direct innerhtml assignment
jarvis-bot/src/theai-dashboard.js:309
Direct innerhtml assignment
jarvis-bot/src/voice.html:359
Direct innerhtml assignment
jarvis-bot/voice-bridge.html:136
Direct innerhtml assignment
jarvis-bot/scripts/run-gate.js:14
Node child process
jarvis-bot/src/index.js:398
Node child process
jarvis-bot/src/nyx.js:21
Node child process
scripts/bd-toolkit.js:31
Node child process
scripts/weekly-digest.js:21
Node child process
jarvis-bot/src/social.js:145
Weak hash
cogproof/Dockerfile:1, 8 (2 hits)jarvis-bot/Dockerfile:2, 10 (2 hits)jarvis-bot/src/chatterbox/Dockerfile:1jarvis-bot/scraper/Dockerfile:1
containersPinned dependencies
.github/workflows/dag-attribution-sweep.yml:31, 94, 102 (3 hits).github/workflows/ci.yml:44, 298 (2 hits).github/workflows/x-feed-daily.yml:24, 29 (2 hits).github/workflows/jarvis-shard.yml:30frontend/src/components/PaperBackup.jsx:250
Document write
frontend/src/components/RosettaPage.jsx:1068
Document write
repo-level (3 hits)repo-level (3 hits)repo-level (4 hits)jarvis-bot/src/chatterbox/package.json
LockfileReproducibilityGenerated repo pattern
oracle/feeds/prices/aggregator.py:233
oracle/regime/cascade_detector.py:121
oracle/kalman/covariance.py:180
oracle/kalman/covariance.py:140
oracle/feeds/aggregator.py:271
frontend/scripts/generate_papers_site.py:995
Showing first 300 of 470. Refine filters or use the findings page for deep search.
This page is publicly accessible at:
https://repobility.com/scan/5514c1a9-5635-4ffe-9ed0-4d880ac0ed9b/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/5514c1a9-5635-4ffe-9ed0-4d880ac0ed9b/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.