https://github.com/medusajs/medusa.git
· scanned 2026-05-17 19:53 UTC (2 weeks, 4 days ago)
· 10 languages
3637 findings (59 legacy + 3578 scanner) 8/10 scanners ran 31st percentile · Typescript · huge (>500K LoC) Scanner says 55 (higher by 24)
Last scanned 2 weeks, 4 days ago · v2 · 59 findings from 1 source. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
Bug-class explainers. Each card groups findings of the same shape — these are the patterns most likely to ship to prod and reappear in future scans unless you systematically fix the cause, not just the instance.
.well-known/security.txt
index.html
www/packages/remark-rehype-plugins/src/change-lin…:14
www/packages/remark-rehype-plugins/src/change-lin…:13
www/packages/docs-ui/src/constants.tsx:326
www/packages/docs-ui/src/constants.tsx:320
packages/core/utils/src/dal/mikro-orm/mikro-orm-s…:1
packages/cli/medusa-cli/scripts/postinstall.js:16
humans.txt
llms.txt
sitemap.xml
robots.txt
This page is publicly accessible at:
https://repobility.com/scan/5f88f9b1-bad0-4cff-861c-da0f06324fff/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/5f88f9b1-bad0-4cff-861c-da0f06324fff/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.