https://github.com/ggml-org/llama.cpp
· scanned 2026-06-05 05:22 UTC (9 hours, 50 minutes ago)
· 10 languages
925 findings (233 legacy + 692 scanner) 11/13 scanners ran Scanner says 72 (higher by 6)
Last scanned 9 hours, 50 minutes ago · v2 · 579 findings from 2 sources. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
85.0 | 0.15 | 12.75 |
security_score |
100.0 | 0.25 | 25.00 |
testing_score |
53.0 | 0.20 | 10.60 |
documentation_score |
77.0 | 0.15 | 11.55 |
practices_score |
94.0 | 0.15 | 14.10 |
code_quality |
45.0 | 0.10 | 4.50 |
| Overall | 1.00 | 78.5 |
Showing 69 of 579 findings. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
conversion/kimi_linear.py:26
error_handlinglegacy
scripts/tool_bench.py:244
qualitylegacy
examples/model-conversion/requirements.txt:6
dependencylegacy
tools/server/bench/speed-bench/requirements.txt:1
dependencylegacy
examples/model-conversion/requirements.txt:5
dependencylegacy
scripts/jinja/requirements.txt:2
dependencylegacy
tools/server/bench/requirements.txt:1
dependencylegacy
scripts/jinja/requirements.txt:1
dependencylegacy
tools/server/bench/speed-bench/requirements.txt:2
dependencylegacy
tools/server/bench/requirements.txt:2
dependencylegacy
examples/model-conversion/requirements.txt:7
dependencylegacy
examples/model-conversion/requirements.txt:2
dependencylegacy
examples/model-conversion/requirements.txt:3
dependencylegacy
tools/server/bench/speed-bench/requirements.txt:3
dependencylegacy
examples/model-conversion/requirements.txt:4
dependencylegacy
convert_hf_to_gguf_update.py:1
qualitylegacy
.github/workflows/build-cuda-windows.yml:40
supply-chaingithub-actionspinned-dependencies
.github/workflows/build-cuda-windows.yml:132
supply-chaingithub-actionspinned-dependencies
.github/workflows/build-opencl.yml:47
supply-chaingithub-actionspinned-dependencies
.github/workflows/docker.yml:209
supply-chaingithub-actionspinned-dependencies
.github/workflows/copilot-setup-steps.yml:32
supply-chaingithub-actionspinned-dependencies
.github/workflows/hip-quality-check.yml:51
supply-chaingithub-actionspinned-dependencies
.github/workflows/build-cuda-ubuntu.yml:56
supply-chaingithub-actionspinned-dependencies
.github/workflows/build-cuda-ubuntu.yml:91
supply-chaingithub-actionspinned-dependencies
.github/workflows/build-cuda-ubuntu.yml:123
supply-chaingithub-actionspinned-dependencies
.github/workflows/build-vulkan.yml:56
supply-chaingithub-actionspinned-dependencies
.github/workflows/build-vulkan.yml:111
supply-chaingithub-actionspinned-dependencies
.github/workflows/build-apple.yml:49
supply-chaingithub-actionspinned-dependencies
.github/workflows/build-apple.yml:85
supply-chaingithub-actionspinned-dependencies
.github/workflows/build-apple.yml:120
supply-chaingithub-actionspinned-dependencies
.github/workflows/build-apple.yml:169
supply-chaingithub-actionspinned-dependencies
.github/workflows/build-apple.yml:203
supply-chaingithub-actionspinned-dependencies
.github/workflows/build-apple.yml:242
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:105
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:190
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:276
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:442
supply-chaingithub-actionspinned-dependencies
.github/workflows/build-cpu.yml:64
supply-chaingithub-actionspinned-dependencies
.github/workflows/build-cpu.yml:148
supply-chaingithub-actionspinned-dependencies
.github/workflows/server.yml:83
supply-chaingithub-actionspinned-dependencies
.github/workflows/server.yml:143
supply-chaingithub-actionspinned-dependencies
.github/workflows/build-webgpu.yml:47
supply-chaingithub-actionspinned-dependencies
.github/workflows/build-webgpu.yml:88
supply-chaingithub-actionspinned-dependencies
.github/workflows/build-webgpu.yml:141
supply-chaingithub-actionspinned-dependencies
.github/workflows/docker.yml
supply-chaingithub-actionsleast-privilege
.github/workflows/release.yml
supply-chaingithub-actionsleast-privilege
tools/server/bench/bench.py:228
owaspsubprocess_shell_true
.github/workflows/server-sanitize.yml:7
owaspweak_hash
.github/workflows/server-self-hosted.yml:7
owaspweak_hash
.github/workflows/server.yml:7
owaspweak_hash
.github/workflows/ui-self-hosted.yml:11
owaspweak_hash
.github/workflows/ui.yml:7
owaspweak_hash
.github/workflows/build-cross.yml
securityports
.github/workflows/build-cross.yml
securityports
This page is publicly accessible at:
https://repobility.com/scan/66068b6a-6304-4731-a390-59c7a48d3b50/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/66068b6a-6304-4731-a390-59c7a48d3b50/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.