Public scan — anyone with this URL can view this analysis. Sign up to track your own repos privately, run scheduled re-scans, and get AI fix prompts via your dashboard.

x-stream/xstream

https://github.com/x-stream/xstream.git · scanned 2026-05-16 12:55 UTC (1 day, 9 hours ago) · 10 languages

24 findings (20 legacy + 4 scanner) 50th percentile · Java · medium (20-100K LoC) Scanner says 100 (lower by 24)

UNIFIED Repobility · multi-layer engine · AI coders

Complete repo analysis

Last scanned 1 day, 10 hours ago · v1 · 23 findings from 2 sources. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.

JSON
{# ── 2026-05-17 R27 #5: score breakdown panel ────────────────────── Surfaces the score_breakdown JSON that's been silently stored on Repository for months. Turns hidden math into a trust signal. #}
Severity distribution — click a segment to filter
Active filters: excluding tests × Reset all
Severity: Critical 0 High 4 Medium 1 Low 16 Source: Legacy 19 9-layer 4 Crowd 0 Layer: Quality 16 Software 4 Api 1 Frontend 1 Security 1

All 837 nodes from the latest scan, grouped by kind. Each node is a unit the engine identified (file, function, endpoint, table…). Most users won't need this view — it's primarily for debugging the engine's graph extraction or for AI agents that want to enumerate the project structure.

LabelLayerStatusPath
pom.xml software healthy pom.xml
README.md software healthy README.md
SECURITY.md software healthy SECURITY.md
pom.xml software healthy xstream-distribution/pom.xml
style.css software healthy xstream-distribution/src/resources/style.css
skin.html software healthy xstream-distribution/src/templates/skin.html
CVE-2020-26259.html software healthy xstream-distribution/src/content/CVE-2020-26259.html
CVE-2021-21347.html software healthy xstream-distribution/src/content/CVE-2021-21347.html
faq.html software healthy xstream-distribution/src/content/faq.html
CVE-2021-39139.html software healthy xstream-distribution/src/content/CVE-2021-39139.html
CVE-2021-39149.html software healthy xstream-distribution/src/content/CVE-2021-39149.html
graphs.html software healthy xstream-distribution/src/content/graphs.html
CVE-2021-21345.html software healthy xstream-distribution/src/content/CVE-2021-21345.html
CVE-2021-39152.html software healthy xstream-distribution/src/content/CVE-2021-39152.html
CVE-2021-39153.html software healthy xstream-distribution/src/content/CVE-2021-39153.html
CVE-2021-21344.html software healthy xstream-distribution/src/content/CVE-2021-21344.html
json-tutorial.html software healthy xstream-distribution/src/content/json-tutorial.html
CVE-2021-43859.html software healthy xstream-distribution/src/content/CVE-2021-43859.html
CVE-2021-21346.html software healthy xstream-distribution/src/content/CVE-2021-21346.html
CVE-2021-29505.html software healthy xstream-distribution/src/content/CVE-2021-29505.html
download.html software healthy xstream-distribution/src/content/download.html
changes.html software healthy xstream-distribution/src/content/changes.html
CVE-2013-7285.html software healthy xstream-distribution/src/content/CVE-2013-7285.html
news.html software healthy xstream-distribution/src/content/news.html
architecture.html software healthy xstream-distribution/src/content/architecture.html
CVE-2021-39141.html software healthy xstream-distribution/src/content/CVE-2021-39141.html
CVE-2021-21351.html software healthy xstream-distribution/src/content/CVE-2021-21351.html
index.html software healthy xstream-distribution/src/content/index.html
CVE-2021-21350.html software healthy xstream-distribution/src/content/CVE-2021-21350.html
CVE-2017-7957.html software healthy xstream-distribution/src/content/CVE-2017-7957.html
CVE-2016-3674.html software healthy xstream-distribution/src/content/CVE-2016-3674.html
converter-tutorial.html software healthy xstream-distribution/src/content/converter-tutorial.html
CVE-2021-21348.html software healthy xstream-distribution/src/content/CVE-2021-21348.html
CVE-2024-47072.html software healthy xstream-distribution/src/content/CVE-2024-47072.html
CVE-2020-26258.html software healthy xstream-distribution/src/content/CVE-2020-26258.html
CVE-2021-39144.html software healthy xstream-distribution/src/content/CVE-2021-39144.html
converters.html software healthy xstream-distribution/src/content/converters.html
tutorial.html software healthy xstream-distribution/src/content/tutorial.html
CVE-2021-21341.html software healthy xstream-distribution/src/content/CVE-2021-21341.html
license.html software healthy xstream-distribution/src/content/license.html
how-to-contribute.html software healthy xstream-distribution/src/content/how-to-contribute.html
manual-tweaking-output.html software healthy xstream-distribution/src/content/manual-tweaking-output.html
CVE-2021-39145.html software healthy xstream-distribution/src/content/CVE-2021-39145.html
CVE-2021-21342.html software healthy xstream-distribution/src/content/CVE-2021-21342.html
CVE-2021-39147.html software healthy xstream-distribution/src/content/CVE-2021-39147.html
security.html software healthy xstream-distribution/src/content/security.html
CVE-2021-39140.html software healthy xstream-distribution/src/content/CVE-2021-39140.html
CVE-2021-39150.html software healthy xstream-distribution/src/content/CVE-2021-39150.html
CVE-2021-39154.html software healthy xstream-distribution/src/content/CVE-2021-39154.html
CVE-2021-39148.html software healthy xstream-distribution/src/content/CVE-2021-39148.html

Showing first 50 of this kind. Full payload available via the JSON button at the top of the page.

LabelLayerStatusPath
xstream-distribution software healthy xstream-distribution
src software healthy xstream-distribution/src
resources software healthy xstream-distribution/src/resources
templates software healthy xstream-distribution/src/templates
content software healthy xstream-distribution/src/content
xstream-hibernate software healthy xstream-hibernate
src software healthy xstream-hibernate/src
test software healthy xstream-hibernate/src/test
acceptance software healthy xstream-hibernate/src/test/acceptance
hibernate software healthy xstream-hibernate/src/test/acceptance/hibernate
reference software healthy xstream-hibernate/src/test/acceptance/hibernate/reference
java software healthy xstream-hibernate/src/java
com software healthy xstream-hibernate/src/java/com
thoughtworks software healthy xstream-hibernate/src/java/com/thoughtworks
xstream software healthy xstream-hibernate/src/java/com/thoughtworks/xstream
hibernate software healthy xstream-hibernate/src/java/com/thoughtworks/xstream/hiberna…
util software healthy xstream-hibernate/src/java/com/thoughtworks/xstream/hiberna…
mapper software healthy xstream-hibernate/src/java/com/thoughtworks/xstream/hiberna…
converter software healthy xstream-hibernate/src/java/com/thoughtworks/xstream/hiberna…
xstream-jmh software healthy xstream-jmh
src software healthy xstream-jmh/src
java software healthy xstream-jmh/src/java
com software healthy xstream-jmh/src/java/com
thoughtworks software healthy xstream-jmh/src/java/com/thoughtworks
xstream software healthy xstream-jmh/src/java/com/thoughtworks/xstream
benchmark software healthy xstream-jmh/src/java/com/thoughtworks/xstream/benchmark
jmh software healthy xstream-jmh/src/java/com/thoughtworks/xstream/benchmark/jmh
xstream-its software healthy xstream-its
src software healthy xstream-its/src
test software healthy xstream-its/src/test
com software healthy xstream-its/src/test/com
thoughtworks software healthy xstream-its/src/test/com/thoughtworks
xstream software healthy xstream-its/src/test/com/thoughtworks/xstream
xstream software healthy xstream
src software healthy xstream/src
test software healthy xstream/src/test
com software healthy xstream/src/test/com
thoughtworks software healthy xstream/src/test/com/thoughtworks
xstream software healthy xstream/src/test/com/thoughtworks/xstream
security software healthy xstream/src/test/com/thoughtworks/xstream/security
testutil software healthy xstream/src/test/com/thoughtworks/xstream/testutil
mapper software healthy xstream/src/test/com/thoughtworks/xstream/mapper
converters software healthy xstream/src/test/com/thoughtworks/xstream/converters
reflection software healthy xstream/src/test/com/thoughtworks/xstream/converters/reflec…
javabean software healthy xstream/src/test/com/thoughtworks/xstream/converters/javabe…
extended software healthy xstream/src/test/com/thoughtworks/xstream/converters/extend…
enums software healthy xstream/src/test/com/thoughtworks/xstream/converters/enums
collections software healthy xstream/src/test/com/thoughtworks/xstream/converters/collec…
basic software healthy xstream/src/test/com/thoughtworks/xstream/converters/basic
io software healthy xstream/src/test/com/thoughtworks/xstream/io

Showing first 50 of this kind. Full payload available via the JSON button at the top of the page.

LabelLayerStatusPath
repobility-clone-87nm0ud7 software healthy /tmp/repobility-clone-87nm0ud7

LabelLayerStatusPath
2.0.6.1 network healthy pom.xml

LabelLayerStatusPath
gha::maven cicd healthy .github/workflows/maven.yml

LabelLayerStatusPath
build cicd healthy .github/workflows/maven.yml
{# ── 2026-05-17 Round 14: AI-agent bridge footer ────────────────────── Discoverability: the /agents/voting/ guide + MCP manifest exist but aren't linked from anywhere users actually land. Small, opt-in footer. #}
For AI agents: Voting guide (TP/FP) MCP manifest Stdio wrapper SARIF Integrate Findings queue Vote TP/FP on findings to calibrate the engine.
For AI agents + API integrations
Email me when this repo regresses
Free. We re-scan periodically; new criticals → your inbox. No signup required for the scan itself.
API access

This page is publicly accessible at: https://repobility.com/scan/724af68f-c22d-4d85-ab71-03d8bfbaaace/

To check status programmatically (no auth required):

curl -s https://repobility.com/api/v1/public/scan/724af68f-c22d-4d85-ab71-03d8bfbaaace/

Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.