https://github.com/neomjs/neo
· scanned 2026-06-06 00:07 UTC (4 days, 2 hours ago)
· 10 languages
153 raw signals (67 security + 86 graph) 11/13 scanners ran 97th percentile · Javascript · tiny (<2K LoC) System graph score 70 (higher by 16)
Last scanned 4 days, 2 hours ago · v2 · 53 actionable findings from 2 signal sources. 57 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
85.0 | 0.15 | 12.75 |
security_score |
100.0 | 0.25 | 25.00 |
testing_score |
85.0 | 0.20 | 17.00 |
documentation_score |
75.0 | 0.15 | 11.25 |
practices_score |
78.0 | 0.15 | 11.70 |
code_quality |
80.0 | 0.10 | 8.00 |
| Overall | 1.00 | 85.7 |
Showing 28 of 53 actionable findings. 110 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
ai/demo-agents/dev.mjs:253
src/code/executor/Neo.mjs:200
examples/form/field/fileupload/server.mjs:27
examples/form/field/fileupload/server.mjs:9
examples/form/field/fileupload/server.mjs:17
ai/mcp/server/github-workflow/services/GraphqlService.mjs:60
.github/workflows/codeql-analysis.yml:42, 43, 53, 54, 67, 68 (6 hits)ai/demo-agents/dev.mjs:96ai/mcp/ToolService.mjs:98ai/services.mjs:149ai/demo-agents/dev.mjs:101
ai/mcp/client/mcp-cli.mjs:39ai/mcp/server/github-workflow/mcp-server.mjs:24ai/mcp/server/knowledge-base/mcp-server.mjs:24ai/deploy/Dockerfile:14
containersPinned dependencies
ai/deploy/Dockerfile:31
containersPinned dependencies
.github/workflows/data-sync-pipeline.yml
CI/CD securitySupply chainGithub actions
ai/mcp/server/github-workflow/openapi.yaml
Ports
ai/mcp/server/github-workflow/openapi.yaml
Ports
ai/mcp/server/memory-core/openapi.yaml
Ports
ai/mcp/server/github-workflow/openapi.yaml
Ports
ai/mcp/server/memory-core/openapi.yaml
Ports
ai/mcp/server/github-workflow/openapi.yaml
Ports
ai/mcp/server/github-workflow/openapi.yaml
Ports
ai/deploy/Dockerfile:24, 32, 52 (3 hits).github/workflows/test.yml:29, 32, 61 (3 hits).github/workflows/check-retired-primitives.yml:26, 29 (2 hits).github/workflows/codeql-analysis.yml:38, 39 (2 hits).github/workflows/config-template-ssot-lint.yml:26, 29 (2 hits).github/workflows/data-sync-pipeline.yml:21, 24 (2 hits).github/workflows/devindex-pipeline.yml:20, 23 (2 hits).github/workflows/mcp-test-location-lint.yml:32, 35 (2 hits).github/workflows/npm-publish.yml:9, 11 (2 hits)package.json
CI/CD securitySupply chainNpm
This page is publicly accessible at:
https://repobility.com/scan/73cd45b8-1bb8-438f-a172-fc58bc1cfbb1/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/73cd45b8-1bb8-438f-a172-fc58bc1cfbb1/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.