https://github.com/Comfy-Org/ComfyUI
· scanned 2026-05-17 20:33 UTC (2 weeks, 4 days ago)
· 10 languages
551 findings (51 legacy + 500 scanner) 8/10 scanners ran 72nd percentile · Python · large (100-500K LoC) Scanner says 66 (higher by 15)
Last scanned 2 weeks, 4 days ago · v2 · 51 findings from 1 source. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
Bug-class explainers. Each card groups findings of the same shape — these are the patterns most likely to ship to prod and reappear in future scans unless you systematically fix the cause, not just the instance.
.well-known/security.txt
main.py:22
app/assets/seeder.py:467
app/assets/api/schemas_in.py:297
.ci/update_windows/update.py:70
.github/workflows/release-webhook.yml
comfy/ldm/rt_detr/rtdetr_v4.py:1
comfy/weight_adapter/glora.py:43
comfy/weight_adapter/glora.py:42
comfy/weight_adapter/base.py:215
comfy/text_encoders/qwen_image.py:51
comfy/text_encoders/qwen_image.py:21
This page is publicly accessible at:
https://repobility.com/scan/7acbf5ae-5fb1-42b7-965c-bdf96fd53d77/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/7acbf5ae-5fb1-42b7-965c-bdf96fd53d77/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.