https://github.com/romaine-life/tank-operator
· scanned 2026-06-15 23:55 UTC (2 months, 3 weeks ago)
209 raw signals (0 security + 209 graph)
Last scanned 2 months, 3 weeks ago · v1 · 172 actionable findings from 1 signal source. 37 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
Showing 70 of 172 actionable findings. 209 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
.github/workflows/tofu.yml:34
CI/CD securitySupply chainGithub actions
.github/workflows/docker-build-check.yaml:123, 127, 169, 185 (4 hits).github/workflows/agent-container-build.yml:38, 48, 81 (3 hits).github/workflows/api-proxy-build.yml:31, 41, 74 (3 hits).github/workflows/mcp-auth-proxy-build.yml:67, 77, 114 (3 hits).github/workflows/session-images-build.yml:82, 92, 131 (3 hits).github/workflows/build.yml:36, 78 (2 hits).github/workflows/agent-container-build.yml.github/workflows/api-proxy-build.yml.github/workflows/build.yml.github/workflows/docker-build-check.yaml.github/workflows/mcp-auth-proxy-build.yml.github/workflows/session-images-build.yml.github/workflows/tofu.ymlfrontend/src/App.tsx:10564
Dangerous innerhtml
docs/features/transcript/ask-user-question-turn-flow.html:537
Direct innerhtml assignment
docs/features/transcript/background-wake-turn-flow.html:682
Direct innerhtml assignment
claude-runner/src/cliVersion.ts:17
Node child process
codex-runner/src/appServerTransport.ts:1
Node child process
scripts/check-claude-agent-authority.mjs:13
Node child process
scripts/check-context-window-table-migration.mjs:32
Node child process
scripts/check-session-pod-hot-swap-migration.mjs:34
Node child process
scripts/check-session-readonly-rbac.mjs:22
Node child process
scripts/check-stop-request-migration.mjs:25
Node child process
scripts/check-tank-http-route-security.mjs:3
Node child process
Dockerfile:27
containersPinned dependencies
Dockerfile:14
containersPinned dependencies
claude-container/Dockerfile:9
containersPinned dependencies
agent-container/Dockerfile:10
containersPinned dependencies
claude-container/Dockerfile:20, 35, 49 (3 hits)Dockerfile:2claude-container/mcp-auth-proxy/Dockerfile:15
containersPinned dependencies
api-proxy/Dockerfile:14, 108 (2 hits).github/workflows/session-images-build.yml:51, 148, 174, 179 (4 hits).github/workflows/agent-container-build.yml:35.github/workflows/api-proxy-build.yml:26.github/workflows/docker-build-check.yaml:86.github/workflows/mcp-auth-proxy-build.yml:39.github/workflows/pr-feature-contracts.yml:15repo-level (3 hits)api-proxy/src/tank_api_proxy/metrics.py:271
claude-container/mcp-auth-proxy/src/mcp_auth_proxy/server.py:4357
api-proxy/src/tank_api_proxy/server.py:392
This page is publicly accessible at:
https://repobility.com/scan/8a01793e-412c-4611-8d22-7a7707b5511b/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/8a01793e-412c-4611-8d22-7a7707b5511b/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.