https://github.com/Smart-AI-Memory/attune-ai
· scanned 2026-06-16 00:17 UTC (2 months, 2 weeks ago)
456 raw signals (0 security + 456 graph)
Last scanned 2 months, 2 weeks ago · v1 · 430 actionable findings from 1 signal source. 26 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
Showing 314 of 430 actionable findings. 456 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
src/attune/memory/security/secrets_detector.py:186
Private key in repo
website/public/framework-docs/how-to/security-architecture/index.html:4387
Private key in repo
src/attune/memory/security/secrets_detector.py:40, 581 (2 hits)src/attune/memory/security/secrets_types.py:29
website/public/framework-docs/how-to/security-architecture/index.html:4399
.claude/lessons.md:30
SecretsClaude instruction
.claude/plans/feature-agent-sdk-0163-uplift-2026-04-19.md:206
SecretsClaude instruction
.claude/plans/feature-rag-code-grounding-2026-04-17.md:294
SecretsClaude instruction
.claude/rules/attune/advanced-optimization-plan.md:633
SecretsClaude instruction
.claude/rules/attune/coding-standards-index.md:649
SecretsClaude instruction
plugin/skills/memory-and-context/SKILL.md:104
SecretsSkill file
src/attune/resilience/retry.py:68
Sync io in asyncPerformance
examples/approval_gates_demo.py:258
Sync io in asyncPerformance
backend/api/users.py:89
securityAuth fastapi unauth mutation
backend/api/analysis.py:325
securityAuth fastapi unauth mutation
backend/api/subscriptions.py:132
securityAuth fastapi unauth mutation
backend/api/subscriptions.py:110
securityAuth fastapi unauth mutation
backend/api/analysis.py:193
securityAuth fastapi unauth mutation
backend/api/analysis.py:162
securityAuth fastapi unauth mutation
backend/api/analysis.py:110
securityAuth fastapi unauth mutation
backend/api/subscriptions.py:178
securityAuth fastapi unauth mutation
backend/api/subscriptions.py:55
securityAuth fastapi unauth mutation
backend/api/auth.py:140
securityAuth fastapi unauth mutation
backend/api/auth.py:184
securityAuth fastapi unauth mutation
backend/api/users.py:44
securityAuth fastapi unauth mutation
.claude/CLAUDE.md:88
Eval used
attune-ai-dev/help/bug-predict/comparison.html:332
Eval used
attune-ai-dev/help/bug-predict/concept.html:283
Eval used
attune-ai-dev/help/bug-predict/faq.html:285
Eval used
attune-ai-dev/help/bug-predict/quickstart.html:275
Eval used
attune-ai-dev/help/search-index.json:1
Eval used
attune-ai-dev/help/security-audit/concept.html:7
Eval used
attune-ai-dev/help/security-audit/faq.html:7
Eval used
docs/rag/ab-report-2026-04-19-sentinel-hybrid.json:19
Eval used
docs/rag/ab-report-2026-04-19-sentinel-xml-attr.json:19
Eval used
docs/rag/ab-report-2026-04-19.json:18
Eval used
plugin/hooks/security_guard.py:54
Eval used
plugin/README.md:60
Eval used
plugin/skills/bug-predict/SKILL.md:60
Eval used
plugin/skills/security-audit/SKILL.md:65
Eval used
src/attune/hooks/scripts/security_guard.py:46
Eval used
src/attune/workflows/bug_predict_patterns.py:243
Eval used
src/attune/workflows/deep_review.py:68
Eval used
src/attune/workflows/discovery_sweep/sources/pattern_scan.py:200
Eval used
website/public/framework-docs/CODING_STANDARDS/index.html:1819
Eval used
website/public/framework-docs/reference/FAQ/index.html:6595
Eval used
.claude/CLAUDE.md:88
Exec used
attune-ai-dev/help/bug-predict/faq.html:285
Exec used
attune-ai-dev/help/bug-predict/quickstart.html:276
Exec used
attune-ai-dev/help/search-index.json:1
Exec used
attune-ai-dev/help/security-audit/concept.html:283
Exec used
attune-ai-dev/help/security-audit/faq.html:7
Exec used
docs/rag/ab-report-2026-04-19-sentinel-hybrid.json:99
Exec used
docs/rag/ab-report-2026-04-19-sentinel-xml-attr.json:99
Exec used
docs/rag/ab-report-2026-04-19.json:93
Exec used
plugin/hooks/security_guard.py:58
Exec used
plugin/README.md:60
Exec used
plugin/skills/bug-predict/SKILL.md:60
Exec used
plugin/skills/security-audit/SKILL.md:65
Exec used
src/attune/hooks/scripts/security_guard.py:50
Exec used
src/attune/workflows/bug_predict_patterns.py:243
Exec used
src/attune/workflows/deep_review.py:68
Exec used
src/attune/workflows/discovery_sweep/sources/pattern_scan.py:206
Exec used
website/public/framework-docs/CODING_STANDARDS/index.html:1819
Exec used
website/public/framework-docs/reference/FAQ/index.html:6730
Exec used
website/public/framework-docs/assets/javascripts/lunr/wordcut.js:5977
New function used
.claude/mcp.json
VerificationMcp config
.claude/plans/code-review-comparison.md
VerificationClaude instruction
.claude/rules/attune/documentation-patterns.md
VerificationClaude instruction
.claude/rules/attune/vscode-extension-limitations.md
VerificationClaude instruction
.claude/settings.json
VerificationClaude instruction
.claude/skills/agent/SKILL.md
VerificationClaude instruction
.claude/skills/bulk/SKILL.md
VerificationClaude instruction
.claude/skills/dev/SKILL.md
VerificationClaude instruction
.claude/skills/pipeline/SKILL.md
VerificationClaude instruction
.claude/skills/plan/SKILL.md
VerificationClaude instruction
.claude/skills/simplify/SKILL.md
VerificationClaude instruction
.claude/skills/utilities/SKILL.md
VerificationClaude instruction
.claude/skills/workflows/SKILL.md
VerificationClaude instruction
.mcp.json
VerificationMcp config
CLAUDE.md
VerificationClaude instruction
plugin/.mcp.json
VerificationMcp config
plugin/skills/bug-predict/SKILL.md
VerificationSkill file
plugin/skills/doc-gen/SKILL.md
VerificationSkill file
plugin/skills/refactor-plan/SKILL.md
VerificationSkill file
plugin/skills/security-audit/SKILL.md
VerificationSkill file
.github/workflows/build-help-site.yml.github/workflows/dependabot-auto-merge.yml.github/workflows/docs.yml.github/workflows/help-freshness.yml.github/workflows/publish-pypi.yml.github/workflows/release.yml.github/workflows/scorecard.yml.github/workflows/tier-pattern-analysis.ymlwebsite/app/blog/[slug]/page.tsx:79
Dangerous innerhtml
website/app/blog/page.tsx:37
Dangerous innerhtml
website/app/changelog/page.tsx:46
Dangerous innerhtml
website/app/docs/page.tsx:95
Dangerous innerhtml
website/app/faq/page.tsx:210
Dangerous innerhtml
website/app/how-it-works/page.tsx:35
Dangerous innerhtml
website/app/layout.tsx:47
Dangerous innerhtml
website/app/page.tsx:48
Dangerous innerhtml
website/app/pricing/page.tsx:53
Dangerous innerhtml
website/components/Breadcrumbs.tsx:27
Dangerous innerhtml
website/components/PlausibleAnalytics.tsx:16
Dangerous innerhtml
attune-ai-dev/help/search.js:11
Direct innerhtml assignment
deployments/wizards-backend/static/index.html:279
Direct innerhtml assignment
src/attune/ops/static/js/bulletin.js:96
Direct innerhtml assignment
src/attune/ops/static/js/completion_candidates.js:228
Direct innerhtml assignment
src/attune/ops/static/js/run_view.js:944
Direct innerhtml assignment
src/attune/ops/static/js/workflows_kebab.js:61
Direct innerhtml assignment
website/public/framework-docs/assets/javascripts/bundle.e71a0d61.min.js:14
Direct innerhtml assignment
website/public/framework-docs/assets/javascripts/bundle.e71a0d61.min.js:14
Domparser html parse
plugin/hooks/security_guard.py:66
Subprocess shell true
scripts/phase_2_setup.py:357
Subprocess shell true
src/attune/hooks/scripts/security_guard.py:58
Subprocess shell true
src/attune/workflows/discovery_sweep/sources/pattern_scan.py:212
Subprocess shell true
attune-ai-dev/help/security-audit/concept.html:303
Weak hash
attune-ai-dev/help/security-audit/faq.html:308
Weak hash
docs/rag/ab-report-2026-04-19-sentinel-hybrid.json:179
Weak hash
docs/rag/ab-report-2026-04-19-sentinel-xml-attr.json:179
Weak hash
docs/rag/ab-report-2026-04-19.json:168
Weak hash
attune.config.yml
Ports
attune.config.yml
Ports
.github/workflows/integration-auth.yml
Ports
.devcontainer/Dockerfile:3
containersPinned dependencies
website/.github/workflows/deploy.yml:17, 20 (2 hits)repo-level (15 hits)repo-level (4 hits)scripts/profile_utils.py:138
scripts/build_docs.py:177
scripts/qa_post_release.py:109
agents/compliance_anticipation_agent.py:456
scripts/qa_post_release.py:47
scripts/qa_post_release.py:146
scripts/qa_post_release.py:157
scripts/qa_post_release.py:218
scripts/qa_post_release.py:55
scripts/qa_post_release.py:79
scripts/qa_post_release.py:120
scripts/qa_post_release.py:126
scripts/qa_post_release.py:134
scripts/qa_post_release.py:99
scripts/qa_post_release.py:197
scripts/qa_post_release.py:184
scripts/qa_post_release.py:174
scripts/qa_post_release.py:63
scripts/qa_post_release.py:91
scripts/qa_post_release.py:83
scripts/profile_utils.py:33
scripts/phase0/measure.py:60
agents/compliance_anticipation_agent.py:349
scripts/profile_utils.py:189
scripts/profile_utils.py:88
scripts/simple_todo_impl.py:46
agents/compliance_anticipation_agent.py:538
scripts/ast_api_extractor.py:49
scripts/ast_api_extractor.py:123
Showing first 300 of 314. Refine filters or use the findings page for deep search.
This page is publicly accessible at:
https://repobility.com/scan/9b374769-5422-4788-8d44-189b8a865960/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/9b374769-5422-4788-8d44-189b8a865960/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.