Scan timing: clone 16.72s · analysis 11.16s · 44.6 MB · GitHub API rate-limit (preflight)
https://github.com/prisma/prisma
· scanned 2026-05-31 01:26 UTC (5 days, 13 hours ago)
· 10 languages
1059 findings (189 legacy + 870 scanner) 11/13 scanners ran 84th percentile · Typescript · large (100-500K LoC) Scanner says 59 (higher by 26)
Last scanned 5 days, 13 hours ago · v2 · 624 findings from 2 sources. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
60.0 | 0.15 | 9.00 |
security_score |
100.0 | 0.25 | 25.00 |
testing_score |
95.0 | 0.20 | 19.00 |
documentation_score |
80.0 | 0.15 | 12.00 |
practices_score |
76.0 | 0.15 | 11.40 |
code_quality |
80.0 | 0.10 | 8.00 |
| Overall | 1.00 | 84.4 |
Showing 339 of 624 findings. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
.github/workflows/scripts/setup-postgres.sh:24
qualitylegacy
packages/internals/src/get-generators/utils/getBinaryPathsByVersion.ts:84
qualitylegacy
packages/cli/src/bin.ts:207
qualitylegacy
packages/cli/src/Generate.ts:36
qualitylegacy
.github/workflows/benchmark.yml:88
dependencylegacy
docker/docker-compose.yml:149
dockerlegacy
docker/docker-compose.yml:133
dockerlegacy
docker/docker-compose.yml:116
dockerlegacy
docker/docker-compose.yml:99
dockerlegacy
docker/docker-compose.yml:51
dockerlegacy
docker/docker-compose.yml:28
dockerlegacy
docker/docker-compose.yml:5
dockerlegacy
packages/client-generator-ts/src/utils/addPreamble.ts:9
qualitylegacy
.github/workflows/update-engines-version.yml:29
dependencylegacy
.github/workflows/auto-close-github-discussions.yml:18
dependencylegacy
.github/workflows/codeql-analysis.yml:34
dependencylegacy
.github/workflows/bundle-size.yml:30
dependencylegacy
.github/workflows/update-engines-version.yml:102
dependencylegacy
.github/workflows/update-engines-version.yml:33
dependencylegacy
.github/workflows/auto-close-github-discussions.yml:26
dependencylegacy
.github/workflows/bundle-size.yml:38
dependencylegacy
.github/workflows/codeql-analysis.yml:47
dependencylegacy
.github/workflows/codeql-analysis.yml:38
dependencylegacy
.github/workflows/update-engines-version.yml:149
dependencylegacy
.github/workflows/update-engines-version.yml:92
dependencylegacy
.github/workflows/update-engines-version.yml:83
dependencylegacy
.github/workflows/update-engines-version.yml:74
dependencylegacy
.github/workflows/update-engines-version.yml:65
dependencylegacy
.github/workflows/update-engines-version.yml:163
dependencylegacy
.github/workflows/update-engines-version.yml:115
dependencylegacy
.github/workflows/update-engines-version.yml:31
dependencylegacy
.github/workflows/auto-close-github-discussions.yml:21
dependencylegacy
docker/planetscale_proxy/Dockerfile:5
dependencylegacy
docker/planetscale_proxy/Dockerfile:1
dependencylegacy
sandbox/d1/package.json:1
dependencylegacy
packages/client/src/runtime/highlight/languages/sql.ts:22
path_traversallegacy
packages/cli/src/platform/_lib/help.ts:12
xsslegacy
packages/cli/scripts/preinstall.ts:39
xsslegacy
eslint-local-rules/valid-exported-types-index.ts:24
xsslegacy
packages/client/src/runtime/utils/createErrorMessageWithContext.ts:132
qualitylegacy
packages/cli/src/utils/prompt/utils/deepExtend.ts:42
qualitylegacy
packages/adapter-d1/src/d1-worker.ts:172
qualitylegacy
packages/adapter-better-sqlite3/src/better-sqlite3.ts:186
qualitylegacy
helpers/compile/plugins/replaceWithPlugin.ts:31
qualitylegacy
docker/docker-compose.yml:163
dockerlegacy
docker/docker-compose.yml:149
dockerlegacy
docker/docker-compose.yml:133
dockerlegacy
docker/docker-compose.yml:116
dockerlegacy
docker/docker-compose.yml:99
dockerlegacy
docker/docker-compose.yml:80
dockerlegacy
docker/docker-compose.yml:51
dockerlegacy
docker/docker-compose.yml:163
dockerlegacy
docker/docker-compose.yml:149
dockerlegacy
docker/docker-compose.yml:133
dockerlegacy
docker/docker-compose.yml:116
dockerlegacy
docker/docker-compose.yml:99
dockerlegacy
docker/docker-compose.yml:80
dockerlegacy
docker/docker-compose.yml:51
dockerlegacy
.github/workflows/pr-code-security.yml:10
supply-chaingithub-actionspinned-dependencies
.github/workflows/pr-code-security.yml:14
supply-chaingithub-actionspinned-dependencies
packages/cli/src/bin.ts:207
owaspeval_used
packages/cli/src/Generate.ts:36
owaspeval_used
packages/internals/src/get-generators/utils/getBinaryPathsByVersion.ts:84
owaspeval_used
packages/cli/src/utils/printUpdateMessage.ts:33
error_handlinglegacy
packages/cli/src/postgres/link/Link.ts:155
qualitylegacy
packages/cli/src/postgres/PostgresCommand.ts:29
qualitylegacy
packages/fetch-engine/src/utils.ts:27
qualitylegacy
packages/client/src/runtime/utils/SourceFileSlice.ts:23
qualitylegacy
packages/cli/src/Generate.ts:363
qualitylegacy
docker/docker-compose.yml:244
dockerlegacy
docker/docker-compose.yml:226
dockerlegacy
.dockerignore
dockerlegacy
docker/docker-compose.yml:183
dockerlegacy
docker/docker-compose.yml:5
dockerlegacy
docker/postgres_ext/Dockerfile:2
dockerlegacy
docker/planetscale_proxy/Dockerfile:5
dockerlegacy
docker/mongodb_replica/Dockerfile:3
dockerlegacy
docker/planetscale_proxy/Dockerfile:5
dockerlegacy
CONTRIBUTING.md:35
dependencylegacy
docker/planetscale_proxy/Dockerfile:5
supply-chaindockerpinned-dependencies
.github/workflows/codeql-analysis.yml:38
supply-chaingithub-actionspinned-dependencies
.github/workflows/codeql-analysis.yml:47
supply-chaingithub-actionspinned-dependencies
.github/workflows/auto-close-github-discussions.yml:21
supply-chaingithub-actionspinned-dependencies
.github/workflows/update-engines-version.yml:65
supply-chaingithub-actionspinned-dependencies
.github/workflows/update-engines-version.yml:74
supply-chaingithub-actionspinned-dependencies
.github/workflows/update-engines-version.yml:83
supply-chaingithub-actionspinned-dependencies
.github/workflows/update-engines-version.yml:92
supply-chaingithub-actionspinned-dependencies
.github/workflows/update-engines-version.yml:115
supply-chaingithub-actionspinned-dependencies
.github/workflows/update-engines-version.yml:149
supply-chaingithub-actionspinned-dependencies
.github/workflows/update-engines-version.yml:163
supply-chaingithub-actionspinned-dependencies
.github/workflows/update-engines-version.yml:207
supply-chaingithub-actionspinned-dependencies
.github/workflows/update-studio-version.yml:41
supply-chaingithub-actionspinned-dependencies
.github/workflows/update-studio-version.yml:72
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:164
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml:182
supply-chaingithub-actionspinned-dependencies
.github/workflows/build-engine-branch.yml:123
supply-chaingithub-actionspinned-dependencies
.github/workflows/benchmark.yml:69
supply-chaingithub-actionspinned-dependencies
.github/workflows/benchmark.yml:84
supply-chaingithub-actionspinned-dependencies
.github/workflows/release.yml
supply-chaingithub-actionsleast-privilege
docker/docker-compose.yml
securityports
docker/docker-compose.yml
securityports
.github/workflows/codeql-analysis.yml
securityports
.dockerignore
dockerlegacy
docker/docker-compose.yml:244
dockerlegacy
docker/docker-compose.yml:226
dockerlegacy
docker/docker-compose.yml:206
dockerlegacy
docker/docker-compose.yml:183
dockerlegacy
docker/docker-compose.yml:149
dockerlegacy
docker/docker-compose.yml:66
dockerlegacy
docker/docker-compose.yml:28
dockerlegacy
docker/docker-compose.yml:5
dockerlegacy
docker/docker-compose.yml:244
dockerlegacy
docker/docker-compose.yml:226
dockerlegacy
docker/docker-compose.yml:206
dockerlegacy
docker/docker-compose.yml:149
dockerlegacy
docker/docker-compose.yml:66
dockerlegacy
docker/docker-compose.yml:28
dockerlegacy
docker/postgres_ext/Dockerfile:8
dockerlegacy
packages/client-generator-ts/src/TSClient/PrismaClient.ts:20
qualitylegacy
packages/client-generator-ts/src/TSClient/Payload.ts:2
qualitylegacy
packages/client-generator-ts/src/TSClient/Output.ts:13
qualitylegacy
packages/client-generator-ts/src/TSClient/Model.ts:18
qualitylegacy
packages/client-generator-ts/src/TSClient/Input.ts:11
qualitylegacy
packages/client-generator-ts/src/TSClient/Count.ts:11
qualitylegacy
packages/client-generator-ts/src/TSClient/Args.ts:9
qualitylegacy
packages/client-generator-ts/src/GenericsArgsInfo.ts:1
qualitylegacy
packages/client-engine-runtime/bench/sample-query-plans.ts:53
qualitylegacy
packages/cli/src/Validate.ts:50
qualitylegacy
packages/bundle-size/da-workers-libsql/index.js:2
qualitylegacy
packages/adapter-ppg/src/errors.ts:3
qualitylegacy
packages/adapter-ppg/src/conversion.ts:121
qualitylegacy
packages/adapter-planetscale/src/planetscale.ts:2
qualitylegacy
packages/adapter-planetscale/src/errors.ts:92
qualitylegacy
packages/adapter-planetscale/src/conversion.ts:129
qualitylegacy
packages/adapter-planetscale/src/conversion.ts:127
qualitylegacy
packages/adapter-pg/src/pg.ts:30
qualitylegacy
packages/adapter-pg/src/errors.ts:44
qualitylegacy
packages/adapter-pg/src/conversion.ts:341
qualitylegacy
packages/adapter-pg/src/conversion.ts:10
qualitylegacy
packages/adapter-neon/src/conversion.ts:333
qualitylegacy
packages/adapter-mssql/src/mssql.ts:1
qualitylegacy
packages/adapter-mssql/src/conversion.ts:99
qualitylegacy
packages/adapter-libsql/src/libsql.ts:7
qualitylegacy
packages/adapter-libsql/src/errors.ts:53
qualitylegacy
packages/adapter-libsql/src/conversion.ts:119
qualitylegacy
packages/adapter-libsql/src/conversion.ts:6
qualitylegacy
packages/adapter-d1/src/d1-worker.ts:77
qualitylegacy
packages/adapter-d1/src/conversion.ts:54
qualitylegacy
AGENTS.md:1
qualitylegacy
docker/planetscale_proxy/Dockerfile:1
supply-chaindockerpinned-dependencies
docker/mongodb_replica/Dockerfile:2
supply-chaindockerpinned-dependencies
docker/postgres_ext/Dockerfile:2
supply-chaindockerpinned-dependencies
.github/workflows/codeql-analysis.yml:34
supply-chaingithub-actionspinned-dependencies
.github/workflows/auto-close-github-discussions.yml:18
supply-chaingithub-actionspinned-dependencies
.github/workflows/auto-close-github-discussions.yml:26
supply-chaingithub-actionspinned-dependencies
.github/workflows/update-engines-version.yml:102
supply-chaingithub-actionspinned-dependencies
.github/workflows/update-engines-version.yml:197
supply-chaingithub-actionspinned-dependencies
package.json
supply-chainnpminstall-scripts
packages/engines/package.json
supply-chainnpminstall-scripts
packages/cli/package.json
supply-chainnpminstall-scripts
Showing first 300 of 339. Refine filters or use the legacy findings page for deep search.
This page is publicly accessible at:
https://repobility.com/scan/a0302965-5ed4-4eba-a4e9-ef700afaebd1/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/a0302965-5ed4-4eba-a4e9-ef700afaebd1/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.