Public scan — anyone with this URL can view this analysis. Sign up to track your own repos privately, run scheduled re-scans, and get AI fix prompts via your dashboard.

ruvnet/RuView

https://github.com/ruvnet/RuView · scanned 2026-07-23 19:40 UTC (4 days, 20 hours ago) · 10 languages

594 raw signals (77 security + 517 graph) 26th percentile · Rust · large (100-500K LoC)

UNIFIED Repobility · multi-layer engine · AI coders

Complete repo analysis

Last scanned 4 days, 20 hours ago · v6 · last Δ +7.8 (diff) · 523 actionable findings from 2 signal sources. 61 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.

JSON
Severity distribution — click a segment to filter
Active filters: excluding tests × Reset all
Scan summary Repository scanned at 59.9/100 with 100.0% coverage. It contains 8974 nodes across 30 cross-layer flows, written primarily in mixed languages. Engine surfaced 517 findings — concentrated in security (235), quality (132), dependencies (74). Risk profile is high: 3 critical, 110 high, 286 medium. Recommended next step: open the security layer findings first — that's where the highest-impact wins live.

Showing 510 of 523 actionable findings. 584 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.

critical System graph security Trivy conf 1.00 CVE-2025-23042: gradio 5.9.1 — aether-arena/space/requirements.txt
Gradio Blocked Path ACL Bypass Vulnerability Gradio is an open-source Python package that allows quick building of demos and web application for machine learning models, API, or any arbitrary Python function. Gradio's Access Control List (ACL) for file paths can be bypassed by altering the letter …
VulnCve 2025 23042
critical System graph security Trivy conf 1.00 CVE-2026-9277: shell-quote 1.8.3 — ui/mobile/package-lock.json
shell-quote: shell-quote: Arbitrary code execution via command injection due to unescaped line terminators shell-quote's `quote()` function did not validate object-token inputs against the operator model used by `parse()`. The `.op` field was backslash-escaped character by character using `/(.)/g`…
VulnCve 2026 9277
critical System graph security Trivy conf 1.00 DS-0031: Secrets passed via `build-args` or envs or copied secret files — docker/Dockerfile.rust
Secrets passed via `build-args` or envs or copied secret files Possible exposure of secret env "RUVIEW_API_TOKEN" in ENV Rule: DS-0031 Severity: CRITICAL Target: docker/Dockerfile.rust
Misconfig
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/agents/consensus/security-manager.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/agents/consensus/security-manager.md:56 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/agents/flow-nexus/app-store.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/agents/flow-nexus/app-store.md:43 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/agents/github/issue-tracker.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/agents/github/issue-tracker.md:352 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/agents/github/pr-manager.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/agents/github/pr-manager.md:360 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/agents/github/release-manager.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/agents/github/release-manager.md:494 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/agents/github/repo-architect.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/agents/github/repo-architect.md:259 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/agents/github/swarm-pr.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/agents/github/swarm-pr.md:418 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/agents/github/sync-coordinator.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/agents/github/sync-coordinator.md:114 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/agents/github/workflow-automation.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/agents/github/workflow-automation.md:803 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/agents/goal/goal-planner.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/agents/goal/goal-planner.md:70 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/agents/payments/agentic-payments.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/agents/payments/agentic-payments.md:35 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/agents/sparc/architecture.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/agents/sparc/architecture.md:670 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/agents/sparc/refinement.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/agents/sparc/refinement.md:431 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/agents/sublinear/pagerank-analyzer.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/agents/sublinear/pagerank-analyzer.md:81 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/agents/swarm/adaptive-coordinator.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/agents/swarm/adaptive-coordinator.md:810 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/agents/swarm/hierarchical-coordinator.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/agents/swarm/hierarchical-coordinator.md:560 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/agents/swarm/mesh-coordinator.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/agents/swarm/mesh-coordinator.md:732 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/agents/v3/collective-intelligence-coordinator.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/agents/v3/collective-intelligence-coordinator.md:503 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/agents/v3/ddd-domain-expert.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/agents/v3/ddd-domain-expert.md:35 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/agents/v3/performance-engineer.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/agents/v3/performance-engineer.md:538 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/agents/v3/reasoningbank-learner.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/agents/v3/reasoningbank-learner.md:104 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/agents/v3/security-architect.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/agents/v3/security-architect.md:446 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/agents/v3/security-auditor.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/agents/v3/security-auditor.md:611 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/agents/v3/sparc-orchestrator.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/agents/v3/sparc-orchestrator.md:171 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/agents/v3/swarm-memory-manager.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/agents/v3/swarm-memory-manager.md:31 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/agents/v3/v3-integration-architect.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/agents/v3/v3-integration-architect.md:27 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/commands/github/issue-tracker.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/commands/github/issue-tracker.md:68 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/commands/github/pr-manager.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/commands/github/pr-manager.md:92 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/commands/github/release-manager.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/commands/github/release-manager.md:227 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/commands/github/repo-architect.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/commands/github/repo-architect.md:228 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/commands/github/sync-coordinator.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/commands/github/sync-coordinator.md:78 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/commands/hooks/post-task.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/commands/hooks/post-task.md:103 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/commands/sparc/code.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/commands/sparc/code.md:69 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/commands/sparc/debug.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/commands/sparc/debug.md:63 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/commands/sparc/devops.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/commands/sparc/devops.md:89 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/commands/sparc/docs-writer.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/commands/sparc/docs-writer.md:60 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/commands/sparc/integration.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/commands/sparc/integration.md:63 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/commands/sparc/post-deployment-monitoring-mode.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/commands/sparc/post-deployment-monitoring-mode.md:63 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/commands/sparc/refinement-optimization-mode.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/commands/sparc/refinement-optimization-mode.md:63 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/commands/sparc/security-review.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/commands/sparc/security-review.md:60 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/commands/sparc/sparc.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/commands/sparc/sparc.md:91 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/commands/sparc/supabase-admin.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/commands/sparc/supabase-admin.md:328 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/commands/sparc/tutorial.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/commands/sparc/tutorial.md:59 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/skills/agentdb-advanced/SKILL.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/skills/agentdb-advanced/SKILL.md:306 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/skills/agentdb-memory-patterns/SKILL.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/skills/agentdb-memory-patterns/SKILL.md:336 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/skills/agentdb-vector-search/SKILL.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/skills/agentdb-vector-search/SKILL.md:334 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/skills/github-multi-repo/SKILL.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/skills/github-multi-repo/SKILL.md:174 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/skills/github-release-management/SKILL.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/skills/github-release-management/SKILL.md:209 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/skills/github-workflow-automation/SKILL.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/skills/github-workflow-automation/SKILL.md:689 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/skills/hooks-automation/SKILL.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/skills/hooks-automation/SKILL.md:612 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/skills/reasoningbank-intelligence/SKILL.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/skills/reasoningbank-intelligence/SKILL.md:151 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/skills/sparc-methodology/SKILL.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/skills/sparc-methodology/SKILL.md:695 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/skills/v3-mcp-optimization/SKILL.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/skills/v3-mcp-optimization/SKILL.md:715 SecretsClaude instruction
high System graph security Agent instructions conf 1.00 Agent instruction/config may expose a secret: .claude/skills/v3-security-overhaul/SKILL.md
Agent-facing files are routinely pasted into LLM/tool contexts. Move literal tokens, keys, and passwords into a secret manager or document them as placeholders only.
.claude/skills/v3-security-overhaul/SKILL.md:42 SecretsClaude instruction
high System graph security Trivy conf 1.00 CVE-2022-39974: wasm3 0.3.1 — v2/Cargo.lock
WASM3 Improper Input Validation vulnerability WASM3 v0.5.0 was discovered to contain a segmentation fault via the component op_Select_i32_srs in wasm3/source/m3_exec.h. Package: wasm3 Installed: 0.3.1 Fixed in: — Severity: HIGH Fix: No fix version published yet
VulnCve 2022 39974
high System graph security Trivy conf 1.00 CVE-2024-8966: gradio 5.9.1 — aether-arena/space/requirements.txt
Gradio DOS in multipart boundry while uploading the file A vulnerability in the file upload process of gradio-app/gradio version @gradio/[email protected] allows for a Denial of Service (DoS) attack. An attacker can append a large number of characters to the end of a multipart boundary, causing the sys…
VulnCve 2024 8966
high System graph security Trivy conf 1.00 CVE-2026-12143: form-data 4.0.5 — ui/mobile/package-lock.json
form-data: form-data: Form field override via CRLF injection form-data is a library for creating readable multipart/form-data streams. In versions through 4.0.5, the `field` argument to `FormData#append` and the `filename` option are concatenated verbatim into the `Content-Disposition` header with…
VulnCve 2026 12143
high System graph security Trivy conf 1.00 CVE-2026-13149: brace-expansion 1.1.12 — ui/mobile/package-lock.json
brace-expansion: Brace-expansion: Denial of Service due to exponential-time complexity brace-expansion through 5.0.6 is vulnerable to denial of service. The expand() function exhibits exponential-time complexity in the number of consecutive non-expanding '{}' brace groups. An attacker who passes a…
VulnCve 2026 13149
high System graph security Trivy conf 1.00 CVE-2026-13149: brace-expansion 5.0.4 — ui/mobile/package-lock.json
brace-expansion: Brace-expansion: Denial of Service due to exponential-time complexity brace-expansion through 5.0.6 is vulnerable to denial of service. The expand() function exhibits exponential-time complexity in the number of consecutive non-expanding '{}' brace groups. An attacker who passes a…
VulnCve 2026 13149
high System graph security Trivy conf 1.00 CVE-2026-13311: shell-quote 1.8.3 — ui/mobile/package-lock.json
shell-quote: shell-quote/parse: shell-quote: Denial of Service due to inefficient input parsing shell-quote prior to 1.8.5 finalizes parsed tokens in parse() using Array.prototype.concat as a reduce accumulator, which reallocates and copies the entire growing array on every iteration. As a result …
VulnCve 2026 13311
high System graph security Trivy conf 1.00 CVE-2026-13676: fast-uri 3.1.2 — tools/ruview-mcp/package-lock.json
fast-uri: fast-uri: Security policy bypass due to improper Unicode hostname canonicalization fast-uri versions 2.3.1 through 3.1.2 and 4.0.0 fail to canonicalize Unicode (IDN) hostnames for HTTP-family URLs. The IDN conversion path calls a helper that does not exist on the global URL constructor, …
VulnCve 2026 13676
high System graph security Trivy conf 1.00 CVE-2026-16221: fast-uri 3.1.2 — tools/ruview-mcp/package-lock.json
Impact: fast-uri versions from 2.3.1 through 4.1.0 (including the 3.x ... Impact: fast-uri versions from 2.3.1 through 4.1.0 (including the 3.x line up to 3.1.3 and the 2.x line up to 2.4.2) do not treat a literal backslash character (U+005C) as an authority delimiter. Node's native WHATWG URL pa…
VulnCve 2026 16221
high System graph security Trivy conf 1.00 CVE-2026-28414: gradio 5.9.1 — aether-arena/space/requirements.txt
Gradio is Vulnerable to Absolute Path Traversal on Windows with Python 3.13+ Gradio is an open-source Python package designed for quick prototyping. Prior to version 6.7, Gradio apps running on Window with Python 3.13+ are vulnerable to an absolute path traversal issue that enables unauthenticated…
VulnCve 2026 28414
high System graph security Trivy conf 1.00 CVE-2026-28416: gradio 5.9.1 — aether-arena/space/requirements.txt
Gradio: Gradio: Server-Side Request Forgery allows access to internal services via malicious Space loading Gradio is an open-source Python package designed for quick prototyping. Prior to version 6.6.0, a Server-Side Request Forgery (SSRF) vulnerability in Gradio allows an attacker to make arbitra…
VulnCve 2026 28416
high System graph security Trivy conf 1.00 CVE-2026-31812: quinn-proto 0.11.13 — v2/Cargo.lock
quinn-proto: quinn-proto: Denial of Service via crafted QUIC Initial packet Quinn is a pure-Rust, async-compatible implementation of the IETF QUIC transport protocol. Prior to 0.11.14, a remote, unauthenticated attacker can trigger a denial of service in applications using vulnerable quinn version…
VulnCve 2026 31812
high System graph security Trivy conf 1.00 CVE-2026-44486: axios 1.15.2 — ui/mobile/package-lock.json
axios: Axios: Information disclosure of proxy credentials via HTTP redirects Axios is a promise based HTTP client for the browser and Node.js. Prior to 0.32.0 and 1.16.0, Axios’ Node.js HTTP adapter can leak proxy credentials to a redirect target in affected versions. When a request is sent throug…
VulnCve 2026 44486
high System graph security Trivy conf 1.00 CVE-2026-44487: axios 1.15.2 — ui/mobile/package-lock.json
axios: Axios: Information disclosure of proxy credentials via redirect flows Axios is a promise based HTTP client for the browser and Node.js. Prior to 0.32.0 and 1.16.0, Axios’s Node.js HTTP adapter may forward a Proxy-Authorization header to a redirected origin during specific proxy-to-direct re…
VulnCve 2026 44487
high System graph security Trivy conf 1.00 CVE-2026-44488: axios 1.15.2 — ui/mobile/package-lock.json
axios: Axios: Denial of Service due to unenforced request and response size limits Axios is a promise based HTTP client for the browser and Node.js. Axios versions 1.7.0 through 1.15.x did not enforce configured request and response size limits when requests were sent with the fetch adapter. Appli…
VulnCve 2026 44488
high System graph security Trivy conf 1.00 CVE-2026-44492: axios 1.15.2 — ui/mobile/package-lock.json
axios: Axios: Proxy bypass via IPv4-mapped IPv6 address non-normalization Axios is a promise based HTTP client for the browser and Node.js. Prior to 0.32.0 and 1.16.0, Axios does not normalise IPv4-mapped IPv6 addresses. When NO_PROXY lists an IPv4 address such as 127.0.0.1 or 169.254.169.254, a r…
VulnCve 2026 44492
high System graph security Trivy conf 1.00 CVE-2026-44494: axios 1.15.2 — ui/mobile/package-lock.json
axios: Axios: Man-in-the-Middle (MITM) attack via Prototype Pollution Axios is a promise based HTTP client for the browser and Node.js. From 1.0.0 to before 1.16.0, the Axios library is vulnerable to a Prototype Pollution "Gadget" attack that allows any Object.prototype pollution in the applicatio…
VulnCve 2026 44494
high System graph security Trivy conf 1.00 CVE-2026-44496: axios 1.15.2 — ui/mobile/package-lock.json
axios: Axios: Client-side Denial of Service via unescaped regex metacharacters in XSRF cookie name Axios is a promise based HTTP client for the browser and Node.js. Axios versions before 0.32.0 on the 0.x line and before 1.16.0 on the 1.x line build a regular expression from the configured XSRF co…
VulnCve 2026 44496
high System graph security Trivy conf 1.00 CVE-2026-48545: gradio 5.9.1 — aether-arena/space/requirements.txt
Gradio contains a cookie injection vulnerability Gradio before version 6.15.0 contains a cookie injection vulnerability that allows remote attackers to perform cross-Space session fixation by exploiting a shared module-level HTTP client used across all users in the reverse proxy endpoint. Attacker…
VulnCve 2026 48545
high System graph security Trivy conf 1.00 CVE-2026-48779: ws 7.5.10 — ui/mobile/package-lock.json
ws: ws: Denial of Service via memory exhaustion from small WebSocket fragments ws is an open source WebSocket client and server for Node.js. All versions from 1.1.0 up to (but not including) 5.2.5, from 6.0.0 up to 6.2.4, from 7.0.0 up to 7.5.11, and from 8.0.0 up to 8.21.0 are affected by a memor…
VulnCve 2026 48779
high System graph security Trivy conf 1.00 CVE-2026-48779: ws 8.19.0 — ui/mobile/package-lock.json
ws: ws: Denial of Service via memory exhaustion from small WebSocket fragments ws is an open source WebSocket client and server for Node.js. All versions from 1.1.0 up to (but not including) 5.2.5, from 6.0.0 up to 6.2.4, from 7.0.0 up to 7.5.11, and from 8.0.0 up to 8.21.0 are affected by a memor…
VulnCve 2026 48779
high System graph security Trivy conf 1.00 CVE-2026-54290: hono 4.12.21 — tools/ruview-mcp/package-lock.json
hono: CORS Middleware reflects any Origin with credentials when `origin` defaults to the wildcard Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.25, with credentials: true and no explicit origin (the default wildcard), the CORS Middleware reflec…
VulnCve 2026 54290
high System graph security Trivy conf 1.00 CVE-2026-59869: js-yaml 4.1.1 — ui/mobile/package-lock.json
js-yaml: js-yaml: Denial of Service via crafted YAML documents js-yaml is a JavaScript YAML parser and dumper. From 3.0.0 before 3.15.0 and from 4.0.0 before 4.3.0, js-yaml can spend quadratic CPU time parsing a document whose size grows only linearly when a chain of mappings uses merge keys where…
VulnCve 2026 59869
high System graph security Semgrep conf 0.55 double free — firmware/esp32-csi-node/main/wasm_upload.c:186
Variable 'buf' was freed twice. This can lead to undefined behavior. Rule: c.lang.security.double-free.double-free Severity: ERROR OWASP: A03:2021 - Injection, A01:2017 - Injection, A05:2025 - Injection CWE: CWE-415: Double Free Category: security Context: production
firmware/esp32-csi-node/main/wasm_upload.c:186 SecurityC
high System graph security Trivy conf 1.00 DS-0002: Image user should not be 'root' — docker/Dockerfile.python
Image user should not be 'root' Specify at least 1 USER command in Dockerfile with non-root user as argument Rule: DS-0002 Severity: HIGH Target: docker/Dockerfile.python
Misconfig
high System graph security Trivy conf 1.00 DS-0002: Image user should not be 'root' — docker/Dockerfile.rust
Image user should not be 'root' Specify at least 1 USER command in Dockerfile with non-root user as argument Rule: DS-0002 Severity: HIGH Target: docker/Dockerfile.rust
Misconfig
high System graph security Trivy conf 1.00 GHSA-36hh-v3qg-5jq4: pyo3 0.22.6 — python/Cargo.lock
PyO3 has an Out-of-bounds Read in `nth` / `nth_back` for `PyList` and `PyTuple` iterators PyO3 0.24.0 added optimized implementations of `Iterator::nth` and `DoubleEndedIterator::nth_back` for the `BoundListIterator` and `BoundTupleIterator` types. These implementations computed the target index u…
VulnGhsa 36hh v3qg 5jq4
high System graph security Trivy conf 1.00 GHSA-82j2-j2ch-gfr8: rustls-webpki 0.101.7 — v2/Cargo.lock
rustls-webpki: Denial of service via panic on malformed CRL BIT STRING ### Summary `bit_string_flags()` in `src/der.rs` panics with an index-out-of-bounds when given a BIT STRING whose content is exactly `[0x00]` (one byte: zero padding bits, zero data bytes). This is reachable through the public…
VulnGhsa 82j2 j2ch gfr8
high System graph security Trivy conf 1.00 GHSA-82j2-j2ch-gfr8: rustls-webpki 0.102.8 — v2/Cargo.lock
rustls-webpki: Denial of service via panic on malformed CRL BIT STRING ### Summary `bit_string_flags()` in `src/der.rs` panics with an index-out-of-bounds when given a BIT STRING whose content is exactly `[0x00]` (one byte: zero padding bits, zero data bytes). This is reachable through the public…
VulnGhsa 82j2 j2ch gfr8
high System graph security Trivy conf 1.00 GHSA-gcfj-64vw-6mp9: axios 1.15.2 — ui/mobile/package-lock.json
Axios Node HTTP adapter can use an inherited proxy after interceptor config cloning ## Summary Axios’ Node.js HTTP adapter can route requests through an attacker-controlled proxy when `Object.prototype.proxy` is polluted and request configuration is materialized as a regular object before dispatc…
VulnGhsa gcfj 64vw 6mp9
high System graph security security conf 1.00 Insecure pattern 'exec_used' in dashboard/src/components/nv-console.ts:119
Found a known-risky pattern (exec_used). Review and replace if possible.
dashboard/src/components/nv-console.ts:119 Exec used
high System graph security security conf 0.90 Insecure pattern 'node_child_process' in .claude/helpers/github-safe.js:12
Found a known-risky pattern (node_child_process). Review and replace if possible.
.claude/helpers/github-safe.js:12 Node child process
high System graph security security conf 0.90 Insecure pattern 'node_child_process' in .claude/helpers/metrics-db.mjs:12
Found a known-risky pattern (node_child_process). Review and replace if possible.
.claude/helpers/metrics-db.mjs:12 Node child process
high System graph security security conf 0.90 Insecure pattern 'node_child_process' in .claude/helpers/statusline.cjs:19
Found a known-risky pattern (node_child_process). Review and replace if possible.
.claude/helpers/statusline.cjs:19 Node child process
high System graph security security conf 0.90 Insecure pattern 'node_child_process' in .claude/helpers/statusline.js:11
Found a known-risky pattern (node_child_process). Review and replace if possible.
.claude/helpers/statusline.js:11 Node child process
high System graph security Trivy conf 1.00 KSV-0014: Root file system is not read-only — logging/fluentd-config.yml
Root file system is not read-only Container 'fluentd' of DaemonSet 'fluentd' should set 'securityContext.readOnlyRootFilesystem' to true Rule: KSV-0014 Severity: HIGH Target: logging/fluentd-config.yml
Misconfig
high System graph security Trivy conf 1.00 KSV-0118: Default security context configured — logging/fluentd-config.yml
Default security context configured container fluentd in kube-system namespace is using the default security context Rule: KSV-0118 Severity: HIGH Target: logging/fluentd-config.yml
Misconfig
high System graph security Skillspector conf 0.70 SkillSpector P1 (prompt-injection) in .claude/skills/hooks-automation/SKILL.md
Enable debug mode This pattern attempts to override system instructions or ignore safety constraints. Without LLM analysis, manual review is recommended. Skill: Hooks Automation Rule: P1 Category: prompt-injection Severity: HIGH Confidence: 0.70 Remediation: Remove or rewrite any text that ins…
.claude/skills/hooks-automation/SKILL.md:1113 Mcp skillPrompt injectionP1
high System graph security Skillspector conf 0.70 SkillSpector P1 (prompt-injection) in .claude/skills/stream-chain/SKILL.md
Enable debug mode This pattern attempts to override system instructions or ignore safety constraints. Without LLM analysis, manual review is recommended. Skill: stream-chain Rule: P1 Category: prompt-injection Severity: HIGH Confidence: 0.70 Remediation: Remove or rewrite any text that instruc…
.claude/skills/stream-chain/SKILL.md:64 Mcp skillPrompt injectionP1
high System graph security Skillspector conf 0.70 SkillSpector P2 (prompt-injection) in .claude/skills/github-code-review/SKILL.md
<!-- In PR comment --> /swarm init mesh 6 /swarm spawn coder "Implement authentication" /swarm spawn tester "Write unit tests" /swarm status /swarm review --agents security,performance ``` <details> Hidden instructions were detected in comments or invisible text. These could contain malicious dir…
.claude/skills/github-code-review/SKILL.md:381 Mcp skillPrompt injectionP2
high System graph security Skillspector conf 0.70 SkillSpector P2 (prompt-injection) in .claude/skills/github-project-management/SKILL.md
<!-- In issue comment --> /swarm analyze /swarm decompose 5 /swarm assign @agent-coder /swarm estimate /swarm start ``` </details> <details> <summary><strong>Automated Issue Triage</strong></summary Hidden instructions were detected in comments or invisible text. These could contain malicious di…
.claude/skills/github-project-management/SKILL.md:171 Mcp skillPrompt injectionP2
high System graph security Skillspector conf 0.70 SkillSpector PE3 (priv-esc) in .claude/skills/github-release-management/SKILL.md
.npmrc Code accesses credential files (SSH keys, AWS credentials, etc.). This could indicate credential theft attempts. Skill: github-release-management Rule: PE3 Category: priv-esc Severity: HIGH Confidence: 0.70 Remediation: Remove references to credential paths. Use environment variables or…
.claude/skills/github-release-management/SKILL.md:795 Mcp skillPriv escPe3
high System graph security Skillspector conf 0.60 SkillSpector PE3 (priv-esc) in .claude/skills/hooks-automation/SKILL.md
.env.production" Code accesses credential files (SSH keys, AWS credentials, etc.). This could indicate credential theft attempts. Skill: Hooks Automation Rule: PE3 Category: priv-esc Severity: HIGH Confidence: 0.60 Remediation: Remove references to credential paths. Use environment variables o…
.claude/skills/hooks-automation/SKILL.md:740 Mcp skillPriv escPe3
high System graph security Skillspector conf 0.80 SkillSpector TM1 (tool-misuse) in .claude/skills/pair-programming/SKILL.md
DELETE /api/posts/:id Tool parameters are crafted to achieve unintended or unsafe behavior. Parameter abuse can bypass intended safety checks (e.g. shell=True, --force, dangerous glob patterns). Skill: Pair Programming Rule: TM1 Category: tool-misuse Severity: HIGH Confidence: 0.80 Remediation…
.claude/skills/pair-programming/SKILL.md:872 Mcp skillTool misuseTm1
high System graph dependencies dependencies conf 1.00 Vulnerable dependency axios 1.15.2: GHSA-35jp-ww65-95wh
OSV.dev reports `axios` at version `1.15.2` (resolved in `ui/mobile/package-lock.json`) is affected by GHSA-35jp-ww65-95wh (aka CVE-2026-44494). axios Vulnerable to Full Man-in-the-Middle via Prototype Pollution Gadget in `config.proxy` Aliases: CVE-2026-44494 Advisory: https://osv.dev/vulnerabil…
ui/mobile/package.json ScaOsvGhsa 35jp ww65 95wh
high System graph dependencies dependencies conf 0.90 Vulnerable dependency brace-expansion 2.1.0: GHSA-3jxr-9vmj-r5cp
OSV.dev reports `brace-expansion` at version `2.1.0` (resolved in `dashboard/package-lock.json`) is affected by GHSA-3jxr-9vmj-r5cp (aka CVE-2026-13149). Note: `brace-expansion` is a transitive dependency — pulled in by another package, not declared directly in a manifest. brace-expansion: DoS via…
dashboard/package-lock.json ScaOsvGhsa 3jxr 9vmj r5cp
high System graph dependencies dependencies conf 0.90 Vulnerable dependency brace-expansion 5.0.5: GHSA-3jxr-9vmj-r5cp
OSV.dev reports `brace-expansion` at version `5.0.5` (resolved in `dashboard/package-lock.json`) is affected by GHSA-3jxr-9vmj-r5cp (aka CVE-2026-13149). Note: `brace-expansion` is a transitive dependency — pulled in by another package, not declared directly in a manifest. brace-expansion: DoS via…
dashboard/package-lock.json ScaOsvGhsa 3jxr 9vmj r5cp
high System graph dependencies dependencies conf 0.90 Vulnerable dependency fast-uri 3.1.0: GHSA-4c8g-83qw-93j6
OSV.dev reports `fast-uri` at version `3.1.0` (resolved in `dashboard/package-lock.json`) is affected by GHSA-4c8g-83qw-93j6 (aka CVE-2026-13676). Note: `fast-uri` is a transitive dependency — pulled in by another package, not declared directly in a manifest. fast-uri vulnerable to host confusion …
dashboard/package-lock.json ScaOsvGhsa 4c8g 83qw 93j6
high System graph dependencies dependencies conf 1.00 Vulnerable dependency gradio 5.9.1: GHSA-39mp-8hj3-5c49
OSV.dev reports `gradio` at version `5.9.1` (declared in `aether-arena/space/requirements.txt`) is affected by GHSA-39mp-8hj3-5c49 (aka CVE-2026-28414). Gradio is Vulnerable to Absolute Path Traversal on Windows with Python 3.13+ Aliases: CVE-2026-28414, PYSEC-2026-64 Advisory: https://osv.dev/vu…
aether-arena/space/requirements.txt ScaOsvGhsa 39mp 8hj3 5c49
high System graph dependencies dependencies conf 1.00 Vulnerable dependency gradio 5.9.1: GHSA-5cpq-9538-jm2j
OSV.dev reports `gradio` at version `5.9.1` (declared in `aether-arena/space/requirements.txt`) is affected by GHSA-5cpq-9538-jm2j (aka CVE-2024-8966). Gradio DOS in multipart boundry while uploading the file Aliases: CVE-2024-8966, PYSEC-2026-1410 Advisory: https://osv.dev/vulnerability/GHSA-5cp…
aether-arena/space/requirements.txt ScaOsvGhsa 5cpq 9538 jm2j
high System graph dependencies dependencies conf 1.00 Vulnerable dependency pyo3 0.22.6: GHSA-36hh-v3qg-5jq4
OSV.dev reports `pyo3` at version `0.22.6` (resolved in `python/Cargo.lock`) is affected by GHSA-36hh-v3qg-5jq4. PyO3 has an Out-of-bounds Read in `nth` / `nth_back` for `PyList` and `PyTuple` iterators Aliases: RUSTSEC-2026-0176 Advisory: https://osv.dev/vulnerability/GHSA-36hh-v3qg-5jq4 Fix: up…
python/Cargo.toml ScaOsvGhsa 36hh v3qg 5jq4
high System graph dependencies dependencies conf 0.90 Vulnerable dependency vite 5.4.21: GHSA-fx2h-pf6j-xcff
OSV.dev reports `vite` at version `5.4.21` (resolved in `dashboard/package-lock.json`) is affected by GHSA-fx2h-pf6j-xcff (aka CVE-2026-53571). vite: `server.fs.deny` bypass on Windows alternate paths Aliases: CVE-2026-53571 Advisory: https://osv.dev/vulnerability/GHSA-fx2h-pf6j-xcff Fix: upgrade…
dashboard/package.json ScaOsvGhsa fx2h pf6j xcff
high System graph dependencies dependencies conf 0.90 Vulnerable dependency vite 6.4.1: GHSA-fx2h-pf6j-xcff
OSV.dev reports `vite` at version `6.4.1` (resolved in `v2/crates/wifi-densepose-desktop/ui/package-lock.json`) is affected by GHSA-fx2h-pf6j-xcff (aka CVE-2026-53571). vite: `server.fs.deny` bypass on Windows alternate paths Aliases: CVE-2026-53571 Advisory: https://osv.dev/vulnerability/GHSA-fx…
v2/crates/wifi-densepose-desktop/ui/package.json ScaOsvGhsa fx2h pf6j xcff
high System graph dependencies dependencies conf 0.90 Vulnerable dependency vite 6.4.2: GHSA-fx2h-pf6j-xcff
OSV.dev reports `vite` at version `6.4.2` (resolved in `examples/frontend/package-lock.json`) is affected by GHSA-fx2h-pf6j-xcff (aka CVE-2026-53571). vite: `server.fs.deny` bypass on Windows alternate paths Aliases: CVE-2026-53571 Advisory: https://osv.dev/vulnerability/GHSA-fx2h-pf6j-xcff Fix: …
examples/frontend/package.json ScaOsvGhsa fx2h pf6j xcff
high System graph dependencies dependencies conf 0.90 Vulnerable dependency vitest 2.1.9: GHSA-5xrq-8626-4rwp
OSV.dev reports `vitest` at version `2.1.9` (resolved in `dashboard/package-lock.json`) is affected by GHSA-5xrq-8626-4rwp (aka CVE-2026-47429). When Vitest UI server is listening, arbitrary file can be read and executed Aliases: CVE-2026-47429 Advisory: https://osv.dev/vulnerability/GHSA-5xrq-86…
dashboard/package.json ScaOsvGhsa 5xrq 8626 4rwp
medium Security checks security auth conf 0.92 [AUC001] No Repobility access matrix policy found: The repository uses web/API frameworks but does not define .repobility/access.yml or equivalent authorization documentation.
The repository uses web/API frameworks but does not define .repobility/access.yml or equivalent authorization documentation.
high Security checks security auth conf 0.66 [AUC004] Admin route does not show super_admin separation: An administrative route was detected without nearby evidence that platform super_admin access is separated from tenant/application admin access. Endpoint: GET /{settings.api_prefix}/dev/config.
An administrative route was detected without nearby evidence that platform super_admin access is separated from tenant/application admin access. Endpoint: GET /{settings.api_prefix}/dev/config.
archive/v1/src/api/main.py:387
high Security checks security auth conf 0.66 [AUC004] Admin route does not show super_admin separation: An administrative route was detected without nearby evidence that platform super_admin access is separated from tenant/application admin access. Endpoint: GET /{settings.api_prefix}/dev/config.
An administrative route was detected without nearby evidence that platform super_admin access is separated from tenant/application admin access. Endpoint: GET /{settings.api_prefix}/dev/config.
archive/v1/src/app.py:293
high Security checks security auth conf 0.66 [AUC004] Admin route does not show super_admin separation: An administrative route was detected without nearby evidence that platform super_admin access is separated from tenant/application admin access. Endpoint: GET /{settings.api_prefix}/info.
An administrative route was detected without nearby evidence that platform super_admin access is separated from tenant/application admin access. Endpoint: GET /{settings.api_prefix}/info.
archive/v1/src/api/main.py:293
high Security checks security auth conf 0.66 [AUC004] Admin route does not show super_admin separation: An administrative route was detected without nearby evidence that platform super_admin access is separated from tenant/application admin access. Endpoint: GET /{settings.api_prefix}/info.
An administrative route was detected without nearby evidence that platform super_admin access is separated from tenant/application admin access. Endpoint: GET /{settings.api_prefix}/info.
archive/v1/src/app.py:219
high Security checks security auth conf 0.66 [AUC004] Admin route does not show super_admin separation: An administrative route was detected without nearby evidence that platform super_admin access is separated from tenant/application admin access. Endpoint: GET /{settings.api_prefix}/metrics.
An administrative route was detected without nearby evidence that platform super_admin access is separated from tenant/application admin access. Endpoint: GET /{settings.api_prefix}/metrics.
archive/v1/src/api/main.py:366
high Security checks security auth conf 0.66 [AUC004] Admin route does not show super_admin separation: An administrative route was detected without nearby evidence that platform super_admin access is separated from tenant/application admin access. Endpoint: GET /{settings.api_prefix}/metrics.
An administrative route was detected without nearby evidence that platform super_admin access is separated from tenant/application admin access. Endpoint: GET /{settings.api_prefix}/metrics.
archive/v1/src/app.py:274
high Security checks security auth conf 0.66 [AUC004] Admin route does not show super_admin separation: An administrative route was detected without nearby evidence that platform super_admin access is separated from tenant/application admin access. Endpoint: GET /{settings.api_prefix}/status.
An administrative route was detected without nearby evidence that platform super_admin access is separated from tenant/application admin access. Endpoint: GET /{settings.api_prefix}/status.
archive/v1/src/api/main.py:326
high Security checks security auth conf 0.66 [AUC004] Admin route does not show super_admin separation: An administrative route was detected without nearby evidence that platform super_admin access is separated from tenant/application admin access. Endpoint: GET /{settings.api_prefix}/status.
An administrative route was detected without nearby evidence that platform super_admin access is separated from tenant/application admin access. Endpoint: GET /{settings.api_prefix}/status.
archive/v1/src/app.py:245
high Security checks security auth conf 0.66 [AUC004] Admin route does not show super_admin separation: An administrative route was detected without nearby evidence that platform super_admin access is separated from tenant/application admin access. Endpoint: POST /{settings.api_prefix}/dev/reset.
An administrative route was detected without nearby evidence that platform super_admin access is separated from tenant/application admin access. Endpoint: POST /{settings.api_prefix}/dev/reset.
archive/v1/src/api/main.py:405
high Security checks security auth conf 0.66 [AUC004] Admin route does not show super_admin separation: An administrative route was detected without nearby evidence that platform super_admin access is separated from tenant/application admin access. Endpoint: POST /{settings.api_prefix}/dev/reset.
An administrative route was detected without nearby evidence that platform super_admin access is separated from tenant/application admin access. Endpoint: POST /{settings.api_prefix}/dev/reset.
archive/v1/src/app.py:312
high Security checks security auth conf 0.68 [AUC009] Sensitive function route lacks elevated authorization evidence: A route appears to perform a sensitive function such as export, invite, role, token, billing, or destructive action without elevated policy evidence. Endpoint: DELETE /clients/{client_id}.
A route appears to perform a sensitive function such as export, invite, role, token, billing, or destructive action without elevated policy evidence. Endpoint: DELETE /clients/{client_id}.
archive/v1/src/api/routers/stream.py:436
medium Security checks security auth conf 0.72 [AUC012] FastAPI interactive docs may be exposed by framework defaults: FastAPI exposes /docs, /redoc, and /openapi.json by default. Public production APIs should explicitly disable those defaults, protect them behind admin authentication, or publish a reviewed OpenAPI spec with declared security requirements.
FastAPI exposes /docs, /redoc, and /openapi.json by default. Public production APIs should explicitly disable those defaults, protect them behind admin authentication, or publish a reviewed OpenAPI spec with declared security requirements.
low Security checks quality Error handling conf 0.45 3 occurrences [ERR001] Silent Exception Swallowing: Silently swallowing all exceptions hides bugs. Even in cleanup code, log at DEBUG level.
Log the error: `except Exception: logger.debug('cleanup failed', exc_info=True)`. Or handle specific exception types.
3 files, 3 locations
examples/ruview_live.py:345
scripts/mmwave_fusion_bridge.py:104
wifi_densepose/__init__.py:102
low Security checks quality Error handling conf 1.00 3 occurrences [ERR002] Empty Catch Block: Empty catch blocks hide errors.
Log the error or rethrow it. Use console.error() at minimum.
3 files, 3 locations
scripts/train-camera-free.js:299
scripts/train-ruvllm.js:979
v2/crates/wifi-densepose-desktop/ui/.vite/deps/chunk-JCH2SJW3.js:1363
medium Security checks security Crypto conf 1.00 [SEC014] SSL Verification Disabled: SSL certificate verification is disabled, allowing man-in-the-middle attacks.
Enable SSL verification. Use verify=True (default) for requests. Pin certificates if needed.
scripts/seed_csi_bridge.py:219
high Security checks quality Quality conf 0.72 4 occurrences Agent control bridge may listen on a network interface without visible auth
Agent, MCP, sidecar, and command bridge servers often start as local helpers. Binding them to 0.0.0.0 or a default all-interface listener without an authorization guard can expose tool execution or session data to the LAN.
4 files, 4 locations
archive/v1/src/sensing/ws_server.py:2
install.sh:229
scripts/qemu-mesh-test.sh:28
scripts/qemu_swarm.py:7
medium Security checks cicd CI/CD security conf 0.94 Compose service `sensing-server` image uses the latest tag
The latest tag is mutable and can change without a code review, producing different images from the same source.
docker/docker-compose.yml:3 CI/CD securitycontainers
medium Security checks cicd CI/CD security conf 0.86 Database dump or local database file is included in Docker build context
Database exports and local database files can contain production data, credentials, or large binary payloads that slow Docker builds and can be copied into images by broad COPY instructions.
.dockerignore CI/CD securitycontainers
high Security checks cicd CI/CD security conf 0.82 Docker final stage has no non-root USER
Docker images run as root unless the image or Dockerfile switches to a non-root user.
docker/Dockerfile.rust:22 CI/CD securitycontainers
high Security checks cicd CI/CD security conf 0.82 Docker final stage has no non-root USER
Docker images run as root unless the image or Dockerfile switches to a non-root user.
docker/Dockerfile.python:4 CI/CD securitycontainers
low Security checks quality Quality conf 0.60 12 occurrences Duplicated implementation block across source files
Duplicate implementation blocks are maintenance debt. Keep them visible, but they are not a high-severity defect unless the duplicated logic is security-sensitive or drifting.
9 files, 12 locations
references/script_4.py:17, 21 (2 hits)
references/wifi_densepose_pytorch.py:3, 65 (2 hits)
scripts/passive-radar.js:398, 404 (2 hits)
references/script_2.py:3
references/script_5.py:1
scripts/generate_nvs_matrix.py:224
scripts/material-classifier.js:179
scripts/mesh-graph-transformer.js:282
duplicationquality
high Security checks quality Quality conf 0.74 15 occurrences Frontend API reference is not matched by discovered backend routes
A frontend string references a same-origin API path that Repobility could not match to backend route inventory. This often causes live 404s in user journeys.
2 files, 15 locations
dashboard/src/transport/WsClient.ts:133, 136, 139, 145, 151, 158, 165, 172, +1 more (9 hits)
scripts/train-camera-free.js:229, 236, 241, 246, 251, 256 (6 hits)
medium Security checks quality Quality conf 0.78 Public web service has no security.txt
security.txt gives researchers and customers a safe disclosure channel. Public web apps and APIs should publish it under /.well-known/security.txt.
.well-known/security.txt
high Security checks software dependencies conf 0.70 Remote install command pipes network code directly to a shell
Agent helper projects often publish one-line installers. `curl | sh` style commands are convenient, but they bypass review unless the script is pinned, signed, or checksum-verified.
.github/workflows/dashboard-pages.yml:47
high Security checks software dependencies conf 0.70 Remote install command pipes network code directly to a shell
Agent helper projects often publish one-line installers. `curl | sh` style commands are convenient, but they bypass review unless the script is pinned, signed, or checksum-verified.
.github/workflows/dashboard-a11y.yml:28
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/agents/architecture/arch-system-design.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/agents/architecture/arch-system-design.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/agents/architecture/system-design/arch-system-design.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/agents/architecture/system-design/arch-system-design.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/agents/consensus/gossip-coordinator.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/agents/consensus/gossip-coordinator.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/agents/consensus/performance-benchmarker.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/agents/consensus/performance-benchmarker.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/agents/development/backend/dev-backend-api.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/agents/development/backend/dev-backend-api.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/agents/development/dev-backend-api.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/agents/development/dev-backend-api.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/agents/flow-nexus/app-store.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/agents/flow-nexus/app-store.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/agents/flow-nexus/neural-network.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/agents/flow-nexus/neural-network.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/agents/github/project-board-sync.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/agents/github/project-board-sync.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/agents/github/swarm-issue.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/agents/github/swarm-issue.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/agents/goal/goal-planner.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/agents/goal/goal-planner.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/agents/optimization/load-balancer.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/agents/optimization/load-balancer.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/agents/optimization/performance-monitor.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/agents/optimization/performance-monitor.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/agents/optimization/resource-allocator.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/agents/optimization/resource-allocator.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/agents/optimization/topology-optimizer.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/agents/optimization/topology-optimizer.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/agents/sparc/refinement.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/agents/sparc/refinement.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/agents/templates/coordinator-swarm-init.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/agents/templates/coordinator-swarm-init.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/agents/templates/implementer-sparc-coder.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/agents/templates/implementer-sparc-coder.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/agents/templates/sparc-coordinator.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/agents/templates/sparc-coordinator.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/agents/v3/adr-architect.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/agents/v3/adr-architect.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/agents/v3/aidefence-guardian.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/agents/v3/aidefence-guardian.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/agents/v3/ddd-domain-expert.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/agents/v3/ddd-domain-expert.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/agents/v3/injection-analyst.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/agents/v3/injection-analyst.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/agents/v3/reasoningbank-learner.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/agents/v3/reasoningbank-learner.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/agents/v3/security-architect.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/agents/v3/security-architect.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/agents/v3/swarm-memory-manager.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/agents/v3/swarm-memory-manager.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/analysis/bottleneck-detect.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/analysis/bottleneck-detect.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/analysis/COMMAND_COMPLIANCE_REPORT.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/analysis/COMMAND_COMPLIANCE_REPORT.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/analysis/performance-report.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/analysis/performance-report.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/analysis/token-efficiency.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/analysis/token-efficiency.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/analysis/token-usage.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/analysis/token-usage.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/automation/smart-agents.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/automation/smart-agents.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/automation/smart-spawn.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/automation/smart-spawn.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/automation/workflow-select.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/automation/workflow-select.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/github/code-review.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/github/code-review.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/github/issue-triage.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/github/issue-triage.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/github/pr-enhance.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/github/pr-enhance.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/github/project-board-sync.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/github/project-board-sync.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/github/repo-analyze.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/github/repo-analyze.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/github/swarm-issue.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/github/swarm-issue.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/hooks/post-edit.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/hooks/post-edit.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/hooks/post-task.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/hooks/post-task.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/hooks/pre-task.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/hooks/pre-task.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/hooks/session-end.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/hooks/session-end.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/monitoring/agent-metrics.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/monitoring/agent-metrics.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/monitoring/agents.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/monitoring/agents.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/monitoring/real-time-view.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/monitoring/real-time-view.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/monitoring/status.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/monitoring/status.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/monitoring/swarm-monitor.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/monitoring/swarm-monitor.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/optimization/auto-topology.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/optimization/auto-topology.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/optimization/cache-manage.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/optimization/cache-manage.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/optimization/parallel-execute.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/optimization/parallel-execute.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/optimization/README.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/optimization/README.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/optimization/topology-optimize.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/optimization/topology-optimize.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/sparc/analyzer.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/sparc/analyzer.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/sparc/architect.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/sparc/architect.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/sparc/batch-executor.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/sparc/batch-executor.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/sparc/debug.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/sparc/debug.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/sparc/designer.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/sparc/designer.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/sparc/docs-writer.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/sparc/docs-writer.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/sparc/documenter.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/sparc/documenter.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/sparc/innovator.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/sparc/innovator.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/sparc/memory-manager.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/sparc/memory-manager.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/sparc/post-deployment-monitoring-mode.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/sparc/post-deployment-monitoring-mode.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/sparc/refinement-optimization-mode.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/sparc/refinement-optimization-mode.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/sparc/security-review.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/sparc/security-review.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/sparc/swarm-coordinator.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/sparc/swarm-coordinator.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/sparc/tutorial.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/sparc/tutorial.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/commands/sparc/workflow-manager.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/commands/sparc/workflow-manager.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/settings.json
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/settings.json VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/skills/agentdb-memory-patterns/SKILL.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/skills/agentdb-memory-patterns/SKILL.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/skills/pair-programming/SKILL.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/skills/pair-programming/SKILL.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/skills/reasoningbank-intelligence/SKILL.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/skills/reasoningbank-intelligence/SKILL.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/skills/v3-cli-modernization/SKILL.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/skills/v3-cli-modernization/SKILL.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/skills/v3-integration-deep/SKILL.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/skills/v3-integration-deep/SKILL.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/skills/v3-memory-unification/SKILL.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/skills/v3-memory-unification/SKILL.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .claude/skills/v3-performance-optimization/SKILL.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.claude/skills/v3-performance-optimization/SKILL.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: .mcp.json
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
.mcp.json VerificationMcp config
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: CLAUDE.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
CLAUDE.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: harness/ruview/.claude/settings.json
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
harness/ruview/.claude/settings.json VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: harness/ruview/.claude/skills/calibrate-room/SKILL.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
harness/ruview/.claude/skills/calibrate-room/SKILL.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: harness/ruview/.claude/skills/verify/SKILL.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
harness/ruview/.claude/skills/verify/SKILL.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: harness/ruview/CLAUDE.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
harness/ruview/CLAUDE.md VerificationClaude instruction
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: plugins/ruview/codex/AGENTS.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
plugins/ruview/codex/AGENTS.md VerificationAgents md
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: plugins/ruview/skills/ruview-configure/SKILL.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
plugins/ruview/skills/ruview-configure/SKILL.md VerificationSkill file
medium System graph quality Agent instructions conf 1.00 Agent authority lacks a verifier contract: plugins/ruview/skills/ruview-verify/SKILL.md
This agent instruction grants code or shell authority but does not state the verification gate that decides promotion. The recurring safe pattern is: LLM proposes; deterministic tests/build/security checks verify; only verified code promotes.
plugins/ruview/skills/ruview-verify/SKILL.md VerificationSkill file
medium System graph security Agent instructions conf 1.00 Agent instruction contains unpinned remote install: .claude/commands/claude-flow-help.md
Remote install commands in agent instructions are a supply-chain risk, especially when an agent can execute shell commands.
.claude/commands/claude-flow-help.md:69 Supply chainClaude instruction
medium System graph security Agent instructions conf 1.00 Agent instruction contains unpinned remote install: .claude/skills/github-workflow-automation/SKILL.md
Remote install commands in agent instructions are a supply-chain risk, especially when an agent can execute shell commands.
.claude/skills/github-workflow-automation/SKILL.md:1020 Supply chainClaude instruction
medium System graph security Agent instructions conf 1.00 Agent instruction contains unpinned remote install: .claude/skills/hooks-automation/SKILL.md
Remote install commands in agent instructions are a supply-chain risk, especially when an agent can execute shell commands.
.claude/skills/hooks-automation/SKILL.md:26 Supply chainClaude instruction
medium System graph security Agent instructions conf 1.00 Agent instruction contains unpinned remote install: .claude/skills/pair-programming/SKILL.md
Remote install commands in agent instructions are a supply-chain risk, especially when an agent can execute shell commands.
.claude/skills/pair-programming/SKILL.md:25 Supply chainClaude instruction
medium System graph security Agent instructions conf 1.00 Agent instruction contains unpinned remote install: .claude/skills/skill-builder/SKILL.md
Remote install commands in agent instructions are a supply-chain risk, especially when an agent can execute shell commands.
.claude/skills/skill-builder/SKILL.md:777 Supply chainClaude instruction
medium System graph security Agent instructions conf 1.00 Agent instruction contains unpinned remote install: .claude/skills/swarm-advanced/SKILL.md
Remote install commands in agent instructions are a supply-chain risk, especially when an agent can execute shell commands.
.claude/skills/swarm-advanced/SKILL.md:19 Supply chainClaude instruction
medium System graph security Agent instructions conf 1.00 Agent instruction contains unpinned remote install: CLAUDE.md
Remote install commands in agent instructions are a supply-chain risk, especially when an agent can execute shell commands.
CLAUDE.md:402 Supply chainClaude instruction
medium System graph security Agent instructions conf 1.00 Agent instruction contains unpinned remote install: plugins/ruview/skills/ruview-rvagent/SKILL.md
Remote install commands in agent instructions are a supply-chain risk, especially when an agent can execute shell commands.
plugins/ruview/skills/ruview-rvagent/SKILL.md:12 Supply chainSkill file
medium System graph quality Placeholder conf 1.00 Critical user flow still appears backed by mock or placeholder data
A payment/auth/admin/order/billing-style flow contains mock, fake, TODO, dummy, or placeholder markers in runtime source. In the Fable corpus this is a high-leverage completeness smell: the app can look finished while the money, identity, or tenant flow is still scaffolded.
Mock dataCritical flowGenerated repo pattern
medium System graph security Trivy conf 1.00 CVE-2022-34529: wasm3 0.3.1 — v2/Cargo.lock
WASM3 segmentation fault WASM3 v0.5.0 was discovered to contain a segmentation fault via the component Compile_Memory_CopyFill. Package: wasm3 Installed: 0.3.1 Fixed in: — Severity: MEDIUM Fix: No fix version published yet
VulnCve 2022 34529
medium System graph security Trivy conf 1.00 CVE-2024-27529: wasm3 0.3.1 — v2/Cargo.lock
wasm3 uncontrolled memory allocation vulnerability wasm3 139076a contains memory leaks in Read_utf8. Package: wasm3 Installed: 0.3.1 Fixed in: — Severity: MEDIUM Fix: No fix version published yet
VulnCve 2024 27529
medium System graph security Trivy conf 1.00 CVE-2025-48889: gradio 5.9.1 — aether-arena/space/requirements.txt
Gradio Allows Unauthorized File Copy via Path Manipulation Gradio is an open-source Python package that allows quick building of demos and web application for machine learning models, API, or any arbitrary Python function. Prior to version 5.31.0, an arbitrary file copy vulnerability in Gradio's f…
VulnCve 2025 48889
medium System graph security Trivy conf 1.00 CVE-2026-25541: bytes 1.11.0 — v2/patches/ruvector-crv/Cargo.lock
Bytes is a utility library for working with bytes. From version 1.2.1 ... Bytes is a utility library for working with bytes. From version 1.2.1 to before 1.11.1, Bytes is vulnerable to integer overflow in BytesMut::reserve. In the unique reclaim path of BytesMut::reserve, if the condition "v_capa…
VulnCve 2026 25541
medium System graph security Trivy conf 1.00 CVE-2026-28415: gradio 5.9.1 — aether-arena/space/requirements.txt
Gradio: Gradio: Open Redirect vulnerability allows redirection to arbitrary external URLs. Gradio is an open-source Python package designed for quick prototyping. Prior to version 6.6.0, the _redirect_to_target() function in Gradio's OAuth flow accepts an unvalidated _target_url query parameter, a…
VulnCve 2026 28415
medium System graph security Trivy conf 1.00 CVE-2026-33532: yaml 2.8.2 — ui/mobile/package-lock.json
yaml: yaml: Denial of Service via deeply nested YAML document parsing `yaml` is a YAML parser and serialiser for JavaScript. Parsing a YAML document with a version of `yaml` on the 1.x branch prior to 1.10.3 or on the 2.x branch prior to 2.8.3 may throw a RangeError due to a stack overflow. The no…
VulnCve 2026 33532
medium System graph security Trivy conf 1.00 CVE-2026-33750: brace-expansion 1.1.12 — ui/mobile/package-lock.json
brace-expansion: brace-expansion: Denial of Service via zero step value in brace pattern The brace-expansion library generates arbitrary strings containing a common prefix and suffix. Prior to versions 5.0.5, 3.0.2, 2.0.3, and 1.1.13, a brace pattern with a zero step value (e.g., `{1..2..0}`) caus…
VulnCve 2026 33750
medium System graph security Trivy conf 1.00 CVE-2026-33750: brace-expansion 5.0.4 — ui/mobile/package-lock.json
brace-expansion: brace-expansion: Denial of Service via zero step value in brace pattern The brace-expansion library generates arbitrary strings containing a common prefix and suffix. Prior to versions 5.0.5, 3.0.2, 2.0.3, and 1.1.13, a brace pattern with a zero step value (e.g., `{1..2..0}`) caus…
VulnCve 2026 33750
medium System graph security Trivy conf 1.00 CVE-2026-41305: postcss 8.4.49 — ui/mobile/package-lock.json
postcss: PostCSS: Cross-Site Scripting (XSS) via improper escaping of style closing tags PostCSS takes a CSS file and provides an API to analyze and modify its rules by transforming the rules into an Abstract Syntax Tree. Versions prior to 8.5.10 do not escape `</style>` sequences when stringifyin…
VulnCve 2026 41305
medium System graph security Trivy conf 1.00 CVE-2026-41907: uuid 7.0.3 — ui/mobile/package-lock.json
uuid: uuid: Out-of-bounds write vulnerability impacts data integrity and confidentiality uuid is for the creation of RFC9562 (formerly RFC4122) UUIDs. Prior to 14.0.0, v3, v5, and v6 accept external output buffers but do not reject out-of-range writes (small buf or large offset). This allows silen…
VulnCve 2026 41907
medium System graph security Trivy conf 1.00 CVE-2026-42184: tauri 2.10.3 — v2/Cargo.lock
Tauri has an Origin Confusion Issue that Allows Remote Pages to Invoke Local-Only IPC Commands Tauri is a framework for building binaries for all major desktop platforms. From 2.0 to 2.11.0, a flaw in Tauri's is_local_url() function causes it to incorrectly classify remote URLs as trusted local or…
VulnCve 2026 42184
medium System graph security Trivy conf 1.00 CVE-2026-44216: wasmtime 42.0.2 — v2/Cargo.lock
wasmtime: Wasmtime: Denial of Service via large WebAssembly table allocation Wasmtime is a runtime for WebAssembly. From 30.0.0 to 36.0.8, 43.0.2, and 44.0.1, Wasmtime's allocation logic for a WebAssembly table contained checked arithmetic which panicked on overflow. This overflow is possible to t…
VulnCve 2026 44216
medium System graph security Trivy conf 1.00 CVE-2026-44490: axios 1.15.2 — ui/mobile/package-lock.json
axios: Axios: Information disclosure and denial of service due to prototype pollution Axios is a promise based HTTP client for the browser and Node.js. Prior to 0.32.0 and 1.16.0, axios exposes two read-side prototype-pollution gadgets. When Object.prototype is polluted by an upstream dependency i…
VulnCve 2026 44490
medium System graph security Trivy conf 1.00 CVE-2026-45149: brace-expansion 5.0.4 — ui/mobile/package-lock.json
brace-expansion: brace-expansion: Denial of Service due to excessive memory allocation when expanding large numeric ranges The brace-expansion library generates arbitrary strings containing a common prefix and suffix. From 5.0.0 to before 5.0.6, the max option was being applied too late. When expa…
VulnCve 2026 45149
medium System graph security Trivy conf 1.00 CVE-2026-45736: ws 8.19.0 — ui/mobile/package-lock.json
ws: ws: Uninitialized memory disclosure via `websocket.close()` with `TypedArray` ws is an open source WebSocket client and server for Node.js. Prior to 8.20.1, the websocket.close() implementation is vulnerable to uninitialized memory disclosure when a TypedArray is passed as the reason argument.…
VulnCve 2026 45736
medium System graph security Trivy conf 1.00 CVE-2026-53550: js-yaml 4.1.1 — ui/mobile/package-lock.json
js-yaml: js-yaml: Denial of Service via crafted YAML merge keys js-yaml is a JavaScript YAML parser and dumper. Prior to 4.2.0 and 3.15.0, a crafted YAML document can trigger algorithmic CPU exhaustion in js-yaml merge-key processing (<<) by repeating the same alias many times in a merge sequence.…
VulnCve 2026 53550
medium System graph security Trivy conf 1.00 CVE-2026-54286: hono 4.12.21 — tools/ruview-mcp/package-lock.json
hono: Path traversal in `serve-static` on Windows via encoded backslash (`%5C`) Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.25, on Windows hosts, an encoded backslash (%5C) in the request path decodes to \, which the Windows path resolver tre…
VulnCve 2026 54286
medium System graph security Trivy conf 1.00 CVE-2026-54287: hono 4.12.21 — tools/ruview-mcp/package-lock.json
hono: AWS Lambda adapter merges multiple `Set-Cookie` headers into one value, dropping cookies on ALB single-header and Lattice Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.25, on AWS Lambda, the ALB single-header response and the VPC Lattice …
VulnCve 2026 54287
medium System graph security Trivy conf 1.00 CVE-2026-54288: hono 4.12.21 — tools/ruview-mcp/package-lock.json
hono: Body Limit Middleware can be bypassed on AWS Lambda by understating `Content-Length` Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.25, the Body Limit Middleware trusts the request's Content-Length header to decide whether a body is within…
VulnCve 2026 54288
medium System graph security Trivy conf 1.00 CVE-2026-54289: hono 4.12.21 — tools/ruview-mcp/package-lock.json
hono: Lambda@Edge adapter keeps only the last value of a repeated request header, dropping the rest Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.25, on AWS Lambda@Edge, CloudFront delivers a request header that appears more than once as severa…
VulnCve 2026 54289
medium System graph security Trivy conf 1.00 CVE-2026-59895: hono 4.12.21 — tools/ruview-mcp/package-lock.json
Hono: Server-Side XSS via JSX Escaping Bypass in cx() Utility Hono is a Web application framework that provides support for any JavaScript runtime. From 4.0.0 before 4.12.27, cx() in hono/css composes class names from plain strings but marks the result as already escaped without HTML-escaping the …
VulnCve 2026 59895
medium System graph security Trivy conf 1.00 CVE-2026-59896: hono 4.12.21 — tools/ruview-mcp/package-lock.json
hono/jsx does not isolate context per request, leading to cross-request data disclosure Hono is a Web application framework that provides support for any JavaScript runtime. From 4.11.8 before 4.12.27, hono/jsx did not isolate context values per request during server-side rendering, allowing creat…
VulnCve 2026 59896
medium System graph security Trivy conf 1.00 CVE-2026-59897: hono 4.12.21 — tools/ruview-mcp/package-lock.json
Hono: API Gateway v1 adapter can drop a distinct repeated request header value during de-duplication Hono is a Web application framework that provides support for any JavaScript runtime. From 4.3.3 before 4.12.27, the AWS API Gateway v1 adapter can drop a distinct repeated request header value bec…
VulnCve 2026 59897
medium System graph api Wiring conf 0.55 Dangling fetch: DELETE /api/states/${encodeURIComponent(target.entity_id)} (examples/frontend/src/pages/Dashboard.ts:158)
`examples/frontend/src/pages/Dashboard.ts:158` calls `DELETE /api/states/${encodeURIComponent(target.entity_id)}` but no backend route in the scanned graph matches that path. The path appears development/example-only, so verify its custom dev server or proxy registration. Tool: fetch Normalized pa…
examples/frontend/src/pages/Dashboard.ts:158 Dangling fetchFetchNon production context
medium System graph api Wiring conf 0.55 Dangling fetch: GET /api/config (examples/frontend/src/pages/Settings.ts:118)
`examples/frontend/src/pages/Settings.ts:118` calls `GET /api/config` but no backend route in the scanned graph matches that path. The path appears development/example-only, so verify its custom dev server or proxy registration. Tool: fetch Normalized path used for matching: `/config`
examples/frontend/src/pages/Settings.ts:118 Dangling fetchFetchNon production context
medium System graph api Wiring conf 0.55 Dangling fetch: GET /api/services (examples/frontend/src/pages/Services.ts:125)
`examples/frontend/src/pages/Services.ts:125` calls `GET /api/services` but no backend route in the scanned graph matches that path. The path appears development/example-only, so verify its custom dev server or proxy registration. Tool: fetch Normalized path used for matching: `/services`
examples/frontend/src/pages/Services.ts:125 Dangling fetchFetchNon production context
medium System graph api Wiring conf 0.55 Dangling fetch: POST /api/services/${encodeURIComponent(domain)}/${encodeURIComponent(service)} (examples/frontend/src/pages/Services.ts:177)
`examples/frontend/src/pages/Services.ts:177` calls `POST /api/services/${encodeURIComponent(domain)}/${encodeURIComponent(service)}` but no backend route in the scanned graph matches that path. The path appears development/example-only, so verify its custom dev server or proxy registration. Tool:…
examples/frontend/src/pages/Services.ts:177 Dangling fetchFetchNon production context
medium System graph api Wiring conf 0.55 Dangling fetch: POST /api/states/${encodeURIComponent(entity_id)} (examples/frontend/src/pages/Dashboard.ts:179)
`examples/frontend/src/pages/Dashboard.ts:179` calls `POST /api/states/${encodeURIComponent(entity_id)}` but no backend route in the scanned graph matches that path. The path appears development/example-only, so verify its custom dev server or proxy registration. Tool: fetch Normalized path used f…
examples/frontend/src/pages/Dashboard.ts:179 Dangling fetchFetchNon production context
medium System graph security Semgrep conf 0.55 detect child process — .claude/helpers/statusline.cjs:71
Detected calls to child_process from a function argument `cmd`. This could lead to a command injection if the input is user controllable. Try to avoid calls to child_process, and if it is needed ensure user input is correctly sanitized or sandboxed. Rule: javascript.lang.security.detect-child-proc…
.claude/helpers/statusline.cjs:71 SecurityJavascript
medium System graph security Semgrep conf 0.55 dynamic urllib use detected — examples/happiness-vector/seed_query.py:33
Detected a dynamic value being used with urllib. urllib supports 'file://' schemes, so a dynamic value controlled by a malicious actor may allow them to read arbitrary files. Audit uses of urllib calls to ensure user data cannot control the URLs, or consider using the 'requests' library instead. R…
examples/happiness-vector/seed_query.py:33 SecurityPythonNon production context
medium System graph security Semgrep conf 0.55 dynamic urllib use detected — examples/ruview_live.py:344
Detected a dynamic value being used with urllib. urllib supports 'file://' schemes, so a dynamic value controlled by a malicious actor may allow them to read arbitrary files. Audit uses of urllib calls to ensure user data cannot control the URLs, or consider using the 'requests' library instead. R…
examples/ruview_live.py:344 SecurityPythonNon production context
medium System graph security Semgrep conf 0.55 dynamic urllib use detected — examples/through-wall/wiflow_capture.py:38
Detected a dynamic value being used with urllib. urllib supports 'file://' schemes, so a dynamic value controlled by a malicious actor may allow them to read arbitrary files. Audit uses of urllib calls to ensure user data cannot control the URLs, or consider using the 'requests' library instead. R…
examples/through-wall/wiflow_capture.py:38 SecurityPythonNon production context
medium System graph security Semgrep conf 0.55 dynamic urllib use detected — scripts/collect-ground-truth.py:102
Detected a dynamic value being used with urllib. urllib supports 'file://' schemes, so a dynamic value controlled by a malicious actor may allow them to read arbitrary files. Audit uses of urllib calls to ensure user data cannot control the URLs, or consider using the 'requests' library instead. R…
scripts/collect-ground-truth.py:102 SecurityPython
medium System graph security Semgrep conf 0.55 dynamic urllib use detected — scripts/occworld_retrain.py:64
Detected a dynamic value being used with urllib. urllib supports 'file://' schemes, so a dynamic value controlled by a malicious actor may allow them to read arbitrary files. Audit uses of urllib calls to ensure user data cannot control the URLs, or consider using the 'requests' library instead. R…
scripts/occworld_retrain.py:64 SecurityPython
medium System graph security Semgrep conf 0.55 dynamic urllib use detected — scripts/seed_csi_bridge.py:235
Detected a dynamic value being used with urllib. urllib supports 'file://' schemes, so a dynamic value controlled by a malicious actor may allow them to read arbitrary files. Audit uses of urllib calls to ensure user data cannot control the URLs, or consider using the 'requests' library instead. R…
scripts/seed_csi_bridge.py:235 SecurityPython
medium System graph security auth conf 0.50 FastAPI POST `dev_reset` without auth dependency — archive/v1/src/api/main.py:405
`@app.post` has no route-local auth dependency, and `app` has no auth-shaped constructor dependency in this file. Mutating endpoints should normally authenticate. Auth enforced where the router is mounted, by a trusted gateway, or by a local-only deployment can make this finding non-reachable.
archive/v1/src/api/main.py:405 securityAuth fastapi unauth mutationNon production context
medium System graph security auth conf 0.50 FastAPI POST `dev_reset` without auth dependency — archive/v1/src/app.py:312
`@app.post` has no route-local auth dependency, and `app` has no auth-shaped constructor dependency in this file. Mutating endpoints should normally authenticate. Auth enforced where the router is mounted, by a trusted gateway, or by a local-only deployment can make this finding non-reachable.
archive/v1/src/app.py:312 securityAuth fastapi unauth mutationNon production context
medium System graph security Trivy conf 1.00 GHSA-3pv8-6f4r-ffg2: tar 0.4.45 — v2/Cargo.lock
tar has a PAX header desynchronization issue ### Summary When a tar stream contains multiple "header" entries prior to a file entry, tar-rs applies the PAX header (`x`) to the _next_ entry in the stream, regardless of type. For example, a stream of `x -> L -> file` (PAX, GNU longname, file) would…
VulnGhsa 3pv8 6f4r ffg2
medium System graph security Trivy conf 1.00 GHSA-42h9-826w-cgv3: axios 1.15.2 — ui/mobile/package-lock.json
Axios: Excessive recursion in formDataToJSON can cause denial of service ## Summary Axios versions `0.28.0` and later contain uncontrolled recursion in `formDataToJSON`, the helper behind the public `axios.formToJSON()` / named `formToJSON` API and the default request transform used when FormData …
VulnGhsa 42h9 826w cgv3
medium System graph security Trivy conf 1.00 GHSA-7gcf-g7xr-8hxj: serde_with 3.17.0 — v2/Cargo.lock
serde_with: KeyValueMap serialization panics on empty sequence or map entries ### Summary The public `KeyValueMap` serializer assumes that each mapped element has at least one field or item to use as the map key, but it subtracts `1` from the caller-visible length before validating that assumptio…
VulnGhsa 7gcf g7xr 8hxj
medium System graph security Trivy conf 1.00 GHSA-7q8q-rj6j-mhjq: axios 1.15.2 — ui/mobile/package-lock.json
Axios: Nested axios option objects can consume polluted prototype values ## Summary Axios can consume inherited properties from nested request option objects when the JavaScript process already has a polluted `Object.prototype`. The top-level merged config is protected with a null prototype, but…
VulnGhsa 7q8q rj6j mhjq
medium System graph security Trivy conf 1.00 GHSA-chgr-c6px-7xpp: pyo3 0.22.6 — python/Cargo.lock
PyO3 has a missing `Sync` bound on `PyCFunction::new_closure` closures `PyCFunction::new_closure` (and the temporary `new_closure_bound` complement in the 0.21–0.22 series) required the supplied closure to be `Send + 'static` but not `Sync`. The resulting `PyCFunction` is a Python callable that ca…
VulnGhsa chgr c6px 7xpp
medium System graph security Trivy conf 1.00 GHSA-f4gw-2p7v-4548: axios 1.15.2 — ui/mobile/package-lock.json
Axios: NO_PROXY bypass for 0.0.0.0 local addresses in axios ## Summary Axios versions containing `lib/helpers/shouldBypassProxy.js` do not treat `0.0.0.0` as a local address when evaluating `NO_PROXY` rules. In Node.js applications that use `HTTP_PROXY` or `HTTPS_PROXY` together with `NO_PROXY=lo…
VulnGhsa f4gw 2p7v 4548
medium System graph security Trivy conf 1.00 GHSA-frvp-7c67-39w9: @hono/node-server 1.19.14 — tools/ruview-mcp/package-lock.json
Node.js Adapter for Hono: Path traversal in `serve-static` on Windows via encoded backslash (`%5C`) The same as the `hono` core [Path traversal in `serve-static` on Windows via encoded backslash (`%5C`)](https://github.com/honojs/hono/security/advisories/GHSA-wwfh-h76j-fc44). ### Summary On Wind…
VulnGhsa frvp 7c67 39w9
medium System graph security Trivy conf 1.00 GHSA-hcpx-6fm6-wx23: axios 1.15.2 — ui/mobile/package-lock.json
Axios form serializer maxDepth bypass via {} metatoken ## Summary Axios versions in the fixed lines for GHSA-62hf-57xw-28j9 still contain an incomplete depth-limit bypass in `lib/helpers/toFormData.js`. When serializing an object with a top-level key ending in `{}`, axios calls `JSON.stringify()`…
VulnGhsa hcpx 6fm6 wx23
medium System graph security Trivy conf 1.00 GHSA-jqh4-m9w3-8hp9: axios 1.15.2 — ui/mobile/package-lock.json
Axios: Fetch adapter `ReadableStream` uploads bypass `maxBodyLength` ## Summary axios’ fetch adapter does not enforce `maxBodyLength` for live WHATWG `ReadableStream` request bodies whose size cannot be determined before dispatch. Applications that use `adapter: "fetch"` and rely on `maxBodyLengt…
VulnGhsa jqh4 m9w3 8hp9
medium System graph security Trivy conf 1.00 GHSA-mmx7-hfxf-jppx: axios 1.15.2 — ui/mobile/package-lock.json
Axios: Prototype pollution gadgets can alter axios request construction ## Summary axios is vulnerable to read-side prototype-pollution gadgets when `Object.prototype` has already been polluted by another vulnerability or dependency. The most broadly reachable issue is in the bodyless method alia…
VulnGhsa mmx7 hfxf jppx
medium System graph security Trivy conf 1.00 GHSA-mwf2-3pr3-8698: axios 1.15.2 — ui/mobile/package-lock.json
Axios: HTTP/2 streamed uploads bypass `maxBodyLength` ## Summary Axios versions with Node.js HTTP/2 support allow streamed request bodies to bypass `maxBodyLength` enforcement when requests are sent with `httpVersion: 2`. This affects applications that rely on `maxBodyLength` as a hard cap while…
VulnGhsa mwf2 3pr3 8698
medium System graph security Trivy conf 1.00 GHSA-pmv8-rq9r-6j72: axios 1.15.2 — ui/mobile/package-lock.json
Axios: Deep formToJSON Key Recursion Can Cause Denial of Service ## Summary Axios versions starting with `0.28.0` contain uncontrolled recursion in `formDataToJSON`, which is exposed as `axios.formToJSON()` and used internally when axios serialises `FormData` with `Content-Type: application/json`…
VulnGhsa pmv8 rq9r 6j72
medium System graph security Trivy conf 1.00 GHSA-pwjx-qhcg-rvj4: rustls-webpki 0.102.8 — v2/Cargo.lock
webpki: CRLs not considered authoritative by Distribution Point due to faulty matching logic If a certificate had more than one `distributionPoint`, then only the first `distributionPoint` would be considered against each CRL's `IssuingDistributionPoint` `distributionPoint`, and then the certifica…
VulnGhsa pwjx qhcg rvj4
medium System graph security Trivy conf 1.00 GHSA-r4q5-vmmm-2653: follow-redirects 1.15.11 — ui/mobile/package-lock.json
follow-redirects leaks Custom Authentication Headers to Cross-Domain Redirect Targets ## Summary When an HTTP request follows a cross-domain redirect (301/302/307/308), `follow-redirects` only strips `authorization`, `proxy-authorization`, and `cookie` headers (matched by regex at index.js:469-47…
VulnGhsa r4q5 vmmm 2653
medium System graph security Trivy conf 1.00 GHSA-vfvv-c25p-m7mm: rkyv 0.8.12 — v2/patches/ruvector-crv/Cargo.lock
rkyv: Panic safety bugs in `InlineVec::clear` and `SerVec::clear` enable arbitrary code execution `InlineVec::clear()` and `SerVec::clear()` in `rkyv` were not panic-safe. Both functions iterate over their elements and call `drop_in_place` on each, updating `self.len` only *after* the loop. If an …
VulnGhsa vfvv c25p m7mm
medium System graph security Trivy conf 1.00 GHSA-vfvv-c25p-m7mm: rkyv 0.8.15 — v2/Cargo.lock
rkyv: Panic safety bugs in `InlineVec::clear` and `SerVec::clear` enable arbitrary code execution `InlineVec::clear()` and `SerVec::clear()` in `rkyv` were not panic-safe. Both functions iterate over their elements and call `drop_in_place` on each, updating `self.len` only *after* the loop. If an …
VulnGhsa vfvv c25p m7mm
medium System graph security Trivy conf 1.00 GHSA-wrw7-89jp-8q8g: glib 0.18.5 — v2/Cargo.lock
Unsoundness in `Iterator` and `DoubleEndedIterator` impls for `glib::VariantStrIter` The `VariantStrIter::impl_get` function (called internally by implementations of the `Iterator` and `DoubleEndedIterator` traits for this type) was unsound, resulting in undefined behaviour. An immutable referenc…
VulnGhsa wrw7 89jp 8q8g
medium System graph security Trivy conf 1.00 GHSA-xj6q-8x83-jv6g: axios 1.15.2 — ui/mobile/package-lock.json
Axios: Prototype pollution auth subfields can inject Basic auth ## Summary Axios versions after the `GHSA-q8qp-cvcw-x6jj` fix still contain prototype-pollution read-side gadgets in Basic auth subfield handling. If a host application is already affected by prototype pollution and then makes an axi…
VulnGhsa xj6q 8x83 jv6g
medium System graph cicd CI/CD security conf 1.00 14 occurrences GitHub Action is tag-pinned rather than SHA-pinned
actions/checkout@v4 can move without a code change in this repo. Pin third-party actions to a reviewed 40-character commit SHA.
12 files, 12 locations
.github/workflows/bench-regression.yml:74
.github/workflows/bfld-mqtt-integration.yml:55
.github/workflows/cd.yml:44
.github/workflows/ci.yml:30
.github/workflows/cog-ha-matter-release.yml:35
.github/workflows/dashboard-pages.yml:28
.github/workflows/desktop-release.yml:30
.github/workflows/mqtt-integration.yml:73
CI/CD securitySupply chainGithub actions
medium System graph cicd CI/CD security conf 1.00 10 occurrences GitHub Actions workflow grants broad write permissions
CI tokens with write permissions increase blast radius when an action, dependency, or PR workflow is compromised. Prefer job-level least-privilege permissions.
10 files, 10 locations
.github/workflows/ci.yml
.github/workflows/clone-tracking.yml
.github/workflows/dashboard-pages.yml
.github/workflows/desktop-release.yml
.github/workflows/nvsim-server-docker.yml
.github/workflows/pointcloud-pages.yml
.github/workflows/ruview-npm-release.yml
.github/workflows/sensing-server-docker.yml
CI/CD securitySupply chainGithub actions
medium System graph security security conf 0.65 Insecure pattern 'direct_innerhtml_assignment' in dashboard/src/components/nv-console.ts:254
Found a known-risky pattern (direct_innerhtml_assignment). Review and replace if possible.
dashboard/src/components/nv-console.ts:254 Direct innerhtml assignment
medium System graph security security conf 0.65 Insecure pattern 'direct_innerhtml_assignment' in dashboard/src/components/nv-help.ts:347
Found a known-risky pattern (direct_innerhtml_assignment). Review and replace if possible.
dashboard/src/components/nv-help.ts:347 Direct innerhtml assignment
medium System graph security security conf 0.65 Insecure pattern 'direct_innerhtml_assignment' in dashboard/src/components/nv-modal.ts:140
Found a known-risky pattern (direct_innerhtml_assignment). Review and replace if possible.
dashboard/src/components/nv-modal.ts:140 Direct innerhtml assignment
medium System graph security security conf 0.65 Insecure pattern 'direct_innerhtml_assignment' in dashboard/src/components/nv-onboarding.ts:375
Found a known-risky pattern (direct_innerhtml_assignment). Review and replace if possible.
dashboard/src/components/nv-onboarding.ts:375 Direct innerhtml assignment
medium System graph security security conf 0.65 Insecure pattern 'direct_innerhtml_assignment' in ui/components/dashboard-hud.js:33
Found a known-risky pattern (direct_innerhtml_assignment). Review and replace if possible.
ui/components/dashboard-hud.js:33 Direct innerhtml assignment
medium System graph security security conf 0.65 Insecure pattern 'direct_innerhtml_assignment' in ui/components/LiveDemoTab.js:326
Found a known-risky pattern (direct_innerhtml_assignment). Review and replace if possible.
ui/components/LiveDemoTab.js:326 Direct innerhtml assignment
medium System graph security security conf 0.65 Insecure pattern 'direct_innerhtml_assignment' in ui/components/PoseDetectionCanvas.js:86
Found a known-risky pattern (direct_innerhtml_assignment). Review and replace if possible.
ui/components/PoseDetectionCanvas.js:86 Direct innerhtml assignment
medium System graph security security conf 0.65 Insecure pattern 'direct_innerhtml_assignment' in ui/components/SensingTab.js:34
Found a known-risky pattern (direct_innerhtml_assignment). Review and replace if possible.
ui/components/SensingTab.js:34 Direct innerhtml assignment
medium System graph security security conf 0.65 Insecure pattern 'direct_innerhtml_assignment' in ui/components/SettingsPanel.js:119
Found a known-risky pattern (direct_innerhtml_assignment). Review and replace if possible.
ui/components/SettingsPanel.js:119 Direct innerhtml assignment
medium System graph security security conf 0.65 Insecure pattern 'direct_innerhtml_assignment' in ui/observatory/js/hud-controller.js:542
Found a known-risky pattern (direct_innerhtml_assignment). Review and replace if possible.
ui/observatory/js/hud-controller.js:542 Direct innerhtml assignment
medium System graph security security conf 0.65 Insecure pattern 'direct_innerhtml_assignment' in ui/utils/activity-log.js:25
Found a known-risky pattern (direct_innerhtml_assignment). Review and replace if possible.
ui/utils/activity-log.js:25 Direct innerhtml assignment

Showing first 300 of 510. Refine filters or use the findings page for deep search.

For AI agents: Voting guide (TP/FP) MCP manifest Stdio wrapper SARIF Integrate Findings queue Vote TP/FP on findings to calibrate the engine.
For AI agents + API integrations
Email me when this repo regresses
Free. We re-scan periodically; new criticals → your inbox. No signup required for the scan itself.
API access

This page is publicly accessible at: https://repobility.com/scan/ad982fad-13fd-4eb8-940c-33c7ef4b6332/

To check status programmatically (no auth required):

curl -s https://repobility.com/api/v1/public/scan/ad982fad-13fd-4eb8-940c-33c7ef4b6332/

Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.