https://github.com/be-BOP-io-SA/be-BOP.git
· scanned 2026-05-16 18:02 UTC (1 day, 3 hours ago)
· 10 languages
302 findings (60 legacy + 242 scanner) 0th percentile · Typescript · medium (20-100K LoC) Scanner says 62 (lower by 16)
Last scanned 1 day, 3 hours ago · v2 · 181 findings from 2 sources. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
Showing 179 of 181 findings. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
.env
securitylegacy
.env
credential_exposurelegacy
docker-compose.yml:52
dockerlegacy
docker-compose.yml:1
dockerlegacy
src/routes/(app)/admin[[hash=admin_hash]]/picture/prepare/+server.ts:26
ssrflegacy
src/routes/(app)/admin[[hash=admin_hash]]/nostr/+page.server.ts:49
ssrflegacy
src/routes/(app)/admin[[hash=admin_hash]]/digital-file/prepare/+server.ts:43
ssrflegacy
src/routes/script/language/[lang].js/+server.ts:48
prototype_pollutionlegacy
docker-compose.yml:52
dockerlegacy
src/routes/(app)/admin[[hash=admin_hash]]/swiss-bitcoin-pay/+page.svelte:11
authlegacy
src/routes/(app)/admin[[hash=admin_hash]]/sumup/+page.svelte:27
authlegacy
src/routes/(app)/admin[[hash=admin_hash]]/phoenixd/+page.svelte:86
authlegacy
src/routes/(app)/admin[[hash=admin_hash]]/paypal/+page.svelte:32
authlegacy
src/routes/(app)/admin[[hash=admin_hash]]/nostr/+page.svelte:81
authlegacy
src/routes/(app)/admin[[hash=admin_hash]]/login/reset/[token]/+page.svelte:53
authlegacy
src/routes/(app)/admin[[hash=admin_hash]]/btcpay-server/+page.svelte:57
authlegacy
.github/workflows/lint.yml:19
supply-chaingithub-actionspinned-dependencies
docker-compose.yml:1
dockerlegacy
docker-compose.yml:52
dockerlegacy
Dockerfile:13
dockerlegacy
index.html
qualitylegacy
.well-known/security.txt
qualitylegacy
.github/workflows/deploy.yml:36
supply-chaingithub-actionspinned-dependencies
.github/workflows/artifacts.yml:19
supply-chaingithub-actionspinned-dependencies
.github/workflows/artifacts.yml:82
supply-chaingithub-actionspinned-dependencies
.github/workflows/artifacts.yml
supply-chaingithub-actionsleast-privilege
src/lib/server/email.ts
securityports
.dockerignore
dockerlegacy
docker-compose.yml:1
dockerlegacy
docker-compose.yml:1
dockerlegacy
docker-compose.yml:52
dockerlegacy
src/lib/components/TagWidget/TagWidgetVariation2.svelte:31
qualitylegacy
src/lib/components/TagWidget/TagWidgetVariation1noBG.svelte:1
qualitylegacy
src/lib/components/TagWidget/TagWidgetVariation1Reverse.svelte:1
qualitylegacy
src/lib/components/TagWidget/TagWidgetVariation1CTAless.svelte:1
qualitylegacy
src/lib/components/ScheduleWidget/ScheduleWidgetMobile.svelte:82
qualitylegacy
src/lib/components/ScheduleWidget/ScheduleWidgetMobile.svelte:70
qualitylegacy
src/lib/components/ScheduleWidget/ScheduleWidgetMobile.svelte:6
qualitylegacy
src/lib/components/ScheduleWidget/ScheduleWidgetMainLight.svelte:95
qualitylegacy
src/lib/components/ScheduleWidget/ScheduleWidgetMainLight.svelte:74
qualitylegacy
src/lib/components/ScheduleWidget/ScheduleWidgetMainLight.svelte:6
qualitylegacy
src/lib/components/ScheduleWidget/ScheduleWidgetMain.svelte:89
qualitylegacy
src/lib/components/ScheduleWidget/ScheduleWidgetMain.svelte:77
qualitylegacy
src/lib/components/ScheduleWidget/ScheduleWidgetList.svelte:17
qualitylegacy
src/lib/components/ProductWidget/ProductWidgetVariation6.svelte:1
qualitylegacy
src/lib/components/ProductWidget/ProductWidgetVariation4.svelte:50
qualitylegacy
src/lib/components/ProductWidget/ProductWidgetVariation4.svelte:41
qualitylegacy
src/lib/components/ProductWidget/ProductWidgetVariation4.svelte:40
qualitylegacy
src/lib/components/ProductWidget/ProductWidgetVariation4.svelte:4
qualitylegacy
src/lib/components/ProductWidget/ProductWidgetVariation3.svelte:34
qualitylegacy
src/lib/components/ProductWidget/ProductWidgetVariation3.svelte:33
qualitylegacy
src/lib/components/ProductWidget/ProductWidgetVariation3.svelte:9
qualitylegacy
src/lib/components/ProductWidget/ProductWidgetVariation3.svelte:4
qualitylegacy
src/lib/components/ProductWidget/ProductWidgetVariation2.svelte:51
qualitylegacy
src/lib/components/ProductWidget/ProductWidgetVariation2.svelte:50
qualitylegacy
src/lib/components/ProductWidget/ProductWidgetVariation2.svelte:4
qualitylegacy
src/lib/components/ProductWidget/ProductWidgetVariation1.svelte:46
qualitylegacy
src/lib/components/ProductWidget/ProductWidgetVariation1.svelte:4
qualitylegacy
src/lib/components/ProductType/ProductTypePreorder.svelte:1
qualitylegacy
src/lib/components/Order/LightningPayment.svelte:15
qualitylegacy
src/lib/components/CmsPage.svelte:32
qualitylegacy
llms.txt
qualitylegacy
humans.txt
qualitylegacy
robots.txt
qualitylegacy
sitemap.xml
qualitylegacy
Dockerfile:4
supply-chaindockerpinned-dependencies
Dockerfile:12
supply-chaindockerpinned-dependencies
.github/workflows/lint.yml:70
supply-chaingithub-actionspinned-dependencies
.github/workflows/artifacts.yml:15
supply-chaingithub-actionspinned-dependencies
.github/workflows/artifacts.yml:21
supply-chaingithub-actionspinned-dependencies
.github/workflows/artifacts.yml:39
supply-chaingithub-actionspinned-dependencies
.github/workflows/artifacts.yml:53
supply-chaingithub-actionspinned-dependencies
.github/workflows/artifacts.yml:55
supply-chaingithub-actionspinned-dependencies
This page is publicly accessible at:
https://repobility.com/scan/b49df7cb-c32f-4ae1-94ef-c9d55480b7a6/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/b49df7cb-c32f-4ae1-94ef-c9d55480b7a6/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.