Scan timing: clone 22.72s · analysis 24.76s · 61.7 MB · GitHub API rate-limit (preflight)
https://github.com/koala73/worldmonitor
· scanned 2026-06-05 10:24 UTC (5 days, 14 hours ago)
· 10 languages
1473 raw signals (155 security + 1318 graph) 11/13 scanners ran 73rd percentile · Typescript · large (100-500K LoC) System graph score 68 (higher by 14)
Last scanned 5 days, 14 hours ago · v2 · 710 actionable findings from 2 signal sources. 104 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
85.0 | 0.15 | 12.75 |
security_score |
100.0 | 0.25 | 25.00 |
testing_score |
36.0 | 0.20 | 7.20 |
documentation_score |
100.0 | 0.15 | 15.00 |
practices_score |
97.0 | 0.15 | 14.55 |
code_quality |
67.0 | 0.10 | 6.70 |
| Overall | 1.00 | 81.2 |
Showing 394 of 710 actionable findings. 814 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
package-lock.json:23213
public/pro/assets/index-cpXKHxXo.js:266
src/components/WatchlistTableView.ts:94
Dockerfile:11, 31, 45 (3 hits)docker/Dockerfile:6, 29 (2 hits)Dockerfile.digest-notifications:30Dockerfile.relay:9Dockerfile.seed-bundle-portwatch-port-activity:17Dockerfile.seed-bundle-resilience-validation:13consumer-prices-core/Dockerfile:1docker/Dockerfile.redis-rest:1.github/workflows/test.yml:78, 79, 102, 103, 137, 138, 151, 152, +5 more (13 hits).github/workflows/deploy-worker.yml:32, 33, 49, 50, 66, 67 (6 hits).github/workflows/convex-deploy.yml:41, 93, 94 (3 hits).github/workflows/feed-validation.yml:48, 49 (2 hits).github/workflows/lint-code.yml:37src/main.ts:305
Eval used
.github/workflows/contributor-trust.yml
CI/CD securitySupply chainGithub actions
api/_sentry-common.js:186api/discord/oauth/callback.ts:77api/mcp/quota.ts:100scripts/build-agent-skills-index.mjs:37
consumer-prices-core/src/config/loader.ts:13
src/utils/widget-sanitizer.ts:201
docker-compose.yml:14, 60, 86 (3 hits)docker-compose.yml:86
CI/CD securitycontainers
Dockerfile.digest-notifications:31Dockerfile.relay:10Dockerfile.seed-bundle-portwatch-port-activity:18Dockerfile.seed-bundle-resilience-validation:14consumer-prices-core/Dockerfile:1docker/Dockerfile:29docker/Dockerfile.redis-rest:1docker/Dockerfile:11
CI/CD securitycontainers
Dockerfile:20
CI/CD securitycontainers
docker/Dockerfile:14
CI/CD securitycontainers
.github/workflows/docker-publish.yml
CI/CD securitySupply chainGithub actions
.github/workflows/build-desktop.yml
CI/CD securitySupply chainGithub actions
public/pro/assets/index-cpXKHxXo.js:63
Dangerous innerhtml
.dockerignore
CI/CD securitycontainers
docker-compose.yml:14
CI/CD securitycontainers
docker-compose.yml:60
CI/CD securitycontainers
docker-compose.yml:14, 60 (2 hits)docker-compose.yml:71, 86 (2 hits)docker-compose.yml:86
CI/CD securitycontainers
api/brief/public/[hash].ts:17api/customer-portal.ts:1api/internal/mcp-grant-mint.ts:26api/invalidate-user-api-key-cache.ts:7api/latest-brief.ts:77api/notify.ts:9api/oauth/authorize-pro.ts:71api/oauth/token.ts:54humans.txt
src/bootstrap/sw-update.ts:1
server/alias-rewrite.ts:1
docker/Dockerfile:29
containersPinned dependencies
consumer-prices-core/Dockerfile:1
containersPinned dependencies
Dockerfile:11, 31, 45 (3 hits)docker/Dockerfile:6api/oauth/authorize.js:182
Document write
package.json
CI/CD securitySupply chainNpm
Showing first 300 of 394. Refine filters or use the findings page for deep search.
This page is publicly accessible at:
https://repobility.com/scan/c4e5290e-2554-4239-8548-581b533a4bae/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/c4e5290e-2554-4239-8548-581b533a4bae/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.