CRIT
MINED107
[MINED107] Missing import: `warnings` used but not imported: The file uses `warnings.some…
components/autofill/PRESUBMIT.py:124
CRIT
MINED107
[MINED107] Missing import: `warnings` used but not imported: The file uses `warnings.some…
components/segmentation_platform/PRESUB…:96
CRIT
MINED107
[MINED107] Missing import: `enum` used but not imported: The file uses `enum.something(..…
ui/accessibility/PRESUBMIT.py:205
CRIT
MINED107
[MINED107] Missing import: `warnings` used but not imported: The file uses `warnings.some…
testing/buildbot/filters/PRESUBMIT.py:68
CRIT
MINED107
[MINED107] Missing import: `queue` used but not imported: The file uses `queue.something(…
remoting/tools/magi-mode/PRESUBMIT.py:283
CRIT
MINED107
[MINED107] Missing import: `warnings` used but not imported: The file uses `warnings.some…
ios/PRESUBMIT.py:88
CRIT
MINED107
[MINED107] Missing import: `warnings` used but not imported: The file uses `warnings.some…
PRESUBMIT.py:8212
CRIT
MINED107
[MINED107] Missing import: `ast` used but not imported: The file uses `ast.something(...)…
PRESUBMIT.py:5638
HIGH
MINED106
[MINED106] Phantom test coverage: test_no_fatal_exception: Test function `test_no_fatal_e…
agents/testing/workers_unittest.py:773
HIGH
MINED106
[MINED106] Phantom test coverage: test_fatal_exception: Test function `test_fatal_excepti…
agents/testing/workers_unittest.py:762
HIGH
MINED106
[MINED106] Phantom test coverage: test_exit_clean_btrfs_fallback: Test function `test_exi…
agents/testing/workers_unittest.py:195
HIGH
MINED106
[MINED106] Phantom test coverage: test_exit_no_clean: Test function `test_exit_no_clean` …
agents/testing/workers_unittest.py:180
HIGH
MINED106
[MINED106] Phantom test coverage: test_exit_clean_no_btrfs: Test function `test_exit_clea…
agents/testing/workers_unittest.py:167
HIGH
MINED106
[MINED106] Phantom test coverage: test_exit_clean_btrfs: Test function `test_exit_clean_b…
agents/testing/workers_unittest.py:144
HIGH
MINED106
[MINED106] Phantom test coverage: test_enter_exists: Test function `test_enter_exists` ru…
agents/testing/workers_unittest.py:119
HIGH
MINED106
[MINED106] Phantom test coverage: test_mock_without_command_name: Test function `test_moc…
agents/testing/gemini_provider_unittest…:1143
HIGH
MINED106
[MINED106] Phantom test coverage: test_call_api_installs_mocks: Test function `test_call_…
agents/testing/gemini_provider_unittest…:1032
HIGH
MINED106
[MINED106] Phantom test coverage: test_get_depot_tools_path_is_cached: Test function `tes…
agents/testing/checkout_helpers_unittes…:117
HIGH
MINED106
[MINED106] Phantom test coverage: test_get_gclient_root_is_cached: Test function `test_ge…
agents/testing/checkout_helpers_unittes…:86
HIGH
MINED106
[MINED106] Phantom test coverage: test_check_btrfs_is_cached: Test function `test_check_b…
agents/testing/checkout_helpers_unittes…:53
HIGH
MINED106
[MINED106] Phantom test coverage: test_disable_extension_user_scope: Test function `test_…
agents/extensions/install_unittest.py:250
HIGH
MINED106
[MINED106] Phantom test coverage: test_disable_extension: Test function `test_disable_ext…
agents/extensions/install_unittest.py:241
HIGH
MINED106
[MINED106] Phantom test coverage: test_enable_extension_user_scope: Test function `test_e…
agents/extensions/install_unittest.py:232
HIGH
MINED106
[MINED106] Phantom test coverage: test_enable_extension: Test function `test_enable_exten…
agents/extensions/install_unittest.py:223
HIGH
MINED106
[MINED106] Phantom test coverage: test_remove_extension: Test function `test_remove_exten…
agents/extensions/install_unittest.py:215
HIGH
MINED106
[MINED106] Phantom test coverage: test_update_all_extensions: Test function `test_update_…
agents/extensions/install_unittest.py:208
HIGH
MINED106
[MINED106] Phantom test coverage: test_update_extension: Test function `test_update_exten…
agents/extensions/install_unittest.py:200
HIGH
MINED106
[MINED106] Phantom test coverage: test_add_test_extension: Test function `test_add_test_e…
agents/extensions/install_unittest.py:167
HIGH
MINED106
[MINED106] Phantom test coverage: test_add_extension_skip_prompt: Test function `test_add…
agents/extensions/install_unittest.py:154
HIGH
MINED106
[MINED106] Phantom test coverage: test_add_extension_link: Test function `test_add_extens…
agents/extensions/install_unittest.py:141
HIGH
MINED106
[MINED106] Phantom test coverage: test_add_extension_copy: Test function `test_add_extens…
agents/extensions/install_unittest.py:128
HIGH
MINED106
[MINED106] Phantom test coverage: test_run_skill_command_disable: Test function `test_run…
agents/skills/setup_unittest.py:161
HIGH
MINED106
[MINED106] Phantom test coverage: test_run_skill_command_enable: Test function `test_run_…
agents/skills/setup_unittest.py:153
HIGH
MINED108
[MINED108] `self.AffectedFiles` used but never assigned in __init__: Method `AffectedTest…
PRESUBMIT_test_mocks.py:164
HIGH
MINED108
[MINED108] `self.AffectedFiles` used but never assigned in __init__: Method `AffectedSour…
PRESUBMIT_test_mocks.py:160
HIGH
MINED108
[MINED108] `self.AffectedSourceFiles` used but never assigned in __init__: Method `RightH…
PRESUBMIT_test_mocks.py:153
HIGH
MINED108
[MINED108] `self.glob` used but never assigned in __init__: Method `InitFiles` of class `…
PRESUBMIT_test_mocks.py:142
HIGH
MINED023
[MINED023] Xxe Sax Default: xml.etree.ElementTree.parse / xml.sax / lxml without disable-…
tools/win/DebugVisualizers/PRESUBMIT.py:27
HIGH
MINED004
[MINED004] Weak Crypto: MD5/SHA1/DES/RC4 used for security context (not just checksums).
tools/perf/PRESUBMIT.py:147
HIGH
MINED004
[MINED004] Weak Crypto: MD5/SHA1/DES/RC4 used for security context (not just checksums).
tools/metrics/actions/PRESUBMIT.py:40
HIGH
SEC085
[SEC085] JS: child_process.exec with non-literal: child_process.exec with user-derived in…
chrome/browser/ash/arc/PRESUBMIT.py:13
HIGH
MINED021
[MINED021] Path Traversal Os Join: os.path.join(user_dir, filename) where filename can co…
infra/config/targets/PRESUBMIT.py:14
HIGH
MINED021
[MINED021] Path Traversal Os Join: os.path.join(user_dir, filename) where filename can co…
gpu/config/PRESUBMIT.py:18
HIGH
MINED021
[MINED021] Path Traversal Os Join: os.path.join(user_dir, filename) where filename can co…
android_webview/java/res/raw/PRESUBMIT.…:18
HIGH
SEC128
[SEC128] Async function without await — fire-and-forget Promise (AI mistake): Async call …
android_webview/glue/java/src/com/andro…:41
HIGH
SEC029
[SEC029] Server-Side Request Forgery (SSRF) — outbound HTTP from user input: Outbound HTT…
android_webview/browser/aw_web_ui_contr…:23
HIGH
SEC029
[SEC029] Server-Side Request Forgery (SSRF) — outbound HTTP from user input: Outbound HTT…
android_webview/browser/aw_ssl_host_sta…:89
HIGH
SEC029
[SEC029] Server-Side Request Forgery (SSRF) — outbound HTTP from user input: Outbound HTT…
android_webview/browser/aw_enterprise_a…:28
HIGH
SEC103
[SEC103] LDAP injection — non-constant search filter: User input concatenated into an LDA…
infra/config/targets/PRESUBMIT.py:21
HIGH
SEC103
[SEC103] LDAP injection — non-constant search filter: User input concatenated into an LDA…
cc/PRESUBMIT.py:110
HIGH
SEC103
[SEC103] LDAP injection — non-constant search filter: User input concatenated into an LDA…
agents/projects/code-health/lint-sync/s…:25
HIGH
MINED001
[MINED001] Bare Except Pass: except: pass or except Exception: pass — silently swallows e…
agents/projects/code-health/histogram-c…:43
HIGH
MINED001
[MINED001] Bare Except Pass: except: pass or except Exception: pass — silently swallows e…
agents/projects/code-health/histogram-c…:68
HIGH
SEC114
[SEC114] path.join / Path() on user-controlled segment without containment check: filepat…
agents/prompts/PRESUBMIT.py:15
HIGH
SEC114
[SEC114] path.join / Path() on user-controlled segment without containment check: filepat…
agents/PRESUBMIT.py:22
HIGH
SEC114
[SEC114] path.join / Path() on user-controlled segment without containment check: filepat…
.gemini/commands/PRESUBMIT.py:18
HIGH
MINED115
[MINED115] Action `superbrothers/close-pull-request` pinned to mutable ref `@v3`: `uses: …
.github/workflows/close-pull-request.yml:15
HIGH
MINED112
[MINED112] FastAPI PATCH shutil.which has no auth: Handler `test_get_depot_tools_path_is_…
agents/testing/checkout_helpers_unittes…:117
HIGH
MINED112
[MINED112] FastAPI PATCH shutil.which has no auth: Handler `test_get_depot_tools_path_fai…
agents/testing/checkout_helpers_unittes…:110
HIGH
MINED112
[MINED112] FastAPI PATCH shutil.which has no auth: Handler `test_get_depot_tools_path_suc…
agents/testing/checkout_helpers_unittes…:102
HIGH
MINED112
[MINED112] FastAPI PATCH subprocess.run has no auth: Handler `test_get_gclient_root_is_ca…
agents/testing/checkout_helpers_unittes…:86
HIGH
MINED112
[MINED112] FastAPI PATCH subprocess.run has no auth: Handler `test_get_gclient_root_failu…
agents/testing/checkout_helpers_unittes…:79
HIGH
MINED112
[MINED112] FastAPI PATCH subprocess.run has no auth: Handler `test_get_gclient_root_succe…
agents/testing/checkout_helpers_unittes…:71
HIGH
MINED112
[MINED112] FastAPI PATCH subprocess.run has no auth: Handler `test_check_btrfs_is_cached`…
agents/testing/checkout_helpers_unittes…:53
HIGH
MINED112
[MINED112] FastAPI PATCH subprocess.run has no auth: Handler `test_check_btrfs_stat_fails…
agents/testing/checkout_helpers_unittes…:46
HIGH
MINED112
[MINED112] FastAPI PATCH subprocess.run has no auth: Handler `test_check_btrfs_is_not_btr…
agents/testing/checkout_helpers_unittes…:35
HIGH
MINED112
[MINED112] FastAPI PATCH subprocess.run has no auth: Handler `test_check_btrfs_is_btrfs` …
agents/testing/checkout_helpers_unittes…:27
HIGH
MINED112
[MINED112] FastAPI PATCH pathlib.Path.home has no auth: Handler `test_fix_skips_existing_…
agents/extensions/install_unittest.py:486
HIGH
MINED112
[MINED112] FastAPI PATCH install.find_extensions_dir_for_extension has no auth: Handler `…
agents/extensions/install_unittest.py:428
HIGH
MINED112
[MINED112] FastAPI PATCH pathlib.Path.home has no auth: Handler `test_remove_legacy_exten…
agents/extensions/install_unittest.py:260
HIGH
MINED112
[MINED112] FastAPI PATCH install.find_extensions_dir_for_extension has no auth: Handler `…
agents/extensions/install_unittest.py:154
HIGH
MINED112
[MINED112] FastAPI PATCH install.find_extensions_dir_for_extension has no auth: Handler `…
agents/extensions/install_unittest.py:141
HIGH
MINED112
[MINED112] FastAPI PATCH install.find_extensions_dir_for_extension has no auth: Handler `…
agents/extensions/install_unittest.py:128
HIGH
MINED112
[MINED112] FastAPI PATCH setup.get_available_skills has no auth: Handler `test_handle_lin…
agents/skills/setup_unittest.py:409
HIGH
MINED112
[MINED112] FastAPI PATCH setup.get_installed_skills has no auth: Handler `test_handle_uni…
agents/skills/setup_unittest.py:392
HIGH
MINED112
[MINED112] FastAPI PATCH setup.get_available_skills has no auth: Handler `test_handle_lin…
agents/skills/setup_unittest.py:373
HIGH
MINED112
[MINED112] FastAPI PATCH setup.get_installed_skills has no auth: Handler `test_handle_ena…
agents/skills/setup_unittest.py:315
HIGH
MINED112
[MINED112] FastAPI PATCH setup.get_installed_skills has no auth: Handler `test_handle_dis…
agents/skills/setup_unittest.py:298
HIGH
MINED112
[MINED112] FastAPI PATCH setup.get_installed_skills has no auth: Handler `test_handle_ena…
agents/skills/setup_unittest.py:281
HIGH
MINED112
[MINED112] FastAPI PATCH setup.get_installed_skills has no auth: Handler `test_handle_uni…
agents/skills/setup_unittest.py:255
HIGH
MINED112
[MINED112] FastAPI PATCH setup.get_installed_skills has no auth: Handler `test_handle_uni…
agents/skills/setup_unittest.py:233
HIGH
MINED112
[MINED112] FastAPI PATCH setup.get_available_skills has no auth: Handler `test_handle_lin…
agents/skills/setup_unittest.py:171
HIGH
SEC013
[SEC013] Path Traversal — User Input in File Path: User-controlled input used in file pat…
gpu/config/PRESUBMIT.py:18
HIGH
SEC013
[SEC013] Path Traversal — User Input in File Path: User-controlled input used in file pat…
android_webview/java/res/raw/PRESUBMIT.…:18
HIGH
SEC013
[SEC013] Path Traversal — User Input in File Path: User-controlled input used in file pat…
agents/prompts/process_prompts.py:30
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
chrome/browser/resources/glic/PRESUBMIT…:58
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
chrome/browser/PRESUBMIT.py:75
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
tools/metrics/actions/PRESUBMIT.py:210
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
tools/licenses/licenses.py:1185
MED
MINED109
[MINED109] Mutable default argument in `ParseDir` (list): `def ParseDir(... = []/{}/set()…
tools/licenses/licenses.py:672
MED
MINED109
[MINED109] Mutable default argument in `ParseMetadataFile` (list): `def ParseMetadataFile…
tools/licenses/licenses.py:523
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
content/browser/PRESUBMIT.py:28
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
agents/skills/chromium-docs/scripts/chr…:225
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
agents/prompts/projects/spanification/r…:218
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
agents/projects/code-health/histogram-c…:47
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
agents/testing/asserts/check_changes.py:106
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
agents/testing/results.py:125
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
agents/testing/workers.py:408
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
agents/testing/lint_promptfoo_testcases…:162
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
agents/testing/gemini_provider.py:803
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
agents/extensions/install.py:553
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
extensions/browser/PRESUBMIT.py:70
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
components/guest_view/browser/PRESUBMIT…:21
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
components/password_manager/content/bro…:21
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
components/record_replay/PRESUBMIT.py:32
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
ios/PRESUBMIT.py:624
MED
MINED109
[MINED109] Mutable default argument in `_FindNamespaceInBlock` (list): `def _FindNamespac…
cc/PRESUBMIT.py:168
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
PRESUBMIT.py:7604
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
PRESUBMIT.py:7386
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
PRESUBMIT.py:3921
MED
MINED109
[MINED109] Mutable default argument in `__init__` (list): `def __init__(... = []/{}/set()…
PRESUBMIT_test_mocks.py:216
MED
CFG006
[CFG006] Missing .gitignore: No .gitignore file. Risk of committing secrets and build art…
—
MED
SEC045
[SEC045] eval()/exec() on stored or user-supplied data: eval() and exec() on data — even …
chrome/browser/ash/arc/PRESUBMIT.py:13
MED
ERR001
[ERR001] Silent Exception Swallowing: Silently swallowing all exceptions hides bugs. Even…
agents/projects/code-health/histogram-c…:43
MED
COMP001
[COMP001] High cognitive complexity: Function `main` has cognitive complexity 15 (SonarSo…
agents/projects/code-health/histogram-c…:51
MED
AUC001
[AUC001] No Repobility access matrix policy found: The repository uses web/API frameworks…
—
MED
WEB003
Public web service has no security.txt
.well-known/security.txt
MED
WEB015
Public web app has no Content Security Policy
index.html
LOW
SEC132
[SEC132] String concat where the language has interpolation (AI style drift): String buil…
ui/base/ime/ash/PRESUBMIT.py:16
LOW
COMP001
[COMP001] High cognitive complexity: Function `get_gemini_command` has cognitive complexi…
agents/common/gemini_helpers.py:43
LOW
COMP001
[COMP001] High cognitive complexity: Function `CheckCommands` has cognitive complexity 10…
.gemini/commands/PRESUBMIT.py:17
LOW
AIC003
Duplicated implementation block across source files
tools/infra/PRESUBMIT.py:1
LOW
AIC003
Duplicated implementation block across source files
tools/cygprofile/PRESUBMIT.py:2
LOW
AIC003
Duplicated implementation block across source files
tools/android/dependency_analysis/PRESU…:2
LOW
AIC003
Duplicated implementation block across source files
ios/chrome/browser/flags/PRESUBMIT.py:12
LOW
AIC003
Duplicated implementation block across source files
extensions/common/permissions/PRESUBMIT…:14
LOW
AIC003
Duplicated implementation block across source files
components/password_manager/content/bro…:1
LOW
AIC003
Duplicated implementation block across source files
chrome/renderer/resources/PRESUBMIT.py:2
LOW
AIC003
Duplicated implementation block across source files
chrome/browser/vr/PRESUBMIT.py:2
LOW
AIC003
Duplicated implementation block across source files
chrome/browser/resources/chromeos/PRESU…:1
LOW
AIC003
Duplicated implementation block across source files
ash/webui/shortcut_customization_ui/res…:2
LOW
AIC003
Duplicated implementation block across source files
ash/webui/scanning/resources/PRESUBMIT.…:2
LOW
AIC003
Duplicated implementation block across source files
ash/webui/print_management/resources/PR…:2
LOW
AIC003
Duplicated implementation block across source files
ash/webui/firmware_update_ui/resources/…:2
LOW
AIC003
Duplicated implementation block across source files
ash/webui/diagnostics_ui/resources/PRES…:2
LOW
AIC003
Duplicated implementation block across source files
agents/testing/promptfoo_installation.py:72
LOW
AIC003
Duplicated implementation block across source files
agents/projects/code-health/histogram-c…:66
LOW
AUC005
[AUC005] No authorization-focused tests detected: No test files with common authorization…
—
LOW
WEB001
Public web app has no robots.txt
robots.txt
LOW
WEB002
Public web app has no sitemap
sitemap.xml
LOW
AIC007
Generated build artifact directory is present at repository root
build:1
LOW
WEB008
Public docs site has no llms.txt
llms.txt
LOW
WEB011
Public web app has no humans.txt
humans.txt
INFO
MINED062
[MINED062] Python Dataclass No Fields: @dataclass over an empty class — unfinished model.
agents/skills/setup.py:31
INFO
MINED050
[MINED050] Stub Only Function: Function declared but body is just pass, return None, rais…
agents/projects/code-health/histogram-c…:44
INFO
MINED050
[MINED050] Stub Only Function: Function declared but body is just pass, return None, rais…
agents/projects/code-health/histogram-c…:69
INFO
MINED050
[MINED050] Stub Only Function: Function declared but body is just pass, return None, rais…
agents/common/gemini_helpers.py:70
INFO
MINED043
[MINED043] Http Not Https: Hardcoded http:// (not localhost) for endpoints that handle cr…
agents/common/PRESUBMIT.py:6
INFO
MINED043
[MINED043] Http Not Https: Hardcoded http:// (not localhost) for endpoints that handle cr…
agents/PRESUBMIT.py:6
INFO
MINED043
[MINED043] Http Not Https: Hardcoded http:// (not localhost) for endpoints that handle cr…
.gemini/commands/PRESUBMIT.py:6