Scan timing: clone 1.33s · analysis 1.04s · 1.5 MB · GitHub API rate-limit (preflight)
https://github.com/AI-QL/tuui
· scanned 2026-05-31 01:25 UTC (5 days, 7 hours ago)
· 10 languages
187 findings (33 legacy + 154 scanner) 71st percentile · Typescript · small (2-20K LoC)
Last scanned 5 days, 7 hours ago · v2 · 110 findings from 2 sources. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
100.0 | 0.15 | 15.00 |
security_score |
98.4 | 0.25 | 24.60 |
testing_score |
25.0 | 0.20 | 5.00 |
documentation_score |
73.7 | 0.15 | 11.05 |
practices_score |
79.0 | 0.15 | 11.85 |
code_quality |
78.7 | 0.10 | 7.87 |
| Overall | 1.00 | 75.4 |
Showing 86 of 110 findings. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
.github/workflows/build-artifacts.yml:16
dependencylegacy
.github/workflows/build-artifacts.yml:19
dependencylegacy
.github/workflows/build-artifacts.yml:32
dependencylegacy
src/main/mcp/connection.ts:14
error_handlinglegacy
src/renderer/router/index.ts:83
redoslegacy
src/renderer/store/agent.ts:115
qualitylegacy
.well-known/security.txt
qualitylegacy
src/renderer/components/pages/McpRegistryPage.vue:4
qualitylegacy
src/renderer/components/pages/McpEditPage.vue:14
qualitylegacy
llms.txt
qualitylegacy
humans.txt
qualitylegacy
sitemap.xml
qualitylegacy
docs/src/public/robots.txt
qualitylegacy
.github/workflows/build-artifacts.yml:16
supply-chaingithub-actionspinned-dependencies
.github/workflows/build-artifacts.yml:19
supply-chaingithub-actionspinned-dependencies
.github/workflows/build-artifacts.yml:32
supply-chaingithub-actionspinned-dependencies
src/renderer/utils/color.ts:2
qualitylegacy
src/main/aid/windows.ts:43
qualitylegacy
src/main/aid/nut.ts:35
qualitylegacy
src/main/aid/macos.ts:113
qualitylegacy
src/main/mcp/connection.ts:37
qualitylegacy
This page is publicly accessible at:
https://repobility.com/scan/d6e12ad7-d186-451b-b812-8b976bb2844b/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/d6e12ad7-d186-451b-b812-8b976bb2844b/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.