Scan timing: clone 2.89s · analysis 50.98s · 5.6 MB · GitHub preflight 414ms
https://github.com/gramps-project/gramps-web
· scanned 2026-06-05 13:15 UTC (5 days, 7 hours ago)
· 10 languages
259 raw signals (153 security + 106 graph) 26th percentile · Javascript · medium (20-100K LoC) System graph score 67 (lower by 15)
Last scanned 5 days, 7 hours ago · v2 · 129 actionable findings from 2 signal sources. 77 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
100.0 | 0.15 | 15.00 |
security_score |
9.0 | 0.25 | 2.25 |
testing_score |
25.0 | 0.20 | 5.00 |
documentation_score |
73.7 | 0.15 | 11.05 |
practices_score |
85.0 | 0.15 | 12.75 |
code_quality |
58.3 | 0.10 | 5.83 |
| Overall | 1.00 | 51.9 |
Showing 108 of 129 actionable findings. 206 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
package-lock.json
package-lock.json
src/components/GrampsjsFormUser.js:84
src/components/GrampsjsRelogin.js:77
package-lock.json
src/components/GrampsjsFormSelectObject.js:106
.devcontainer/Dockerfile:1Dockerfile:1Dockerfile.devel:1package-lock.json
package-lock.json
package-lock.json
package-lock.json
.github/workflows/image-devel.yml:14, 15 (3 hits).github/workflows/image-release.yml:14, 15 (3 hits).github/workflows/release.yml:12, 13 (2 hits).github/workflows/test.yml:14, 15 (2 hits)package-lock.json
package-lock.json
package-lock.json
package-lock.json
package-lock.json
src/components/GrampsjsPasswordManagerPolyfill.js:63
package-lock.json
package-lock.json
package-lock.json
package-lock.json
src/oidc.js:52
package-lock.json
package-lock.json
src/api.js:22, 23, 27, 31, 47, 602, 608, 613, +4 more (12 hits).devcontainer/Dockerfile:1Dockerfile:1Dockerfile.devel:1Dockerfile.nginx:1Dockerfile:1
CI/CD securitycontainers
.github/workflows/image-devel.yml:14.github/workflows/image-release.yml:14.github/workflows/release.yml:12.github/workflows/test.yml:14.github/workflows/image-devel.yml:15.github/workflows/image-release.yml:15.github/workflows/release.yml:13.github/workflows/test.yml:15.github/workflows/release.yml:28
package-lock.json
package-lock.json
src/api.js:22
package-lock.json
package-lock.json
package.json
package.json
package.json
package.json
package.json
package.json
package.json
package.json
package.json
package.json
package.json
package.json
package-lock.json
package-lock.json
package-lock.json
index.html
.well-known/security.txt
package-lock.json
package-lock.json
package-lock.json
package-lock.json
Dockerfile:1
containersPinned dependencies
.github/workflows/image-devel.yml:23, 26, 34, 40, 50 (5 hits).github/workflows/image-release.yml:23, 26, 34, 47, 58 (5 hits).github/workflows/release.yml:28 (2 hits).dockerignore
CI/CD securitycontainers
package-lock.json
src/components/GrampsjsBlogPreview.js:8, 9 (2 hits)src/components/GrampsjsFilterProperties.js:7, 9 (2 hits)src/components/GrampsjsFilterYears.js:9, 11 (2 hits)src/components/GrampsjsFormSpouseRef.js:5, 8 (2 hits)src/components/GrampsjsFormUser.js:20, 26 (2 hits)src/charts/TreeChart.js:188src/charts/YtreeLineageChart.js:3src/components/GrampsjsBlogPostPreview.js:48package-lock.json
package.json
package.json
package.json
package.json
package.json
package.json
package.json
package.json
package.json
llms.txt
humans.txt
robots.txt
sitemap.xml
.devcontainer/Dockerfile:1
containersPinned dependencies
This page is publicly accessible at:
https://repobility.com/scan/e6b93f5d-3924-45dd-bc35-51f744a761fb/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/e6b93f5d-3924-45dd-bc35-51f744a761fb/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.