https://github.com/dodo-reach/hermes-desktop
· scanned 2026-05-17 01:36 UTC (19 hours, 43 minutes ago)
· 10 languages
27 findings (7 legacy + 20 scanner) Scanner says 86 (lower by 18)
Last scanned 19 hours, 42 minutes ago · v2 · 17 findings from 2 sources. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
Showing 7 of 17 findings. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
.github/workflows/deploy-pages.yml
supply-chaingithub-actionsleast-privilege
.github/workflows/deploy-pages.yml:23
supply-chaingithub-actionspinned-dependencies
.github/workflows/deploy-pages.yml:26
supply-chaingithub-actionspinned-dependencies
.github/workflows/deploy-pages.yml:35
supply-chaingithub-actionspinned-dependencies
.github/workflows/deploy-pages.yml:48
supply-chaingithub-actionspinned-dependencies
.github/workflows/macos-ci.yml:20
supply-chaingithub-actionspinned-dependencies
.github/workflows/macos-ci.yml:35
supply-chaingithub-actionspinned-dependencies
This page is publicly accessible at:
https://repobility.com/scan/e9c59c52-63b4-4975-931e-f5a828fd9e88/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/e9c59c52-63b4-4975-931e-f5a828fd9e88/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.