Scan timing: clone 2.93s · analysis 0.15s · 0.2 MB · GitHub preflight 448ms
https://github.com/expressjs/body-parser
· scanned 2026-05-20 05:23 UTC (2 weeks, 2 days ago)
· 10 languages
19 findings (7 legacy + 12 scanner) 87th percentile · Javascript · small (2-20K LoC) Scanner says 94 (lower by 9)
Last scanned 2 weeks, 2 days ago · v2 · 13 findings from 2 sources. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
100.0 | 0.15 | 15.00 |
security_score |
98.8 | 0.25 | 24.70 |
testing_score |
87.0 | 0.20 | 17.40 |
documentation_score |
68.0 | 0.15 | 10.20 |
practices_score |
79.0 | 0.15 | 11.85 |
code_quality |
66.8 | 0.10 | 6.68 |
| Overall | 1.00 | 85.8 |
Showing 5 of 13 findings. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
.github/workflows/scorecard.yml
supply-chaingithub-actionsleast-privilege
This page is publicly accessible at:
https://repobility.com/scan/ec217d79-feae-4f6e-b5f9-de188e904e4b/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/ec217d79-feae-4f6e-b5f9-de188e904e4b/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.