https://github.com/NousResearch/hermes-agent.git
· scanned 2026-05-15 21:54 UTC (2 weeks, 6 days ago)
· 10 languages
905 findings (104 legacy + 801 scanner) 25th percentile · Python · huge (>500K LoC) Scanner says 69 (lower by 10)
Last scanned 2 weeks, 6 days ago · v1 · 90 findings from 1 source. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
60.0 | 0.15 | 9.00 |
security_score |
0.0 | 0.25 | 0.00 |
testing_score |
100.0 | 0.20 | 20.00 |
documentation_score |
88.6 | 0.15 | 13.29 |
practices_score |
75.0 | 0.15 | 11.25 |
code_quality |
56.0 | 0.10 | 5.60 |
| Overall | 1.00 | 59.1 |
Showing 82 of 90 findings. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
hermes_cli/web_server.py:2596
authlegacy
hermes_cli/web_server.py:2539
authlegacy
plugins/kanban/dashboard/plugin_api.py:470
authlegacy
plugins/kanban/dashboard/plugin_api.py:583
authlegacy
hermes_cli/web_server.py:2569
authlegacy
hermes_cli/web_server.py:2578
authlegacy
hermes_cli/web_server.py:2587
authlegacy
plugins/kanban/dashboard/plugin_api.py:759
authlegacy
plugins/kanban/dashboard/plugin_api.py:1005
authlegacy
hermes_cli/web_server.py:2560
authlegacy
tools/file_operations.py:859
injectionlegacy
acp_adapter/tools.py:804
injectionlegacy
optional-skills/mcp/fastmcp/templates/database_server.py:68
injectionlegacy
hermes_cli/models.py:2568
path_traversallegacy
tools/browser_supervisor.py:88
path_traversallegacy
trajectory_compressor.py:1378
path_traversallegacy
hermes_cli/main.py:4167
credential_exposurelegacy
hermes_cli/models.py:936
credential_exposurelegacy
tools/skills_hub.py:175
credential_exposurelegacy
docker-compose.yml:57
dockerlegacy
docker-compose.yml:24
dockerlegacy
Dockerfile:101
dockerlegacy
gateway/session.py:302
llm_injectionlegacy
hermes_cli/web_server.py:1228
authlegacy
hermes_cli/web_server.py:2313
authlegacy
hermes_cli/web_server.py:1543
authlegacy
hermes_cli/web_server.py:2447
authlegacy
hermes_cli/web_server.py:2533
authlegacy
hermes_cli/web_server.py:2539
authlegacy
hermes_cli/web_server.py:1511
authlegacy
hermes_cli/web_server.py:1242
authlegacy
hermes_cli/web_server.py:2247
authlegacy
hermes_cli/web_server.py:2285
authlegacy
model_tools.py:136
error_handlinglegacy
hermes_state.py:401
error_handlinglegacy
hermes_logging.py:387
error_handlinglegacy
web/src/pages/EnvPage.tsx:503
error_handlinglegacy
web/src/hooks/useSidebarStatus.ts:19
error_handlinglegacy
scripts/whatsapp-bridge/bridge.js:627
error_handlinglegacy
tui_gateway/server.py:6608
injectionlegacy
hermes_cli/tools_config.py:637
injectionlegacy
tools/transcription_tools.py:518
injectionlegacy
scripts/install_psutil_android.py:86
path_traversallegacy
agent/curator_backup.py:613
path_traversallegacy
hermes_cli/main.py:6274
path_traversallegacy
optional-skills/research/domain-intel/scripts/domain_intel.py:94
cryptolegacy
skills/autonomous-ai-agents/hermes-agent/SKILL.md:71
qualitylegacy
skills/autonomous-ai-agents/claude-code/SKILL.md:92
qualitylegacy
hermes_cli/tips.py:74
qualitylegacy
hermes_cli/main.py:82
qualitylegacy
hermes_cli/config.py:1174
qualitylegacy
hermes_cli/_parser.py:171
qualitylegacy
plugins/platforms/line/plugin.yaml:35
qualitylegacy
gateway/platforms/wecom_callback.py:3
qualitylegacy
gateway/platforms/webhook.py:57
qualitylegacy
gateway/platforms/telegram.py:721
qualitylegacy
hermes_cli/setup.py:529
qualitylegacy
hermes_cli/models.py:104
qualitylegacy
hermes_cli/model_switch.py:1316
qualitylegacy
hermes_cli/doctor.py:801
qualitylegacy
agent/credential_sources.py:7
qualitylegacy
Dockerfile:83
dockerlegacy
web/src/lib/api.ts:6
qualitylegacy
.well-known/security.txt
qualitylegacy
plugins/memory/hindsight/__init__.py:678
dependencylegacy
plugins/memory/byterover/plugin.yaml:6
dependencylegacy
plugins/memory/byterover/__init__.py:10
dependencylegacy
plugins/memory/byterover/README.md:9
dependencylegacy
optional-skills/devops/cli/references/cli-reference.md:6
dependencylegacy
optional-skills/devops/cli/references/authentication.md:6
dependencylegacy
hermes_cli/uninstall.py:669
dependencylegacy
hermes_cli/memory_setup.py:108
dependencylegacy
README.zh-CN.md:34
dependencylegacy
README.md:36
dependencylegacy
.github/ISSUE_TEMPLATE/setup_help.yml:35
dependencylegacy
.dockerignore
dockerlegacy
docker-compose.yml:24
dockerlegacy
docker-compose.yml:24
dockerlegacy
agent/anthropic_adapter.py
qualitylegacy
This page is publicly accessible at:
https://repobility.com/scan/f147006d-3e31-4d72-987e-20aa37b5fe4f/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/f147006d-3e31-4d72-987e-20aa37b5fe4f/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.