Scan timing: clone 1.48s · analysis 6.02s · 0.1 MB · GitHub preflight 427ms
https://github.com/SecureBananaLabs/bug-bounty
· scanned 2026-06-05 19:36 UTC (4 days, 15 hours ago)
· 10 languages
100 raw signals (10 security + 90 graph) 58th percentile · Javascript · tiny (<2K LoC) System graph score 79 (lower by 13)
Last scanned 4 days, 15 hours ago · v2 · 54 actionable findings from 2 signal sources. 1 repeated signal grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
75.0 | 0.15 | 11.25 |
security_score |
97.4 | 0.25 | 24.35 |
testing_score |
20.0 | 0.20 | 4.00 |
documentation_score |
55.0 | 0.15 | 8.25 |
practices_score |
67.0 | 0.15 | 10.05 |
code_quality |
80.0 | 0.10 | 8.00 |
| Overall | 1.00 | 65.9 |
Showing 48 of 54 actionable findings. 55 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
.github/workflows/update-pr-leaderboard.yml:22 (2 hits).github/workflows/update-pr-leaderboard.yml:22
apps/api/package.json
apps/api/package.json
apps/api/package.json
package-lock.json
package-lock.json
.github/workflows/update-pr-leaderboard.yml
CI/CD securitySupply chainGithub actions
This page is publicly accessible at:
https://repobility.com/scan/f1d68f9b-9d99-4068-a91a-44a8e353f39c/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/f1d68f9b-9d99-4068-a91a-44a8e353f39c/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.