CRIT
MINED116
[MINED116] Workflow uses `secrets.GH_USER_TOKEN` on a `pull_request` trigger: This workfl…
.github/workflows/linters.yml:282
CRIT
MINED116
[MINED116] Workflow uses `secrets.CACHIX_AUTH_TOKEN` on a `pull_request` trigger: This wo…
.github/workflows/test-shared.yml:269
CRIT
MINED116
[MINED116] Workflow uses `secrets.CACHIX_AUTH_TOKEN` on a `pull_request` trigger: This wo…
.github/workflows/test-shared.yml:210
HIGH
MINED106
[MINED106] Phantom test coverage: test_any: Test function `test_any` runs code but contai…
tools/inspector_protocol/jinja2/lexer.py:260
HIGH
MINED106
[MINED106] Phantom test coverage: test_in: Test function `test_in` runs code but contains…
tools/inspector_protocol/jinja2/tests.py:134
HIGH
MINED106
[MINED106] Phantom test coverage: test_escaped: Test function `test_escaped` runs code bu…
tools/inspector_protocol/jinja2/tests.py:129
HIGH
MINED106
[MINED106] Phantom test coverage: test_iterable: Test function `test_iterable` runs code …
tools/inspector_protocol/jinja2/tests.py:120
HIGH
MINED106
[MINED106] Phantom test coverage: test_sameas: Test function `test_sameas` runs code but …
tools/inspector_protocol/jinja2/tests.py:107
HIGH
MINED106
[MINED106] Phantom test coverage: test_sequence: Test function `test_sequence` runs code …
tools/inspector_protocol/jinja2/tests.py:95
HIGH
MINED106
[MINED106] Phantom test coverage: test_number: Test function `test_number` runs code but …
tools/inspector_protocol/jinja2/tests.py:90
HIGH
MINED106
[MINED106] Phantom test coverage: test_mapping: Test function `test_mapping` runs code bu…
tools/inspector_protocol/jinja2/tests.py:82
HIGH
MINED106
[MINED106] Phantom test coverage: test_string: Test function `test_string` runs code but …
tools/inspector_protocol/jinja2/tests.py:77
HIGH
MINED106
[MINED106] Phantom test coverage: test_upper: Test function `test_upper` runs code but co…
tools/inspector_protocol/jinja2/tests.py:72
HIGH
MINED106
[MINED106] Phantom test coverage: test_lower: Test function `test_lower` runs code but co…
tools/inspector_protocol/jinja2/tests.py:67
HIGH
MINED106
[MINED106] Phantom test coverage: test_none: Test function `test_none` runs code but cont…
tools/inspector_protocol/jinja2/tests.py:62
HIGH
MINED106
[MINED106] Phantom test coverage: test_undefined: Test function `test_undefined` runs cod…
tools/inspector_protocol/jinja2/tests.py:57
HIGH
MINED106
[MINED106] Phantom test coverage: test_defined: Test function `test_defined` runs code bu…
tools/inspector_protocol/jinja2/tests.py:40
HIGH
MINED106
[MINED106] Phantom test coverage: test_divisibleby: Test function `test_divisibleby` runs…
tools/inspector_protocol/jinja2/tests.py:35
HIGH
MINED106
[MINED106] Phantom test coverage: test_even: Test function `test_even` runs code but cont…
tools/inspector_protocol/jinja2/tests.py:30
HIGH
MINED106
[MINED106] Phantom test coverage: test_odd: Test function `test_odd` runs code but contai…
tools/inspector_protocol/jinja2/tests.py:25
HIGH
MINED108
[MINED108] `self.SeenOpenBrace` used but never assigned in __init__: Method `Update` of c…
tools/cpplint.py:3672
HIGH
MINED108
[MINED108] `self._UpdateConstructor` used but never assigned in __init__: Method `Update`…
tools/cpplint.py:3643
HIGH
MINED108
[MINED108] `self.InTemplateArgumentList` used but never assigned in __init__: Method `Upd…
tools/cpplint.py:3596
HIGH
MINED108
[MINED108] `self._UpdateNamesapce` used but never assigned in __init__: Method `Update` o…
tools/cpplint.py:3571
HIGH
MINED108
[MINED108] `self._UpdateConstructor` used but never assigned in __init__: Method `Update`…
tools/cpplint.py:3645
HIGH
MINED108
[MINED108] `self.SeenOpenBrace` used but never assigned in __init__: Method `Update` of c…
tools/cpplint.py:3606
HIGH
MINED108
[MINED108] `self._CountOpenParentheses` used but never assigned in __init__: Method `Upda…
tools/cpplint.py:3566
HIGH
MINED108
[MINED108] `self.UpdatePreprocessor` used but never assigned in __init__: Method `Update`…
tools/cpplint.py:3564
HIGH
MINED108
[MINED108] `self.starting_linenum` used but never assigned in __init__: Method `CheckEnd`…
tools/cpplint.py:3191
HIGH
MINED108
[MINED108] `self.starting_linenum` used but never assigned in __init__: Method `CheckEnd`…
tools/cpplint.py:3121
HIGH
MINED108
[MINED108] `self.Extension` used but never assigned in __init__: Method `IsSource` of cla…
tools/cpplint.py:1854
HIGH
MINED108
[MINED108] `self.Split` used but never assigned in __init__: Method `NoExtension` of clas…
tools/cpplint.py:1850
HIGH
MINED108
[MINED108] `self.Split` used but never assigned in __init__: Method `Extension` of class …
tools/cpplint.py:1846
HIGH
MINED108
[MINED108] `self.Split` used but never assigned in __init__: Method `BaseName` of class `…
tools/cpplint.py:1842
HIGH
MINED108
[MINED108] `self.RepositoryName` used but never assigned in __init__: Method `Split` of c…
tools/cpplint.py:1836
HIGH
MINED108
[MINED108] `self.FullName` used but never assigned in __init__: Method `RepositoryName` o…
tools/cpplint.py:1771
HIGH
MINED108
[MINED108] `self.PrintInfo` used but never assigned in __init__: Method `PrintErrorCounts…
tools/cpplint.py:1539
HIGH
MINED108
[MINED108] `self.PrintInfo` used but never assigned in __init__: Method `PrintErrorCounts…
tools/cpplint.py:1537
HIGH
MINED108
[MINED108] `self.AddFilters` used but never assigned in __init__: Method `SetFilters` of …
tools/cpplint.py:1493
HIGH
MINED108
[MINED108] `self.LineRange` used but never assigned in __init__: Method `StartBlockSuppre…
tools/cpplint.py:1043
HIGH
MINED108
[MINED108] `self._AddSuppression` used but never assigned in __init__: Method `StartBlock…
tools/cpplint.py:1044
HIGH
MINED108
[MINED108] `self.LineRange` used but never assigned in __init__: Method `AddLineSuppressi…
tools/cpplint.py:1038
HIGH
MINED108
[MINED108] `self._AddSuppression` used but never assigned in __init__: Method `AddLineSup…
tools/cpplint.py:1038
HIGH
MINED108
[MINED108] `self.LineRange` used but never assigned in __init__: Method `AddGlobalSuppres…
tools/cpplint.py:1034
HIGH
MINED108
[MINED108] `self._AddSuppression` used but never assigned in __init__: Method `AddGlobalS…
tools/cpplint.py:1034
HIGH
MINED017
[MINED017] C System Call: system() invokes shell. command injection if any arg is dynamic.
deps/LIEF/include/LIEF/PE/CodePage.hpp:125
HIGH
MINED004
[MINED004] Weak Crypto: MD5/SHA1/DES/RC4 used for security context (not just checksums).
benchmark/crypto/hash-stream-throughput…:9
HIGH
MINED004
[MINED004] Weak Crypto: MD5/SHA1/DES/RC4 used for security context (not just checksums).
benchmark/crypto/hash-stream-creation.js:9
HIGH
MINED004
[MINED004] Weak Crypto: MD5/SHA1/DES/RC4 used for security context (not just checksums).
benchmark/crypto/create-hash.js:18
HIGH
SEC040
[SEC040] innerHTML XSS — template literal with server-supplied data: Setting .innerHTML w…
benchmark/http/headers.js:34
HIGH
SEC040
[SEC040] innerHTML XSS — template literal with server-supplied data: Setting .innerHTML w…
benchmark/assert/deepequal-set.js:57
HIGH
MINED014
[MINED014] Disabled Tls Verify: verify=False in requests, rejectUnauthorized:false in nod…
benchmark/tls/throughput-c2s.js:43
HIGH
MINED014
[MINED014] Disabled Tls Verify: verify=False in requests, rejectUnauthorized:false in nod…
benchmark/tls/secure-pair.js:41
HIGH
MINED014
[MINED014] Disabled Tls Verify: verify=False in requests, rejectUnauthorized:false in nod…
benchmark/_test-double-benchmarker.js:10
HIGH
SEC128
[SEC128] Async function without await — fire-and-forget Promise (AI mistake): Async call …
benchmark/crypto/aes-gcm-throughput.js:34
HIGH
SEC128
[SEC128] Async function without await — fire-and-forget Promise (AI mistake): Async call …
benchmark/async_hooks/async-resource-vs…:92
HIGH
SEC128
[SEC128] Async function without await — fire-and-forget Promise (AI mistake): Async call …
benchmark/_test-double-benchmarker.js:33
HIGH
SEC029
[SEC029] Server-Side Request Forgery (SSRF) — outbound HTTP from user input: Outbound HTT…
benchmark/esm/esm-legacyMainResolve.js:40
HIGH
SEC029
[SEC029] Server-Side Request Forgery (SSRF) — outbound HTTP from user input: Outbound HTT…
benchmark/blob/resolveObjectURL.js:14
HIGH
SEC029
[SEC029] Server-Side Request Forgery (SSRF) — outbound HTTP from user input: Outbound HTT…
benchmark/_test-double-benchmarker.js:43
HIGH
SEC085
[SEC085] JS: child_process.exec with non-literal: child_process.exec with user-derived in…
benchmark/child_process/child-process-e…:20
HIGH
SEC085
[SEC085] JS: child_process.exec with non-literal: child_process.exec with user-derived in…
benchmark/_http-benchmarkers.js:186
HIGH
MINED036
[MINED036] Python Os System Call: os.system() invokes shell with no escaping.
android_configure.py:10
HIGH
DKR014
Dockerfile copies the entire context without .dockerignore
deps/ngtcp2/ngtcp2/third-party/urlparse…:3
HIGH
MINED118
[MINED118] Dockerfile FROM `gcr.io/oss-fuzz-base/base-builder:v1` not pinned by digest: `…
deps/ngtcp2/ngtcp2/third-party/urlparse…:1
HIGH
MINED118
[MINED118] Dockerfile FROM `ubuntu:22.04` not pinned by digest: `FROM ubuntu:22.04` resol…
deps/openssl/config/Dockerfile:1
HIGH
SEC005
[SEC005] Command Injection Risk: Unsafe shell execution or eval of user input.
android_configure.py:77
MED
MINED109
[MINED109] Mutable default argument in `man_role` (list): `def man_role(... = []/{}/set()…
deps/uv/docs/src/sphinx-plugins/manpage…:30
MED
MINED109
[MINED109] Mutable default argument in `man_role` (dict): `def man_role(... = []/{}/set()…
deps/uv/docs/src/sphinx-plugins/manpage…:30
MED
MINED109
[MINED109] Mutable default argument in `__init__` (list): `def __init__(... = []/{}/set()…
deps/v8/tools/dev/gm.py:539
MED
MINED109
[MINED109] Mutable default argument in `extend` (list): `def extend(... = []/{}/set())` —…
deps/v8/tools/dev/gm.py:435
MED
MINED109
[MINED109] Mutable default argument in `__init__` (list): `def __init__(... = []/{}/set()…
deps/v8/tools/dev/gm.py:428
MED
MINED109
[MINED109] Mutable default argument in `ptr_arg_cmd` (list): `def ptr_arg_cmd(... = []/{}…
deps/v8/tools/lldb_commands.py:46
MED
MINED109
[MINED109] Mutable default argument in `GetVars` (list): `def GetVars(... = []/{}/set())`…
deps/v8/tools/generate-builtins-tests.py:34
MED
MINED109
[MINED109] Mutable default argument in `ClangTidyRunSingleFile` (list): `def ClangTidyRun…
deps/v8/tools/run-clang-tidy.py:221
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
deps/inspector_protocol/code_generator.…:133
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
deps/inspector_protocol/code_generator.…:91
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
tools/inspector_protocol/jinja2/asyncsu…:68
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
tools/inspector_protocol/jinja2/asyncsu…:36
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
tools/inspector_protocol/jinja2/tests.py:102
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
tools/inspector_protocol/jinja2/bccache…:360
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
tools/inspector_protocol/jinja2/bccache…:347
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
tools/inspector_protocol/jinja2/compile…:1269
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
tools/inspector_protocol/jinja2/environ…:1041
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
tools/inspector_protocol/jinja2/environ…:1006
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
tools/inspector_protocol/jinja2/environ…:95
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
tools/inspector_protocol/jinja2/debug.py:290
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
tools/inspector_protocol/jinja2/nativet…:97
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
tools/inspector_protocol/jinja2/nativet…:210
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
tools/gyp/pylib/gyp/generator/analyzer.…:804
MED
MINED109
[MINED109] Mutable default argument in `GenerateCompileDBWithNinja` (list): `def Generate…
tools/gyp/pylib/gyp/generator/ninja.py:2885
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
tools/gyp/pylib/gyp/mac_tool.py:161
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
tools/gyp/pylib/gyp/common.py:724
MED
MINED109
[MINED109] Mutable default argument in `CopyTool` (dict): `def CopyTool(... = []/{}/set()…
tools/gyp/pylib/gyp/common.py:526
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
tools/gyp/pylib/gyp/input.py:549
MED
MINED109
[MINED109] Mutable default argument in `AddImplicitPostbuilds` (list): `def AddImplicitPo…
tools/gyp/pylib/gyp/xcode_emulation.py:1236
MED
MINED109
[MINED109] Mutable default argument in `AddDebugSettings` (dict): `def AddDebugSettings(.…
tools/gyp/pylib/gyp/MSVSUserFile.py:79
MED
MINED109
[MINED109] Mutable default argument in `Load` (list): `def Load(... = []/{}/set())` — Pyt…
tools/gyp/pylib/gyp/__init__.py:71
MED
MINED109
[MINED109] Mutable default argument in `Load` (dict): `def Load(... = []/{}/set())` — Pyt…
tools/gyp/pylib/gyp/__init__.py:71
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
tools/gyp/gyp_main.py:33
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
tools/gyp/gyp_main.py:20
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
tools/build_addons.py:71
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
tools/search_files.py:21
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
tools/gypi_to_gn.py:332
MED
MINED111
[MINED111] Bare except continues silently: Bare `except:` (or `except Exception:`) that r…
tools/prepare_lief.py:79
MED
SEC123
[SEC123] Production stack trace / debug output exposed: Debug mode left on in production …
deps/LIEF/include/LIEF/PE/Builder.hpp:83
MED
ERR002
[ERR002] Empty Catch Block: Empty catch blocks hide errors.
benchmark/process/handled-rejections.js:34
MED
SEC087
[SEC087] JS: weak Math.random for crypto: Math.random() is not cryptographically secure; …
benchmark/process/bench-env.js:32
MED
SEC045
[SEC045] eval()/exec() on stored or user-supplied data: eval() and exec() on data — even …
benchmark/buffers/buffer-swap.js:74
MED
SEC045
[SEC045] eval()/exec() on stored or user-supplied data: eval() and exec() on data — even …
benchmark/buffers/buffer-fill.js:24
MED
SEC045
[SEC045] eval()/exec() on stored or user-supplied data: eval() and exec() on data — even …
benchmark/_http-benchmarkers.js:186
MED
DKR007
Docker build context has no .dockerignore
.dockerignore
MED
DKR015
Docker build context is very large
.dockerignore
MED
DKR001
Docker final stage has no non-root USER
deps/openssl/config/Dockerfile:1
MED
DKR001
Docker final stage has no non-root USER
deps/ngtcp2/ngtcp2/third-party/urlparse…:1
MED
AIC001
Parallel implementation file sits beside a canonical file
deps/icu-small/source/common/unicode/ut…:1
MED
AIC001
Parallel implementation file sits beside a canonical file
deps/LIEF/third-party/mbedtls/library/e…:1
MED
WEB003
Public web service has no security.txt
.well-known/security.txt
MED
AIC004
Suspicious implementation file appears unreferenced
test/parallel/test-vfs-ctime-update.js:1
MED
AIC004
Suspicious implementation file appears unreferenced
test/parallel/test-stream-write-final.js:1
MED
AIC004
Suspicious implementation file appears unreferenced
test/parallel/test-stream-transform-fin…:1
MED
AIC004
Suspicious implementation file appears unreferenced
test/parallel/test-dgram-send-multi-buf…:1
MED
AIC004
Suspicious implementation file appears unreferenced
test/parallel/test-dgram-connect-send-m…:1
MED
AIC004
Suspicious implementation file appears unreferenced
test/parallel/test-buffer-copy.js:1
MED
AIC004
Suspicious implementation file appears unreferenced
deps/openssl/openssl/crypto/asn1/tasn_n…:1
MED
AIC004
Suspicious implementation file appears unreferenced
deps/LIEF/third-party/mbedtls/library/e…:1
MED
AIC004
Suspicious implementation file appears unreferenced
deps/LIEF/third-party/mbedtls/library/e…:1
MED
WEB012
Service worker is present without a web app manifest
manifest.json
MED
WEB015
Public web app has no Content Security Policy
index.html
MED
AGT015
Remote install command pipes network code directly to a shell
deps/npm/README.md:16
LOW
SEC132
[SEC132] String concat where the language has interpolation (AI style drift): String buil…
android_configure.py:72
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/PE/LoadConfigura…:9
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/PDB/types/Method…:18
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/PDB/Type.hpp:16
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/PDB/Function.hpp:35
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/PDB/CompilationU…:4
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/ObjC/Protocol.hpp:29
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/ObjC/Property.hpp:29
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/ObjC/Method.hpp:29
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/ObjC/IVar.hpp:29
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/ObjC/Class.hpp:29
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/MachO/SegmentSpl…:20
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/MachO/SegmentSpl…:18
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/MachO/SegmentCom…:80
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/MachO/Relocation…:41
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/MachO/Relocation…:37
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/MachO/LinkerOptH…:20
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/MachO/FunctionVa…:121
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/MachO/FunctionVa…:18
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/MachO/DyldExport…:27
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/MachO/DyldChaine…:64
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/MachO/DataInCode…:22
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/MachO/CodeSignat…:20
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/MachO/CodeSignat…:20
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/DyldSharedCache/…:19
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/DyldSharedCache/…:17
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/DWARF/Variable.h…:30
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/DWARF/Type.hpp:30
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/DWARF/Function.h…:31
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/COFF/Section.hpp:62
LOW
AIC003
Duplicated implementation block across source files
deps/LIEF/include/LIEF/COFF/Binary.hpp:82
LOW
WEB005
robots.txt does not advertise a sitemap
benchmark/http/_chunky_http_client.js
LOW
DKR010
Dockerfile leaves apt package indexes in the image layer
deps/ngtcp2/ngtcp2/third-party/urlparse…:2
LOW
WEB002
Public web app has no sitemap
sitemap.xml
LOW
DKR011
Dockerfile installs recommended OS packages
deps/ngtcp2/ngtcp2/third-party/urlparse…:2
LOW
WEB008
Public docs site has no llms.txt
llms.txt
LOW
AIC005
Duplicate top-level symbol appears in a patch-style file
tools/gyp/pylib/gyp/simple_copy.py:1
LOW
AIC002
Source file name looks like an AI patch artifact
tools/gyp/pylib/gyp/xml_fix.py:1
LOW
AIC002
Source file name looks like an AI patch artifact
tools/gyp/pylib/gyp/simple_copy.py:1
LOW
AIC002
Source file name looks like an AI patch artifact
test/parallel/test-vfs-ctime-update.js:1
LOW
AIC002
Source file name looks like an AI patch artifact
test/parallel/test-stream-write-final.js:1
LOW
AIC002
Source file name looks like an AI patch artifact
test/parallel/test-stream-transform-fin…:1
LOW
AIC002
Source file name looks like an AI patch artifact
test/parallel/test-dgram-send-multi-buf…:1
LOW
AIC002
Source file name looks like an AI patch artifact
test/parallel/test-dgram-connect-send-m…:1
LOW
AIC002
Source file name looks like an AI patch artifact
test/parallel/test-buffer-copy.js:1
LOW
AIC002
Source file name looks like an AI patch artifact
deps/openssl/openssl/crypto/evp/e_old.c:1
LOW
AIC002
Source file name looks like an AI patch artifact
deps/openssl/openssl/crypto/asn1/tasn_n…:1
LOW
AIC002
Source file name looks like an AI patch artifact
deps/LIEF/third-party/mbedtls/library/e…:1
LOW
WEB011
Public web app has no humans.txt
humans.txt
INFO
MINED057
[MINED057] Todo Bomb: Code path with a TODO/FIXME/HACK comment that gates correctness — l…
deps/icu-small/source/common/udatamem.c…:67
INFO
MINED047
[MINED047] Emoji In Source: Emoji ✅ ❌ 🚀 in code/comments — common AI output unless explic…
deps/icu-small/source/common/static_uni…:133
INFO
MINED047
[MINED047] Emoji In Source: Emoji ✅ ❌ 🚀 in code/comments — common AI output unless explic…
deps/icu-small/source/common/static_uni…:108
INFO
MINED068
[MINED068] Rust Unsafe Block: unsafe { ... } block. Compiler safety guarantees disabled i…
deps/crates/patches/resb/src/binary/hel…:18
INFO
MINED066
[MINED066] Rust Panic Macro: panic!() unwinds the stack. Use Result for recoverable error…
deps/crates/patches/resb/examples/genrb…:12
INFO
MINED059
[MINED059] Rust Expect In Prod: .expect(...) panics same as unwrap with a custom message.
deps/crates/patches/resb/examples/genrb…:16
INFO
MINED069
[MINED069] Debug True Prod: Django/Flask DEBUG=True or app.debug=True in non-test files.
deps/LIEF/include/LIEF/PE/Builder.hpp:83
INFO
MINED042
[MINED042] Cpp New Without Delete: C++ raw new without RAII / unique_ptr — memory leak ri…
deps/LIEF/include/LIEF/COFF/BigObjHeade…:50
INFO
MINED042
[MINED042] Cpp New Without Delete: C++ raw new without RAII / unique_ptr — memory leak ri…
deps/LIEF/include/LIEF/COFF/AuxiliarySy…:53
INFO
MINED042
[MINED042] Cpp New Without Delete: C++ raw new without RAII / unique_ptr — memory leak ri…
deps/LIEF/include/LIEF/BinaryStream/Spa…:65
INFO
MINED075
[MINED075] C Malloc No Check: malloc/calloc/realloc return value used without checking fo…
deps/brotli/c/enc/static_dict_lut.c:200
INFO
MINED075
[MINED075] C Malloc No Check: malloc/calloc/realloc return value used without checking fo…
benchmark/napi/ref/addon.c:70
INFO
MINED075
[MINED075] C Malloc No Check: malloc/calloc/realloc return value used without checking fo…
benchmark/napi/define_properties/bindin…:49
INFO
MINED043
[MINED043] Http Not Https: Hardcoded http:// (not localhost) for endpoints that handle cr…
benchmark/url/url-resolve.js:11
INFO
MINED043
[MINED043] Http Not Https: Hardcoded http:// (not localhost) for endpoints that handle cr…
benchmark/url/url-parse.js:6
INFO
MINED043
[MINED043] Http Not Https: Hardcoded http:// (not localhost) for endpoints that handle cr…
benchmark/http/create-clientrequest.js:9
INFO
MINED046
[MINED046] Dart Print: print() in Flutter goes to console. Use debugPrint / logger.
benchmark/scatter.R:69
INFO
MINED046
[MINED046] Dart Print: print() in Flutter goes to console. Use debugPrint / logger.
benchmark/compare.R:107
INFO
MINED044
[MINED044] Js Console Log Prod: console.log left in code. Should be replaced with logger …
benchmark/buffers/buffer-transcode.js:10
INFO
MINED044
[MINED044] Js Console Log Prod: console.log left in code. Should be replaced with logger …
benchmark/_test-double-benchmarker.js:31
INFO
MINED044
[MINED044] Js Console Log Prod: console.log left in code. Should be replaced with logger …
benchmark/_cli.js:84