Public scan — anyone with this URL can view this analysis. Sign up to track your own repos privately, run scheduled re-scans, and get AI fix prompts via your dashboard.

rjayerbe1/nueva-web-meisa

https://github.com/rjayerbe1/nueva-web-meisa · scanned 2026-06-15 23:55 UTC (2 months, 3 weeks ago)

418 raw signals (6 security + 412 graph)

UNIFIED Repobility · multi-layer engine · AI coders

Complete repo analysis

Last scanned 2 months, 3 weeks ago · v1 · 413 actionable findings from 2 signal sources. 5 repeated signals grouped for readability. Security checks, system graph analysis, and verified AI-agent feedback are merged into one review queue.

JSON
Severity distribution — click a segment to filter
Active filters: layer: security × excluding tests × Reset all
Corpus Intelligence Cross-corpus context (cohort percentile, top patterns, fix plan) is shown only on repositories you own. Sign up and connect your repo to view it.
Scan summary Repository scanned at 47.8/100 with 100.0% coverage. It contains 3351 nodes across 3 cross-layer flows, written primarily in mixed languages. Engine surfaced 412 findings — concentrated in frontend (322), quality (57), security (17). Risk profile is high: 2 critical, 0 high, 59 medium. Recommended next step: open the frontend layer findings first — that's where the highest-impact wins live.

Showing 17 of 413 actionable findings. 418 raw detector signals were grouped into reader-sized issues. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.

critical Security checks security auth conf 0.78 Foundry mined security auth guardrail gaps: rjayerbe1/nueva-web-meisa
Graph query export: Security/auth changes without enough guardrails Query id: security_auth_guardrail_gaps Query type: motif_query Intent: Assumption-check security/auth examples requiring stronger tests or CI. Motif: security_auth_without_guardrails Training usage: assumption_check Graph gold labe…
critical System graph security Secrets conf 1.00 Possible secret in scripts/create-admin.ts
Detected pattern matching password_literal. Rotate the credential and move to a secret manager.
scripts/create-admin.ts:13
critical System graph security Secrets conf 1.00 Possible secret in scripts/create-ricardo-user.ts
Detected pattern matching password_literal. Rotate the credential and move to a secret manager.
scripts/create-ricardo-user.ts:8
medium System graph security security conf 1.00 Insecure pattern 'dangerous_innerhtml' in components/seo/JsonLdSchema.tsx:98
Found a known-risky pattern (dangerous_innerhtml). Review and replace if possible.
components/seo/JsonLdSchema.tsx:98 Dangerous innerhtml
medium System graph security security conf 1.00 Insecure pattern 'direct_innerhtml_assignment' in playwright-report/index.html:46
Found a known-risky pattern (direct_innerhtml_assignment). Review and replace if possible.
playwright-report/index.html:46 Direct innerhtml assignment
medium System graph security security conf 1.00 Insecure pattern 'node_child_process' in convert-logos-to-webp.ts:4
Found a known-risky pattern (node_child_process). Review and replace if possible.
convert-logos-to-webp.ts:4 Node child process
medium System graph security security conf 1.00 Insecure pattern 'node_child_process' in convert-remaining-logos.ts:4
Found a known-risky pattern (node_child_process). Review and replace if possible.
convert-remaining-logos.ts:4 Node child process
medium System graph security security conf 1.00 Insecure pattern 'node_child_process' in enhanced-backup-system.ts:5
Found a known-risky pattern (node_child_process). Review and replace if possible.
enhanced-backup-system.ts:5 Node child process
medium System graph security security conf 1.00 Insecure pattern 'node_child_process' in restore-complete-backup.ts:5
Found a known-risky pattern (node_child_process). Review and replace if possible.
restore-complete-backup.ts:5 Node child process
medium System graph security security conf 1.00 Insecure pattern 'node_child_process' in scripts/audit-orphan-images.ts:16
Found a known-risky pattern (node_child_process). Review and replace if possible.
scripts/audit-orphan-images.ts:16 Node child process
medium System graph security security conf 1.00 Insecure pattern 'node_child_process' in scripts/EJECUTAR-MIGRACION-COMPLETA.js:1
Found a known-risky pattern (node_child_process). Review and replace if possible.
scripts/EJECUTAR-MIGRACION-COMPLETA.js:1 Node child process
medium System graph security security conf 1.00 Insecure pattern 'node_child_process' in scripts/recover-all-broken-refs.ts:13
Found a known-risky pattern (node_child_process). Review and replace if possible.
scripts/recover-all-broken-refs.ts:13 Node child process
medium System graph security security conf 1.00 Insecure pattern 'node_child_process' in scripts/recover-broken-image-refs.ts:10
Found a known-risky pattern (node_child_process). Review and replace if possible.
scripts/recover-broken-image-refs.ts:10 Node child process
medium System graph security security conf 1.00 Insecure pattern 'node_child_process' in scripts/recover-cliente-logos.ts:14
Found a known-risky pattern (node_child_process). Review and replace if possible.
scripts/recover-cliente-logos.ts:14 Node child process
medium System graph security security conf 1.00 Insecure pattern 'node_child_process' in sync-neon-SIMPLE.mjs:10
Found a known-risky pattern (node_child_process). Review and replace if possible.
sync-neon-SIMPLE.mjs:10 Node child process
medium System graph security security conf 1.00 Insecure pattern 'node_child_process' in sync-simple-to-neon.mjs:8
Found a known-risky pattern (node_child_process). Review and replace if possible.
sync-simple-to-neon.mjs:8 Node child process
low System graph security security conf 1.00 Insecure pattern 'document_write' in components/admin/ReportsExport.tsx:169
Found a known-risky pattern (document_write). Review and replace if possible.
components/admin/ReportsExport.tsx:169 Document write
For AI agents: Voting guide (TP/FP) MCP manifest Stdio wrapper SARIF Integrate Findings queue Vote TP/FP on findings to calibrate the engine.
For AI agents + API integrations
Email me when this repo regresses
Free. We re-scan periodically; new criticals → your inbox. No signup required for the scan itself.
API access

This page is publicly accessible at: https://repobility.com/scan/fd5c71c8-112e-4f34-9533-81e559f6bfcc/

To check status programmatically (no auth required):

curl -s https://repobility.com/api/v1/public/scan/fd5c71c8-112e-4f34-9533-81e559f6bfcc/

Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.