Scan timing: clone 22.38s · analysis 33.63s · 54.1 MB · GitHub API rate-limit (preflight)
https://github.com/facebook/react-native
· scanned 2026-06-05 05:06 UTC (3 hours, 59 minutes ago)
· 10 languages
1374 findings (170 legacy + 1204 scanner) 11/13 scanners ran 40th percentile · Javascript · huge (>500K LoC) Scanner says 56 (higher by 31)
Last scanned 3 hours, 59 minutes ago · v2 · 772 findings from 2 sources. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
| Component | Sub-score | Weight | Contribution |
|---|---|---|---|
structure_score |
60.0 | 0.15 | 9.00 |
security_score |
100.0 | 0.25 | 25.00 |
testing_score |
81.0 | 0.20 | 16.20 |
documentation_score |
100.0 | 0.15 | 15.00 |
practices_score |
100.0 | 0.15 | 15.00 |
code_quality |
66.0 | 0.10 | 6.60 |
| Overall | 1.00 | 86.8 |
Bug-class explainers. Each card groups findings of the same shape — these are the patterns most likely to ship to prod and reappear in future scans unless you systematically fix the cause, not just the instance.
scripts/cxx-api/parser/input_filters/main.py:41
scripts/cxx-api/parser/__main__.py:206
.well-known/security.txt
index.html
packages/dev-middleware/src/inspector-proxy/Inspe…:38
scripts/release-testing/test-release-local-clean.…:1
scripts/release-testing/test-release-local-clean.…:1
packages/react-native/React/CxxModule/RCTCxxUtils…:35
packages/react-native/React/Base/RCTAssert.m:149
humans.txt
llms.txt
sitemap.xml
scripts/cxx-api/tests/test_config.py:154
scripts/cxx-api/tests/test_config.py:153
scripts/cxx-api/tests/test_config.py:131
scripts/cxx-api/tests/test_config.py:130
scripts/cxx-api/tests/test_config.py:108
scripts/cxx-api/tests/test_config.py:102
scripts/cxx-api/tests/test_config.py:99
scripts/cxx-api/tests/test_config.py:75
scripts/cxx-api/tests/test_config.py:72
scripts/cxx-api/tests/test_config.py:69
scripts/cxx-api/tests/test_config.py:68
scripts/cxx-api/tests/test_config.py:65
This page is publicly accessible at:
https://repobility.com/scan/fd7f2e04-3ce2-42af-a904-2847dfc65c4d/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/fd7f2e04-3ce2-42af-a904-2847dfc65c4d/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.