← Legacy view v2 (rp.*)

bytechefhq/bytechef

https://github.com/bytechefhq/bytechef · lang: java · LOC: · source: user_submitted

Quality
64.0
Grade C+
Security
40.0
Findings
7
0 critical · 0 high
Status
completed
May 15, 2026 23:20
info: 6 medium: 1
Top rules by occurrence
RuleSeverityCount
SEC015 Insecure Randomness for Security medium 3
SEC001 Hardcoded Password critical 2
SEC020 Secret Printed to Logs high 2
First 7 findings (severity-sorted)
medium SEC001 Hardcoded Password
client/src/shared/middleware/graphql.ts:373 · conf 0.30
[SEC001] Hardcoded Password: Hardcoded password found in source code.
info SEC001 Hardcoded Password
sdks/backend/java/component-api/src/main/java/com/bytechef/component/definition/Authorization.java:99 · conf 0.15
[SEC001] Hardcoded Password: Hardcoded password found in source code.
info SEC015 Insecure Randomness for Security
client/src/shared/util/assistant-message-utils.ts:149 · conf 0.25
[SEC015] Insecure Randomness for Security: Weak PRNG used in security-sensitive context. Output is predictable.
info SEC015 Insecure Randomness for Security
client/src/shared/util/random-utils.ts:4 · conf 0.25
[SEC015] Insecure Randomness for Security: Weak PRNG used in security-sensitive context. Output is predictable.
info SEC015 Insecure Randomness for Security
sdks/frontend/automation/chat/library/src/stores/useChatStore.ts:17 · conf 0.15
[SEC015] Insecure Randomness for Security: Weak PRNG used in security-sensitive context. Output is predictable.
info SEC020 Secret Printed to Logs
sdks/frontend/embedded/test-apps/react/app/api/generate-jwt/route.ts:31 · conf 0.15
[SEC020] Secret Printed to Logs: Debug or diagnostic code appears to print a credential-bearing value. This is a frequent AI-assisted coding failure: the helper exposes the exact value needed for tro…
info SEC020 Secret Printed to Logs
sdks/frontend/embedded/test-apps/react/app/page.tsx:97 · conf 0.15
[SEC020] Secret Printed to Logs: Debug or diagnostic code appears to print a credential-bearing value. This is a frequent AI-assisted coding failure: the helper exposes the exact value needed for tro…

Reading from rp.scan + rp.finding + rp.rule (unified schema, R78 series). Legacy data path unchanged. Compare with /scan/af32eab4-0a31-41d8-b3b7-089a8746fa82/.