← Legacy view v2 (rp.*)

react-policy/react-policy.github.io

https://github.com/REACT-policy/REACT-policy.github.io.git · lang: javascript · LOC: · source: user_submitted

Quality
45.5
Grade D+
Security
100.0
Findings
12
0 critical · 1 high
Status
completed
May 28, 2026 14:02
medium: 5 low: 4 info: 2 high: 1
Top rules by occurrence
RuleSeverityCount
CORE_NO_LICENSE No LICENSE file low 1
CFG006 [CFG006] Missing .gitignore: No .gitignore file. Risk of co… medium 1
CORE_NO_README No README file found medium 1
CORE_NO_CI No CI/CD configuration found medium 1
MINED044 Js Console Log Prod info 1
WEB003 Public web service has no security.txt medium 1
CORE_NO_TESTS No test files found high 1
WEB015 Public web app has no Content Security Policy medium 1
WEB011 Public web app has no humans.txt low 1
WEB001 Public web app has no robots.txt low 1
First 12 findings (severity-sorted)
high CORE_NO_TESTS No test files found
No test files found
medium CFG006 [CFG006] Missing .gitignore: No .gitignore file. Risk of committing secrets and build artifacts.
· conf 1.00
[CFG006] Missing .gitignore: No .gitignore file. Risk of committing secrets and build artifacts.
medium CORE_NO_CI No CI/CD configuration found
No CI/CD configuration found
medium CORE_NO_README No README file found
No README file found
medium WEB003 Public web service has no security.txt
.well-known/security.txt · conf 0.78
Public web service has no security.txt
medium WEB015 Public web app has no Content Security Policy
index.html · conf 0.70
Public web app has no Content Security Policy
low CORE_NO_LICENSE No LICENSE file
No LICENSE file
low WEB001 Public web app has no robots.txt
robots.txt · conf 0.74
Public web app has no robots.txt
low WEB002 Public web app has no sitemap
sitemap.xml · conf 0.72
Public web app has no sitemap
low WEB011 Public web app has no humans.txt
humans.txt · conf 0.50
Public web app has no humans.txt
info MINED044 Js Console Log Prod CWE-532
static/js/index.js:48 · conf 1.00
[MINED044] Js Console Log Prod: console.log left in code. Should be replaced with logger or removed.
info MINED098 Global Scope Pollution
static/js/index.js:1 · conf 1.00
[MINED098] Global Scope Pollution: Attaching libraries/objects directly to the global window scope (e.g., `window.axios = axios;`) makes the code harder to test and increases the risk of naming colli…

Reading from rp.scan + rp.finding + rp.rule (unified schema, R78 series). Legacy data path unchanged. Compare with /scan/b10dfc0f-0f5d-4c48-9d94-5202b79b170b/.