-
JavaScript analysis reported javascript.xray.prototype-pollution · javascript-analysis webcrack-2.16.0_js-x-ray-16.0.0_signatures-1_literals-1_families-1
This technical signal is not part of the shipped runtime behavior.
Policy reason: javascript-xray-inert-content · Execution scope: test-documentation-data
Source: tests/audit-regressions.test.js:157
-
JavaScript analysis reported javascript.xray.prototype-pollution · javascript-analysis webcrack-2.16.0_js-x-ray-16.0.0_signatures-1_literals-1_families-1
This technical signal is not part of the shipped runtime behavior.
Policy reason: javascript-xray-inert-content · Execution scope: test-documentation-data
Source: tests/storage-migration.test.js:23
-
OpenGrep reported tavernkeeper.dynamic-execution.javascript-eval · opengrep 1.26.0
This technical signal is not part of the shipped runtime behavior.
Policy reason: owned-inert-tooling · Execution scope: test-documentation-data
Source: tests/ui-import-review.test.js:77-80
-
JavaScript analysis reported javascript.xray.prototype-pollution · javascript-analysis webcrack-2.16.0_js-x-ray-16.0.0_signatures-1_literals-1_families-1
This technical signal is not part of the shipped runtime behavior.
Policy reason: javascript-xray-inert-content · Execution scope: test-documentation-data
Source: tests/registry-style.test.js:33
-
JavaScript analysis reported javascript.xray.prototype-pollution · javascript-analysis webcrack-2.16.0_js-x-ray-16.0.0_signatures-1_literals-1_families-1
The code has a known weakness, though this scan does not show that anyone can exploit it here.
Policy reason: javascript-xray-structured-weakness · Execution scope: runtime
Source: src/group-profiles.js:3
-
JavaScript analysis reported javascript.xray.unsafe-regex · javascript-analysis webcrack-2.16.0_js-x-ray-16.0.0_signatures-1_literals-1_families-1
This technical signal is not part of the shipped runtime behavior.
Policy reason: javascript-unsafe-regex-inert · Execution scope: test-documentation-data
Source: tests/source-contracts.test.js:33
-
JavaScript analysis reported javascript.xray.shady-link · javascript-analysis webcrack-2.16.0_js-x-ray-16.0.0_signatures-1_literals-1_families-1
This technical signal is not part of the shipped runtime behavior.
Policy reason: javascript-xray-inert-content · Execution scope: test-documentation-data
Source: tests/persona-character.test.js:268
-
OpenGrep reported tavernkeeper.dynamic-execution.javascript-eval · opengrep 1.26.0
This technical signal is not part of the shipped runtime behavior.
Policy reason: owned-inert-tooling · Execution scope: test-documentation-data
Source: tests/ui-import-review.test.js:26-30
-
JavaScript analysis reported javascript.xray.shady-link · javascript-analysis webcrack-2.16.0_js-x-ray-16.0.0_signatures-1_literals-1_families-1
This technical signal is not part of the shipped runtime behavior.
Policy reason: javascript-xray-inert-content · Execution scope: test-documentation-data
Source: tests/ui-selection-mapping.test.js:140
-
JavaScript analysis reported javascript.xray.unsafe-regex · javascript-analysis webcrack-2.16.0_js-x-ray-16.0.0_signatures-1_literals-1_families-1
This technical signal is not part of the shipped runtime behavior.
Policy reason: javascript-unsafe-regex-inert · Execution scope: test-documentation-data
Source: tests/host-lifecycle-contracts.test.js:16
-
JavaScript analysis reported javascript.xray.prototype-pollution · javascript-analysis webcrack-2.16.0_js-x-ray-16.0.0_signatures-1_literals-1_families-1
The code has a known weakness, though this scan does not show that anyone can exploit it here.
Policy reason: javascript-xray-structured-weakness · Execution scope: runtime
Source: src/import-codec.js:8
-
JavaScript analysis reported javascript.xray.unsafe-regex · javascript-analysis webcrack-2.16.0_js-x-ray-16.0.0_signatures-1_literals-1_families-1
This technical signal is not part of the shipped runtime behavior.
Policy reason: javascript-unsafe-regex-inert · Execution scope: test-documentation-data
Source: tests/gradient-presets.test.js:131
-
JavaScript analysis reported javascript.xray.unsafe-regex · javascript-analysis webcrack-2.16.0_js-x-ray-16.0.0_signatures-1_literals-1_families-1
This technical signal is not part of the shipped runtime behavior.
Policy reason: javascript-unsafe-regex-inert · Execution scope: test-documentation-data
Source: tests/manual-color-assignment.test.js:120