TavernKeeper Scan Report

mekineer-com/OpenAlma

Commit db44c43 Reviewed

No material or immediate-danger concern was identified in this review.

This advisory report describes what the named tools and review process found at one exact commit. Unknown or unobserved behavior may still exist.

0 immediate danger 0 material 26 low

What this review found

No material or immediate-danger item was identified.

Deterministic technical evidence (26)
  • Dependency advisory PYSEC-2026-1473:pkg:7aa5d849032f813d4e5396e6 applies · osv-scanner 2.4.0

    A dependency has a published security issue, though this scan does not show that the project exposes it to an attacker.

    Policy reason: osv-structured-advisory · Execution scope: test-documentation-data

    Source: launcher/requirements.txt

  • Dependency advisory GHSA-v9pg-7xvm-68hf:pkg:f9806f0dcc79a81601eccc23 applies · osv-scanner 2.4.0

    A dependency has a published security issue, though this scan does not show that the project exposes it to an attacker.

    Policy reason: osv-structured-advisory · Execution scope: test-documentation-data

    Source: launcher/requirements.txt

  • Dependency advisory GHSA-q2x7-8rv6-6q7h:pkg:6b54606ec8875ea97d5b7191 applies · osv-scanner 2.4.0

    A dependency has a published security issue, though this scan does not show that the project exposes it to an attacker.

    Policy reason: osv-structured-advisory · Execution scope: test-documentation-data

    Source: launcher/requirements.txt

  • Dependency advisory GHSA-6jv3-5f52-599m:pkg:f080cc8c69401251820e2e10 applies · osv-scanner 2.4.0

    A dependency has a published security issue, though this scan does not show that the project exposes it to an attacker.

    Policy reason: osv-structured-advisory · Execution scope: test-documentation-data

    Source: launcher/requirements.txt

  • Dependency advisory PYSEC-2026-1472:pkg:42301ab3fa058c530430ad86 applies · osv-scanner 2.4.0

    A dependency has a published security issue, though this scan does not show that the project exposes it to an attacker.

    Policy reason: osv-structured-advisory · Execution scope: test-documentation-data

    Source: launcher/requirements.txt

  • Dependency advisory GHSA-h75v-3vvj-5mfj:pkg:0a5bf2ae4c836ff28bcfc665 applies · osv-scanner 2.4.0

    A dependency has a published security issue, though this scan does not show that the project exposes it to an attacker.

    Policy reason: osv-structured-advisory · Execution scope: test-documentation-data

    Source: launcher/requirements.txt

  • Dependency advisory PYSEC-2026-1475:pkg:93ea0bc6e50686a975bb661f applies · osv-scanner 2.4.0

    A dependency has a published security issue, though this scan does not show that the project exposes it to an attacker.

    Policy reason: osv-structured-advisory · Execution scope: test-documentation-data

    Source: launcher/requirements.txt

  • Dependency advisory GHSA-h5c8-rqwp-cp95:pkg:9afe0ac551636b9c255ad355 applies · osv-scanner 2.4.0

    A dependency has a published security issue, though this scan does not show that the project exposes it to an attacker.

    Policy reason: osv-structured-advisory · Execution scope: test-documentation-data

    Source: launcher/requirements.txt

  • Dependency advisory PYSEC-2026-1852:pkg:905f8066fdcb4968742470d2 applies · osv-scanner 2.4.0

    A dependency has a published security issue, though this scan does not show that the project exposes it to an attacker.

    Policy reason: osv-structured-advisory · Execution scope: test-documentation-data

    Source: launcher/requirements.txt

  • Dependency advisory GHSA-gmj6-6f8f-6699:pkg:00b51d642d77794a04ec3bd7 applies · osv-scanner 2.4.0

    A dependency has a published security issue, though this scan does not show that the project exposes it to an attacker.

    Policy reason: osv-structured-advisory · Execution scope: test-documentation-data

    Source: launcher/requirements.txt

  • Dependency advisory GHSA-mj87-hwqh-73pj:pkg:e43e776a0e95c997a8b56058 applies · osv-scanner 2.4.0

    A dependency has a published security issue, though this scan does not show that the project exposes it to an attacker.

    Policy reason: osv-structured-advisory · Execution scope: test-documentation-data

    Source: launcher/requirements.txt

  • Dependency advisory PYSEC-2026-1474:pkg:915ea6350131371689b73dfa applies · osv-scanner 2.4.0

    A dependency has a published security issue, though this scan does not show that the project exposes it to an attacker.

    Policy reason: osv-structured-advisory · Execution scope: test-documentation-data

    Source: launcher/requirements.txt

  • Dependency advisory GHSA-5rvq-cxj2-64vf:pkg:86773285863dfc77c95412e5 applies · osv-scanner 2.4.0

    A dependency has a published security issue, though this scan does not show that the project exposes it to an attacker.

    Policy reason: osv-structured-advisory · Execution scope: test-documentation-data

    Source: launcher/requirements.txt

  • Dependency advisory GHSA-cpwx-vrp4-4pq7:pkg:91202ebb37aed05e7cf322d0 applies · osv-scanner 2.4.0

    A dependency has a published security issue, though this scan does not show that the project exposes it to an attacker.

    Policy reason: osv-structured-advisory · Execution scope: test-documentation-data

    Source: launcher/requirements.txt

  • Dependency advisory GHSA-vffw-93wf-4j4q:pkg:1050d3c9d827ed865326ac0d applies · osv-scanner 2.4.0

    A dependency has a published security issue, though this scan does not show that the project exposes it to an attacker.

    Policy reason: osv-structured-advisory · Execution scope: test-documentation-data

    Source: launcher/requirements.txt

  • Dependency advisory PYSEC-2026-1471:pkg:dc6caa1f386a8cb98930da9a applies · osv-scanner 2.4.0

    A dependency has a published security issue, though this scan does not show that the project exposes it to an attacker.

    Policy reason: osv-structured-advisory · Execution scope: test-documentation-data

    Source: launcher/requirements.txt

  • Dependency advisory GHSA-pp6c-gr5w-3c5g:pkg:a5b9ad4a61e6d59c054ec7b5 applies · osv-scanner 2.4.0

    A dependency has a published security issue, though this scan does not show that the project exposes it to an attacker.

    Policy reason: osv-structured-advisory · Execution scope: test-documentation-data

    Source: launcher/requirements.txt

  • Dependency advisory GHSA-wp53-j4wj-2cfg:pkg:2186f7443db0c80e8275be19 applies · osv-scanner 2.4.0

    A dependency has a published security issue, though this scan does not show that the project exposes it to an attacker.

    Policy reason: osv-structured-advisory · Execution scope: test-documentation-data

    Source: launcher/requirements.txt

  • Dependency advisory PYSEC-2026-3037:pkg:74b9228c64f62bb86c4528ab applies · osv-scanner 2.4.0

    A dependency has a published security issue, though this scan does not show that the project exposes it to an attacker.

    Policy reason: osv-structured-advisory · Execution scope: test-documentation-data

    Source: launcher/requirements.txt

  • Dependency advisory PYSEC-2026-3036:pkg:a49d089bcf8003a0ddf40bb9 applies · osv-scanner 2.4.0

    A dependency has a published security issue, though this scan does not show that the project exposes it to an attacker.

    Policy reason: osv-structured-advisory · Execution scope: test-documentation-data

    Source: launcher/requirements.txt

  • Dependency advisory PYSEC-2026-1851:pkg:4931fe8c489a671e86516895 applies · osv-scanner 2.4.0

    A dependency has a published security issue, though this scan does not show that the project exposes it to an attacker.

    Policy reason: osv-structured-advisory · Execution scope: test-documentation-data

    Source: launcher/requirements.txt

  • Dependency advisory PYSEC-2026-3039:pkg:14680a7b42525bf94071e12c applies · osv-scanner 2.4.0

    A dependency has a published security issue, though this scan does not show that the project exposes it to an attacker.

    Policy reason: osv-structured-advisory · Execution scope: test-documentation-data

    Source: launcher/requirements.txt

  • Dependency advisory PYSEC-2026-3038:pkg:8c302df415f37b7a8bdce01b applies · osv-scanner 2.4.0

    A dependency has a published security issue, though this scan does not show that the project exposes it to an attacker.

    Policy reason: osv-structured-advisory · Execution scope: test-documentation-data

    Source: launcher/requirements.txt

  • Dependency advisory PYSEC-2026-3040:pkg:02e6df712480e1ce9652cf54 applies · osv-scanner 2.4.0

    A dependency has a published security issue, though this scan does not show that the project exposes it to an attacker.

    Policy reason: osv-structured-advisory · Execution scope: test-documentation-data

    Source: launcher/requirements.txt

  • Dependency advisory GHSA-59g5-xgcq-4qw3:pkg:a1ec7327f2d984608322efc5 applies · osv-scanner 2.4.0

    A dependency has a published security issue, though this scan does not show that the project exposes it to an attacker.

    Policy reason: osv-structured-advisory · Execution scope: test-documentation-data

    Source: launcher/requirements.txt

  • Dependency advisory PYSEC-2026-3041:pkg:80a9df5873ad78c9f17f9a5b applies · osv-scanner 2.4.0

    A dependency has a published security issue, though this scan does not show that the project exposes it to an attacker.

    Policy reason: osv-structured-advisory · Execution scope: test-documentation-data

    Source: launcher/requirements.txt

Coverage and limitations

JavaScript coverage

Tools

Limitations

Technical scan identity