Security: Oripa
72
Vulnerabilities
0
Credential Leaks
FAIL
Quality Gate
A
OWASP Grade
32.3h
Tech Debt (C)
Medium
DORA Rating
Unknown
License (unknown)
Repobility's GitHub App fixes findings like these · https://github.com/apps/repobility-bot
⚡
View AI Prompts
AI Fix Prompts
Auto-generated prompts to fix every issue — copy into Claude, GPT, or any AI coder
Quality Gate: Default Gate
| Metric | Condition | |
|---|---|---|
| ✗ | overall_score | 44.5 >= 50 |
| ✓ | security_score | 65.0 >= 40 |
| ✓ | critical_vulnerabilities | 0.0 <= 0 |
| ✓ | critical_credentials | 0.0 <= 0 |
| ✓ | duplication_pct | 0.0 <= 20 |
DORA Metrics
| Deploy Frequency | monthly (0.2/week) |
| Lead Time | 672.0 hours |
| MTTR | 48.0 hours |
| Change Failure Rate | 100.0% |
| Total Commits | 237 |
| Overall Rating | MEDIUM |
Vulnerabilities (72)
| Severity | ID | Package | Version | Summary |
|---|---|---|---|---|
| high | CVE-2026-29087 | @hono/node-server | 1.19.9 | |
| high | CVE-2026-35209 | defu | 6.1.4 | |
| high | CVE-2026-32887 | effect | 3.18.4 | |
| high | CVE-2026-29045 | hono | 4.11.4 | |
| high | CVE-2026-4800 | lodash | 4.17.21 | |
| high | GHSA-q4gf-8mx6-v5v3 | next | 16.1.6 | |
| high | CVE-2026-33671 | picomatch | 4.0.3 | |
| high | CVE-2026-1526 | undici | 6.23.0 | |
| high | CVE-2026-1528 | undici | 6.23.0 | |
| high | CVE-2026-2229 | undici | 6.23.0 | |
| high | GHSA-v9p9-hfj2-hcw8 | undici | 6.23.0 | |
| high | GHSA-f269-vfmq-vjvj | undici | 6.23.0 | |
| high | GHSA-r5fr-rjxr-66jc | lodash | 4.17.21 | |
| high | GHSA-c2c7-rcm5-vvqj | picomatch | 2.3.1 | |
| high | GHSA-q5qw-h33p-qvwr | hono | 4.11.4 | |
| high | GHSA-rf6f-7fwh-wjgh | flatted | 3.3.3 | |
| high | GHSA-737v-mqg7-c878 | defu | 6.1.4 | |
| high | GHSA-7r86-cg39-jmmj | minimatch | 3.1.2 | |
| high | GHSA-3ppc-4f35-3m26 | minimatch | 3.1.2 | |
| high | GHSA-23c5-xmqv-rm74 | minimatch | 3.1.2 | |
| high | GHSA-vrm6-8vpv-qv8q | undici | 6.23.0 | |
| high | GHSA-wc8c-qw6v-h7f6 | @hono/node-server | 1.19.9 | |
| high | GHSA-25h7-pfq9-p65f | flatted | 3.3.3 | |
| high | GHSA-38f7-945m-qr2g | effect | 3.18.4 | |
| medium | CVE-2026-39407 | hono | 4.11.4 | |
| medium | CVE-2026-29057 | next | 16.1.6 | |
| medium | GHSA-92pp-h63x-v22m | @hono/node-server | 1.19.9 | |
| medium | CVE-2026-27978 | next | 16.1.6 | |
| medium | CVE-2026-27979 | next | 16.1.6 | |
| medium | GHSA-8f24-v5vv-gm5j | next-intl | 4.8.3 | |
| medium | GHSA-6wqw-2p9w-4vw4 | hono | 4.11.4 | |
| medium | CVE-2026-33672 | picomatch | 4.0.3 | |
| medium | GHSA-5pq2-9x2x-5p6w | hono | 4.11.4 | |
| medium | GHSA-xxjr-mmjv-4gpg | lodash | 4.17.21 | |
| medium | GHSA-xf4j-xp2r-rqqx | hono | 4.11.4 | |
| medium | CVE-2026-1525 | undici | 6.23.0 | |
| medium | CVE-2026-1527 | undici | 6.23.0 | |
| medium | GHSA-r354-f388-2fhh | hono | 4.11.4 | |
| medium | GHSA-3x4c-7xq6-9pq8 | next | 16.1.6 | |
| medium | GHSA-3v7f-55p6-f55p | picomatch | 2.3.1 | |
| medium | GHSA-4992-7rv2-5pvq | undici | 6.23.0 | |
| medium | GHSA-h27x-g6w4-24gq | next | 16.1.6 | |
| medium | GHSA-f23m-r3pf-42rh | lodash | 4.17.21 | |
| medium | GHSA-mq59-m269-xvcx | next | 16.1.6 | |
| medium | GHSA-ggv3-7p47-pfv8 | next | 16.1.6 | |
| medium | GHSA-f886-m6hf-6m8v | brace-expansion | 1.1.12 | |
| medium | GHSA-p6xx-57qc-3wxr | hono | 4.11.4 | |
| medium | GHSA-2g4f-4pwh-qvx6 | ajv | 6.12.6 | |
| medium | GHSA-wmmm-f939-6g9c | hono | 4.11.4 | |
| medium | GHSA-9r54-q6cx-xmh5 | hono | 4.11.4 |