live · scanning repos
Scanrepo
github.com
github.com / advanced-security

advanced-security/SARIF-viewer

Kotlin·61 files·commit 50af551·scanned 9d ago·cached ✓
6/100
SAFE
No malicious patterns found. Repo signals are consistent with a legitimate project.
verdict accurate?
threat-state: safelive

FINDINGS ░▒▓

infoSuspicious file in repoExecutable file (gradlew.bat) in repositorygradlew.bat+2
infoAuthor has no other public repositoriesGitHub user "dependabot[bot]" has no other public repositories, common for burner accounts used in scams.+2

Scores are heuristics. A “safe” verdict means no known-malicious patterns were found — clever malware can look boring. Wrong verdict? Flag it above; confirmed false positives become regression tests.

1 files scanned @ 50af551 | 8/27/2026 | heuristic scan — always review manually

risk by category
code execution0
network & exfiltration0
file system access0
obfuscation0
supply chain4
owasp / injection0
telemetry
files 1/61rules hit 2engine v5commit 50af551

github

advanced-security/SARIF-viewer

JetBrains IDE plugin for displaying SARIF from GHAS or from a local file

Kotlin
10
5
1073d
61 files
1 scanned(2%)
50af551

architecture░▒▓

No architecture graph available. This usually happens when the repo contains no scannable JS/TS/Python files or only a single file was analyzed.

SAFE (6/100) — advanced-security/SARIF-viewer — ScanRepo