github.com / docling-project
docling-project/ docling
Python·1778 files·commit 570f956·scanned 1h ago·cached ✓
15/100
LOW RISK
Minor findings consistent with the project type. Nothing reachable from install hooks.
score capped at 15 — 67,896+ stars — findings likely false positives
verdict accurate?
67,896 stars
7% file coverage
threat-state: lowlive
FINDINGS ░▒▓
warningHigh-entropy string literalsFound 4 long strings with high Shannon entropy. This is common in obfuscated payloads that hide URLs, keys, or bytecode.docling/backend/docx/drawingml/utils.py+3
warningHigh-entropy string literalsFound 7 long strings with high Shannon entropy. This is common in obfuscated payloads that hide URLs, keys, or bytecode.docling/backend/iwork/archives.py+3
warningHigh-entropy string literalsFound 4 long strings with high Shannon entropy. This is common in obfuscated payloads that hide URLs, keys, or bytecode.docling/backend/mspowerpoint_backend.py+3
warningFlattened or dead control flowDetected switch(true), dead if branches, or deeply nested ternaries — patterns used by obfuscators to hide execution order.docling/models/utils/generation_utils.py+3
warningFlattened or dead control flowDetected switch(true), dead if branches, or deeply nested ternaries — patterns used by obfuscators to hide execution order.docling/utils/code_language.py+3
infoSuspicious file in repoVery large source file (7122KB) — could contain obfuscated payloaddocs/examples/data/2408.09869v3_enriched.json+2
infoSuspicious file in repoVery large source file (638KB) — could contain obfuscated payloadtests/data/docx/groundtruth/drawingml.docx.json+2
infoSuspicious file in repoVery large source file (697KB) — could contain obfuscated payloadtests/data/html/groundtruth/example_01_images.html.json+2
Scores are heuristics. A “safe” verdict means no known-malicious patterns were found — clever malware can look boring. Wrong verdict? Flag it above; confirmed false positives become regression tests.
120 files scanned @ 570f956 | 9/25/2026 | heuristic scan — always review manually
risk by category
code execution2
network & exfiltration0
file system access0
obfuscation15
supply chain15
owasp / injection0
telemetry
files 120/1778rules hit 10engine v6commit 570f956
github
docling-project/docling
Get your documents ready for gen AI
67896
4920
808d
1778 files
120 scanned(7%)
570f956
architecture░▒▓
entry (0) flagged (12) pkg (232)
345 nodes · 937 edgesscroll to zoom · click node to jump to finding