issues Search Results · language:Dune language:TypeScript language:JavaScript language:PHP language:JavaScript linked:pr
Filter by
5.7M results
Found by deep-review audit (scan-worker).
Location: apps/scan-worker/src/worker-loop.ts:250-293; apps/scan-worker/src/worker.ts:215-233.
Evidence: In processClaimedIntent, recordFailure is .catch-guarded, ...
bug
deep-review
severity:medium
What happened
Release PR #8 merged and release-please cut v0.2.0 (tag + GitHub Release), but the publish-npm job was skipped, so
@daily-nerd/veritrail@0.2.0 never published.
Root cause
The publish gate ...
Found by deep-review audit (scan-worker).
Location: apps/scan-worker/src/worker-loop.ts:56-73 (claim), :183-223 (reclaim); apps/scan-worker/src/worker.ts:86-92;
packages/config/src/index.ts:343,372-373. ...
bug
deep-review
severity:medium
Found by deep-review audit (scan-worker).
Location: apps/scan-worker/src/scan-gating.ts:18; apps/scan-worker/src/scan-bytes.ts:187-209.
Evidence: GATING_FINDING_TYPES = new Set([ malware ]). In scanStoredBytes, ...
bug
deep-review
severity:medium
Found by deep-review audit (registry-ivy).
Location: packages/registry-ivy/src/ivy-upload-lifecycle.ts:42-102.
Evidence: handleIvyUpload always calls storeBlobStreamWithRef/storeBlobWithRef + assets.upsert ...
bug
deep-review
severity:medium
Found by deep-review audit (registry-p2).
Location: packages/registry-p2/src/p2-adapter.ts:144-157 (permission rule),
packages/registry-p2/src/p2-publish-lifecycle.ts:19-83 (handler).
Evidence: The permission ...
bug
deep-review
severity:medium
Summary
Several GitHub Actions in this repo are still pinned to older commit SHAs than the latest released patch versions of the
same major line.
Why this belongs on the backlog
- we intentionally ...
dependencies
github_actions
Found by deep-review audit (registry-rpm).
Location: packages/registry-rpm/src/rpm-publish.ts:108-125; packages/registry-rpm/src/rpm-adapter.ts (p.artifactRule({
param: file })).
Evidence: PUT/POST /packages/:file ...
bug
deep-review
severity:medium
Found by deep-review audit (registry-arch).
Location: packages/registry-arch/src/arch-adapter.ts:73-116.
Evidence: fetch() does parseArch(archRaw) purely to validate, then serveDb(req, ctx); serveDb ...
bug
deep-review
severity:medium
img width= 870 height= 922 alt= Image src=
https://github.com/user-attachments/assets/35e90aa9-c5cc-4725-9929-afb498c39682 /

Learn how you can use GitHub Issues to plan and track your work.
Save views for sprints, backlogs, teams, or releases. Rank, sort, and filter issues to suit the occasion. The possibilities are endless.Learn more about GitHub IssuesProTip! Restrict your search to the title by using the in:title qualifier.