This website requires JavaScript.
Explore
Help
Register
Sign In
sharang
/
compliance-scanner-agent
Watch
1
Star
0
Fork
0
Code
Issues
79
Pull Requests
1
Actions
Packages
Projects
Releases
1
Wiki
Activity
Go to issue
Labels
Milestones
New Issue
79 Open
39 Closed
Label
Show archived labels
Use
alt
+
click/enter
to exclude labels
All labels
No label
P0-demo
bug
critical
enhancement
epic
high
infrastructure
onboarding
performance
security
v0.3.0
Milestone
All milestones
No milestones
Open milestones
Onboarding v1
P0 Demo
Project
All projects
No project
Author
All users
Assignee
Assigned to nobody
Assigned to anybody
Benjamin_Boenisch
sharang
(Sharang Parnerkar)
Sort
Newest
Oldest
Most recently updated
Least recently updated
Most commented
Least commented
Nearest due date
Farthest due date
79 Open
39 Closed
Close
Label
Clear labels
P0-demo
bug
critical
enhancement
epic
high
infrastructure
onboarding
performance
security
v0.3.0
Milestone
No milestone
Open milestones
Onboarding v1
P0 Demo
Projects
Clear projects
Assignee
Clear assignees
No assignee
Benjamin_Boenisch
sharang
get_attack_chain has no pagination — long sessions return unbounded data
high
performance
v0.3.0
#66
opened
2026-03-30 13:29:56 +00:00
by
sharang
No graceful shutdown — in-progress scans left in running state
bug
high
infrastructure
v0.3.0
#65
opened
2026-03-30 13:29:56 +00:00
by
sharang
sort_by query parameter is a NoSQL injection vector
bug
high
security
v0.3.0
#64
opened
2026-03-30 13:29:56 +00:00
by
sharang
Graph endpoints load full node/edge collections without pagination
high
performance
v0.3.0
#63
opened
2026-03-30 13:29:55 +00:00
by
sharang
CVE monitor loads entire SBOM collection into memory
bug
high
performance
v0.3.0
#62
opened
2026-03-30 13:29:55 +00:00
by
sharang
Scheduled scans run sequentially — one slow repo blocks all others
bug
high
performance
v0.3.0
#61
opened
2026-03-30 13:29:55 +00:00
by
sharang
Health endpoint does not verify database connectivity
bug
critical
infrastructure
v0.3.0
#60
opened
2026-03-30 13:28:53 +00:00
by
sharang
No request body size limit on API and webhook servers
critical
infrastructure
security
v0.3.0
#59
opened
2026-03-30 13:28:53 +00:00
by
sharang
JWKS cache never expires — key rotation requires restart
bug
critical
security
v0.3.0
#58
opened
2026-03-30 13:28:52 +00:00
by
sharang
JWT audience validation disabled — cross-app token reuse
critical
security
v0.3.0
#57
opened
2026-03-30 13:28:52 +00:00
by
sharang
Webhook auth bypass when webhook_secret is None
bug
critical
security
v0.3.0
#56
opened
2026-03-30 13:28:02 +00:00
by
sharang
[medium] oauth-patterns: OAuth flow without PKCE
#40
opened
2026-03-18 16:01:25 +00:00
by
sharang
[medium] gdpr-patterns: Missing data deletion capability
#30
opened
2026-03-18 16:01:24 +00:00
by
sharang
1
[medium] semgrep: Service 'mailserver' allows for privilege escalation via setuid or setgid binaries. Add 'no-new-privileges:true' in 'security_opt' to prevent this.
#28
opened
2026-03-18 16:01:24 +00:00
by
sharang
1
test: verify issue tracker integrations (GitHub, GitLab, Jira)
#21
opened
2026-03-17 18:59:37 +00:00
by
sharang
test: verify PR scanning and review comments
#20
opened
2026-03-17 18:59:37 +00:00
by
sharang
test: verify Okta user cleanup integration
#19
opened
2026-03-17 18:59:36 +00:00
by
sharang
test: verify Auth0 user cleanup integration
#18
opened
2026-03-17 18:59:36 +00:00
by
sharang
feat: implement Firebase user cleanup for pentest sessions
#17
opened
2026-03-17 18:59:36 +00:00
by
sharang
First
Previous
1
2
3
4
Next
Last