Exposure scan / new

Pipeline

Lists installed packages, matches versions against published advisories, then runs Semgrep rules to check whether the vulnerable code is called.

No scan yet

    Findings by severity

    $ waiting for a scan. Events from discovery, intel, verification and monitoring stream here.