Repository Analysis

OpenCTI-Platform/opencti

Open Cyber Threat Intelligence Platform

3.4 Likely human-written View on GitHub

Analysis Overview

This report presents the forensic synthetic code analysis of OpenCTI-Platform/opencti, a TypeScript project with 9,680 GitHub stars. SynthScan v2.0 examined 924,352 lines of code across 4780 source files, recording 1135 pattern matches distributed across 23 syntactic categories. The overall adjusted score of 3.4 places this repository in the Likely human-written band.

The scanner applied 160+ deterministic lexical heuristics, multi-line block detectors, abstract syntax tree depth profilers, and a cross-file Jaccard similarity matrix to construct a statistically normalised synthetic code estimate. All matches are individually weighted by severity coefficient and contextual multiplier before summation, and the resulting headline score is temporally discounted to account for the repository's development history relative to the commercial emergence of large language model coding tooling (November 2022 onward).

3.4
Adjusted Score
3.4
Raw Score
100%
Time Factor
2026-07-13
Last Push
9.7K
Stars
TypeScript
Language
924.4K
Lines of Code
4.8K
Files
1.1K
Pattern Hits
2026-07-14
Scan Date
0.07
HC Hit Rate

What These Metrics Mean

Adjusted Score
Primary synthetic code indicator. Raw score normalised per 1,000 lines of code and multiplied by the temporal discount factor. This is the definitive comparative metric — use it to rank repositories by AI authorship density.
Raw Score
The unmodified sum of all severity-weighted, context-multiplied pattern match scores before temporal discounting. Reflects the absolute signal strength independent of when the repository was last active.
Time Factor
The temporal discount multiplier (0–100%) applied to the raw score. Repositories last updated before ChatGPT's launch (Nov 2022) receive a 5% factor. Full signal is only assigned to repositories active in the post-adoption era (Jan 2024+).
Pattern Hits
Total count of individual pattern matches across all files and categories. A high hit count with a low score may indicate a very large codebase with isolated AI snippets; a low count with a high score indicates dense, concentrated AI signatures.
HC Hit Rate
High+Critical pattern hits per file, averaged across the repository. This orthogonal signal catches repositories where a few files are densely packed with high-severity AI tells — a strong indicator even when the normalised score appears moderate due to codebase size.
Lines of Code / Files
Total lines and files analysed. The scanner examines 94 file extensions. These denominators are used to normalise the score, enabling fair comparison between repositories of vastly different sizes.

Score History

Longitudinal tracking requires multiple scan runs. Once this repository is re-scanned after new commits land, this chart will visualise how the synthetic code signal evolves over time — enabling you to detect whether AI authorship is growing, stabilising, or being actively corrected by human engineers.

No multi-scan history yet — run the scanner again to build trend data.

Severity Breakdown

Classifies detected patterns by their diagnostic confidence and structural impact. CRITICAL patterns (coefficient 10) represent definitive synthetic signatures — hallucinated imports, explicit LLM attribution metadata — virtually never produced by human authors. HIGH (5) indicates strong structural tells such as cross-file repetition or cross-linguistic idioms. MEDIUM (2) covers recognisable conversational padding and AI-specific vocabulary. LOW (1) captures subtle indicators like tautological comments and generic boilerplate that require density to carry independent signal.

CRITICAL 11HIGH 338MEDIUM 227LOW 559

Directory Score Breakdown

This horizontal bar chart decomposes the repository's raw synthetic code score by top-level directory, allowing you to pinpoint precisely which modules or components carry the highest AI authorship density. Directories with disproportionately high scores relative to their size warrant targeted manual review: concentrated AI signatures often trace back to mass-generated configuration layers, auto-ported test suites, LLM-scaffolded boilerplate classes, or entire subsystems authored under heavy copilot assistance. Use this view to prioritise your human code-review effort.

Pattern Findings

The scanner identified 1135 distinct pattern matches across 23 syntactic categories. Each entry below represents a discrete location in the source code where the engine recorded a statistically significant AI authorship indicator. Expand any category row to inspect the individual file paths, line numbers, code snippets, and the lexical context (CODE, COMMENT, or STRING) in which each match was detected.

Reading the findings table: The Severity column indicates the diagnostic confidence level (CRITICAL / HIGH / MEDIUM / LOW). The Context column identifies whether the match occurred inside executable code, an inline comment, or a string literal — comment-context matches receive a ×1.5 weight because LLMs systematically over-annotate. The ⚡ bolt icon marks clustered matches: three or more patterns within a 10-line window, each receiving an additional ×1.5 density multiplier as dense clusters constitute far stronger evidence of synthetic authorship than isolated hits.

Cross-File Repetition277 hits · 1385 pts
SeverityFileLineSnippetContext
HIGHclient-python/pycti/api/opencti_api_workspace.py0opencti playbook api class. manages playbook operations. :param api: instance of :py:class:`~pycti.api.opencti_api_clienSTRING
HIGHclient-python/pycti/api/opencti_api_notification.py0opencti playbook api class. manages playbook operations. :param api: instance of :py:class:`~pycti.api.opencti_api_clienSTRING
HIGHclient-python/pycti/api/opencti_api_draft.py0opencti playbook api class. manages playbook operations. :param api: instance of :py:class:`~pycti.api.opencti_api_clienSTRING
HIGHclient-python/pycti/api/opencti_api_playbook.py0opencti playbook api class. manages playbook operations. :param api: instance of :py:class:`~pycti.api.opencti_api_clienSTRING
HIGHclient-python/pycti/entities/opencti_campaign.py0id standard_id entity_type parent_types spec_version created_at updated_at status { id template { id name color } } creaSTRING
HIGHclient-python/pycti/entities/opencti_location.py0id standard_id entity_type parent_types spec_version created_at updated_at status { id template { id name color } } creaSTRING
HIGHclient-python/pycti/entities/opencti_language.py0id standard_id entity_type parent_types spec_version created_at updated_at status { id template { id name color } } creaSTRING
HIGH…thon/pycti/entities/opencti_threat_actor_individual.py0id standard_id entity_type parent_types spec_version created_at updated_at status { id template { id name color } } creaSTRING
HIGH…nt-python/pycti/entities/opencti_threat_actor_group.py0id standard_id entity_type parent_types spec_version created_at updated_at status { id template { id name color } } creaSTRING
HIGHclient-python/pycti/entities/opencti_threat_actor.py0id standard_id entity_type parent_types spec_version created_at updated_at status { id template { id name color } } creaSTRING
HIGHclient-python/pycti/entities/opencti_identity.py0id standard_id entity_type parent_types spec_version created_at updated_at status { id template { id name color } } creaSTRING
HIGHclient-python/pycti/entities/opencti_intrusion_set.py0id standard_id entity_type parent_types spec_version created_at updated_at status { id template { id name color } } creaSTRING
HIGHclient-python/pycti/entities/opencti_infrastructure.py0id standard_id entity_type parent_types spec_version created_at updated_at status { id template { id name color } } creaSTRING
HIGHclient-python/pycti/entities/opencti_data_source.py0id standard_id entity_type parent_types spec_version created_at updated_at status { id template { id name color } } creaSTRING
HIGHclient-python/pycti/entities/opencti_event.py0id standard_id entity_type parent_types spec_version created_at updated_at status { id template { id name color } } creaSTRING
HIGHclient-python/pycti/entities/opencti_narrative.py0id standard_id entity_type parent_types spec_version created_at updated_at status { id template { id name color } } creaSTRING
HIGHclient-python/pycti/entities/opencti_tool.py0id standard_id entity_type parent_types spec_version created_at updated_at status { id template { id name color } } creaSTRING
HIGHclient-python/pycti/entities/opencti_channel.py0id standard_id entity_type parent_types spec_version created_at updated_at status { id template { id name color } } creaSTRING
HIGHclient-python/pycti/entities/opencti_data_component.py0id standard_id entity_type parent_types spec_version created_at updated_at status { id template { id name color } } creaSTRING
HIGHclient-python/pycti/entities/opencti_malware.py0id standard_id entity_type parent_types spec_version created_at updated_at status { id template { id name color } } creaSTRING
HIGH…ient-python/pycti/entities/opencti_course_of_action.py0id standard_id entity_type parent_types spec_version created_at updated_at status { id template { id name color } } creaSTRING
HIGHclient-python/pycti/entities/opencti_incident.py0id standard_id entity_type parent_types spec_version created_at updated_at status { id template { id name color } } creaSTRING
HIGHclient-python/pycti/entities/opencti_attack_pattern.py0id standard_id entity_type parent_types spec_version created_at updated_at status { id template { id name color } } creaSTRING
HIGHclient-python/pycti/entities/opencti_campaign.py0generate a stix id from feedback data. :param data: dictionary containing a 'name' key :type data: dict :return: stix idSTRING
HIGHclient-python/pycti/entities/opencti_language.py0generate a stix id from feedback data. :param data: dictionary containing a 'name' key :type data: dict :return: stix idSTRING
HIGHclient-python/pycti/entities/opencti_vulnerability.py0generate a stix id from feedback data. :param data: dictionary containing a 'name' key :type data: dict :return: stix idSTRING
HIGHclient-python/pycti/entities/opencti_intrusion_set.py0generate a stix id from feedback data. :param data: dictionary containing a 'name' key :type data: dict :return: stix idSTRING
HIGHclient-python/pycti/entities/opencti_infrastructure.py0generate a stix id from feedback data. :param data: dictionary containing a 'name' key :type data: dict :return: stix idSTRING
HIGHclient-python/pycti/entities/opencti_data_source.py0generate a stix id from feedback data. :param data: dictionary containing a 'name' key :type data: dict :return: stix idSTRING
HIGHclient-python/pycti/entities/opencti_event.py0generate a stix id from feedback data. :param data: dictionary containing a 'name' key :type data: dict :return: stix idSTRING
HIGHclient-python/pycti/entities/opencti_narrative.py0generate a stix id from feedback data. :param data: dictionary containing a 'name' key :type data: dict :return: stix idSTRING
HIGHclient-python/pycti/entities/opencti_tool.py0generate a stix id from feedback data. :param data: dictionary containing a 'name' key :type data: dict :return: stix idSTRING
HIGHclient-python/pycti/entities/opencti_channel.py0generate a stix id from feedback data. :param data: dictionary containing a 'name' key :type data: dict :return: stix idSTRING
HIGHclient-python/pycti/entities/opencti_data_component.py0generate a stix id from feedback data. :param data: dictionary containing a 'name' key :type data: dict :return: stix idSTRING
HIGHclient-python/pycti/entities/opencti_malware.py0generate a stix id from feedback data. :param data: dictionary containing a 'name' key :type data: dict :return: stix idSTRING
HIGHclient-python/pycti/entities/opencti_feedback.py0generate a stix id from feedback data. :param data: dictionary containing a 'name' key :type data: dict :return: stix idSTRING
HIGHclient-python/pycti/entities/opencti_campaign.py0list marking-definition objects. :param filters: the filters to apply :type filters: dict :param first: return the firstSTRING
HIGHclient-python/pycti/entities/opencti_location.py0list marking-definition objects. :param filters: the filters to apply :type filters: dict :param first: return the firstSTRING
HIGHclient-python/pycti/entities/opencti_opinion.py0list marking-definition objects. :param filters: the filters to apply :type filters: dict :param first: return the firstSTRING
HIGH…nt-python/pycti/entities/opencti_external_reference.py0list marking-definition objects. :param filters: the filters to apply :type filters: dict :param first: return the firstSTRING
HIGHclient-python/pycti/entities/opencti_label.py0list marking-definition objects. :param filters: the filters to apply :type filters: dict :param first: return the firstSTRING
HIGH…ient-python/pycti/entities/opencti_kill_chain_phase.py0list marking-definition objects. :param filters: the filters to apply :type filters: dict :param first: return the firstSTRING
HIGHclient-python/pycti/entities/opencti_threat_actor.py0list marking-definition objects. :param filters: the filters to apply :type filters: dict :param first: return the firstSTRING
HIGHclient-python/pycti/entities/opencti_vulnerability.py0list marking-definition objects. :param filters: the filters to apply :type filters: dict :param first: return the firstSTRING
HIGHclient-python/pycti/entities/opencti_identity.py0list marking-definition objects. :param filters: the filters to apply :type filters: dict :param first: return the firstSTRING
HIGH…nt-python/pycti/entities/opencti_marking_definition.py0list marking-definition objects. :param filters: the filters to apply :type filters: dict :param first: return the firstSTRING
HIGHclient-python/pycti/entities/opencti_intrusion_set.py0list marking-definition objects. :param filters: the filters to apply :type filters: dict :param first: return the firstSTRING
HIGHclient-python/pycti/entities/opencti_data_source.py0list marking-definition objects. :param filters: the filters to apply :type filters: dict :param first: return the firstSTRING
HIGHclient-python/pycti/entities/opencti_event.py0list marking-definition objects. :param filters: the filters to apply :type filters: dict :param first: return the firstSTRING
HIGHclient-python/pycti/entities/opencti_case_rft.py0list marking-definition objects. :param filters: the filters to apply :type filters: dict :param first: return the firstSTRING
HIGHclient-python/pycti/entities/opencti_note.py0list marking-definition objects. :param filters: the filters to apply :type filters: dict :param first: return the firstSTRING
HIGHclient-python/pycti/entities/opencti_tool.py0list marking-definition objects. :param filters: the filters to apply :type filters: dict :param first: return the firstSTRING
HIGHclient-python/pycti/entities/opencti_channel.py0list marking-definition objects. :param filters: the filters to apply :type filters: dict :param first: return the firstSTRING
HIGHclient-python/pycti/entities/opencti_data_component.py0list marking-definition objects. :param filters: the filters to apply :type filters: dict :param first: return the firstSTRING
HIGHclient-python/pycti/entities/opencti_malware.py0list marking-definition objects. :param filters: the filters to apply :type filters: dict :param first: return the firstSTRING
HIGH…ient-python/pycti/entities/opencti_course_of_action.py0list marking-definition objects. :param filters: the filters to apply :type filters: dict :param first: return the firstSTRING
HIGHclient-python/pycti/entities/opencti_report.py0list marking-definition objects. :param filters: the filters to apply :type filters: dict :param first: return the firstSTRING
HIGHclient-python/pycti/entities/opencti_case_rfi.py0list marking-definition objects. :param filters: the filters to apply :type filters: dict :param first: return the firstSTRING
HIGHclient-python/pycti/entities/opencti_grouping.py0list marking-definition objects. :param filters: the filters to apply :type filters: dict :param first: return the firstSTRING
HIGHclient-python/pycti/entities/opencti_incident.py0list marking-definition objects. :param filters: the filters to apply :type filters: dict :param first: return the firstSTRING
217 more matches not shown…
Decorative Section Separators148 hits · 483 pts
SeverityFileLineSnippetContext
MEDIUM…ncti-graphql/tests/21-integration/ip-whitelist-test.ts9// ─── GraphQL Queries ─────────────────────────────────────────────────────────COMMENT
MEDIUM…ncti-graphql/tests/21-integration/ip-whitelist-test.ts29// ─── Helpers ─────────────────────────────────────────────────────────────────COMMENT
MEDIUM…ncti-graphql/tests/21-integration/ip-whitelist-test.ts53// ─── Tests ───────────────────────────────────────────────────────────────────COMMENT
MEDIUM…/opencti-graphql/tests/01-unit/database/engine-test.js118 // ── Status code branch ─────────────────────────────────────────────────────COMMENT
MEDIUM…/opencti-graphql/tests/01-unit/database/engine-test.js168 // ── Error code branch ───────────────────────────────────────────────────────COMMENT
MEDIUM…/opencti-graphql/tests/01-unit/database/engine-test.js206 // ── Text pattern branch – message field ────────────────────────────────────COMMENT
MEDIUM…/opencti-graphql/tests/01-unit/database/engine-test.js228 // ── Text pattern branch – nested paths via collectErrorFieldValues ──────────COMMENT
MEDIUM…/opencti-graphql/tests/01-unit/database/engine-test.js278 // ── Real-world production error shape (from the reported bug) ──────────────COMMENT
MEDIUM…/opencti-graphql/tests/01-unit/database/engine-test.js290 // ── False cases ─────────────────────────────────────────────────────────────COMMENT
MEDIUM…aphql/tests/01-unit/http/ipWhitelistMiddleware-test.ts46// ─── ipMatchesWhitelist ─────────────────────────────────────────────────────COMMENT
MEDIUM…aphql/tests/01-unit/http/ipWhitelistMiddleware-test.ts145// ─── isUserExcluded ─────────────────────────────────────────────────────────COMMENT
MEDIUM…aphql/tests/01-unit/http/ipWhitelistMiddleware-test.ts271// ─── isLoginOnlyRequest ─────────────────────────────────────────────────────COMMENT
MEDIUM…aphql/tests/01-unit/http/ipWhitelistMiddleware-test.ts394// ─── ipWhitelistMiddleware ──────────────────────────────────────────────────COMMENT
MEDIUM…aphql/tests/01-unit/http/ipWhitelistMiddleware-test.ts538// ─── checkIpWhitelistForRequest ─────────────────────────────────────────────COMMENT
MEDIUM…ti-graphql/tests/01-unit/http/httpChatbotProxy-test.ts3// ── Mocks ──────────────────────────────────────────────────────────────────COMMENT
MEDIUM…ti-graphql/tests/01-unit/http/httpChatbotProxy-test.ts145// ── Imports (after mocks) ──────────────────────────────────────────────────COMMENT
MEDIUM…ti-graphql/tests/01-unit/http/httpChatbotProxy-test.ts153// ── Helpers ────────────────────────────────────────────────────────────────COMMENT
MEDIUM…ti-graphql/tests/01-unit/http/httpChatbotProxy-test.ts180// ── Tests ──────────────────────────────────────────────────────────────────COMMENT
MEDIUM…-graphql/tests/01-unit/modules/workflow-engine-test.ts141 // ── Two-phase async execution ────────────────────────────────────────────COMMENT
MEDIUM…phql/tests/01-unit/modules/workflow-validation-test.ts610 // ── asyncActions / syncActions / requiresOrganizationInput ────────────────COMMENT
MEDIUM…it/modules/playbook/components/ai-agent-shared-test.ts3// ── Mocks (must be declared before the SUT import below) ────────────────COMMENT
MEDIUM…it/modules/playbook/components/ai-agent-shared-test.ts54// ── Imports (after mocks) ───────────────────────────────────────────────COMMENT
MEDIUM…it/modules/playbook/components/ai-agent-shared-test.ts81// ── Fixtures ────────────────────────────────────────────────────────────COMMENT
MEDIUM…modules/playbook/components/ai-agent-component-test.ts3// ── Mocks (declared before the SUT import) ──────────────────────────────COMMENT
MEDIUM…modules/playbook/components/ai-agent-component-test.ts19// ── Imports (after mocks) ───────────────────────────────────────────────COMMENT
MEDIUM…modules/playbook/components/ai-agent-component-test.ts34// ── Fixtures ────────────────────────────────────────────────────────────COMMENT
MEDIUM…modules/playbook/components/ai-agent-component-test.ts76// ── Tests ───────────────────────────────────────────────────────────────COMMENT
MEDIUM…es/playbook/components/ai-agent-send-component-test.ts3// ── Mocks (declared before the SUT import) ──────────────────────────────COMMENT
MEDIUM…es/playbook/components/ai-agent-send-component-test.ts19// ── Imports (after mocks) ───────────────────────────────────────────────COMMENT
MEDIUM…es/playbook/components/ai-agent-send-component-test.ts34// ── Fixtures ────────────────────────────────────────────────────────────COMMENT
MEDIUM…es/playbook/components/ai-agent-send-component-test.ts63// ── Tests ───────────────────────────────────────────────────────────────COMMENT
MEDIUM…ts/01-unit/modules/forms/form-fields-converter-test.ts33// ─── convertFieldType ─────────────────────────────────────────────────────────COMMENT
MEDIUM…ts/01-unit/modules/forms/form-fields-converter-test.ts112// ─── transformSpecialFields ───────────────────────────────────────────────────COMMENT
MEDIUM…ests/01-unit/modules/forms/form-bundle-builder-test.ts101// ─── Imports après les mocks ──────────────────────────────────────────────────COMMENT
MEDIUM…ests/01-unit/modules/forms/form-bundle-builder-test.ts122// ─── buildMainStixEntities ────────────────────────────────────────────────────COMMENT
MEDIUM…ests/01-unit/modules/forms/form-bundle-builder-test.ts516// ─── buildAdditionalEntities ──────────────────────────────────────────────────COMMENT
MEDIUM…ests/01-unit/modules/forms/form-bundle-builder-test.ts886// ─── buildRelationships ───────────────────────────────────────────────────────COMMENT
MEDIUM…ests/01-unit/modules/forms/form-bundle-builder-test.ts1083// ─── wrapInContainerOrPush ────────────────────────────────────────────────────COMMENT
MEDIUM…ql/tests/01-unit/modules/forms/form-validation-test.ts5// ─── Helpers ────────────────────────────────────────────────────────────────COMMENT
MEDIUM…ql/tests/01-unit/modules/forms/form-validation-test.ts34// ─── Single entity mode ──────────────────────────────────────────────────────COMMENT
MEDIUM…ql/tests/01-unit/modules/forms/form-validation-test.ts79// ─── Lookup mode ─────────────────────────────────────────────────────────────COMMENT
MEDIUM…ql/tests/01-unit/modules/forms/form-validation-test.ts100// ─── Multiple / multiple mode ─────────────────────────────────────────────────COMMENT
MEDIUM…ql/tests/01-unit/modules/forms/form-validation-test.ts127// ─── Multiple / parsed mode ───────────────────────────────────────────────────COMMENT
MEDIUM…ql/tests/01-unit/modules/forms/form-validation-test.ts167// ─── Additional entities ──────────────────────────────────────────────────────COMMENT
MEDIUM…raphql/tests/01-unit/modules/forms/form-domain-test.ts5// ─── Helpers ────────────────────────────────────────────────────────────────COMMENT
MEDIUM…raphql/tests/01-unit/modules/forms/form-domain-test.ts23// ─── resolveMainEntityAuthorFromValues ──────────────────────────────────────COMMENT
MEDIUM…odules/dataSharing/dataSharing-http-middleware-test.ts53// ─── helpers ─────────────────────────────────────────────────────────────────COMMENT
MEDIUM…odules/dataSharing/dataSharing-http-middleware-test.ts103// ─── authenticateForPublic (sseMiddleware) ───────────────────────────────────COMMENT
MEDIUM…odules/dataSharing/dataSharing-http-middleware-test.ts219// ─── extractUserAndCollection (httpTaxii) ────────────────────────────────────COMMENT
MEDIUM…odules/dataSharing/dataSharing-http-middleware-test.ts251// ─── resolveUserForFeed (httpRollingFeed) ────────────────────────────────────COMMENT
MEDIUM…ncti-graphql/tests/01-unit/modules/xtm/xtm-one-test.ts3// ── Mocks (must be declared before imports) ─────────────────────────────COMMENT
MEDIUM…ncti-graphql/tests/01-unit/modules/xtm/xtm-one-test.ts35// ── Imports (after mocks) ───────────────────────────────────────────────COMMENT
MEDIUM…ncti-graphql/tests/01-unit/modules/xtm/xtm-one-test.ts43// ── Test fixtures ───────────────────────────────────────────────────────COMMENT
MEDIUM…ncti-graphql/tests/01-unit/modules/xtm/xtm-one-test.ts84// ── Tests ───────────────────────────────────────────────────────────────COMMENT
MEDIUM…l/tests/01-unit/domain/user-api-token-security-test.ts10// ─── DB / External mocks (only what cannot run without infrastructure) ────────COMMENT
MEDIUM…l/tests/01-unit/domain/user-api-token-security-test.ts69// ─── Imports (must come after vi.mock) ───────────────────────────────────────COMMENT
MEDIUM…l/tests/01-unit/domain/user-api-token-security-test.ts78// ─────────────────────────────────────────────────────────────────────────────COMMENT
MEDIUM…l/tests/01-unit/domain/user-api-token-security-test.ts80// ─────────────────────────────────────────────────────────────────────────────COMMENT
MEDIUM…l/tests/01-unit/domain/user-api-token-security-test.ts127// ─────────────────────────────────────────────────────────────────────────────COMMENT
MEDIUM…l/tests/01-unit/domain/user-api-token-security-test.ts129// ─────────────────────────────────────────────────────────────────────────────COMMENT
88 more matches not shown…
Synthetic Comment Markers57 hits · 352 pts
SeverityFileLineSnippetContext
HIGHopencti-platform/opencti-front/lang/front/zh.json4133 "Simulated emails (generated by AI)": "模拟电子邮件(由人工智能生成)",CODE
HIGHopencti-platform/opencti-front/lang/front/zh.json4534 "This forecast is based on the evolution of the activity of this entity (indicators, victimology, etc.). It has been gCODE
HIGHopencti-platform/opencti-front/lang/front/zh.json4578 "This summary is based on the evolution of the activity of this entity (indicators, victimology, etc.). It has been geCODE
HIGHopencti-platform/opencti-front/lang/front/zh.json4579 "This summary is based on the history of this entity (internal activity). It has been generated by AI and can contain CODE
HIGHopencti-platform/opencti-front/lang/front/zh.json4580 "This summary is based on the whole content of related containers (description, content and attached files). It has beCODE
HIGHopencti-platform/opencti-front/lang/front/ja.json4132 "Simulated emails (generated by AI)": "模擬メール(AIが生成)",CODE
HIGHopencti-platform/opencti-front/lang/front/ja.json4533 "This forecast is based on the evolution of the activity of this entity (indicators, victimology, etc.). It has been gCODE
HIGHopencti-platform/opencti-front/lang/front/ja.json4577 "This summary is based on the evolution of the activity of this entity (indicators, victimology, etc.). It has been geCODE
HIGHopencti-platform/opencti-front/lang/front/ja.json4578 "This summary is based on the history of this entity (internal activity). It has been generated by AI and can contain CODE
HIGHopencti-platform/opencti-front/lang/front/ja.json4579 "This summary is based on the whole content of related containers (description, content and attached files). It has beCODE
HIGHopencti-platform/opencti-front/lang/front/de.json4133 "Simulated emails (generated by AI)": "Simulierte E-Mails (von AI generiert)",CODE
HIGHopencti-platform/opencti-front/lang/front/de.json4534 "This forecast is based on the evolution of the activity of this entity (indicators, victimology, etc.). It has been gCODE
HIGHopencti-platform/opencti-front/lang/front/de.json4578 "This summary is based on the evolution of the activity of this entity (indicators, victimology, etc.). It has been geCODE
HIGHopencti-platform/opencti-front/lang/front/de.json4579 "This summary is based on the history of this entity (internal activity). It has been generated by AI and can contain CODE
HIGHopencti-platform/opencti-front/lang/front/de.json4580 "This summary is based on the whole content of related containers (description, content and attached files). It has beCODE
HIGHopencti-platform/opencti-front/lang/front/ru.json4133 "Simulated emails (generated by AI)": "Имитированные электронные письма (сгенерированные искусственным интеллектом)",CODE
HIGHopencti-platform/opencti-front/lang/front/ru.json4534 "This forecast is based on the evolution of the activity of this entity (indicators, victimology, etc.). It has been gCODE
HIGHopencti-platform/opencti-front/lang/front/ru.json4578 "This summary is based on the evolution of the activity of this entity (indicators, victimology, etc.). It has been geCODE
HIGHopencti-platform/opencti-front/lang/front/ru.json4579 "This summary is based on the history of this entity (internal activity). It has been generated by AI and can contain CODE
HIGHopencti-platform/opencti-front/lang/front/ru.json4580 "This summary is based on the whole content of related containers (description, content and attached files). It has beCODE
HIGHopencti-platform/opencti-front/lang/front/en.json4133 "Simulated emails (generated by AI)": "Simulated emails (generated by AI)",CODE
HIGHopencti-platform/opencti-front/lang/front/en.json4534 "This forecast is based on the evolution of the activity of this entity (indicators, victimology, etc.). It has been gCODE
HIGHopencti-platform/opencti-front/lang/front/en.json4578 "This summary is based on the evolution of the activity of this entity (indicators, victimology, etc.). It has been geCODE
HIGHopencti-platform/opencti-front/lang/front/en.json4579 "This summary is based on the history of this entity (internal activity). It has been generated by AI and can contain CODE
HIGHopencti-platform/opencti-front/lang/front/en.json4580 "This summary is based on the whole content of related containers (description, content and attached files). It has beCODE
HIGHopencti-platform/opencti-front/lang/front/it.json4133 "Simulated emails (generated by AI)": "Simulazione di email (generate da AI)",CODE
HIGHopencti-platform/opencti-front/lang/front/it.json4534 "This forecast is based on the evolution of the activity of this entity (indicators, victimology, etc.). It has been gCODE
HIGHopencti-platform/opencti-front/lang/front/it.json4578 "This summary is based on the evolution of the activity of this entity (indicators, victimology, etc.). It has been geCODE
HIGHopencti-platform/opencti-front/lang/front/it.json4579 "This summary is based on the history of this entity (internal activity). It has been generated by AI and can contain CODE
HIGHopencti-platform/opencti-front/lang/front/it.json4580 "This summary is based on the whole content of related containers (description, content and attached files). It has beCODE
HIGHopencti-platform/opencti-front/lang/front/fr.json4133 "Simulated emails (generated by AI)": "Courriels simulés (générés par l'IA)",CODE
HIGHopencti-platform/opencti-front/lang/front/fr.json4534 "This forecast is based on the evolution of the activity of this entity (indicators, victimology, etc.). It has been gCODE
HIGHopencti-platform/opencti-front/lang/front/fr.json4578 "This summary is based on the evolution of the activity of this entity (indicators, victimology, etc.). It has been geCODE
HIGHopencti-platform/opencti-front/lang/front/fr.json4579 "This summary is based on the history of this entity (internal activity). It has been generated by AI and can contain CODE
HIGHopencti-platform/opencti-front/lang/front/fr.json4580 "This summary is based on the whole content of related containers (description, content and attached files). It has beCODE
HIGHopencti-platform/opencti-front/lang/front/ko.json4133 "Simulated emails (generated by AI)": "시뮬레이션 이메일(AI로 생성)",CODE
HIGHopencti-platform/opencti-front/lang/front/ko.json4534 "This forecast is based on the evolution of the activity of this entity (indicators, victimology, etc.). It has been gCODE
HIGHopencti-platform/opencti-front/lang/front/ko.json4578 "This summary is based on the evolution of the activity of this entity (indicators, victimology, etc.). It has been geCODE
HIGHopencti-platform/opencti-front/lang/front/ko.json4579 "This summary is based on the history of this entity (internal activity). It has been generated by AI and can contain CODE
HIGHopencti-platform/opencti-front/lang/front/ko.json4580 "This summary is based on the whole content of related containers (description, content and attached files). It has beCODE
HIGHopencti-platform/opencti-front/lang/front/es.json4133 "Simulated emails (generated by AI)": "Correos electrónicos simulados (generados por IA)",CODE
HIGHopencti-platform/opencti-front/lang/front/es.json4534 "This forecast is based on the evolution of the activity of this entity (indicators, victimology, etc.). It has been gCODE
HIGHopencti-platform/opencti-front/lang/front/es.json4578 "This summary is based on the evolution of the activity of this entity (indicators, victimology, etc.). It has been geCODE
HIGHopencti-platform/opencti-front/lang/front/es.json4579 "This summary is based on the history of this entity (internal activity). It has been generated by AI and can contain CODE
HIGHopencti-platform/opencti-front/lang/front/es.json4580 "This summary is based on the whole content of related containers (description, content and attached files). It has beCODE
HIGH…src/private/components/common/ai/AISummaryActivity.tsx67 <i>{t_i18n('This summary is based on the evolution of the activity of this entity (indicators, victimology, etCODE
HIGH…src/private/components/common/ai/AISummaryActivity.tsx80 <i>{t_i18n('This summary is based on the evolution of the activity of this entity (indicators, victimology, CODE
HIGH…src/private/components/common/ai/AISummaryActivity.tsx91 <i>{t_i18n('This summary is based on the evolution of the activity of this entity (indicators, victimology, CODE
HIGH…src/private/components/common/ai/AISummaryActivity.tsx102 <i>{t_i18n('This summary is based on the evolution of the activity of this entity (indicators, victimology, CODE
HIGH…src/private/components/common/ai/AISummaryActivity.tsx113 <i>{t_i18n('This summary is based on the evolution of the activity of this entity (indicators, victimology, CODE
HIGH…src/private/components/common/ai/AISummaryActivity.tsx260 disclaimerText={t_i18n('This summary is based on the evolution of the activity of this entity (indicators, victimoCODE
HIGH…/src/private/components/common/ai/AISummaryHistory.tsx58 {t_i18n('This summary is based on the history of this entity (internal activity). It has been generated by AI anCODE
HIGH…/src/private/components/common/ai/AISummaryHistory.tsx195 disclaimerText={t_i18n('This summary is based on the history of this entity (internal activity). It has been generCODE
HIGH…src/private/components/common/ai/AISummaryForecast.tsx58 {t_i18n('This forecast is based on the evolution of the activity of this entity (indicators, victimology, etc.).CODE
HIGH…src/private/components/common/ai/AISummaryForecast.tsx199 disclaimerText={t_i18n('This forecast is based on the evolution of the activity of this entity (indicators, victimCODE
HIGH…c/private/components/common/ai/AISummaryContainers.tsx110 {t_i18n('This summary is based on the whole content of related containers (description, content and attached filCODE
HIGH…c/private/components/common/ai/AISummaryContainers.tsx252 disclaimerText={t_i18n('This summary is based on the whole content of related containers (description, content andCODE
Self-Referential Comments59 hits · 192 pts
SeverityFileLineSnippetContext
MEDIUMopencti-platform/opencti-dev/docker-compose.yml94 OPENSEARCH_HOSTS: '["http://opencti-dev-opensearch:9200"]' # Define the OpenSearch nodes that OpenSearch DashboardCODE
MEDIUMopencti-worker/src/push_handler.py163 # Create a specific channel to push the split bundlesCOMMENT
MEDIUM.github/labels.yml4# This file is the machine-readable companion to .github/LABELS.md and the sourceCOMMENT
MEDIUMclient-python/tests/cases/entities.py288 # Create the organizationCOMMENT
MEDIUM…ient-python/tests/02-integration/entities/test_user.py64 # Create the tokenCOMMENT
MEDIUM…hon/tests/01-unit/api/test_opencti_api_client-proxy.py49 # Create a temporary file with certificate contentCOMMENT
MEDIUM…hon/tests/01-unit/api/test_opencti_api_client-proxy.py70 # Create a temporary file with invalid contentCOMMENT
MEDIUM…hon/tests/01-unit/api/test_opencti_api_client-proxy.py223 # Create a real temporary directoryCOMMENT
MEDIUM…ent-python/examples/get_reports_about_intrusion_set.py14# Create the Intrusion SetCOMMENT
MEDIUM…xamples/create_campaign_attributed-to_intrusion_set.py15# Define the dateCOMMENT
MEDIUM…xamples/create_campaign_attributed-to_intrusion_set.py18# Create the Intrusion SetCOMMENT
MEDIUM…xamples/create_campaign_attributed-to_intrusion_set.py28# Create the CampaignCOMMENT
MEDIUMclient-python/examples/export_incident_stix2.py25# Create the bundleCOMMENT
MEDIUMclient-python/examples/create_intrusion_set.py14# Create the Intrusion SetCOMMENT
MEDIUM…n/examples/create_incident_with_ttps_and_indicators.py15# Define the dateCOMMENT
MEDIUM…n/examples/create_incident_with_ttps_and_indicators.py22# Create the incidentCOMMENT
MEDIUM…n/examples/create_incident_with_ttps_and_indicators.py29# Create the associated reportCOMMENT
MEDIUM…n/examples/create_incident_with_ttps_and_indicators.py64# Create the observable and indicator and indicates to the relationCOMMENT
MEDIUM…n/examples/create_incident_with_ttps_and_indicators.py65# Create the observableCOMMENT
MEDIUM…n/examples/create_incident_with_ttps_and_indicators.py109# Create the relationCOMMENT
MEDIUM…n/examples/create_incident_with_ttps_and_indicators.py124# Create the observable and indicator and indicates to the relationCOMMENT
MEDIUM…n/examples/create_incident_with_ttps_and_indicators.py125# Create the observableCOMMENT
MEDIUM…ent-python/examples/add_tool_usage_to_intrusion-set.py23# Create the relationCOMMENT
MEDIUMclient-python/examples/export_report_stix2.py14# Create the bundleCOMMENT
MEDIUM…thon/examples/upload_file_to_intrusion_set_embedded.py14# Create the Intrusion SetCOMMENT
MEDIUMclient-python/examples/create_report_with_author.py15# Define the dateCOMMENT
MEDIUMclient-python/examples/create_report_with_author.py18# Create the author (if not exists)COMMENT
MEDIUMclient-python/examples/create_report_with_author.py26# Create the reportCOMMENT
MEDIUMclient-python/examples/export_incidents_stix2.py14# Create the bundleCOMMENT
MEDIUMclient-python/examples/add_label_to_observable.py13# Create the observableCOMMENT
MEDIUMclient-python/examples/add_label_to_observable.py17# Create the tag (if not exists)COMMENT
MEDIUM…nt-python/examples/add_external_reference_to_report.py15# Define the dateCOMMENT
MEDIUM…nt-python/examples/add_external_reference_to_report.py18# Create the reportCOMMENT
MEDIUM…nt-python/examples/add_external_reference_to_report.py26# Create the external referenceCOMMENT
MEDIUM…on/examples/upload_file_with_intrusion_set_embedded.py19# Create the Intrusion SetCOMMENT
MEDIUMclient-python/examples/create_indicator_of_campaign.py15# Define the dateCOMMENT
MEDIUMclient-python/examples/create_indicator_of_campaign.py18# Create the CampaignCOMMENT
MEDIUMclient-python/examples/create_indicator_of_campaign.py29# Create the indicatorCOMMENT
MEDIUMclient-python/examples/create_indicator_of_campaign.py40# Create the relationCOMMENT
MEDIUMclient-python/examples/create_indicator_of_campaign.py53# Create the observables (optional)COMMENT
MEDIUMclient-python/examples/create_indicator_of_campaign.py60# Create the relation between observables and the indicatorCOMMENT
MEDIUMclient-python/examples/get_indicators_of_malware.py14# Create the MalwareCOMMENT
MEDIUMclient-python/examples/get_malwares_of_intrusion_set.py14# Create the Intrusion SetCOMMENT
MEDIUMclient-python/examples/update_entity_attribute.py14# Create the Intrusion SetCOMMENT
MEDIUMclient-python/examples/export_intrusion_set_stix2.py14# Create the bundleCOMMENT
MEDIUMclient-python/examples/create_marking_definition.py13# Create the marking definitionCOMMENT
MEDIUMclient-python/examples/upload_file_to_intrusion_set.py14# Create the Intrusion SetCOMMENT
MEDIUMclient-python/examples/add_label_to_malware.py13# Create the malwareCOMMENT
MEDIUMclient-python/examples/add_label_to_malware.py18# Create the tag (if not exists)COMMENT
MEDIUMclient-python/examples/add_organization_to_sector.py18# Create the organizationCOMMENT
MEDIUMclient-python/examples/add_organization_to_sector.py23# Create the relationCOMMENT
MEDIUMclient-python/examples/update_observable_attributes.py13# Create an observableCOMMENT
MEDIUMclient-python/examples/ask_enrichment_of_observable.py15# Create the observableCOMMENT
MEDIUMclient-python/pycti/utils/opencti_stix2.py1647 # Create the relationSTRING
MEDIUMclient-python/pycti/utils/opencti_stix2.py1760 # Create the sightingSTRING
MEDIUM…ent-python/pycti/connector/opencti_connector_helper.py2271 # Initialize ConnectorInfo instanceCOMMENT
MEDIUM…ent-python/pycti/connector/opencti_connector_helper.py2323 # Create a tokenCOMMENT
MEDIUMclient-python/pycti/api/opencti_api_client.py267 # Define the dependenciesCOMMENT
MEDIUMclient-python/pycti/api/opencti_api_client.py281 # Define the entitiesCOMMENT
Hyper-Verbose Identifiers164 hits · 146 pts
SeverityFileLineSnippetContext
LOW…atform/opencti-graphql/src/manager/publisherManager.ts175export async function handleSimplifiedEmailNotification(CODE
LOW…atform/opencti-graphql/src/manager/publisherManager.ts220export async function handleWebhookNotification(configurationString: string | undefined, templateData: object) {CODE
LOWopencti-platform/opencti-front/src/utils/Time.ts259export function dateFiltersValueForDisplay(CODE
LOWopencti-platform/opencti-front/src/utils/Time.ts263export function dateFiltersValueForDisplay(CODE
LOWopencti-platform/opencti-front/src/utils/Time.ts267export function dateFiltersValueForDisplay(CODE
LOW…tform/opencti-front/src/utils/filters/filtersUtils.tsx522export function normalizeFilterGroupForBackend(filterGroup: FilterGroup): GqlFilterGroup;CODE
LOW…tform/opencti-front/src/utils/filters/filtersUtils.tsx523export function normalizeFilterGroupForBackend(filterGroup?: FilterGroup | null): GqlFilterGroup | undefined;CODE
LOW…tform/opencti-front/src/utils/filters/filtersUtils.tsx524export function normalizeFilterGroupForBackend(CODE
LOW…rm/opencti-front/src/components/ExportButtons.test.tsx45function createExportButtonsInstance(props: Record<string, unknown>) {CODE
LOW…rc/private/components/data/forms/view/FormViewUtils.ts260 function validateConditionalRequired(this: Yup.TestContext, value: Record<string, unknown> | undefined) {CODE
LOW…ata/playbooks/playbookFlow/playbookComponents-utils.ts31export function groupAndSortPlaybookComponents(CODE
LOWopencti-worker/src/worker.py243 def listen_execution_pool_submit(task: Callable[[], None]):CODE
LOWopencti-worker/src/push_handler.py42 def send_bundle_to_specific_queue(CODE
LOWclient-python/tests/conftest.py71def pytest_collection_modifyitems(config, items):CODE
LOWclient-python/tests/cases/connectors.py35 def case_vulnerability_import() -> Dict:CODE
LOWclient-python/tests/cases/entities.py28 def case_identity_organization(api_client):CODE
LOWclient-python/tests/cases/entities.py120 def case_stix_cyber_observable_domain(api_client):CODE
LOWclient-python/tests/cases/entities.py124 def case_stix_cyber_observable_as(api_client):CODE
LOWclient-python/tests/cases/entities.py128 def case_stix_sighting_relationship(api_client):CODE
LOWclient-python/tests/cases/entities.py136 def case_threat_actor_individual(api_client):CODE
LOWclient-python/tests/cases/entities.py217 def get_compare_exception_keys(self) -> List[str]:CODE
LOWclient-python/tests/cases/entities.py317 def get_compare_exception_keys(self) -> List[str]:CODE
LOWclient-python/tests/cases/entities.py509 def get_compare_exception_keys(self) -> List[str]:CODE
LOWclient-python/tests/cases/entities.py651 def get_compare_exception_keys(self) -> List[str]:CODE
LOWclient-python/tests/cases/entities.py790 def get_compare_exception_keys(self) -> List[str]:CODE
LOWclient-python/tests/cases/entities.py848 def get_compare_exception_keys(self) -> List[str]:CODE
LOWclient-python/tests/cases/entities.py915 def get_compare_exception_keys(self) -> List[str]:CODE
LOWclient-python/tests/cases/entities.py952 def get_compare_exception_keys(self) -> List[str]:CODE
LOW…ython/tests/02-integration/connector/test_connector.py33def test_register_simple_connector(simple_connector, api_connector, api_work):CODE
LOW…ython/tests/02-integration/connector/test_connector.py61def external_import_connector_data(data, api_client, api_connector, api_work):CODE
LOW…ython/tests/02-integration/connector/test_connector.py74def test_external_import_connector(CODE
LOW…ython/tests/02-integration/connector/test_connector.py116def internal_enrichment_connector_data(data, api_client, api_connector, api_work):CODE
LOW…ython/tests/02-integration/connector/test_connector.py140def test_internal_enrichment_connector(CODE
LOW…ython/tests/02-integration/connector/test_connector.py169def internal_import_connector_data(data, api_client, api_connector, api_work):CODE
LOW…ython/tests/02-integration/connector/test_connector.py189def test_internal_import_connector(CODE
LOW…ient-python/tests/02-integration/entities/test_user.py58def test_user_admin_token_create_remove(api_client):CODE
LOW…ent-python/tests/02-integration/entities/test_group.py24def test_group_default_markings(api_client):CODE
LOW…ent-python/tests/02-integration/entities/test_group.py72def test_group_allowed_markings(api_client):CODE
LOW…t-python/tests/02-integration/entities/test_malware.py4def test_malware_import_with_sample_refs(api_client):CODE
LOW…hon/tests/02-integration/entities/test_upload_files.py4def test_create_entity_with_embedded_file(api_client):CODE
LOW…thon/tests/02-integration/entities/test_observables.py6def test_promote_observable_to_indicator_deprecated(api_client):CODE
LOW…thon/tests/02-integration/entities/test_observables.py18def test_certificate_creation_mapping(api_client):CODE
LOW…ython/tests/02-integration/entities/test_indicators.py36def test_indicator_stix_marshall(api_client):CODE
LOW…1-unit/connector_helper/test_batch_callback_wrapper.py53 def test_batch_size_trigger_updates_state(self):CODE
LOW…1-unit/connector_helper/test_batch_callback_wrapper.py83 def test_batch_timeout_trigger(self):CODE
LOW…1-unit/connector_helper/test_batch_callback_wrapper.py104 def test_batch_size_cap_and_drain(self):CODE
LOW…1-unit/connector_helper/test_batch_callback_wrapper.py157 def test_shutdown_processes_remaining_messages(self):CODE
LOW…1-unit/connector_helper/test_batch_callback_wrapper.py174 def test_shutdown_drains_in_chunks(self):CODE
LOW…1-unit/connector_helper/test_batch_callback_wrapper.py197 def test_timer_drains_overflow_in_chunks(self):CODE
LOW…1-unit/connector_helper/test_batch_callback_wrapper.py237 def test_batch_callback_error_does_not_update_state(self):CODE
LOW…1-unit/connector_helper/test_batch_callback_wrapper.py264 def test_heartbeat_queue_puts_message(self):CODE
LOW…on/tests/01-unit/connector_helper/test_rate_limiter.py32 def test_cleanup_old_timestamps(self):CODE
LOW…on/tests/01-unit/connector_helper/test_rate_limiter.py47 def test_concurrent_access_is_thread_safe(self):CODE
LOW…on/tests/01-unit/connector_helper/test_rate_limiter.py73 def test_no_wait_when_under_limit(self):CODE
LOWclient-python/tests/01-unit/utils/test_opencti_stix2.py28def test_convert_markdown_multiple_pairs(opencti_stix2: OpenCTIStix2):CODE
LOWclient-python/tests/01-unit/utils/test_opencti_stix2.py34def test_convert_markdown_typo(opencti_stix2: OpenCTIStix2):CODE
LOWclient-python/tests/01-unit/utils/test_opencti_stix2.py41def test_convert_markdown_literal_code_tag(opencti_stix2: OpenCTIStix2):CODE
LOWclient-python/tests/01-unit/utils/test_opencti_stix2.py48def test_convert_markdown_mixed_matched_and_lone(opencti_stix2: OpenCTIStix2):CODE
LOWclient-python/tests/01-unit/utils/test_opencti_stix2.py132def test_import_bundle_from_file(opencti_stix2: OpenCTIStix2, caplog) -> None:CODE
LOWclient-python/tests/01-unit/utils/test_opencti_stix2.py139def test_extract_embedded_storage_path_ignores_query_string(CODE
104 more matches not shown…
Hallucination Indicators11 hits · 110 pts
SeverityFileLineSnippetContext
CRITICAL…ql/tests/03-integration/02-resolvers/connector-test.ts318 expect(queryResult.data.pingConnector.connector_info.next_run_datetime.toISOString()).toBe(datetimeNextRun.toISOStriCODE
CRITICAL…ql/tests/03-integration/02-resolvers/connector-test.ts319 expect(queryResult.data.pingConnector.connector_info.last_run_datetime.toISOString()).toBe(datetimeLastRun.toISOStriCODE
CRITICAL…/playbookComponents/create-indicator-component-test.ts745 const titles = schema.properties.types.items.oneOf.map((e: {CODE
CRITICAL…tests/20-rules/report-refs-observable-based-on-test.js178 const inferenceEdge = queryResult.data.report.objects.edges.find((e) => e.node.standard_id === 'indicator--b05c9d2CODE
CRITICAL…latform/opencti-graphql/src/graphql/telemetryPlugin.js35 type: requestError ? sendContext.response.body.singleResult.errors.at(0)?.name ?? requestError.name : undefineCODE
CRITICAL…/opencti-front/src/components/fields/RichTextField.tsx83 ckEditorRef.current.model.document.selection.on('change', () => {CODE
CRITICAL…s/fields/markdownField/hooks/useMarkdownImages.test.ts68 const attachment = hook.result.current.registryRef.current.createTempAttachment(file);CODE
CRITICAL…s/fields/markdownField/hooks/useMarkdownImages.test.ts71 hook.result.current.pendingCleanupTimeoutRef.current.set(token, timeoutId);CODE
CRITICAL…s/fields/markdownField/hooks/useMarkdownImages.test.ts87 expect(hook.result.current.pendingCleanupTimeoutRef.current.has(token)).toBe(false);CODE
CRITICAL…s/fields/markdownField/hooks/useMarkdownImages.test.ts88 expect(hook.result.current.registryRef.current.getAttachment(token)).toBeUndefined();CODE
CRITICAL…_domain_objects/StixDomainObjectVictimologySectors.jsx174 sectors: n.node.to.sectors.edges.map(CODE
Fake / Example Data75 hits · 84 pts
SeverityFileLineSnippetContext
LOW…hql/tests/03-integration/02-resolvers/playbook-test.ts377 filters: [{ key: ['fake_key'], values: [], operator: 'nil' }],CODE
LOW…hql/tests/03-integration/02-resolvers/playbook-test.ts503 filters: [{ key: ['fake_key'], values: [], operator: 'nil' }],CODE
LOW…aphql/tests/03-integration/01-database/xtm-hub-test.ts20 const xtm_hub_token = 'fake-token';CODE
LOW…aphql/tests/03-integration/01-database/xtm-hub-test.ts385 xtm_hub_token: 'fake-token',CODE
LOW…aphql/tests/03-integration/01-database/xtm-hub-test.ts456 expect(consumeProvisionedNewsFeedItemsSpy).toHaveBeenCalledWith('settings_id', 'fake-token');CODE
LOW…ation/10-modules/decayRules/decayRule-resolver-test.ts449 variables: { id: 'dummy-id' },CODE
LOW…ation/10-modules/decayRules/decayRule-resolver-test.ts454 variables: { id: 'dummy-id' },CODE
LOW…/opencti-graphql/tests/01-unit/database/engine-test.js95 const emails = ['user@example.com', 'user2@example.com', 'user3@example.com'];CODE
LOW…rm/opencti-graphql/tests/01-unit/database/smtp-test.ts121 oauthUser: 'user@example.com',CODE
LOW…rm/opencti-graphql/tests/01-unit/database/smtp-test.ts139 user: 'user@example.com',CODE
LOW…rm/opencti-graphql/tests/01-unit/database/smtp-test.ts153 expect(result).toHaveProperty('user', 'user@example.com');CODE
LOW…rm/opencti-graphql/tests/01-unit/database/smtp-test.ts164 await expect(buildSmtpAuth('oauth2', { oauthUser: 'user@example.com' })).rejects.toThrow(CODE
LOW…rm/opencti-graphql/tests/01-unit/database/smtp-test.ts171 oauthUser: 'user@example.com',CODE
LOW…rm/opencti-graphql/tests/01-unit/database/smtp-test.ts298 const result = await buildSmtpAuth('basic', { username: 'user@example.com', password: 'mypassword' });CODE
LOW…rm/opencti-graphql/tests/01-unit/database/smtp-test.ts299 expect(result).toStrictEqual({ user: 'user@example.com', pass: 'mypassword' });CODE
LOW…rm/opencti-graphql/tests/01-unit/database/smtp-test.ts303 const result = await buildSmtpAuth(undefined, { username: 'user@example.com', password: 'mypassword' });CODE
LOW…rm/opencti-graphql/tests/01-unit/database/smtp-test.ts304 expect(result).toStrictEqual({ user: 'user@example.com', pass: 'mypassword' });CODE
LOW…rm/opencti-graphql/tests/01-unit/database/smtp-test.ts308 const result = await buildSmtpAuth('basic', { username: 'user@example.com' });CODE
LOW…rm/opencti-graphql/tests/01-unit/database/smtp-test.ts309 expect(result).toStrictEqual({ user: 'user@example.com', pass: '' });CODE
LOW…rm/opencti-graphql/tests/01-unit/database/smtp-test.ts329 const result = await buildSmtpAuth('something-else', { username: 'user@example.com', password: 'p' });CODE
LOW…rm/opencti-graphql/tests/01-unit/database/smtp-test.ts330 expect(result).toStrictEqual({ user: 'user@example.com', pass: 'p' });CODE
LOW…rm/opencti-graphql/tests/01-unit/database/smtp-test.ts346 oauthUser: 'user@example.com',CODE
LOW…rm/opencti-graphql/tests/01-unit/database/smtp-test.ts545 const result = await smtpTest('admin@example.com');CODE
LOW…rm/opencti-graphql/tests/01-unit/database/smtp-test.ts549 expect(call.to).toBe('admin@example.com');CODE
LOW…rm/opencti-graphql/tests/01-unit/database/smtp-test.ts557 await expect(smtpTest('admin@example.com')).rejects.toThrow('connection refused');CODE
LOW…abase/stix-2-0-converter-fixtures/SCOs/payment-card.ts9 holder_name: 'John Doe',CODE
LOW…abase/stix-2-0-converter-fixtures/SCOs/payment-card.ts26 holder_name: 'John Doe',CODE
LOW…hql/tests/01-unit/utils/streamConsumerRegistry-test.ts275 userEmail: 'admin@example.com',CODE
LOW…tform/opencti-graphql/tests/01-unit/utils/hash-test.ts7 const CONTENT_1 = `Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididuntCODE
LOW…tform/opencti-graphql/tests/01-unit/utils/hash-test.ts7 const CONTENT_1 = `Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididuntCODE
LOW…tform/opencti-graphql/tests/01-unit/utils/hash-test.ts14 const CONTENT_2 = `Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididuntCODE
LOW…tform/opencti-graphql/tests/01-unit/utils/hash-test.ts14 const CONTENT_2 = `Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididuntCODE
LOW…tform/opencti-graphql/tests/01-unit/utils/hash-test.ts21 const CONTENT_3 = `Lorem ipsomme dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididuntCODE
LOW…graphql/tests/01-unit/manager/publisherManager-test.ts125 name: 'John Doe',CODE
LOW…/modules/authenticationProvider/mappings-utils-test.ts39 'http://example.com/claims/email': 'user@example.com',CODE
LOW…/modules/authenticationProvider/mappings-utils-test.ts43 expect(result).toBe('user@example.com');CODE
LOW…/modules/authenticationProvider/mappings-utils-test.ts235 const obj = { UserInfo: { Email: 'user@example.com' } };CODE
LOW…/modules/authenticationProvider/mappings-utils-test.ts237 expect(result).toBe('user@example.com');CODE
LOW…/modules/authenticationProvider/mappings-utils-test.ts247 const obj = { User_Info: { EMAIL: 'user@example.com' } };CODE
LOW…/modules/authenticationProvider/mappings-utils-test.ts249 expect(result).toBe('user@example.com');CODE
LOW…graphql/tests/01-unit/modules/user/user-domain-test.ts38 user_email: 'test@test.com',CODE
LOW…encti-graphql/tests/01-unit/domain/form-intake-test.ts9 const entity = { entity_type: 'Individual', name: 'John Doe' } as StoreEntity;CODE
LOW…encti-graphql/tests/01-unit/domain/form-intake-test.ts29 const entity = { entity_type: 'Individual', name: 'Jane Doe' } as StoreEntity;CODE
LOW…form/opencti-graphql/tests/01-unit/domain/user-test.ts20 updateAttribute: vi.fn().mockResolvedValue({ element: { id: 'mock-id', user_email: 'test@test.com' } }),CODE
LOW…l/tests/01-unit/domain/user-api-token-security-test.ts212 const result = await sessionLogin(context, { email: 'user@example.com', password: 'pass' });CODE
LOW…l/tests/01-unit/domain/user-api-token-security-test.ts225 await sessionLogin(context, { email: 'user@example.com', password: 'pass' });CODE
LOW…l/tests/01-unit/domain/user-api-token-security-test.ts254 sessionLogin(context, { email: 'user@example.com', password: 'pass' }),CODE
LOW…l/tests/01-unit/domain/user-api-token-security-test.ts275 const result = await sessionLogin(context, { email: 'user@example.com', password: 'pass' });CODE
LOW…orm/opencti-graphql/tests/data/DATA-TEST-STIX2_v2.json477 "name": "John Doe",CODE
LOW…orm/opencti-graphql/tests/data/data-test-stix-e2e.json352 "name": "John Doe",CODE
LOW…ncti-graphql/tests/data/filters/DATA-TEST-FILTERS.json454 "name": "John Doe",CODE
LOW…cti-graphql/src/modules/ai/ai-nlq-few-shot-examples.ts290 values: ['John Doe'],CODE
LOW…encti-platform/opencti-front/tests_e2e/pir/pir.spec.ts94 await expect(pirDetails.getTopAuthorEntities('John Doe')).toBeVisible();CODE
LOW…rivate/components/settings/sub_types/workflow/utils.ts45 placeholder = 'placeholder',CODE
LOW…ypes/workflow/hooks/useWorkflowInitialElements.test.ts40 { node: { id: 'user-1', name: 'John Doe', entity_type: 'User' } },CODE
LOW…ypes/workflow/hooks/useWorkflowInitialElements.test.ts59 { id: 'user-1', name: 'John Doe', entity_type: 'User', access_right: 'admin' },CODE
LOW…ypes/workflow/hooks/useWorkflowInitialElements.test.ts147 name: 'John Doe',CODE
LOW…rc/private/components/data/playbooks/utils/playbook.ts78 type: 'placeholder',CODE
LOW…rc/private/components/data/playbooks/utils/playbook.ts110 type: 'placeholder',CODE
LOW…rc/private/components/data/playbooks/utils/playbook.ts123 type: 'placeholder',CODE
15 more matches not shown…
Unused Imports93 hits · 56 pts
SeverityFileLineSnippetContext
LOW…m/opencti-graphql/src/python/testing/local_uploader.py1CODE
LOWclient-python/pycti/__init__.py4CODE
LOWclient-python/pycti/__init__.py5CODE
LOWclient-python/pycti/__init__.py6CODE
LOWclient-python/pycti/__init__.py7CODE
LOWclient-python/pycti/__init__.py7CODE
LOWclient-python/pycti/__init__.py8CODE
LOWclient-python/pycti/__init__.py8CODE
LOWclient-python/pycti/__init__.py12CODE
LOWclient-python/pycti/__init__.py13CODE
LOWclient-python/pycti/__init__.py14CODE
LOWclient-python/pycti/__init__.py15CODE
LOWclient-python/pycti/__init__.py16CODE
LOWclient-python/pycti/__init__.py17CODE
LOWclient-python/pycti/__init__.py18CODE
LOWclient-python/pycti/__init__.py19CODE
LOWclient-python/pycti/__init__.py20CODE
LOWclient-python/pycti/__init__.py21CODE
LOWclient-python/pycti/__init__.py22CODE
LOWclient-python/pycti/__init__.py23CODE
LOWclient-python/pycti/__init__.py24CODE
LOWclient-python/pycti/__init__.py25CODE
LOWclient-python/pycti/__init__.py26CODE
LOWclient-python/pycti/__init__.py27CODE
LOWclient-python/pycti/__init__.py28CODE
LOWclient-python/pycti/__init__.py29CODE
LOWclient-python/pycti/__init__.py30CODE
LOWclient-python/pycti/__init__.py31CODE
LOWclient-python/pycti/__init__.py32CODE
LOWclient-python/pycti/__init__.py33CODE
LOWclient-python/pycti/__init__.py34CODE
LOWclient-python/pycti/__init__.py35CODE
LOWclient-python/pycti/__init__.py36CODE
LOWclient-python/pycti/__init__.py37CODE
LOWclient-python/pycti/__init__.py38CODE
LOWclient-python/pycti/__init__.py39CODE
LOWclient-python/pycti/__init__.py40CODE
LOWclient-python/pycti/__init__.py41CODE
LOWclient-python/pycti/__init__.py42CODE
LOWclient-python/pycti/__init__.py43CODE
LOWclient-python/pycti/__init__.py44CODE
LOWclient-python/pycti/__init__.py45CODE
LOWclient-python/pycti/__init__.py46CODE
LOWclient-python/pycti/__init__.py47CODE
LOWclient-python/pycti/__init__.py48CODE
LOWclient-python/pycti/__init__.py49CODE
LOWclient-python/pycti/__init__.py50CODE
LOWclient-python/pycti/__init__.py51CODE
LOWclient-python/pycti/__init__.py52CODE
LOWclient-python/pycti/__init__.py53CODE
LOWclient-python/pycti/__init__.py54CODE
LOWclient-python/pycti/__init__.py57CODE
LOWclient-python/pycti/__init__.py58CODE
LOWclient-python/pycti/__init__.py59CODE
LOWclient-python/pycti/__init__.py60CODE
LOWclient-python/pycti/__init__.py61CODE
LOWclient-python/pycti/__init__.py62CODE
LOWclient-python/pycti/__init__.py63CODE
LOWclient-python/pycti/__init__.py64CODE
LOWclient-python/pycti/__init__.py65CODE
33 more matches not shown…
Over-Commented Block56 hits · 54 pts
SeverityFileLineSnippetContext
LOW…l/tests/03-integration/02-resolvers/user-token-test.ts181COMMENT
LOW…3-integration/02-resolvers/connector-migration-test.ts221 // connector state timestamp should be the sameCOMMENT
LOW…3-integration/02-resolvers/connector-migration-test.ts241 // configuration: [COMMENT
LOW…3-integration/02-resolvers/connector-migration-test.ts261 // convertUserToServiceAccount: true,COMMENT
LOW…3-integration/02-resolvers/connector-migration-test.ts281COMMENT
LOW…3-integration/02-resolvers/connector-migration-test.ts301 // convertUserToServiceAccount: true,COMMENT
LOW…s/03-integration/05-parser/importCsv-connector-test.ts41 workId: work.id,COMMENT
LOW…s/03-integration/05-parser/importCsv-connector-test.ts61 // next 5 lines:COMMENT
LOW…latform/opencti-graphql/tests/utils/testQueryHelper.ts21type Request = { query: any; variables?: any };COMMENT
LOW…ql/tests/20-rules/report-refs-identity-part-of-test.js21 const createdElements = [];COMMENT
LOW…tests/20-rules/report-refs-observable-based-on-test.js21COMMENT
LOW…tform/opencti-graphql/src/types/stix-2-1-extensions.ts1// Common attribute of OCTI added to every entitiesCOMMENT
LOW…pencti-graphql/src/python/runtime/snort/snort_dicts.py81 # systems.COMMENT
LOW…pencti-graphql/src/python/runtime/snort/snort_dicts.py121 # content in the packet payload and triggerCOMMENT
LOW…pencti-graphql/src/python/runtime/snort/snort_dicts.py141 # The nocase keyword allows the rule writer toCOMMENT
LOW…pencti-graphql/src/python/runtime/snort/snort_dicts.py161 # ignore before starting to search for theCOMMENT
LOW…pencti-graphql/src/python/runtime/snort/snort_dicts.py181 # that restricts the search to the extractedCOMMENT
LOW…pencti-graphql/src/python/runtime/snort/snort_dicts.py201 # that restricts the search to the extractedCOMMENT
LOW…pencti-graphql/src/python/runtime/snort/snort_dicts.py221 # the same content.COMMENT
LOW…pencti-graphql/src/python/runtime/snort/snort_dicts.py241 # NOTE: The http_stat_msg modifier is not allowedCOMMENT
LOW…pencti-graphql/src/python/runtime/snort/snort_dicts.py261 # 1. http_cookie,COMMENT
LOW…pencti-graphql/src/python/runtime/snort/snort_dicts.py281 # with the fast pattern matcher.COMMENT
LOW…pencti-graphql/src/python/runtime/snort/snort_dicts.py301 # option, check the manual for pitfalls.COMMENT
LOW…pencti-graphql/src/python/runtime/snort/snort_dicts.py321 # 7. SMTP/POP/IMAP data bodyCOMMENT
LOW…pencti-graphql/src/python/runtime/snort/snort_dicts.py341 # TODO: check for options.COMMENT
LOW…pencti-graphql/src/python/runtime/snort/snort_dicts.py361 # value and a specified value orCOMMENT
LOW…pencti-graphql/src/python/runtime/snort/snort_dicts.py381 # to set flow-bits based on a client bind to aCOMMENT
LOW…pencti-graphql/src/python/runtime/snort/snort_dicts.py401 # codes specified matches the status codes ofCOMMENT
LOW…pencti-graphql/src/python/runtime/snort/snort_dicts.py421 # TODO: identify also gtp message types, but forCOMMENT
LOW…pencti-graphql/src/python/runtime/snort/snort_dicts.py461 "id",COMMENT
LOW…pencti-graphql/src/python/runtime/snort/snort_dicts.py481 "flags",COMMENT
LOW…pencti-graphql/src/python/runtime/snort/snort_dicts.py501 # a specific TCP window sizeCOMMENT
LOW…pencti-graphql/src/python/runtime/snort/snort_dicts.py521 "sameip",COMMENT
LOW…pencti-graphql/src/python/runtime/snort/snort_dicts.py561 # This keyword implements an ability for users toCOMMENT
LOWopencti-platform/opencti-graphql/src/utils/refang.js21 // Refang common obfuscations (all patterns from both functions)COMMENT
LOWopencti-platform/opencti-graphql/src/utils/refang.js41 // Replace [://] or similar with ://COMMENT
LOW…ti-platform/opencti-graphql/src/resolvers/container.js61 relatedContainers: (container, args, context) => relatedContainers(context, context.user, container.id, args),COMMENT
LOW…-platform/opencti-graphql/src/http/httpChatbotProxy.ts21COMMENT
LOW…-platform/opencti-graphql/src/http/httpChatbotProxy.ts761 // a fresh agent run) for a draft they don't have access to, bypassing draftCOMMENT
LOWopencti-platform/opencti-front/playwright.config.ts81 // name: 'webkit',COMMENT
LOW…opencti-front/tests_e2e/trash/createTrashEntry.spec.ts1// TODO: uncomment when feature flag is removed, since e2e backend tests currently use default feature flag configCOMMENT
LOW…opencti-front/tests_e2e/trash/createTrashEntry.spec.ts21// await page.getByRole('link', { name: reportName }).first().getByRole('checkbox').click();COMMENT
LOW…platform/opencti-front/tests_e2e/report/report.spec.ts401 // ---------COMMENT
LOW…m/opencti-front/tests_e2e/report/assets/report.test.md1# Test report e2eCOMMENT
LOW…s_e2e/incidentResponse/assets/incidentResponse.test.md1# incident response test mdCOMMENT
LOW…orm/opencti-front/src/public/components/Playground.tsx21 }COMMENT
LOW…sonMapper/representations/attributes/AttributeUtils.ts101 // const configuration = isNotEmptyField(data.pattern_date)COMMENT
LOW.github/labels.yml1# Canonical Filigran label palette — shared across all Filigran repositoriesCOMMENT
LOWclient-python/tests/cases/connectors.py161 self.helper.api.stix_cyber_observable.update_field(COMMENT
LOWclient-python/tests/cases/connectors.py181 # x_opencti_score=100COMMENT
LOW…ython/tests/02-integration/entities/test_indicators.py1# coding: utf-8COMMENT
LOW…ython/tests/02-integration/entities/test_indicators.py21#COMMENT
LOW…t-python/tests/01-unit/stix/test_bundle_ids_rewrite.py81 assert gen_id({"type": "tool", "name": "my-tool"}) == "tool--41cd21d0-f50e-5e3d-83fc-447e0def97b7"COMMENT
LOWclient-python/docs/conf.py1# Configuration file for the Sphinx documentation builder.COMMENT
LOWclient-python/docs/conf.py141# -- Options for HTML output -------------------------------------------------COMMENT
LOWclient-python/pycti/utils/opencti_stix2.py2621 """COMMENT
Deep Nesting58 hits · 52 pts
SeverityFileLineSnippetContext
LOW…encti-graphql/src/python/runtime/snort/snort_parser.py100CODE
LOW…encti-graphql/src/python/runtime/snort/snort_parser.py147CODE
LOW…encti-graphql/src/python/testing/local_synchronizer.py60CODE
LOWopencti-worker/src/worker.py228CODE
LOWopencti-worker/src/push_handler.py83CODE
LOWclient-python/tests/utils.py69CODE
LOW…thon/tests/02-integration/entities/test_entity_crud.py45CODE
LOW…thon/tests/02-integration/entities/test_observables.py18CODE
LOW…hon/tests/01-unit/api/test_opencti_api_client-proxy.py251CODE
LOW…n/examples/cmd_line_tag_latest_indicators_of_threat.py17CODE
LOWclient-python/pycti/utils/opencti_stix2.py308CODE
LOWclient-python/pycti/utils/opencti_stix2.py352CODE
LOWclient-python/pycti/utils/opencti_stix2.py490CODE
LOWclient-python/pycti/utils/opencti_stix2.py1394CODE
LOWclient-python/pycti/utils/opencti_stix2.py1606CODE
LOWclient-python/pycti/utils/opencti_stix2.py1850CODE
LOWclient-python/pycti/utils/opencti_stix2.py2119CODE
LOWclient-python/pycti/utils/opencti_stix2.py2855CODE
LOWclient-python/pycti/utils/opencti_stix2.py3001CODE
LOWclient-python/pycti/utils/opencti_stix2.py3261CODE
LOWclient-python/pycti/utils/opencti_stix2.py3308CODE
LOWclient-python/pycti/utils/opencti_stix2.py3384CODE
LOWclient-python/pycti/utils/opencti_stix2.py3532CODE
LOWclient-python/pycti/utils/opencti_stix2.py3666CODE
LOWclient-python/pycti/utils/opencti_stix2_utils.py284CODE
LOWclient-python/pycti/utils/opencti_stix2_splitter.py80CODE
LOW…ti/utils/opencti_stix2_markdown_embedded_file_utils.py4CODE
LOWclient-python/pycti/utils/opencti_stix2_update.py23CODE
LOWclient-python/pycti/utils/opencti_stix2_update.py57CODE
LOWclient-python/pycti/utils/opencti_stix2_update.py228CODE
LOWclient-python/pycti/utils/opencti_stix2_update.py284CODE
LOWclient-python/pycti/utils/opencti_stix2_update.py429CODE
LOWclient-python/pycti/utils/opencti_stix2_update.py474CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py589CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py831CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py1083CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py1173CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py1347CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py1611CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py1999CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py2694CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py3494CODE
LOWclient-python/pycti/api/opencti_api_client.py95CODE
LOWclient-python/pycti/api/opencti_api_client.py347CODE
LOWclient-python/pycti/api/opencti_api_client.py437CODE
LOWclient-python/pycti/api/opencti_api_client.py624CODE
LOWclient-python/pycti/api/opencti_api_client.py818CODE
LOWclient-python/pycti/entities/opencti_location.py252CODE
LOWclient-python/pycti/entities/opencti_location.py586CODE
LOW…ython/pycti/entities/opencti_stix_core_relationship.py589CODE
LOWclient-python/pycti/entities/opencti_identity.py467CODE
LOWclient-python/pycti/entities/opencti_identity.py661CODE
LOW…nt-python/pycti/entities/opencti_marking_definition.py302CODE
LOW…ient-python/pycti/entities/opencti_course_of_action.py561CODE
LOW…python/pycti/entities/opencti_stix_cyber_observable.py277CODE
LOW…nt-python/pycti/entities/opencti_stix_domain_object.py1282CODE
LOWclient-python/pycti/entities/opencti_attack_pattern.py598CODE
LOW…n/pycti/entities/opencti_stix_sighting_relationship.py503CODE
Excessive Try-Catch Wrapping56 hits · 50 pts
SeverityFileLineSnippetContext
LOW…ncti-graphql/src/python/runtime/utils/runtime_utils.py11 except Exception as e:CODE
MEDIUM…ncti-graphql/src/python/runtime/utils/runtime_utils.py7def return_data(data):CODE
LOW…encti-graphql/src/python/runtime/snort/snort_parser.py190 except Exception as e:CODE
LOW…encti-graphql/src/python/runtime/snort/snort_parser.py204 except Exception as e:CODE
LOW…encti-graphql/src/python/runtime/snort/snort_parser.py265 except Exception as e:CODE
LOW…encti-graphql/src/python/runtime/snort/snort_parser.py360 except Exception as perror:CODE
LOW…encti-graphql/src/python/runtime/snort/snort_parser.py368 except Exception as serror:CODE
LOW…m/opencti-graphql/src/python/testing/local_importer.py32 except Exception as e: # pylint: disable=broad-exceptCODE
LOW…m/opencti-graphql/src/python/testing/local_uploader.py36 except Exception as e: # pylint: disable=broad-exceptCODE
LOW…m/opencti-graphql/src/python/testing/local_exporter.py59 except Exception as e: # pylint: disable=broad-exceptCODE
LOW…encti-graphql/src/python/testing/local_synchronizer.py130 except Exception as e: # pylint: disable=broad-exceptCODE
LOWdocs/docs/development/connectors.md170 except Exception as e:CODE
LOWdocs/docs/development/connectors.md195 except Exception as e:CODE
LOWdocs/docs/development/connectors.md383 except Exception as ex:CODE
LOWdocs/docs/development/connectors.md433 except Exception as ex:CODE
LOWopencti-worker/src/worker.py340 except Exception as e: # pylint: disable=broad-exceptCODE
LOWopencti-worker/src/message_queue_consumer.py88 except Exception as e:CODE
MEDIUMopencti-worker/src/message_queue_consumer.py59def consume_queue(self) -> None:CODE
LOWopencti-worker/src/listen_handler.py78 except Exception as ex:CODE
LOWopencti-worker/src/push_handler.py89 except Exception as e:CODE
LOWopencti-worker/src/push_handler.py138 except Exception as err: # pylint: disable=broad-exceptCODE
LOWopencti-worker/src/push_handler.py170 except Exception as err: # pylint: disable=broad-exceptCODE
LOWopencti-worker/src/push_handler.py262 except Exception as ex:CODE
LOWclient-python/pycti/utils/opencti_stix2.py972 except Exception:STRING
LOWclient-python/pycti/utils/opencti_stix2.py3572 except Exception as ex: # pylint: disable=broad-exceptSTRING
LOWclient-python/pycti/utils/opencti_stix2_update.py523 except Exception as err:CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py874 except Exception as err: # pylint: disable=broad-exceptCODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py882 except Exception as err: # pylint: disable=broad-exceptCODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py885 except Exception as errInException:CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py734 except Exception as e: # pylint: disable=broad-exceptCODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py743 except Exception: # pylint: disable=broad-exceptCODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py772 except Exception as e:CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py818 except Exception as e:CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py1034 except Exception as e: # pylint: disable=broad-exceptCODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py1110 except Exception as ex:CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py1480 except Exception as e:CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py1746 except Exception as ex:CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py2687 except Exception as e:CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py2733 except Exception as e:CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py2918 except Exception as err:CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py2977 except Exception as err:CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py3011 except Exception as err:CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py3041 except Exception as err:CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py3077 except Exception as err:CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py3153 except Exception as err:CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py3747 except Exception as err: # pylint: disable=broad-exceptCODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py2881 except Exception as e: # pylint: disable=broad-exceptSTRING
LOW…ent-python/pycti/connector/opencti_connector_helper.py2902 except Exception as err:STRING
LOWclient-python/pycti/api/opencti_api_work.py112 except Exception:STRING
LOWclient-python/pycti/api/opencti_api_work.py141 except Exception:STRING
LOWclient-python/pycti/api/opencti_api_work.py179 except Exception:STRING
LOWclient-python/pycti/api/opencti_api_client.py431 except Exception as e:CODE
LOWclient-python/pycti/api/opencti_api_client.py478 except Exception as e:CODE
LOWclient-python/pycti/api/opencti_api_client.py790 except Exception as e:CODE
LOWclient-python/pycti/api/opencti_api_client.py1268 except Exception:STRING
LOWclient-python/pycti/api/opencti_api_client.py813 except Exception as err: # pylint: disable=broad-exceptSTRING
Structural Annotation Overuse26 hits · 47 pts
SeverityFileLineSnippetContext
LOW…graphql/tests/03-integration/02-resolvers/user-test.ts1809 // Step 1: set policy to 0 (should clear dates)COMMENT
LOW…graphql/tests/03-integration/02-resolvers/user-test.ts1826 // Step 2: set policy to 1 (should give now+1 day)COMMENT
LOW…alyses/security_coverages/SecurityCoverageCreation.tsx517 // Step 1: Choose Type (Manual or Automated)COMMENT
LOW…alyses/security_coverages/SecurityCoverageCreation.tsx603 // Step 2: Select Entity to CoverCOMMENT
LOW…alyses/security_coverages/SecurityCoverageCreation.tsx683 // Step 3: Coverage Details FormCOMMENT
LOWdocs/docs/usage/playbook-creation.md31## Step 1: Set your event sourceCOMMENT
LOWdocs/docs/usage/playbook-creation.md37## Step 2: Build your workflow with Playbook ComponentsCOMMENT
LOWdocs/docs/usage/playbook-creation.md55## Step 3: End your playbookCOMMENT
LOWdocs/docs/usage/playbook-creation.md67## Step 4: Start your playbookCOMMENT
LOWdocs/docs/deployment/integration-manager/quick-start.md13## Step 1: Generate RSA private keyCOMMENT
LOWdocs/docs/deployment/integration-manager/quick-start.md21## Step 2: Basic configurationCOMMENT
LOWdocs/docs/deployment/integration-manager/quick-start.md59## Step 3: Choose your orchestration platformCOMMENT
LOWdocs/docs/deployment/integration-manager/quick-start.md99## Step 4: Run XTM ComposerCOMMENT
LOWdocs/docs/deployment/integration-manager/quick-start.md118## Step 5: Verify connectionCOMMENT
LOWdocs/docs/deployment/integration-manager/quick-start.md138## Step 6: Verify in OpenCTICOMMENT
LOWdocs/docs/deployment/integration-manager/migration.md19## Step 1 : Verify that the connector is compatible with the integration managerCOMMENT
LOWdocs/docs/deployment/integration-manager/migration.md26## Step 2 : Get the current configuration of the connector instanceCOMMENT
LOWdocs/docs/deployment/integration-manager/migration.md32## Step 3 : Deploy the new instanceCOMMENT
LOWdocs/docs/deployment/integration-manager/migration.md40## Step 4 : Start the new instanceCOMMENT
LOWdocs/docs/deployment/integration-manager/migration.md46## Step 5 : Delete the old instanceCOMMENT
LOW.github/agents/codebase-pattern-finder.agent.md44### Step 1: Identify Pattern TypesCOMMENT
LOW.github/agents/codebase-pattern-finder.agent.md53### Step 2: Search!COMMENT
LOW.github/agents/codebase-pattern-finder.agent.md57### Step 3: Read and ExtractCOMMENT
LOW.github/agents/codebase-analyzer.agent.md56### Step 1: Read Entry PointsCOMMENT
LOW.github/agents/codebase-analyzer.agent.md62### Step 2: Follow the Code PathCOMMENT
LOW.github/agents/codebase-analyzer.agent.md70### Step 3: Document Key LogicCOMMENT
AI Slop Vocabulary16 hits · 45 pts
SeverityFileLineSnippetContext
MEDIUM…encti-graphql/tests/01-unit/parser/json-mapper-misp.ts3946 "content": "## Executive Summary\\r\\n\\r\\n Lumen’s Black Lotus Labs has uncovered a longstanding campaCODE
MEDIUM…encti-graphql/tests/01-unit/parser/json-mapper-misp.ts3946 "content": "## Executive Summary\\r\\n\\r\\n Lumen’s Black Lotus Labs has uncovered a longstanding campaCODE
MEDIUM…encti-graphql/tests/01-unit/parser/json-mapper-misp.ts3946 "content": "## Executive Summary\\r\\n\\r\\n Lumen’s Black Lotus Labs has uncovered a longstanding campaCODE
MEDIUM…encti-graphql/tests/01-unit/parser/json-mapper-misp.ts3946 "content": "## Executive Summary\\r\\n\\r\\n Lumen’s Black Lotus Labs has uncovered a longstanding campaCODE
MEDIUM…pencti-graphql/src/python/runtime/snort/snort_dicts.py250 # be used in conjunction with each other for theCOMMENT
MEDIUMopencti-platform/opencti-graphql/src/parser/misp.json2673 "content": "## Executive Summary\r\n\r\n Lumen’s Black Lotus Labs has uncovered a longstanding campaign orchestrCODE
MEDIUMopencti-platform/opencti-graphql/src/parser/misp.json2673 "content": "## Executive Summary\r\n\r\n Lumen’s Black Lotus Labs has uncovered a longstanding campaign orchestrCODE
MEDIUMopencti-platform/opencti-graphql/src/parser/misp.json2673 "content": "## Executive Summary\r\n\r\n Lumen’s Black Lotus Labs has uncovered a longstanding campaign orchestrCODE
MEDIUMopencti-platform/opencti-graphql/src/parser/misp.json2673 "content": "## Executive Summary\r\n\r\n Lumen’s Black Lotus Labs has uncovered a longstanding campaign orchestrCODE
MEDIUMopencti-platform/opencti-graphql/src/parser/bundle.json11608 "content": "## Executive Summary\r\n\r\n Lumen\u2019s Black Lotus Labs has uncovered a longstanding campaign orcheCODE
MEDIUMopencti-platform/opencti-graphql/src/parser/bundle.json11608 "content": "## Executive Summary\r\n\r\n Lumen\u2019s Black Lotus Labs has uncovered a longstanding campaign orcheCODE
MEDIUMopencti-platform/opencti-graphql/src/parser/bundle.json11608 "content": "## Executive Summary\r\n\r\n Lumen\u2019s Black Lotus Labs has uncovered a longstanding campaign orcheCODE
MEDIUMopencti-platform/opencti-graphql/src/parser/bundle.json11608 "content": "## Executive Summary\r\n\r\n Lumen\u2019s Black Lotus Labs has uncovered a longstanding campaign orcheCODE
MEDIUM…graphql/src/modules/workflow/domain/workflow-domain.ts266 // Find existing instance via entity_id attribute directly (more robust than relationship)COMMENT
MEDIUM…form/opencti-graphql/src/domain/stixCyberObservable.js411 // Use both MIME type AND file extension for robust detection of Office Open XML filesCOMMENT
LOWclient-python/pycti/utils/opencti_stix2.py3270 # If data is stix, just use the generic stix function for deletionSTRING
Cross-Language Confusion3 hits · 18 pts
SeverityFileLineSnippetContext
HIGH…-python/examples/create_observable_x509_certificate.py29 "basic_constraints": '{"is_ca":null,"max_path_len":null}',CODE
HIGH…-python/examples/create_observable_x509_certificate.py33 "key_usage": '{"certificate_sign":null,"content_commitment":null,"crl_sign":null,"data_encipherment":null,"decipCODE
HIGHclient-python/pycti/api/opencti_api_client.py647 # If yes, transform variable (file to null) and create multipart queryCOMMENT
Verbosity Indicators11 hits · 16 pts
SeverityFileLineSnippetContext
LOW…graphql/tests/03-integration/02-resolvers/user-test.ts1809 // Step 1: set policy to 0 (should clear dates)COMMENT
LOW…graphql/tests/03-integration/02-resolvers/user-test.ts1826 // Step 2: set policy to 1 (should give now+1 day)COMMENT
LOW…ti-platform/opencti-graphql/src/database/middleware.ts2489 // If user ask for aliases modification, we need to check if it not already belong to another entity.COMMENT
LOW…-platform/opencti-graphql/src/database/file-storage.ts166 // 03. Check if metadata contains an entity_id, we need to check if the user has real access to this instanceCOMMENT
LOW…-platform/opencti-graphql/src/utils/clean-relations.js100 // For each relations of the platform we need to check if the from and the to are available.COMMENT
LOW…orm/opencti-graphql/src/manager/notificationManager.ts598 // For each event we need to check ifsCOMMENT
LOW…graphql/src/manager/playbookManager/playbookManager.ts98 // For each event we need to check ifsCOMMENT
LOW…alyses/security_coverages/SecurityCoverageCreation.tsx517 // Step 1: Choose Type (Manual or Automated)COMMENT
LOW…alyses/security_coverages/SecurityCoverageCreation.tsx603 // Step 2: Select Entity to CoverCOMMENT
LOW…alyses/security_coverages/SecurityCoverageCreation.tsx683 // Step 3: Coverage Details FormCOMMENT
LOWclient-python/pycti/utils/opencti_stix2_splitter.py113 # We need to check if this ref is not already a referenceCOMMENT
Redundant / Tautological Comments10 hits · 13 pts
SeverityFileLineSnippetContext
LOWopencti-platform/opencti-dev/docker-compose.yml77 soft: -1 # Set memlock to unlimited (no soft or hard limit)CODE
LOWopencti-worker/src/worker.py179 # Check if openCTI is availableCOMMENT
LOWopencti-worker/src/worker.py259 # Check if all queues are consumedCOMMENT
LOW.github/workflows/pr-add-labels.yml44 # Check if any new files were added in the migrations directoryCOMMENT
LOWclient-python/pycti/utils/opencti_stix2.py3692 # Check if the bundle is correctly formattedSTRING
LOW…ent-python/pycti/connector/opencti_connector_helper.py3891 # Check if item are native STIX 2 libCOMMENT
LOWclient-python/pycti/api/opencti_api_client.py341 # Check if openCTI is availableCOMMENT
LOWclient-python/pycti/api/opencti_api_client.py451 # Check if it's inline certificate content (starts with PEM header)COMMENT
LOWclient-python/pycti/api/opencti_api_client.py458 # Check if it's a file pathCOMMENT
LOWclient-python/pycti/api/opencti_api_client.py776 # Check if request was successfulCOMMENT
Cross-Language Confusion (JS/TS)1 hit · 8 pts
SeverityFileLineSnippetContext
HIGH…i-platform/opencti-graphql/src/utils/exclusionLists.ts90 // If element is present at mid, return TrueCOMMENT
Slop Phrases3 hits · 5 pts
SeverityFileLineSnippetContext
MEDIUM…modules/playbook/components/ai-agent-component-test.ts284 const agentResponse = `Sure, here you go: ${bundleJson} let me know if you need anything else.`;CODE
LOW…ql/src/modules/fintelTemplate/fintelTemplate-domain.ts41// (don't forget to check the capa if it's not done via a @auth in graphql of your function)COMMENT
LOW…ti-platform/opencti-front/src/utils/resizeObservers.ts5 * Don't forget to stop observing when not needed anymore.COMMENT
Modern AI Meta-Vocabulary2 hits · 5 pts
SeverityFileLineSnippetContext
MEDIUMdocs/docs/development/integration-manager.md144│ └── orchestrator/ # Container orchestrationCODE
MEDIUMdocs/docs/deployment/integration-manager/quick-start.md59## Step 3: Choose your orchestration platformCOMMENT
Modern Structural Boilerplate5 hits · 4 pts
SeverityFileLineSnippetContext
LOWclient-python/pycti/__init__.py106__all__ = [CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py1160 def set_heartbeat_queue(self, q: Queue) -> None:CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py1263 def set_heartbeat_queue(self, q: Queue) -> None:CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py1517 def set_heartbeat_queue(self, q: Queue) -> None:CODE
LOW…ent-python/pycti/connector/opencti_connector_helper.py2824 def set_state(self, state) -> None:STRING
Example Usage Blocks1 hit · 2 pts
SeverityFileLineSnippetContext
LOW…latform/opencti-graphql/tests/utils/XTMComposerMock.ts761// Example usageCOMMENT
TODO Padding1 hit · 2 pts
SeverityFileLineSnippetContext
LOW…encti-graphql/src/python/runtime/snort/snort_parser.py417 # TODO: implement this featureCOMMENT
AI Structural Patterns2 hits · 2 pts
SeverityFileLineSnippetContext
LOW…ent-python/pycti/connector/opencti_connector_helper.py3191CODE
LOWclient-python/pycti/api/opencti_api_client.py187CODE