Repository Analysis

github/codeql

CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security

4.2 Likely human-written View on GitHub

Analysis Overview

This report presents the forensic synthetic code analysis of github/codeql, a CodeQL project with 9,824 GitHub stars. SynthScan v2.0 examined 972,134 lines of code across 20660 source files, recording 2773 pattern matches distributed across 25 syntactic categories. The overall adjusted score of 4.2 places this repository in the Likely human-written band.

The scanner applied 160+ deterministic lexical heuristics, multi-line block detectors, abstract syntax tree depth profilers, and a cross-file Jaccard similarity matrix to construct a statistically normalised synthetic code estimate. All matches are individually weighted by severity coefficient and contextual multiplier before summation, and the resulting headline score is temporally discounted to account for the repository's development history relative to the commercial emergence of large language model coding tooling (November 2022 onward).

4.2
Adjusted Score
4.2
Raw Score
100%
Time Factor
2026-07-14
Last Push
9.8K
Stars
CodeQL
Language
972.1K
Lines of Code
20.7K
Files
2.8K
Pattern Hits
2026-07-14
Scan Date
0.01
HC Hit Rate

What These Metrics Mean

Adjusted Score
Primary synthetic code indicator. Raw score normalised per 1,000 lines of code and multiplied by the temporal discount factor. This is the definitive comparative metric — use it to rank repositories by AI authorship density.
Raw Score
The unmodified sum of all severity-weighted, context-multiplied pattern match scores before temporal discounting. Reflects the absolute signal strength independent of when the repository was last active.
Time Factor
The temporal discount multiplier (0–100%) applied to the raw score. Repositories last updated before ChatGPT's launch (Nov 2022) receive a 5% factor. Full signal is only assigned to repositories active in the post-adoption era (Jan 2024+).
Pattern Hits
Total count of individual pattern matches across all files and categories. A high hit count with a low score may indicate a very large codebase with isolated AI snippets; a low count with a high score indicates dense, concentrated AI signatures.
HC Hit Rate
High+Critical pattern hits per file, averaged across the repository. This orthogonal signal catches repositories where a few files are densely packed with high-severity AI tells — a strong indicator even when the normalised score appears moderate due to codebase size.
Lines of Code / Files
Total lines and files analysed. The scanner examines 94 file extensions. These denominators are used to normalise the score, enabling fair comparison between repositories of vastly different sizes.

Score History

This chart maps the temporal evolution of the adjusted synthetic code score across successive scan runs. An upward trajectory indicates ongoing incorporation of AI-generated code or expanding LLM-assisted scaffolding; a stable or declining trajectory may reflect active human refactoring, code removal, or the adoption of stricter authorship policies. The dashed secondary line (right axis) independently tracks total raw pattern hit count, which can diverge from the normalised score when codebase size changes significantly between scans.

Severity Breakdown

Classifies detected patterns by their diagnostic confidence and structural impact. CRITICAL patterns (coefficient 10) represent definitive synthetic signatures — hallucinated imports, explicit LLM attribution metadata — virtually never produced by human authors. HIGH (5) indicates strong structural tells such as cross-file repetition or cross-linguistic idioms. MEDIUM (2) covers recognisable conversational padding and AI-specific vocabulary. LOW (1) captures subtle indicators like tautological comments and generic boilerplate that require density to carry independent signal.

CRITICAL 30HIGH 97MEDIUM 309LOW 2337

Directory Score Breakdown

This horizontal bar chart decomposes the repository's raw synthetic code score by top-level directory, allowing you to pinpoint precisely which modules or components carry the highest AI authorship density. Directories with disproportionately high scores relative to their size warrant targeted manual review: concentrated AI signatures often trace back to mass-generated configuration layers, auto-ported test suites, LLM-scaffolded boilerplate classes, or entire subsystems authored under heavy copilot assistance. Use this view to prioritise your human code-review effort.

Pattern Findings

The scanner identified 2773 distinct pattern matches across 25 syntactic categories. Each entry below represents a discrete location in the source code where the engine recorded a statistically significant AI authorship indicator. Expand any category row to inspect the individual file paths, line numbers, code snippets, and the lexical context (CODE, COMMENT, or STRING) in which each match was detected.

Reading the findings table: The Severity column indicates the diagnostic confidence level (CRITICAL / HIGH / MEDIUM / LOW). The Context column identifies whether the match occurred inside executable code, an inline comment, or a string literal — comment-context matches receive a ×1.5 weight because LLMs systematically over-annotate. The ⚡ bolt icon marks clustered matches: three or more patterns within a 10-line window, each receiving an additional ×1.5 density multiplier as dense clusters constitute far stronger evidence of synthetic authorship than isolated hits.

Unused Imports752 hits · 748 pts
SeverityFileLineSnippetContext
LOWmisc/codegen/test/test_qlgen.py9CODE
LOWmisc/codegen/test/test_trapgen.py5CODE
LOWmisc/codegen/test/test_cppgen.py5CODE
LOWmisc/codegen/test/test_ql.py5CODE
LOWmisc/codegen/test/test_dbschemelaoder.py6CODE
LOWmisc/codegen/test/test_dbscheme.py5CODE
LOWmisc/codegen/test/test_schemaloader.py6CODE
LOWmisc/codegen/test/test_render.py5CODE
LOWmisc/codegen/test/test_dbschemegen.py6CODE
LOWmisc/codegen/lib/ql.py18CODE
LOWmisc/codegen/lib/dbscheme.py5CODE
LOWmisc/codegen/lib/schema.py7CODE
LOWmisc/codegen/lib/schema.py7CODE
LOWmisc/codegen/generators/__init__.py1CODE
LOWmisc/codegen/generators/__init__.py1CODE
LOWmisc/codegen/generators/__init__.py1CODE
LOWmisc/codegen/generators/__init__.py1CODE
LOWmisc/codegen/generators/__init__.py1CODE
LOWmisc/codegen/generators/__init__.py1CODE
LOWmisc/codegen/generators/rusttestgen.py3CODE
LOWmisc/codegen/generators/qlgen.py31CODE
LOWmisc/codegen/generators/rustgen.py5CODE
LOWmisc/codegen/generators/dbschemegen.py23CODE
LOWmisc/codegen/loaders/schemaloader.py13CODE
LOWmisc/scripts/patch_query_history.py14CODE
LOWmisc/scripts/stageoverlap.py4CODE
LOWmisc/scripts/models-as-data/convert_extensions.py5CODE
LOWmisc/scripts/models-as-data/convert_extensions.py7CODE
LOWgo/gen.py15CODE
LOWgo/ql/integration-tests/root-internal-tests/test.py1CODE
LOWgo/ql/integration-tests/traced-extraction/test.py1CODE
LOWgo/ql/integration-tests/query-suite/test.py3CODE
LOW…nostics/build-constraints-exclude-all-go-files/test.py2CODE
LOWgo/ql/integration-tests/test-extraction/test.py1CODE
LOW…ols/recorded-call-graph-metrics/src/cg_trace/tracer.py7CODE
LOWpython/extractor/setup.py10CODE
LOWpython/extractor/imp.py10CODE
LOWpython/extractor/imp.py10CODE
LOWpython/extractor/imp.py10CODE
LOWpython/extractor/imp.py10CODE
LOWpython/extractor/imp.py10CODE
LOWpython/extractor/imp.py10CODE
LOWpython/extractor/buildtools/index.py14CODE
LOW…integration-test/python-2-deprecation/repo_dir/test.py3CODE
LOW…integration-test/python-2-deprecation/repo_dir/test.py5CODE
LOW…ration-test/disable-library-extraction/repo_dir/foo.py1CODE
LOW…actor/cli-integration-test/ignore-venv/repo_dir/foo.py1CODE
LOW…hon/extractor/tokenizer_generator/gen_state_machine.py25CODE
LOWpython/extractor/lark/load_grammar.py5CODE
LOWpython/extractor/lark/load_grammar.py6CODE
LOWpython/extractor/lark/lark.py1CODE
LOWpython/extractor/lark/__init__.py1CODE
LOWpython/extractor/lark/__init__.py2CODE
LOWpython/extractor/lark/__init__.py2CODE
LOWpython/extractor/lark/__init__.py2CODE
LOWpython/extractor/lark/__init__.py2CODE
LOWpython/extractor/lark/__init__.py3CODE
LOWpython/extractor/lark/__init__.py3CODE
LOWpython/extractor/lark/__init__.py4CODE
LOWpython/extractor/lark/__init__.py4CODE
692 more matches not shown…
Decorative Section Separators210 hits · 646 pts
SeverityFileLineSnippetContext
MEDIUMpython/extractor/lark/load_grammar.py459 # =================COMMENT
MEDIUMpython/extractor/lark/load_grammar.py461 # =================COMMENT
MEDIUMpython/extractor/lark/load_grammar.py475 # =================COMMENT
MEDIUMpython/extractor/lark/load_grammar.py477 # =================COMMENT
MEDIUM…ry-tests/Security/CWE-326-WeakCryptoKey/weak_crypto.py79# ------------------------------------------------------------------------------COMMENT
MEDIUM…l/library-tests/CallGraph/code/callable_as_argument.py1# ==============================================================================COMMENT
MEDIUM…l/library-tests/CallGraph/code/callable_as_argument.py3# ==============================================================================COMMENT
MEDIUM…l/library-tests/CallGraph/code/callable_as_argument.py24# ==============================================================================COMMENT
MEDIUM…l/library-tests/CallGraph/code/callable_as_argument.py26# ==============================================================================COMMENT
MEDIUM…ental/library-tests/CallGraph/code/funky_regression.py18# ==============================================================================COMMENT
MEDIUM…ental/library-tests/CallGraph/code/funky_regression.py20# ==============================================================================COMMENT
MEDIUM…erimental/library-tests/CallGraph/code/nested_class.py19# ==============================================================================COMMENT
MEDIUM…erimental/library-tests/CallGraph/code/nested_class.py45# ==============================================================================COMMENT
MEDIUM…tal/library-tests/CallGraph/code/class_construction.py67# ------------------------------------------------------------------------------COMMENT
MEDIUM…ental/library-tests/CallGraph/code/runtime_decision.py29# ==============================================================================COMMENT
MEDIUM…imental/library-tests/CallGraph/code/class_subclass.py80# ------------------------------------------------------------------------------COMMENT
MEDIUM…imental/library-tests/CallGraph/code/class_subclass.py82# ------------------------------------------------------------------------------COMMENT
MEDIUM…est/library-tests/dataflow/callgraph_crosstalk/test.py4# ------------------------------------------------------------------------------COMMENT
MEDIUM…est/library-tests/dataflow/callgraph_crosstalk/test.py6# ------------------------------------------------------------------------------COMMENT
MEDIUM…est/library-tests/dataflow/callgraph_crosstalk/test.py53# ------------------------------------------------------------------------------COMMENT
MEDIUM…est/library-tests/dataflow/callgraph_crosstalk/test.py55# ------------------------------------------------------------------------------COMMENT
MEDIUM…/ql/test/library-tests/dataflow/sensitive-data/test.py91# ------------------------------------------------------------------------------COMMENT
MEDIUM…/ql/test/library-tests/dataflow/sensitive-data/test.py93# ------------------------------------------------------------------------------COMMENT
MEDIUM…/ql/test/library-tests/dataflow/sensitive-data/test.py125# ------------------------------------------------------------------------------COMMENT
MEDIUM…/ql/test/library-tests/dataflow/sensitive-data/test.py127# ------------------------------------------------------------------------------COMMENT
MEDIUM…on/ql/test/library-tests/dataflow/typetracking/test.py81# ------------------------------------------------------------------------------COMMENT
MEDIUM…on/ql/test/library-tests/dataflow/typetracking/test.py83# ------------------------------------------------------------------------------COMMENT
MEDIUM…on/ql/test/library-tests/dataflow/typetracking/test.py110# ------------------------------------------------------------------------------COMMENT
MEDIUM…on/ql/test/library-tests/dataflow/typetracking/test.py124# ------------------------------------------------------------------------------COMMENT
MEDIUM…on/ql/test/library-tests/dataflow/typetracking/test.py126# ------------------------------------------------------------------------------COMMENT
MEDIUM…on/ql/test/library-tests/dataflow/typetracking/test.py156# ------------------------------------------------------------------------------COMMENT
MEDIUM…on/ql/test/library-tests/dataflow/typetracking/test.py158# ------------------------------------------------------------------------------COMMENT
MEDIUM…on/ql/test/library-tests/dataflow/typetracking/test.py175# ------------------------------------------------------------------------------COMMENT
MEDIUM…on/ql/test/library-tests/dataflow/typetracking/test.py177# ------------------------------------------------------------------------------COMMENT
MEDIUM…on/ql/test/library-tests/dataflow/typetracking/test.py199# ------------------------------------------------------------------------------COMMENT
MEDIUM…on/ql/test/library-tests/dataflow/typetracking/test.py201# ------------------------------------------------------------------------------COMMENT
MEDIUM…library-tests/dataflow/typetracking/attribute_tests.py70# ------------------------------------------------------------------------------COMMENT
MEDIUM…library-tests/dataflow/typetracking/attribute_tests.py72# ------------------------------------------------------------------------------COMMENT
MEDIUM…library-tests/dataflow/typetracking/attribute_tests.py81# ------------------------------------------------------------------------------COMMENT
MEDIUM…library-tests/dataflow/typetracking/attribute_tests.py83# ------------------------------------------------------------------------------COMMENT
MEDIUM…library-tests/dataflow/typetracking/attribute_tests.py142# ------------------------------------------------------------------------------COMMENT
MEDIUM…library-tests/dataflow/typetracking/attribute_tests.py144# ------------------------------------------------------------------------------COMMENT
MEDIUM…library-tests/dataflow/typetracking/attribute_tests.py182# ------------------------------------------------------------------------------COMMENT
MEDIUM…library-tests/dataflow/typetracking/attribute_tests.py184# ------------------------------------------------------------------------------COMMENT
MEDIUMpython/ql/test/library-tests/dataflow/fieldflow/test.py181# ------------------------------------------------------------------------------COMMENT
MEDIUMpython/ql/test/library-tests/dataflow/fieldflow/test.py183# ------------------------------------------------------------------------------COMMENT
MEDIUMpython/ql/test/library-tests/dataflow/fieldflow/test.py207# ------------------------------------------------------------------------------COMMENT
MEDIUMpython/ql/test/library-tests/dataflow/fieldflow/test.py209# ------------------------------------------------------------------------------COMMENT
MEDIUMpython/ql/test/library-tests/dataflow/fieldflow/test.py552# ------------------------------------------------------------------------------COMMENT
MEDIUMpython/ql/test/library-tests/dataflow/fieldflow/test.py554# ------------------------------------------------------------------------------COMMENT
MEDIUMpython/ql/test/library-tests/dataflow/fieldflow/test.py556# --------------------------------------COMMENT
MEDIUMpython/ql/test/library-tests/dataflow/fieldflow/test.py558# --------------------------------------COMMENT
MEDIUMpython/ql/test/library-tests/dataflow/fieldflow/test.py605# --------------------------------------COMMENT
MEDIUMpython/ql/test/library-tests/dataflow/fieldflow/test.py607# --------------------------------------COMMENT
MEDIUMpython/ql/test/library-tests/dataflow/fieldflow/test.py40# ------------------------------------------------------------------------------COMMENT
MEDIUMpython/ql/test/library-tests/dataflow/fieldflow/test.py42# ------------------------------------------------------------------------------COMMENT
MEDIUMpython/ql/test/library-tests/dataflow/fieldflow/test.py240# ------------------------------------------------------------------------------COMMENT
MEDIUMpython/ql/test/library-tests/dataflow/fieldflow/test.py242# ------------------------------------------------------------------------------COMMENT
MEDIUMpython/ql/test/library-tests/dataflow/fieldflow/test.py323# --------------------------------------COMMENT
MEDIUMpython/ql/test/library-tests/dataflow/fieldflow/test.py325# --------------------------------------COMMENT
150 more matches not shown…
Over-Commented Block583 hits · 582 pts
SeverityFileLineSnippetContext
LOWmisc/codegen/requirements_lock.txt1#COMMENT
LOWmisc/bazel/internal/zipmerge/zipmerge.cpp21#include <stdbool.h>COMMENT
LOWmisc/bazel/3rdparty/patch_defs.py1import sysCOMMENT
LOWmisc/scripts/create-change-note.py1#!/usr/bin/env python3COMMENT
LOWgo/extractor/extractor.go221COMMENT
LOWgo/extractor/extractor.go301COMMENT
LOWgo/extractor/util/semver.go41func (ver semVer) String() string {COMMENT
LOWgo/extractor/project/project.go461 for _, component := range components {COMMENT
LOWgo/extractor/autobuilder/build-environment.go221// We never return a version of Go that is outside of the supported range.COMMENT
LOWgo/ql/test/query-tests/Security/CWE-798/jwt.go1package mainCOMMENT
LOWgo/ql/test/query-tests/Security/CWE-643/tst.go1package mainCOMMENT
LOWgo/ql/test/experimental/CWE-942/CorsMisconfiguration.go181 // // OK-ish: the input origin header is validated against a whitelist.COMMENT
LOW…l/test/experimental/CWE-522-DecompressionBombs/test.go1package mainCOMMENT
LOWgo/ql/test/library-tests/semmle/go/Types/cyclic.go21// type w struct {COMMENT
LOW…works/Revel/examples/booking/app/controllers/hotels.go1//go:generate swagger generate spec -o swagger.jsonCOMMENT
LOW…works/Revel/examples/booking/app/controllers/hotels.go61//COMMENT
LOW…works/Revel/examples/booking/app/controllers/hotels.go81// - text/htmlCOMMENT
LOW…/semmle/go/frameworks/Twirp/rpc/notes/service.twirp.go801}COMMENT
LOW…/semmle/go/frameworks/Twirp/rpc/notes/service.twirp.go821// service. Those accessors are a low-level API for building reflection tools.COMMENT
LOWgo/ql/integration-tests/dep-sample/work/Gopkg.toml1# Gopkg.toml exampleCOMMENT
LOW…tion-tests/diagnostics/no-go-files-found/work/test.txt1// The "Go files were found but not processed" diagnostic should not be emitted because there are no go filesCOMMENT
LOWgo/ql/lib/ext/mime.multipart.model.yml1extensions:COMMENT
LOW…l-graph-metrics/src/cg_trace/bytecode_reconstructor.py201 obj_expr = expr_that_added_elem_to_stack(instructions, index - 1, 0)COMMENT
LOWpython/extractor/tsg-python/tsp/bindings/rust/lib.rs1// -*- coding: utf-8 -*-COMMENT
LOWpython/extractor/tsg-python/tsp/bindings/rust/lib.rs21//! let parsed = parser.parse(code, None);COMMENT
LOW…thon/extractor/tsg-python/tsp/src/tree_sitter/parser.h1#ifndef TREE_SITTER_PARSER_H_COMMENT
LOWpython/extractor/tsg-python/tsp/src/tree_sitter/array.h1#ifndef TREE_SITTER_ARRAY_H_COMMENT
LOWpython/extractor/tsg-python/tsp/src/tree_sitter/array.h141 (other)->contents = _array_swap_tmp; \COMMENT
LOWpython/extractor/tsg-python/tsp/src/tree_sitter/array.h161/// of a given struct field (specified with a leading dot) to determine the order.COMMENT
LOWpython/extractor/tsg-python/tsp/src/tree_sitter/array.h321#pragma warning(pop)COMMENT
LOWpython/extractor/tsg-python/tsp/src/tree_sitter/alloc.h21#define ts_malloc ts_current_mallocCOMMENT
LOWpython/extractor/tsg-python/tsp/src/tree_sitter/alloc.h41#ifndef ts_reallocCOMMENT
LOWpython/extractor/buildtools/index.py221 # `site-packages` as a subfolder.COMMENT
LOWpython/extractor/buildtools/index.py341 options += exclude_venvs_options()COMMENT
LOWpython/extractor/buildtools/index.py361COMMENT
LOWpython/extractor/lark/lark.py221 def parse(self, text):COMMENT
LOWpython/extractor/lark/parsers/xearley.py1"This module implements an experimental Earley Parser with a dynamic lexer"COMMENT
LOWpython/extractor/lark/parsers/earley.py1"This module implements an Earley Parser"COMMENT
LOWpython/extractor/lark/tools/standalone.py1# This file used to contain the Lark standalone tool.COMMENT
LOWpython/extractor/tests/test_parser.py61 pyfile = os.path.join(self.test_folder, filename)COMMENT
LOWpython/extractor/tests/tokenizer/utf8.py1# Some abitrary prefix with no space beforecoding: utf-8 -*-COMMENT
LOWpython/extractor/tests/parser/just_comments.py1# This is a commentCOMMENT
LOWpython/extractor/semmle/python/passes/labeller.py81 if isinstance(outer.scope, ast.Class):COMMENT
LOWpython/extractor/semmle/python/parser/tokenizer.py261#8 = CharacterClass 8 ['#']COMMENT
LOWpython/extractor/semmle/python/parser/tokenizer.py281#28 = CharacterClass 28 ['>']COMMENT
LOWpython/extractor/blib2to3/Grammar.txt21COMMENT
LOWpython/extractor/blib2to3/Grammar.txt41 [',' ['**' tname [',']]] | '**' tname [','])COMMENT
LOWpython/extractor/blib2to3/Grammar.txt201# This was an issue because the parser would not follow the correct derivationCOMMENT
LOW…ql/test/query-tests/Lexical/commented_out_code/test.py21#class CommentedOut:COMMENT
LOW…ql/test/query-tests/Lexical/commented_out_code/test.py41# '''Doc stringCOMMENT
LOW…ql/test/query-tests/Lexical/commented_out_code/test.py61# """COMMENT
LOW…ql/test/query-tests/Lexical/commented_out_code/test.py81# call()COMMENT
LOW…s/Security/CWE-113-HeaderInjection/Tests1/http_test.py21# httpd = HTTPServer(("127.0.0.1", 8080), VulnerableHandler)COMMENT
LOW…on/ql/test/query-tests/Security/CWE-730-ReDoS/redos.py1import reCOMMENT
LOW…l/test/query-tests/Security/CWE-730-ReDoS/KnownCVEs.py41COMMENT
LOW…y-tests/Security/CWE-089-SqlInjection/sql_injection.py21 cursor.execute("SELECT * FROM users WHERE username = '%s'" % username) # $ AlertCOMMENT
LOW…/CWE-918-ServerSideRequestForgery/full_partial_test.py21 # NOT OK -- user has full controlCOMMENT
LOW…l/query-tests/Security/CWE-079/smtplib_bad_subparts.py41# if __name__ == "__main__":COMMENT
LOW…ql/test/library-tests/dataflow/coverage-py2/classes.py1# Python 2 specific tests, like the one in coverage/classes.pyCOMMENT
LOW…ql/test/library-tests/dataflow/coverage-py3/classes.py1# Python 3 specific tests, like the one in coverage/classes.pyCOMMENT
523 more matches not shown…
Hyper-Verbose Identifiers563 hits · 563 pts
SeverityFileLineSnippetContext
LOWmisc/pytest/lib/query_suites.py17def check_queries_not_included(codeql, cwd, expected_files, semmle_code_dir):CODE
LOWmisc/codegen/test/test_qlgen.py90def generate_children_implementations(generate):CODE
LOWmisc/codegen/test/test_qlgen.py99def _filter_generated_classes(ret, output_test_files=False):CODE
LOWmisc/codegen/test/test_qlgen.py199def test_one_empty_internal_class(generate_classes):CODE
LOWmisc/codegen/test/test_qlgen.py278def test_internal_not_in_import_list(generate_import_list):CODE
LOWmisc/codegen/test/test_qlgen.py685def test_repeated_unordered_property(generate_classes):CODE
LOWmisc/codegen/test/test_qlgen.py725def test_repeated_optional_property(generate_classes):CODE
LOWmisc/codegen/test/test_qlgen.py794def test_single_class_property(generate_classes):CODE
LOWmisc/codegen/test/test_qlgen.py884def test_root_element_cannot_have_children(generate_classes):CODE
LOWmisc/codegen/test/test_qlgen.py952def test_format_no_codeql_in_path(opts, generate, render_manager, run_mock):CODE
LOWmisc/codegen/test/test_qlgen.py989def test_modified_stub_skipped(qlgen_opts, generate, render_manager):CODE
LOWmisc/codegen/test/test_qlgen.py1020def test_test_source_present_with_dir(opts, generate_tests):CODE
LOWmisc/codegen/test/test_qlgen.py1031def test_test_total_properties(opts, generate_tests):CODE
LOWmisc/codegen/test/test_qlgen.py1061def test_test_partial_properties(opts, generate_tests):CODE
LOWmisc/codegen/test/test_qlgen.py1099def test_test_properties_deduplicated(opts, generate_tests):CODE
LOWmisc/codegen/test/test_qlgen.py1128def test_test_properties_skipped(opts, generate_tests):CODE
LOWmisc/codegen/test/test_qlgen.py1158def test_test_base_class_skipped(opts, generate_tests):CODE
LOWmisc/codegen/test/test_qlgen.py1178def test_test_final_class_skipped(opts, generate_tests):CODE
LOWmisc/codegen/test/test_qlgen.py1199def test_test_class_hierarchy_collapse(opts, generate_tests):CODE
LOWmisc/codegen/test/test_qlgen.py1226def test_test_class_hierarchy_uncollapse(opts, generate_tests):CODE
LOWmisc/codegen/test/test_qlgen.py1255def test_test_class_hierarchy_uncollapse_at_final(opts, generate_tests):CODE
LOWmisc/codegen/test/test_qlgen.py1293def test_property_description(generate_classes):CODE
LOWmisc/codegen/test/test_qlgen.py1327def test_property_doc_override(generate_classes):CODE
LOWmisc/codegen/test/test_qlgen.py1356def test_repeated_property_doc_override(generate_classes):CODE
LOWmisc/codegen/test/test_qlgen.py1402def test_property_doc_abbreviations(generate_classes, abbr, expected):CODE
LOWmisc/codegen/test/test_qlgen.py1433def test_property_doc_abbreviations_ignored_if_within_word(CODE
LOWmisc/codegen/test/test_qlgen.py1466def test_repeated_property_doc_override_with_format(generate_classes):CODE
LOWmisc/codegen/test/test_qlgen.py1515def test_repeated_property_doc_override_with_multiple_formats(generate_classes):CODE
LOWmisc/codegen/test/test_qlgen.py1560def test_property_doc_override_with_format(generate_classes):CODE
LOWmisc/codegen/test/test_qlgen.py1592def test_property_on_class_with_default_doc_name(generate_classes):CODE
LOWmisc/codegen/test/test_qlgen.py1623def test_stub_on_class_with_synth_from_class(generate_classes):CODE
LOWmisc/codegen/test/test_qlgen.py1662def test_stub_on_class_with_synth_on_arguments(generate_classes):CODE
LOWmisc/codegen/test/test_qlgen.py1811def test_property_with_custom_db_table_name(generate_classes):CODE
LOWmisc/codegen/test/test_cpp.py68def test_trap_has_first_field_marked():CODE
LOWmisc/codegen/test/test_cpp.py80def test_tag_has_first_base_marked():CODE
LOWmisc/codegen/test/test_cpp.py95def test_class_has_first_base_marked():CODE
LOWmisc/codegen/test/test_trapgen.py72def test_one_empty_table_rejected(generate_traps):CODE
LOWmisc/codegen/test/test_trapgen.py118def test_one_table_with_two_binding_first_is_id(generate_traps):CODE
LOWmisc/codegen/test/test_trapgen.py150def test_one_table_special_types(generate_traps, column, field):CODE
LOWmisc/codegen/test/test_trapgen.py164def test_one_table_overridden_unsigned_field(generate_traps, name):CODE
LOWmisc/codegen/test/test_trapgen.py174def test_one_table_overridden_underscore_named_field(generate_traps):CODE
LOWmisc/codegen/test/test_cppgen.py109def test_class_field_with_null(generate, input):CODE
LOWmisc/codegen/test/test_cppgen.py139def test_class_with_predicate(generate):CODE
LOWmisc/codegen/test/test_cppgen.py168def test_class_with_overridden_unsigned_field(generate, name):CODE
LOWmisc/codegen/test/test_cppgen.py185def test_class_with_overridden_underscore_field(generate):CODE
LOWmisc/codegen/test/test_cppgen.py203def test_class_with_keyword_field(generate, name):CODE
LOWmisc/codegen/test/test_cppgen.py261def test_synth_classes_ignored(generate):CODE
LOWmisc/codegen/test/test_cppgen.py287def test_synth_properties_ignored(generate):CODE
LOWmisc/codegen/test/test_cppgen.py316def test_properties_with_custom_db_table_names(generate):CODE
LOWmisc/codegen/test/test_ql.py8def test_property_has_first_table_param_marked():CODE
LOWmisc/codegen/test/test_ql.py26def test_property_indefinite_article(name, expected_getter):CODE
LOWmisc/codegen/test/test_ql.py32def test_property_unordered_getter(name, expected_getter):CODE
LOWmisc/codegen/test/test_ql.py45def test_property_is_repeated(plural, expected):CODE
LOWmisc/codegen/test/test_ql.py89def test_property_no_plural_no_indefinite_getter():CODE
LOWmisc/codegen/test/test_ql.py99def test_property_predicate_getter():CODE
LOWmisc/codegen/test/test_ql.py104def test_class_processes_bases():CODE
LOWmisc/codegen/test/test_ql.py116def test_class_has_first_property_marked():CODE
LOWmisc/codegen/test/test_ql.py160def test_synth_accessor_has_first_constructor_param_marked():CODE
LOWmisc/codegen/test/test_dbschemelaoder.py24def test_load_one_empty_table(load):CODE
LOWmisc/codegen/test/test_dbschemelaoder.py35def test_load_table_with_keyset(load):CODE
503 more matches not shown…
Cross-File Repetition79 hits · 395 pts
SeverityFileLineSnippetContext
HIGHpython/extractor/semmle/graph.py0a simple directed graph class (not necessarily a dag). nodes must be hashableSTRING
HIGHpython/ql/test/query-tests/analysis/pointsto/test.py0a simple directed graph class (not necessarily a dag). nodes must be hashableSTRING
HIGH…n/ql/test/library-tests/ControlFlow/successors/test.py0a simple directed graph class (not necessarily a dag). nodes must be hashableSTRING
HIGHpython/extractor/semmle/graph.py0add an edge (x -> y) to the graph. return true if x, y was previously in graphSTRING
HIGHpython/ql/test/query-tests/analysis/pointsto/test.py0add an edge (x -> y) to the graph. return true if x, y was previously in graphSTRING
HIGH…n/ql/test/library-tests/ControlFlow/successors/test.py0add an edge (x -> y) to the graph. return true if x, y was previously in graphSTRING
HIGHpython/extractor/semmle/graph.py0return an iterator for all nodes, in the form (node, note) pairs. do not modify the graph while using this iteratorSTRING
HIGHpython/ql/test/query-tests/analysis/pointsto/test.py0return an iterator for all nodes, in the form (node, note) pairs. do not modify the graph while using this iteratorSTRING
HIGH…n/ql/test/library-tests/ControlFlow/successors/test.py0return an iterator for all nodes, in the form (node, note) pairs. do not modify the graph while using this iteratorSTRING
HIGHpython/extractor/semmle/graph.py0return an iterator for all edges, in the form of (pred, succ, note) triple. do not modify the graph while using this iteSTRING
HIGHpython/ql/test/query-tests/analysis/pointsto/test.py0return an iterator for all edges, in the form of (pred, succ, note) triple. do not modify the graph while using this iteSTRING
HIGH…n/ql/test/library-tests/ControlFlow/successors/test.py0return an iterator for all edges, in the form of (pred, succ, note) triple. do not modify the graph while using this iteSTRING
HIGHpython/extractor/semmle/graph.py0return an iterator for all nodes with no predecessors. do not modify the graph while using this iteratorSTRING
HIGHpython/ql/test/query-tests/analysis/pointsto/test.py0return an iterator for all nodes with no predecessors. do not modify the graph while using this iteratorSTRING
HIGH…n/ql/test/library-tests/ControlFlow/successors/test.py0return an iterator for all nodes with no predecessors. do not modify the graph while using this iteratorSTRING
HIGHpython/extractor/semmle/graph.py0a digraph that supports the concept of definitions and variables. used to compute dominance and ssa form. for more explaSTRING
HIGHpython/ql/test/query-tests/analysis/pointsto/test.py0a digraph that supports the concept of definitions and variables. used to compute dominance and ssa form. for more explaSTRING
HIGH…n/ql/test/library-tests/ControlFlow/successors/test.py0a digraph that supports the concept of definitions and variables. used to compute dominance and ssa form. for more explaSTRING
HIGHpython/extractor/semmle/graph.py0ensures that 'what' has been computed (computing if needed).STRING
HIGHpython/ql/test/query-tests/analysis/pointsto/test.py0ensures that 'what' has been computed (computing if needed).STRING
HIGH…n/ql/test/library-tests/ControlFlow/successors/test.py0ensures that 'what' has been computed (computing if needed).STRING
HIGHpython/extractor/semmle/graph.py0returns an iterable of node pairs: node, idom(node)STRING
HIGHpython/ql/test/query-tests/analysis/pointsto/test.py0returns an iterable of node pairs: node, idom(node)STRING
HIGH…n/ql/test/library-tests/ControlFlow/successors/test.py0returns an iterable of node pairs: node, idom(node)STRING
HIGHpython/extractor/semmle/graph.py0compute the dominance frontier: df[n] = df_local[n] union over c in children df_up[c]STRING
HIGHpython/ql/test/query-tests/analysis/pointsto/test.py0compute the dominance frontier: df[n] = df_local[n] union over c in children df_up[c]STRING
HIGH…n/ql/test/library-tests/ControlFlow/successors/test.py0compute the dominance frontier: df[n] = df_local[n] union over c in children df_up[c]STRING
HIGHpython/extractor/semmle/graph.py0compute the phi nodes for this graph. a minimal set of phi-nodes are computed; no phi-nodes are added unless the variablSTRING
HIGHpython/ql/test/query-tests/analysis/pointsto/test.py0compute the phi nodes for this graph. a minimal set of phi-nodes are computed; no phi-nodes are added unless the variablSTRING
HIGH…n/ql/test/library-tests/ControlFlow/successors/test.py0compute the phi nodes for this graph. a minimal set of phi-nodes are computed; no phi-nodes are added unless the variablSTRING
HIGHpython/extractor/semmle/graph.py0compute the ssa variables, definitions, uses and phi-inputs.STRING
HIGHpython/ql/test/query-tests/analysis/pointsto/test.py0compute the ssa variables, definitions, uses and phi-inputs.STRING
HIGH…n/ql/test/library-tests/ControlFlow/successors/test.py0compute the ssa variables, definitions, uses and phi-inputs.STRING
HIGHpython/extractor/semmle/graph.py0ensure that there is no more than one ssa variable for each (variable, node) pair.STRING
HIGHpython/ql/test/query-tests/analysis/pointsto/test.py0ensure that there is no more than one ssa variable for each (variable, node) pair.STRING
HIGH…n/ql/test/library-tests/ControlFlow/successors/test.py0ensure that there is no more than one ssa variable for each (variable, node) pair.STRING
HIGHpython/extractor/semmle/graph.py0returns all the ssa definition as an iterator of (node, variable) pairs.STRING
HIGHpython/ql/test/query-tests/analysis/pointsto/test.py0returns all the ssa definition as an iterator of (node, variable) pairs.STRING
HIGH…n/ql/test/library-tests/ControlFlow/successors/test.py0returns all the ssa definition as an iterator of (node, variable) pairs.STRING
HIGHpython/extractor/semmle/graph.py0returns the definition node of var. returns none if there is no definition.STRING
HIGHpython/ql/test/query-tests/analysis/pointsto/test.py0returns the definition node of var. returns none if there is no definition.STRING
HIGH…n/ql/test/library-tests/ControlFlow/successors/test.py0returns the definition node of var. returns none if there is no definition.STRING
HIGHpython/extractor/semmle/graph.py0returns all the ssa uses as an iterator of (node, variable) pairs.STRING
HIGHpython/ql/test/query-tests/analysis/pointsto/test.py0returns all the ssa uses as an iterator of (node, variable) pairs.STRING
HIGH…n/ql/test/library-tests/ControlFlow/successors/test.py0returns all the ssa uses as an iterator of (node, variable) pairs.STRING
HIGHpython/extractor/semmle/graph.py0return all ssa phi inputs as an iterator of (variable, input-variable) pairs.STRING
HIGHpython/ql/test/query-tests/analysis/pointsto/test.py0return all ssa phi inputs as an iterator of (variable, input-variable) pairs.STRING
HIGH…n/ql/test/library-tests/ControlFlow/successors/test.py0return all ssa phi inputs as an iterator of (variable, input-variable) pairs.STRING
HIGHpython/extractor/semmle/graph.py0compute all flow nodes that are the first node in a basic block.STRING
HIGHpython/ql/test/query-tests/analysis/pointsto/test.py0compute all flow nodes that are the first node in a basic block.STRING
HIGH…n/ql/test/library-tests/ControlFlow/successors/test.py0compute all flow nodes that are the first node in a basic block.STRING
HIGHpython/extractor/semmle/graph.py0return an iterator over all node in basic block 'bb.STRING
HIGHpython/ql/test/query-tests/analysis/pointsto/test.py0return an iterator over all node in basic block 'bb.STRING
HIGH…n/ql/test/library-tests/ControlFlow/successors/test.py0return an iterator over all node in basic block 'bb.STRING
HIGHpython/extractor/semmle/graph.py0compute which variables have been defined. a variable is defined at node n, if there is a path to n which passes throughSTRING
HIGHpython/ql/test/query-tests/analysis/pointsto/test.py0compute which variables have been defined. a variable is defined at node n, if there is a path to n which passes throughSTRING
HIGH…n/ql/test/library-tests/ControlFlow/successors/test.py0compute which variables have been defined. a variable is defined at node n, if there is a path to n which passes throughSTRING
HIGHpython/extractor/semmle/graph.py0compute liveness of all variables in this flow-graph. return a mapping of basic blocks to the set of variables that are STRING
HIGHpython/ql/test/query-tests/analysis/pointsto/test.py0compute liveness of all variables in this flow-graph. return a mapping of basic blocks to the set of variables that are STRING
HIGH…n/ql/test/library-tests/ControlFlow/successors/test.py0compute liveness of all variables in this flow-graph. return a mapping of basic blocks to the set of variables that are STRING
19 more matches not shown…
Hallucination Indicators30 hits · 355 pts
SeverityFileLineSnippetContext
CRITICAL…ibrary-tests/frameworks/django-v2-v3/FileField_test.py23 upload_2 = django.db.models.fields.files.FileField(upload_to=custom_path_function_2)CODE
CRITICAL…ts/frameworks/django-orm/testapp/orm_security_tests.py84from django.core.exceptions import ValidationErrorCODE
CRITICAL…s/v_1_8_0/getJvmModuleNameForDeserializedDescriptor.kt7 return org.jetbrains.kotlin.load.kotlin.getJvmModuleNameForDeserializedDescriptor(descriptor)CODE
CRITICAL…mmle/tests/TempDirLocalInformationDisclosure/Test.java97 File tempDir = com.google.common.io.Files.createTempDir(); // $ AlertCODE
CRITICAL…CleartextStorageCookie/CleartextStorageCookieTest.java29 new io.netty.handler.codec.http.DefaultCookie("name", name);CODE
CRITICAL…CleartextStorageCookie/CleartextStorageCookieTest.java33 new io.netty.handler.codec.http.DefaultCookie("password", password);CODE
CRITICAL…CleartextStorageCookie/CleartextStorageCookieTest.java37 new io.netty.handler.codec.http.cookie.DefaultCookie("password", encrypt(password));CODE
CRITICAL…uery-tests/security/CWE-330/InsecureRandomCookies.java25 new io.netty.handler.codec.http.DefaultCookie("name", Integer.toString(c)); // $ AlertCODE
CRITICAL…uery-tests/security/CWE-330/InsecureRandomCookies.java28 new io.netty.handler.codec.http.cookie.DefaultCookie("name", Integer.toString(c)); // $ AlertCODE
CRITICAL…s/security/CWE-798/semmle/tests/HardcodedShiroKey.java26 cookieRememberMeManager.setCipherKey(org.apache.shiro.codec.Base64.decode("6ZmI6I2j5Y+R5aSn5ZOlAA==")); // $ HarCODE
CRITICALjava/ql/lib/CHANGELOG.md1200* Added flow summary for `org.springframework.data.repository.CrudRepository.save()`.COMMENT
CRITICALjava/ql/lib/change-notes/released/0.4.0.md33* Added flow summary for `org.springframework.data.repository.CrudRepository.save()`.COMMENT
CRITICAL…tal/Security/CWE/CWE-078/JSchOSInjectionSanitized.java6 if (!com.google.common.net.InetAddresses.isInetAddress(untrusted)) {CODE
CRITICAL…l/src/Security/CWE/CWE-200/TempDirUsageVulnerable.java12 File tempDir = com.google.common.io.Files.createTempDir(); // BAD: CVE-2020-8908: Directory has permissions `drwCODE
CRITICAL…builder/Semmle.Autobuild.CSharp/StandaloneBuildRule.cs15 : BuildScript.Create(_ => Semmle.Extraction.CSharp.Standalone.Program.Main([]));CODE
CRITICAL…rosoft/aspnetcore/blazor/Components_MyInput_razor.g.cs80 __builder.AddAttribute(2, "onchange", global::Microsoft.AspNetCore.Components.EventCallback.Factory.CreateBiCODE
CRITICAL…rosoft/aspnetcore/blazor/Components_MyInput_razor.g.cs82 Param1 = __value; return global::Microsoft.AspNetCore.Components.CompilerServices.RuntimeHelpers.InvokeACODE
CRITICAL…aspnetcore/blazor/Components_Pages_TestPage_razor.g.cs215 __builder.AddComponentParameter(42, nameof(global::Microsoft.AspNetCore.Components.Forms.InputText.ValueChanCODE
CRITICAL…aspnetcore/blazor/Components_Pages_TestPage_razor.g.cs255 __builder.AddAttribute(57, "onchange", global::Microsoft.AspNetCore.Components.EventCallback.Factory.CreateBCODE
CRITICAL…aspnetcore/blazor/Components_Pages_TestPage_razor.g.cs295 __builder.AddAttribute(71, "onchange", global::Microsoft.AspNetCore.Components.EventCallback.Factory.CreateBCODE
CRITICAL…aspnetcore/blazor/Components_Pages_TestPage_razor.g.cs402 __builder.AddComponentParameter(99, nameof(global::BlazorTest.Components.MyInput.Param1Changed), global::MicCODE
CRITICAL…aspnetcore/blazor/Components_Pages_TestPage_razor.g.cs448 __builder.AddComponentParameter(113, nameof(global::BlazorTest.Components.MyInput.Param1Changed), global::MiCODE
CRITICAL…aspnetcore/blazor/Components_Pages_TestPage_razor.g.cs488 __builder.AddComponentParameter(122, nameof(global::Microsoft.AspNetCore.Components.Forms.InputText.ValueChaCODE
CRITICAL…vascript/ql/test/library-tests/frameworks/data/test.js219 testlib.typevar.a.b.c.mySink(source()); // OK - does not match sub pathCODE
CRITICAL…vascript/ql/test/library-tests/frameworks/data/test.js225 testlib.typevar.left.x.right.mySink(source()); // NOT OKCODE
CRITICAL…vascript/ql/test/library-tests/frameworks/data/test.js226 testlib.typevar.left.left.x.right.right.mySink(source()); // NOT OKCODE
CRITICAL…vascript/ql/test/library-tests/frameworks/data/test.js227 testlib.typevar.left.x.right.right.mySink(source()); // OK - mismatched left and rightCODE
CRITICAL…vascript/ql/test/library-tests/frameworks/data/test.js228 testlib.typevar.left.left.x.right.mySink(source()); // OK - mismatched left and rightCODE
CRITICAL…vascript/ql/test/library-tests/frameworks/data/test.js233 testlib.typevar.left.x.right.getThis().getThis().mySink(source()); // NOT OKCODE
CRITICAL…/ql/test/library-tests/dataflow/summaries/summaries.rb37Bar.new.next.next.next.next.method(tainted) # $ hasValueFlow=taintedCODE
Excessive Try-Catch Wrapping169 hits · 236 pts
SeverityFileLineSnippetContext
LOWmisc/scripts/generate-code-scanning-query-list.py132except Exception as e:CODE
MEDIUMmisc/scripts/generate-code-scanning-query-list.py133 print("Error: couldn't invoke 'git'. Is it on the path? Aborting.", file=sys.stderr)CODE
LOWmisc/scripts/generate-code-scanning-query-list.py139 except Exception as e:CODE
MEDIUMmisc/scripts/generate-code-scanning-query-list.py140 print("Error: couldn't invoke CodeQL CLI 'codeql'. Is it on the path? Aborting.", file=sys.stderr)CODE
LOWmisc/scripts/generate-code-scanning-query-list.py173 except Exception as e:CODE
LOWmisc/scripts/models-as-data/bulk_generate_mad.py141 except Exception as e:CODE
LOWmisc/scripts/library-coverage/generate-report.py87except Exception as e:CODE
MEDIUMmisc/scripts/library-coverage/generate-report.py88 print("Error: couldn't invoke CodeQL CLI 'codeql'. Is it on the path? Aborting.", file=sys.stderr)CODE
LOWmisc/scripts/library-coverage/comment-pr.py63 except Exception as e:CODE
LOWmisc/scripts/library-coverage/comment-pr.py90 except Exception:CODE
LOW…ols/recorded-call-graph-metrics/src/cg_trace/tracer.py267 except Exception:CODE
LOWpython/extractor/python_tracer.py29 except Exception:CODE
MEDIUMpython/extractor/python_tracer.py18def load_library():CODE
LOWpython/extractor/buildtools/version.py51 except Exception:CODE
LOWpython/extractor/buildtools/version.py116 except Exception:CODE
LOWpython/extractor/buildtools/version.py144 except Exception:CODE
LOWpython/extractor/buildtools/version.py205 except Exception:CODE
LOWpython/extractor/buildtools/auto_install.py68 except Exception as ex:CODE
LOWpython/extractor/buildtools/auto_install.py73 except Exception:CODE
LOWpython/extractor/buildtools/auto_install.py97 except Exception as ex1:CODE
LOWpython/extractor/buildtools/auto_install.py100 except Exception as ex2:CODE
MEDIUMpython/extractor/buildtools/auto_install.py65def try_install_with_deps(req, venv):CODE
MEDIUMpython/extractor/buildtools/install.py69 print('Error trying to run get_venv_lib (this is Python {})'.format(sys.version[:5]))CODE
LOW…on/extractor/tokenizer_generator/tokenizer_template.py168 except Exception as ex:CODE
LOWpython/extractor/tests/test_tokenizer.py45 except Exception as ex:CODE
LOWpython/extractor/tests/tokenizer/basic.py32 except Exception as ex:CODE
LOWpython/extractor/semmle/worker.py218 except Exception as ex:CODE
LOWpython/extractor/semmle/worker.py274 except Exception as ex:CODE
LOWpython/extractor/semmle/worker.py316 except Exception as ex:CODE
LOWpython/extractor/semmle/worker.py320 except Exception as ex:CODE
LOWpython/extractor/semmle/worker.py326 except Exception as ex:CODE
LOWpython/extractor/semmle/worker.py335 except Exception as ex:CODE
MEDIUMpython/extractor/semmle/worker.py165def receive(self, block=False):CODE
MEDIUMpython/extractor/semmle/worker.py234def _drain_queue(queue):CODE
LOWpython/extractor/semmle/logging.py111 except Exception:CODE
LOWpython/extractor/semmle/logging.py136 except Exception:CODE
LOWpython/extractor/semmle/logging.py200 except Exception:CODE
LOWpython/extractor/semmle/util.py378 except Exception as ex:CODE
LOWpython/extractor/semmle/cache.py44 except Exception:CODE
LOWpython/extractor/semmle/cache.py58 except Exception:CODE
LOWpython/extractor/semmle/cache.py71 except Exception:CODE
LOWpython/extractor/semmle/cache.py83 except Exception:CODE
LOWpython/extractor/semmle/cache.py99 except Exception:CODE
LOWpython/extractor/semmle/cache.py105 except Exception:CODE
LOWpython/extractor/semmle/cache.py112 except Exception:CODE
LOWpython/extractor/semmle/cache.py118 except Exception:CODE
LOWpython/extractor/semmle/cache.py123 except Exception:CODE
LOWpython/extractor/semmle/cache.py146 except Exception:CODE
LOWpython/extractor/semmle/cache.py166 except Exception as ex:CODE
LOWpython/extractor/semmle/cache.py171 except Exception:CODE
LOWpython/extractor/semmle/cache.py183 except Exception as ex:CODE
LOWpython/extractor/semmle/cache.py187 except Exception:CODE
MEDIUMpython/extractor/semmle/cache.py80def _list_files(self):CODE
MEDIUMpython/extractor/semmle/cache.py109def clear(self):CODE
LOWpython/extractor/semmle/profiling.py53 except Exception as ex:CODE
LOWpython/extractor/semmle/populator.py98 except Exception as ex:CODE
LOWpython/extractor/semmle/python/finder.py241 except Exception:CODE
LOWpython/extractor/semmle/python/extractor.py89 except Exception as ex:CODE
LOWpython/extractor/semmle/python/extractor.py126 except Exception:CODE
LOWpython/extractor/semmle/python/extractor.py198 except Exception as ex:CODE
109 more matches not shown…
Deep Nesting145 hits · 144 pts
SeverityFileLineSnippetContext
LOWmisc/codegen/codegen.py21CODE
LOWmisc/codegen/test/test_qlgen.py99CODE
LOWmisc/codegen/lib/schemadefs.py321CODE
LOWmisc/codegen/lib/schemadefs.py336CODE
LOWmisc/codegen/lib/render.py157CODE
LOWmisc/codegen/lib/render.py173CODE
LOWmisc/codegen/lib/render.py211CODE
LOWmisc/codegen/generators/trapgen.py71CODE
LOWmisc/codegen/generators/rusttestgen.py53CODE
LOWmisc/codegen/generators/qlgen.py480CODE
LOWmisc/codegen/generators/qlgen.py134CODE
LOWmisc/codegen/generators/dbschemegen.py46CODE
LOWmisc/bazel/internal/install.py66CODE
LOWmisc/scripts/calculate_mrva_totals.py63CODE
LOWmisc/scripts/accept-expected-changes-from-ci.py93CODE
LOWmisc/scripts/accept-expected-changes-from-ci.py229CODE
LOWmisc/scripts/library-coverage/generate-report.py33CODE
LOW…l-graph-metrics/src/cg_trace/bytecode_reconstructor.py185CODE
LOW…s/recorded-call-graph-metrics/src/cg_trace/exporter.py7CODE
LOWpython/extractor/imp.py225CODE
LOWpython/extractor/buildtools/version.py155CODE
LOWpython/extractor/buildtools/semmle/requirements.py108CODE
LOWpython/extractor/buildtools/semmle/requirements.py123CODE
LOWpython/extractor/tokenizer_generator/machine.py123CODE
LOWpython/extractor/tokenizer_generator/machine.py307CODE
LOW…on/extractor/tokenizer_generator/tokenizer_template.py138CODE
LOW…on/extractor/tokenizer_generator/tokenizer_template.py24CODE
LOW…on/extractor/tokenizer_generator/tokenizer_template.py87CODE
LOW…hon/extractor/tokenizer_generator/gen_state_machine.py93CODE
LOWpython/extractor/lark/parser_frontends.py160CODE
LOWpython/extractor/lark/load_grammar.py336CODE
LOWpython/extractor/lark/load_grammar.py525CODE
LOWpython/extractor/lark/load_grammar.py183CODE
LOWpython/extractor/lark/load_grammar.py290CODE
LOWpython/extractor/lark/load_grammar.py589CODE
LOWpython/extractor/lark/visitors.py22CODE
LOWpython/extractor/lark/lark.py103CODE
LOWpython/extractor/lark/utils.py59CODE
LOWpython/extractor/lark/lexer.py124CODE
LOWpython/extractor/lark/lexer.py74CODE
LOWpython/extractor/lark/exceptions.py26CODE
LOWpython/extractor/lark/reconstruct.py26CODE
LOWpython/extractor/lark/parse_tree_builder.py27CODE
LOWpython/extractor/lark/parsers/lalr_parser.py32CODE
LOWpython/extractor/lark/parsers/cyk.py136CODE
LOWpython/extractor/lark/parsers/xearley.py51CODE
LOWpython/extractor/lark/parsers/xearley.py84CODE
LOWpython/extractor/lark/parsers/lalr_analysis.py57CODE
LOWpython/extractor/lark/parsers/lalr_analysis.py61CODE
LOWpython/extractor/lark/parsers/grammar_analysis.py47CODE
LOWpython/extractor/lark/parsers/earley.py98CODE
LOWpython/extractor/lark/tools/nearley.py105CODE
LOWpython/extractor/tests/test_parser.py99CODE
LOWpython/extractor/semmle/query_gen.py116CODE
LOWpython/extractor/semmle/worker.py261CODE
LOWpython/extractor/semmle/worker.py165CODE
LOWpython/extractor/semmle/worker.py201CODE
LOWpython/extractor/semmle/logging.py151CODE
LOWpython/extractor/semmle/logging.py189CODE
LOWpython/extractor/semmle/util.py367CODE
85 more matches not shown…
Cross-Language Confusion16 hits · 70 pts
SeverityFileLineSnippetContext
HIGHmisc/codegen/test/test_schemaloader.py792 assert data.null_class is data.classes[data.null]CODE
HIGHmisc/codegen/lib/schema.py167 return self.classes[self.null] if self.null else NoneCODE
HIGHmisc/codegen/generators/dbschemegen.py164 Union(dbtype(t, data.null), [dbtype(t), dbtype(data.null)])CODE
HIGHmisc/codegen/loaders/schemaloader.py187 f"Null class {null} already defined, second null class {name} not allowed"CODE
HIGHmisc/codegen/loaders/schemaloader.py198 null=null,CODE
HIGHmisc/bazel/internal/git_lfs_probe.py221 git lfs fetch && git lfs checkoutCODE
HIGHmisc/bazel/internal/git_lfs_probe.py223 git lfs fetch && git lfs checkout""", file=sys.stderr)CODE
HIGHpython/extractor/semmle/python/passes/exports.py103 in the __all__ list or, if __all__ is undefined, is defined at top-levelSTRING
HIGHpython/extractor/semmle/python/passes/flow.py1890 '''If SSA_Var node is undefined, then FlowGraph inserts a None -STRING
HIGHpython/extractor/blib2to3/pgen2/parse.py147 self.push(t, self.grammar.dfas[t], newstate, context)CODE
HIGH…Security/CWE-078-CommandInjection/command_injection.py69 using the filename `not-there || echo pwned`.STRING
HIGH…/query-tests/Variables/undefined/UninitializedLocal.py183 if not var or other: #other looks like it might be undefined, but it is defined.CODE
HIGHpython/ql/test/library-tests/PointsTo/absent/absent.py26@deco(undefined)CODE
HIGH…on/ql/test/library-tests/ControlFlow/splitting/test.py243 if not var or other.attr: #other looks like it might be undefined, but it is defined.CODE
HIGHrust/schema/annotations.py518 x && y;STRING
HIGH…rc/utils/flowtestcasegenerator/GenerateFlowTestCase.py166 testJava.write("\t%s obj%d = null;\n" % (outerName, i))STRING
Self-Referential Comments25 hits · 67 pts
SeverityFileLineSnippetContext
MEDIUMmisc/scripts/create-change-note.py145# Create the change note fileCOMMENT
MEDIUMmisc/scripts/shared-code-metrics.py111 # Create a list of assetsCOMMENT
MEDIUMmisc/scripts/shared-code-metrics.py185# Create a big index of all files and their line counts.COMMENT
MEDIUMmisc/scripts/models-as-data/convert_extensions.py95 # Create a file for each namespace and save models.COMMENT
MEDIUMmisc/scripts/models-as-data/generate_mad.py238 # Create a file for each namespace and save models.COMMENT
MEDIUMpython/extractor/imp.py1"""This module provides the components needed to build your own __import__STRING
MEDIUM…tion-test/writing-diagnostics/repo_dir/syntaxerror1.py1# This file contains a deliberate syntax errorCOMMENT
MEDIUM…hon/extractor/tokenizer_generator/gen_state_machine.py194 print("# This file is AUTO-GENERATED. DO NOT MODIFY")STRING
MEDIUMpython/extractor/lark/parsers/lalr_parser.py1"""This module implements a LALR(1) ParserSTRING
MEDIUMpython/extractor/lark/parsers/cyk.py1"""This module implements a CYK parser."""STRING
MEDIUMpython/extractor/semmle/python/extractor.py71 #Create an AST equivalent to an empty file, so that the other passes produce consistent output.COMMENT
MEDIUMpython/extractor/semmle/python/passes/objects.py323#Create an object for 'exec', as parser no longer treats it as statement.COMMENT
MEDIUMpython/extractor/semmle/python/parser/tokenizer.py1# This file is AUTO-GENERATED. DO NOT MODIFYCOMMENT
MEDIUM…l/query-tests/Security/CWE-079/smtplib_bad_subparts.py18 # Create the plain-text and HTML version of your messageCOMMENT
MEDIUM…query-tests/Security/CWE-079/smtplib_bad_via_attach.py21 # Create the plain-text and HTML version of your messageCOMMENT
MEDIUMpython/ql/test/experimental/attrs/test.py1# This file is a simple test of which nodes are included with AttrRead/AttrWrite.COMMENT
MEDIUM…rary-tests/PointsTo/new/code/v_pointsto_regressions.py1# This file contains snippets from snapshots that displayed interesting results for `ImpliesDataflow.ql`.COMMENT
MEDIUMpython/ql/test/library-tests/regexparser/locations.py3# This file contains tests for the regexp parser's location tracking.COMMENT
MEDIUM…eworks/serverless/aws_lambda/function/extra_lambdas.py9# This function is not mentioned in template.ymlCOMMENT
MEDIUM…t/library-tests/frameworks/django-v2-v3/taint_forms.py45 # This method is supposed to clean the `foo` field in context of this form.COMMENT
MEDIUM…thon/ql/lib/semmle/python/frameworks/Asyncpg.model.yml27 # Creating an internal `~Connection` type that contains both `Connection` and `ConnectionPool`.COMMENT
MEDIUMconfig/sync-files.py150# This function is invoked directly by a CI script, which passes a different error-handlingCOMMENT
MEDIUM…tegration-tests/update-ferstl-depgraph-dependencies.sh138# Create a minimal stub project with no dependencies. Using an empty projectCOMMENT
MEDIUMdocs/codeql/query-help/conf.py5# This file is execfile()d with the current directory set to itsCOMMENT
MEDIUMdocs/codeql/ql-training/conf.py5# This file is execfile()d with the current directory set to itsCOMMENT
Fake / Example Data43 hits · 56 pts
SeverityFileLineSnippetContext
LOWgo/ql/test/query-tests/Security/CWE-640/main.go168var email = "test@test.com"CODE
LOW…/query-tests/ExcessivePublicMethodMocking/TestORM.java12 Employee sampleEmployee = new Employee("John Doe");CODE
LOW…/query-tests/ExcessivePublicMethodMocking/TestORM.java15 when(employeeRecordMock.update(sampleEmployee, "Jane Doe")).thenReturn(0); // Mocked EmployeeRecord.updateCODE
LOW…/query-tests/ExcessivePublicMethodMocking/TestORM.java23 Employee sampleEmployee = new Employee("John Doe");CODE
LOW…/query-tests/ExcessivePublicMethodMocking/TestORM.java26 doReturn(0).when(employeeRecordMock).get("John Doe"); // Mocked EmployeeRecord.getCODE
LOW…/query-tests/ExcessivePublicMethodMocking/TestORM.java35 Employee sampleEmployee = new Employee("John Doe");CODE
LOW…/query-tests/ExcessivePublicMethodMocking/TestORM.java38 when(employeeRecordMock.get("John Doe")).thenReturn(sampleEmployee); // Mocked EmployeeRecord.getCODE
LOW…/query-tests/ExcessivePublicMethodMocking/TestORM.java39 when(employeeRecordMock.update(sampleEmployee, "Jane Doe")).thenReturn(0); // Mocked EmployeeRecord.updateCODE
LOW…/query-tests/ExcessivePublicMethodMocking/TestORM.java48 Employee sampleEmployee = new Employee("John Doe");CODE
LOW…/query-tests/ExcessivePublicMethodMocking/TestORM.java51 doReturn(0).when(employeeRecordMock).get("John Doe"); // Mocked EmployeeRecord.getCODE
LOW…/query-tests/ExcessivePublicMethodMocking/TestORM.java52 doReturn(0).when(employeeRecordMock).update(sampleEmployee, "Jane Doe"); // Mocked EmployeeRecord.updateCODE
LOW…licitControlAndWhitespaceCharsInLiterals/CharTest.java146 compliantStrings.add("lorem ipsum dolor "+"sit amet"); // COMPLIANTCODE
LOW…licitControlAndWhitespaceCharsInLiterals/CharTest.java147 compliantStrings.add("lorem ipsum dolor " + "sit amet"); // COMPLIANTCODE
LOW…licitControlAndWhitespaceCharsInLiterals/CharTest.java148 compliantStrings.add("lorem ipsum dolor sit amet, consectetur adipiscing elit, " + // COMPLIANTCODE
LOW…licitControlAndWhitespaceCharsInLiterals/CharTest.java148 compliantStrings.add("lorem ipsum dolor sit amet, consectetur adipiscing elit, " + // COMPLIANTCODE
LOW…licitControlAndWhitespaceCharsInLiterals/CharTest.java150 compliantStrings.add("lorem ipsum dolor sit amet, consectetur adipiscing elit, " + // COMPLIANTCODE
LOW…licitControlAndWhitespaceCharsInLiterals/CharTest.java150 compliantStrings.add("lorem ipsum dolor sit amet, consectetur adipiscing elit, " + // COMPLIANTCODE
LOW…licitControlAndWhitespaceCharsInLiterals/CharTest.java155 lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dCODE
LOW…licitControlAndWhitespaceCharsInLiterals/CharTest.java155 lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dCODE
LOW…licitControlAndWhitespaceCharsInLiterals/CharTest.java172 nonCompliantStrings.add("lorem​ipsum dolor sit amet,​consectetur adipiscing elit, " + // NON_COMPLIANTSTRING
LOW…licitControlAndWhitespaceCharsInLiterals/CharTest.java175 lorem​ipsum dolor sit amet,​consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dCODE
LOW…t/library-tests/dataflow/taint/StringBuilderTests.java55 sb.append("from preferences select locale where user='placeholder'");CODE
LOW… Practice/Undesirable Calls/CallsToStringToString.java2 String name = "John Doe";CODE
LOW… Best Practice/Testing/ExcessivePublicMethodMocking.md27 Employee sampleEmployee = new Employee("John Doe");CODE
LOW… Best Practice/Testing/ExcessivePublicMethodMocking.md30 when(employeeRecordMock.get("John Doe")).thenReturn(sampleEmployee); // Mocked EmployeeRecord.getCODE
LOW… Best Practice/Testing/ExcessivePublicMethodMocking.md31 when(employeeRecordMock.update(sampleEmployee, "Jane Doe")).thenReturn(0); // Mocked EmployeeRecord.updateCODE
LOW… Best Practice/Testing/ExcessivePublicMethodMocking.md37 Employee sampleEmployee = new Employee("John Doe");CODE
LOW… Best Practice/Testing/ExcessivePublicMethodMocking.md40 when(employeeRecordMock.update(sampleEmployee, "Jane Doe")).thenReturn(0); // Mocked EmployeeRecord.updateCODE
LOW…ations of Best Practice/DontUseConstructorArgIndex.xml4 <constructor-arg index="0" value="John Doe"/>CODE
LOW…ations of Best Practice/DontUseConstructorArgIndex.xml12 <constructor-arg type="java.lang.String" value="Jane Doe"/>CODE
LOW…rc/Likely Bugs/Cloning/MissingCallToSuperCloneBad.java23 WrongEmployee e = new WrongEmployee("John Doe");CODE
LOW…c/Likely Bugs/Cloning/MissingCallToSuperCloneGood.java26 Employee e2 = new Employee("Jane Doe");CODE
LOW.github/workflows/mad_regenerate-models.yml23 slug: ["placeholder"]CODE
LOW.github/workflows/mad_regenerate-models.yml24 ref: ["placeholder"]CODE
LOW.github/workflows/mad_regenerate-models.yml29 - slug: "placeholder"CODE
LOW.github/workflows/mad_regenerate-models.yml30 ref: "placeholder"CODE
LOW…/Security Features/CWE-798/TestHardcodedCredentials.cs28 email: "foo@bar.com",CODE
LOW…/Security Features/CWE-798/TestHardcodedCredentials.cs45 email: "foo@bar.com",CODE
LOW…ests/Security Features/CWE-798/HardcodedCredentials.cs34 email: "foo@bar.com",CODE
LOWjavascript/extractor/tests/ui5/input/test.view.json7 "placeholder": "Enter Payload",CODE
LOW…tests/Security/CWE-918/axiosInterceptors.serverSide.js21 axios.get("placeholder");CODE
LOW…/test/library-tests/StringConcatenation/html-concat.js10 <i>Lorem ipsum!</i>`;CODE
LOW…ry-tests/frameworks/active_resource/active_resource.rb9alice.address = "123 Main Street"CODE
Modern Structural Boilerplate52 hits · 52 pts
SeverityFileLineSnippetContext
LOWpython/extractor/semmle/traverser.py18__all__ = [ 'Traverser' ]CODE
LOWpython/extractor/semmle/profiling.py7__all__ = [ 'get_profiler' ]CODE
LOWpython/extractor/semmle/python/AstMeta.py9__all__ = [ 'order' ]CODE
LOWpython/extractor/semmle/python/extractor.py20__all__ = [ 'Extractor', 'CachingExtractor' ]CODE
LOWpython/extractor/semmle/python/imports.py15__all__ = [ 'CachingModuleImporter', 'ModuleImporter', 'importer_from_options' ]CODE
LOWpython/extractor/semmle/python/modules.py15__all__ = [ 'PythonSourceModule' ]CODE
LOWpython/extractor/semmle/python/passes/ast_pass.py8__all__ = [ 'ASTPass' ]CODE
LOWpython/extractor/semmle/python/passes/labeller.py8__all__ = [ 'Labeller' ]CODE
LOWpython/extractor/semmle/python/passes/flow.py17__all__ = [ 'FlowPass' ]CODE
LOWpython/extractor/semmle/python/passes/lexical.py9__all__ = [ 'LexicalPass' ]CODE
LOWpython/extractor/semmle/python/passes/pruner.py22__all__ = [ 'do_pruning' ]CODE
LOWpython/extractor/semmle/python/passes/objects.py28__all__ = [ 'ObjectPass' ]CODE
LOWpython/extractor/blib2to3/pgen2/driver.py16__all__ = ["load_grammar"]CODE
LOWpython/extractor/blib2to3/pgen2/tokenize.py38__all__ = [x for x in dir(token) if x[0] != '_'] + ["tokenize",CODE
LOWpython/ql/test/query-tests/Imports/general/module.py4__all__ = []CODE
LOW…l/test/query-tests/Variables/general/variables_test.py2__all__ = [ 'is_used_var1' ]CODE
LOWpython/ql/test/query-tests/Variables/unused/test.py92__all__ = [ 'hello' ]CODE
LOW…ql/test/query-tests/Variables/unused/variables_test.py2__all__ = [ 'is_used_var1' ]CODE
LOW…hon/ql/test/query-tests/Variables/undefined/exports.py1__all__ = ["foo", "bar", "baz", "quux", "blat", "frob", "nosuch", "i_got_it_elsewhere"]CODE
LOW…n/ql/test/query-tests/Variables/undefined/ud_helper.py12__all__ = [ 'a', 'b', 'c' ]CODE
LOW…t/query-tests/Variables/undefined/decorated_exports.py3__all__ = ["foo", "bar", "baz", "not_defined"]CODE
LOW…thon/ql/test/query-tests/Variables/undefined/tokens.py8__all__ = [ "TOKEN_0" ]CODE
LOW…query-tests/Variables/undefined/unknown_import_star.py1__all__ = ["foo"]CODE
LOW…l/test/query-tests/Functions/general/functions_test.py4__all__ = [ '' ]CODE
LOW…/query-tests/Functions/return_values/functions_test.py4__all__ = [ '' ]CODE
LOWpython/ql/test/experimental/import-resolution/trace.py52__all__ = ["enter", "exit", "check", "status"]CODE
LOW…test/experimental/import-resolution/has_defined_all.py7__all__ = ["all_defined_foo"]CODE
LOW…experimental/import-resolution/has_defined_all_copy.py9__all__ = ["all_defined_foo_copy"]CODE
LOW…ibrary-tests/PointsTo/new/code/test_package/module1.py1__all__ = [ 'p', 'q', 'r' ]CODE
LOW…ibrary-tests/PointsTo/new/code/test_package/module2.py1__all__ = [ 'r', 's']CODE
LOW…n/ql/test/library-tests/modules/__all__/all_dynamic.py6__all__ = ["foo"]CODE
LOW…thon/ql/test/library-tests/modules/__all__/all_list.py6__all__ = ["foo", "bar"]CODE
LOWpython/ql/test/modelling/MyPackage/ModuleWithAll.py1__all__ = ['Foo']CODE
LOWpython/ql/test/extractor-tests/exports/module1.py1__all__ = [ 'a', 'b', 'c', 'd' ]CODE
LOW…test/3/query-tests/Variables/undefined/enum_convert.py8__all__ = [ "Maybe", "Maybe_not" ]CODE
LOW…/ql/test/3/query-tests/Variables/undefined/imp_star.py3__all__ = [ "a", "b" ]CODE
LOW…t/3/query-tests/Variables/undefined/UndefinedExport.py3__all__ = [ "x", "y", "z", "module", "w" ]CODE
LOW…t/3/query-tests/Variables/undefined/mutated_globals.py3__all__ = [ "a", "b" ]CODE
LOW…/3/query-tests/Variables/undefined/package/__init__.py1__all__ = [ "module", "not_exists" ]CODE
LOWpython/ql/test/3/library-tests/types/functions/test.py4__all__ = [ '' ]CODE
LOW…-tests/modules/package_members/test_package/module4.py1__all__ = [ 'p', 'q', 'r']CODE
LOW…-tests/modules/package_members/test_package/module1.py1__all__ = [ 'a', 'b', 'c' ]CODE
LOW…-tests/modules/package_members/test_package/module2.py1__all__ = [ 'x', 'y', 'z']CODE
LOW…t/2/query-tests/Variables/undefined/UndefinedExport.py3__all__ = [ "x", "y", "z", "module" ]CODE
LOW…/2/query-tests/Variables/undefined/package/__init__.py1__all__ = [ "module", "not_exists" ]CODE
LOW…l/test/2/library-tests/PointsTo/imports/package/foo.py5__all__ = ['foo']CODE
LOWpython/ql/test/2/library-tests/types/functions/test.py4__all__ = [ '' ]CODE
LOW…-tests/modules/package_members/test_package/module4.py1__all__ = [ 'p', 'q', 'r']CODE
LOW…-tests/modules/package_members/test_package/module1.py1__all__ = [ 'a', 'b', 'c' ]CODE
LOW…-tests/modules/package_members/test_package/module2.py1__all__ = [ 'x', 'y', 'z']CODE
LOWpython/ql/src/Imports/UnintentionalImport.py3__all__ = ['tax1', 'tax2'] #defines the names to import when '*' is usedCODE
LOWpython/ql/src/Variables/UndefinedExport.py1__all__ = ['spamm', 'troll', 'paywall']CODE
Structural Annotation Overuse17 hits · 34 pts
SeverityFileLineSnippetContext
LOWgo/ql/test/library-tests/semmle/go/Types/promoted.go5// IMPORTANT: Make sure that *pkg1.SEmbedP is not referenced.COMMENT
LOWpython/extractor/extending-the-parser.md3## Step 1: Add an extractor testCOMMENT
LOWpython/extractor/extending-the-parser.md38## Step 2: Extend the `tree-sitter-python` grammarCOMMENT
LOWpython/extractor/extending-the-parser.md72## Step 3: Extend `python.tsg`COMMENT
LOWpython/extractor/extending-the-parser.md78## Step 4: Extend the set of known AST nodesCOMMENT
LOWpython/extractor/extending-the-parser.md84## Step 5: Rebuild the autogenerated AST and database schemeCOMMENT
LOWpython/extractor/extending-the-parser.md88## Step 6: Add dbscheme upgrade and downgrade scriptsCOMMENT
LOW…st/2/query-tests/Expressions/TruncatedDivision_test.py3# NOTE: The following test case will only work under Python 2.COMMENT
LOW…xperimental/library-tests/quantum/jca/Encryption2.java133 // Step 1: Perform classical ECDH key agreement to derive a shared secret.COMMENT
LOW…xperimental/library-tests/quantum/jca/Encryption2.java136 // Step 2: Combine the ECDH secret and the post-quantum secret using aCOMMENT
LOW…xperimental/library-tests/quantum/jca/Encryption2.java144 // Step 3: Encrypt the data using AES-GCM.COMMENT
LOW…l/library-tests/quantum/jca/ChainedEncryptionTest.java129 // Step 1: Encrypt plaintext with AES-GCM.COMMENT
LOW…l/library-tests/quantum/jca/ChainedEncryptionTest.java132 // Step 2: Encrypt the AES-GCM ciphertext with ChaCha20-Poly1305.COMMENT
LOW…l/library-tests/quantum/jca/ChainedEncryptionTest.java136 // Step 3: Decrypt the outer layer (ChaCha20-Poly1305).COMMENT
LOW…l/library-tests/quantum/jca/ChainedEncryptionTest.java139 // Step 4: Decrypt the inner layer (AES-GCM).COMMENT
LOW…tests/Security/CWE/CWE-428/UnsafeCreateProcessCall.cpp187// NOTE: This function will not be flagged as having a bug by this rule.COMMENT
LOW…tests/Security/CWE/CWE-428/UnsafeCreateProcessCall.cpp222// NOTE: This function will not be flagged as having a bug by this rule.COMMENT
Overly Generic Function Names26 hits · 28 pts
SeverityFileLineSnippetContext
LOWpython/ql/test/query-tests/Classes/useless/test.py9 def do_something(self):CODE
LOWpython/ql/test/query-tests/Classes/useless/test.py21 def do_something(self):CODE
LOWpython/ql/test/query-tests/Classes/useless/test.py33 def do_something(self):CODE
LOWpython/ql/test/query-tests/Classes/useless/test.py39 def do_something(self):CODE
LOWpython/ql/test/query-tests/Classes/useless/test.py47 def do_something(self, x):CODE
LOWpython/ql/test/query-tests/Classes/useless/test.py56 def do_something(self, x):CODE
LOWpython/ql/test/query-tests/Classes/useless/test.py64 def do_something(self):CODE
LOW…-tests/Resources/FileNotAlwaysClosed/resources_test.py298 def do_something(self):CODE
LOW…l/test/query-tests/Variables/general/variables_test.py84def test_function(the_fixture):CODE
LOWpython/ql/test/library-tests/dataflow/calls/test.py14 def my_method(self, arg):CODE
LOWpython/ql/test/library-tests/ApiGraphs/py3/deftest2.py7 def my_method(self): # $ def=moduleImport("flask").getMember("views").getMember("View").getASubclass().getMember("myCODE
LOW…l/test/library-tests/frameworks/flask/response_test.py94def helper():CODE
LOW…-tests/frameworks/stdlib/wsgiref_simple_server_test.py35 def my_method(self, _env, start_response): # $ requestHandlerCODE
LOW…brary-tests/ControlFlow/evaluation-order/test_async.py26 async def helper():CODE
LOW…test/extractor-tests/comment-on-decorator-line/test.py5def my_function():CODE
LOWpython/ql/test/3/library-tests/types/functions/test.py118def do_something():CODE
LOWpython/ql/test/2/library-tests/types/functions/test.py118def do_something():CODE
LOW…ql/test/query-tests/Security/CWE-079/DomBasedXss/d3.js7function doSomething() {CODE
LOW…/test/library-tests/UnderlyingTypes/contextualTypes.ts7declare function doSomething(options: Options);CODE
LOW…l/test/library-tests/frameworks/ReactJS/use-server1.js1async function getData(CODE
LOW…l/test/library-tests/frameworks/ReactJS/use-server2.js3export async function getData(CODE
LOW…t/ql/test/library-tests/frameworks/SQL/mysql2-types.ts3export function doSomething(conn: Connection) {CODE
LOW…t/ql/test/library-tests/frameworks/SQL/sqlite-types.ts3export function doSomething(db: Database) {CODE
LOW…/ql/test/library-tests/frameworks/SQL/spanner-types.ts3export function doSomething(db: Database) {CODE
LOWjavascript/ql/src/Expressions/examples/MissingAwait.js1async function getData(id) {CODE
LOW…script/ql/src/Expressions/examples/MissingAwaitGood.js1async function getData(id) {CODE
Dead Code12 hits · 24 pts
SeverityFileLineSnippetContext
MEDIUM…hon/ql/test/query-tests/Statements/unreachable/test.py21CODE
MEDIUM…ql/test/query-tests/Variables/unused/variables_test.py137CODE
MEDIUM…ql/test/query-tests/Variables/unused/variables_test.py139CODE
MEDIUM…/query-tests/Variables/undefined/UninitializedLocal.py14CODE
MEDIUMpython/ql/test/library-tests/types/exceptions/test.py26CODE
MEDIUMpython/ql/test/library-tests/stmts/raise_stmt/test.py4CODE
MEDIUM…brary-tests/ControlFlow/evaluation-order/test_basic.py181CODE
MEDIUM…/ql/test/extractor-tests/splitter/unreachable_split.py5CODE
MEDIUM…/ql/test/extractor-tests/splitter/unreachable_split.py9CODE
MEDIUM…/query-tests/Statements/unreachable_suppressed/test.py39CODE
MEDIUM…on/ql/test/2/query-tests/Exceptions/generators/test.py11CODE
MEDIUMpython/ql/src/Statements/UnreachableCode.py5CODE
AI Slop Vocabulary8 hits · 20 pts
SeverityFileLineSnippetContext
LOWpython/extractor/buildtools/version.py28 # working on potential older versions, we'll just use `py --version` which forwardsCOMMENT
MEDIUMpython/extractor/semmle/python/passes/objects.py245 #This code must be robust against (possibly intentionally) incorrect implementationsCOMMENT
LOWpython/extractor/blib2to3/pgen2/pgen.py373 # Can't just return self.arcs == other.arcs, because thatCOMMENT
MEDIUM…extractor/src/main/kotlin/comments/CommentExtractor.kt52 // The actual extractor logic is a bit more nuanced thanCOMMENT
LOW…sts/kotlin/posix/java_kotlin_extraction_orders/test.py121 # No jar file involved, just add the dependency build directory to the classpath:COMMENT
MEDIUM…s/Format/WrongTypeFormatArguments/Buildless/second.cpp31 // and robust but the developer may know enough to make this safe)COMMENT
MEDIUMswift/tools/incompatible-os/IncompatibleOs.cpp4// This is implemented as a C++ binary instead of a hardcoded JSON file so we can leverage existingCOMMENT
MEDIUMswift/extractor/mangler/SwiftMangler.cpp450 // which ExtensionDecl or ValueDecl it's mentioned in) might be more robust, but there doesn'tCOMMENT
Verbosity Indicators7 hits · 16 pts
SeverityFileLineSnippetContext
LOW…xperimental/library-tests/quantum/jca/Encryption2.java133 // Step 1: Perform classical ECDH key agreement to derive a shared secret.COMMENT
LOW…xperimental/library-tests/quantum/jca/Encryption2.java136 // Step 2: Combine the ECDH secret and the post-quantum secret using aCOMMENT
LOW…xperimental/library-tests/quantum/jca/Encryption2.java144 // Step 3: Encrypt the data using AES-GCM.COMMENT
LOW…l/library-tests/quantum/jca/ChainedEncryptionTest.java129 // Step 1: Encrypt plaintext with AES-GCM.COMMENT
LOW…l/library-tests/quantum/jca/ChainedEncryptionTest.java132 // Step 2: Encrypt the AES-GCM ciphertext with ChaCha20-Poly1305.COMMENT
LOW…l/library-tests/quantum/jca/ChainedEncryptionTest.java136 // Step 3: Decrypt the outer layer (ChaCha20-Poly1305).COMMENT
LOW…l/library-tests/quantum/jca/ChainedEncryptionTest.java139 // Step 4: Decrypt the inner layer (AES-GCM).COMMENT
Modern AI Meta-Vocabulary6 hits · 14 pts
SeverityFileLineSnippetContext
MEDIUM…src/experimental/Security/CWE-1427/examples/example.py9 goodAgent = GuardrailAgent( # GOOD: Agent created with guardrails automatically configured.CODE
MEDIUM…urity/CWE-1427/UserPromptInjection/openai_user_test.js134 input: userInput, // OK - guarded client with input guardrailsCODE
MEDIUM…urity/CWE-1427/UserPromptInjection/openai_user_test.js143 content: userInput, // OK - guarded client with input guardrailsCODE
MEDIUM…urity/CWE-1427/UserPromptInjection/openai_user_test.js156 input: userInput, // OK - guarded Azure client with pre_flight guardrailsCODE
MEDIUM…urity/CWE-1427/UserPromptInjection/openai_user_test.js159 // === Unprotected GuardrailsOpenAI: no input guardrails (SHOULD ALERT) ===COMMENT
MEDIUM…urity/CWE-1427/examples/user-prompt-injection_fixed.js6// An input guardrail (here, the OpenAI guardrails library) inspects the user input andCOMMENT
Redundant / Tautological Comments8 hits · 12 pts
SeverityFileLineSnippetContext
LOWmisc/scripts/create-change-note.py115# Check if running in interactive mode (no arguments) or with argumentsCOMMENT
LOWmisc/scripts/library-coverage/generate-timeseries.py227 # Close files:COMMENT
LOWpython/extractor/lark/parsers/cyk.py106 # Check if the parse succeeded.COMMENT
LOWpython/extractor/semmle/python/modules.py47 #Set source to a latin-1 decoding of source string (which cannot fail).COMMENT
LOW…est/query-tests/Variables/undefined/UndefinedGlobal.py146 # Set them to (), so that isinstance() works with themCOMMENT
LOW…java/buildless-dependency-different-repository/test.py10 # Check if process diedCOMMENT
LOW…ation-tests/java/maven_3_fetch_maven_4_wrapper/test.py15 # Set maven_home_path to the extracted directoryCOMMENT
LOW…ry-tests/Security/CWE-077/.github/workflows/test17.yml24 # Check if the event is a pull request or pull_request_targetCOMMENT
AI Structural Patterns11 hits · 11 pts
SeverityFileLineSnippetContext
LOWmisc/codegen/generators/qlgen.py82CODE
LOWpython/extractor/semmle/logging.py293CODE
LOWpython/extractor/semmle/python/passes/flow.py1220CODE
LOWpython/extractor/semmle/python/passes/flow.py1555CODE
LOW…thon/ql/test/library-tests/PointsTo/decorators/test.py12CODE
LOW…thon/ql/test/library-tests/PointsTo/decorators/test.py19CODE
LOW…thon/ql/test/library-tests/ApiGraphs/py3/async_test.py12CODE
LOW…thon/ql/test/library-tests/ApiGraphs/py3/async_test.py29CODE
LOWpython/ql/src/Security/CWE-022/examples/tainted_path.py11CODE
LOWpython/ql/src/Security/CWE-022/examples/tainted_path.py19CODE
LOWpython/ql/src/Security/CWE-022/examples/tainted_path.py30CODE
AI Response Leakage1 hit · 8 pts
SeverityFileLineSnippetContext
HIGHswift/extractor/mangler/SwiftMangler.h155// In this implementation, fetching gives a hash of the mangled name itself, leading to a directCOMMENT
TODO Padding4 hits · 6 pts
SeverityFileLineSnippetContext
LOW…l/test/library-tests/frameworks/flask/response_test.py29# TODO: Create test-cases for the many ways that `make_response` can be usedCOMMENT
LOW…l/test/library-tests/frameworks/flask/response_test.py187# TODO: add tests for setting status codeCOMMENT
LOWpython/ql/test/library-tests/frameworks/data/test.py128# TODO: implement support for listsCOMMENT
LOWpython/ql/test/library-tests/frameworks/data/test.py131# TODO: implement support for tuplesCOMMENT
Synthetic Comment Markers1 hit · 5 pts
SeverityFileLineSnippetContext
HIGH…emmle.Extraction.CSharp.StubGenerator/StubGenerator.cs75 writer.WriteLine("// This file contains auto-generated code.");CODE
Slop Phrases2 hits · 4 pts
SeverityFileLineSnippetContext
MEDIUM…experimental/library-tests/quantum/jca/IVArtifact.java216 // Fixed IV (all zeros for demonstration purposes; insecure in production)COMMENT
LOW…query-tests/Security/CWE-829/.github/workflows/poc.yml33 # For PRs make sure to checkout the PR branchCOMMENT
Example Usage Blocks3 hits · 4 pts
SeverityFileLineSnippetContext
LOW…tegration-tests/update-ferstl-depgraph-dependencies.sh14# Usage:COMMENT
LOWjava/ql/src/utils/modelconverter/ConvertExtensions.py2# Usage:COMMENT
LOWcsharp/ql/src/utils/modelconverter/ConvertExtensions.py2# Usage:COMMENT