Software Passport · public repository

GillCleeren/BethanysPieShop

Observed by SPR on 2026-09-15 at commit 2cf84e61eaf8818207489bd54cc6a520f80bbfd0 (master). Source: github.com/GillCleeren/BethanysPieShop.

SBOM components16
Open findings17
Critical / high0 / 1
Evidence items20

What was observed

Syft generated the software bill of materials from the repository's manifests; each component was checked against the OSV vulnerability database; the tree was scanned for secrets, infrastructure-as-code issues and licence signals. Vendor-supplied attestations: none — this page contains only independent observation.

Open findings

SeverityFindingComponentFixed in
HIGHHard-coded credential assignment
MEDIUMLicense not observedsass
MEDIUMLicense not observedsafe_yaml
MEDIUMLicense not observedrouge
MEDIUMLicense not observedrb-inotify
MEDIUMLicense not observedrb-fsevent
MEDIUMLicense not observedmercenary
MEDIUMLicense not observedlisten
MEDIUMLicense not observedliquid
MEDIUMLicense not observedkramdown
MEDIUMLicense not observedjekyll-watch
MEDIUMLicense not observedjekyll-sitemap
MEDIUMLicense not observedjekyll-sass-converter
MEDIUMLicense not observedjekyll
MEDIUMLicense not observedffi
MEDIUMLicense not observedcolorator
MEDIUMLicense not observedaddressable

Get the full passport

Continuous verification, evidence ledger, plain-English and auditor reports, and a shareable signed passport are available to SPR customers.

See plans   Review your own repository free

Software Passport Registry Ltd. Every number on this page was observed by SPR's own scan of the public repository at the commit shown; nothing is estimated or vendor-supplied. Absence of a finding is not proof of safety. Terms · Privacy