Scanned: February 16, 2026
Report Version: 1.0.0
How does your project compare?
Scan your repo free →Overall Grade
B1,204 total findings
Architecture
A58
Correctness
A6
Performance
C1140
What Traditional Tools Missed
| Category | Colosseum | Bandit | Semgrep |
|---|---|---|---|
| Bandit | 602 | 12 | 0 |
| Semgrep | 602 | 0 | 12 |
| Total | 1,204 | 12 | 12 |
1,204 findings (100%) were not detected by Bandit or Semgrep. These include compound vulnerabilities, logic errors, and context-dependent security issues that rule-based scanners aren't designed to catch.
Notable Findings
CriticalPerformance
Potential hotspot: create_sales_document_from_reference has high complexity score (48)
Impact: Potential hotspot: create_sales_document_from_reference has high complexity score (48)
Recommended Fix: Review and remediate.
CriticalPerformance
Potential hotspot: export_xml has high complexity score (16)
Impact: Potential hotspot: export_xml has high complexity score (16)
Recommended Fix: Review and remediate.
CriticalPerformance
Potential hotspot: export_pdf has high complexity score (16)
Impact: Potential hotspot: export_pdf has high complexity score (16)
Recommended Fix: Review and remediate.
CriticalPerformance
Potential hotspot: import_module has high complexity score (10)
Impact: Potential hotspot: import_module has high complexity score (10)
Recommended Fix: Review and remediate.
CriticalPerformance
Potential hotspot: init_with_context has high complexity score (49)
Impact: Potential hotspot: init_with_context has high complexity score (49)
Recommended Fix: Review and remediate.
CriticalPerformance
Potential hotspot: resolve_name has high complexity score (11)
Impact: Potential hotspot: resolve_name has high complexity score (11)
Recommended Fix: Review and remediate.
CriticalPerformance
Potential hotspot: create has high complexity score (68)
Impact: Potential hotspot: create has high complexity score (68)
Recommended Fix: Review and remediate.
Responsible Disclosure
This public report is intended to demonstrate the depth of analysis possible with modern code scanning tools and to help the broader open source community understand common vulnerability patterns.
Scan Your Python Repo Free
Find vulnerabilities traditional tools miss. Deep analysis of Python codebases with side-by-side tool comparison.
Embed This Badge
[](https://battleharden.dev/reports/koalixcrm)