powdy/lgsl Security Scan
LGSL v6.0.1 (Live Game Server List) for PHP 7+ (stand-alone version)
Security Grade
C+
79/100
Scanned 19 July 2026 at 16:21
Create a free account to unlock:
- Full report
- AI remediation
- Pull Request scanning
- Continuous monitoring
Security Overview
Launchioo completed an independent static security scan of powdy/lgsl on 19 July 2026 at 16:21. The repository received Security Grade C+ with an overall score of 79 out of 100. The scan detected 0 critical, 2 high, 0 medium, and 1 low severity findings across 3 analysed files.
Severity Breakdown
Distribution of findings by severity from the latest Launchioo repository security scan.
Security Grade
C+
79/100
- Critical
- 0
- High
- 2
- Medium
- 0
- Low
- 1
Repository Statistics
Trust signals collected during the Launchioo security scan and from public GitHub metadata.
- Owner
- powdy
- Repository
- lgsl
- Primary language
- —
- Default branch
- master
- Files scanned
- 3
- Lines analysed
- 111
- Rules executed
- 54
- Scan duration
- 1s
- Repository size
- 1.5 MB
- Stars
- 0
- Forks
- 0
- Head commit (scan ref)
- 87e96de70bf8
- Visibility
- Public
- Last scan
- 19 Jul 2026, 16:21
Security Findings
Top findings from the latest scan. Finding titles and descriptions are fully visible below. Create a free account to unlock evidence, file paths, AI remediation, and exploit chain analysis.
high (2)
- high85% confidence
Insecure HTTP URL
Insecure HTTP URL detected
- high93% confidence
SSRF URL Concatenation
URL concatenation passed to outbound request client
low (1)
- low100% confidence
Console Log
Avoid leaving console.log in committed code
AI Security Assistant
Available after creating an account
Launchioo does not run AI analysis for anonymous snapshot scans.
- Repository security summary
- Risk prioritisation
- AI remediation
- Secure code examples
- Step-by-step fixes
Create a free account to unlock AI summaries. AI remediation with step-by-step fixes remains available on Pro.
Create Free AccountCreate a free account to unlock the complete repository report
You can see every finding title above. Sign up to unlock evidence, AI remediation, code locations, and continuous monitoring.
- Full repository report
- AI remediation
- Code locations
- Pull Request scanning
- Continuous monitoring
- Historical security trends
Security Badge
Verified by Launchioo — links back to this repository security profile.
Create a free account to copy the Markdown badge snippet for your README.
Security Score Explained
powdy/lgsl received a Launchioo Security Grade of C+ with an overall score of 79/100.
The latest scan identified 3 findings: 0 critical, 2 high, 0 medium, and 1 low severity issues.
Higher scores indicate fewer and less severe unresolved security issues relative to repository size, language, and exposure. Scores are designed for comparison over time rather than as an absolute guarantee of safety.
Developers should treat the grade as a prioritisation signal: address critical and high findings first, then improve dependency hygiene, secret management, and secure coding practices.
How Launchioo Analyses Repositories
Launchioo performs static application security testing (SAST) against public GitHub repositories without modifying source code. For powdy/lgsl, the scan reviewed 3 files and 111 lines written primarily in multiple languages.
The analysis pipeline downloads the repository archive, extracts scannable source files, and executes a curated rule pack covering secret exposure, injection risks, insecure dependencies, unsafe defaults, and common application security anti-patterns.
Rules are selected based on repository language and ecosystem. Findings include severity ratings, rule identifiers, and human-readable descriptions. Evidence, affected file paths, and remediation guidance are available in the full Launchioo report.
Public snapshot scans are point-in-time assessments. Continuous monitoring through the Launchioo GitHub App enables pull request scanning, trend tracking, and faster response when new vulnerabilities are introduced.
How developers should interpret Critical findings
Critical findings represent issues that could lead to immediate compromise, data exposure, or remote code execution if exploited. Examples include hard-coded production secrets, SQL injection sinks, command injection, and authentication bypass patterns.
powdy/lgsl had no critical findings in the latest scan. Continue monitoring because new commits, dependencies, or configuration changes can introduce critical risk quickly.
Critical does not always mean actively exploited, but it does mean the potential impact is severe enough to prioritise ahead of feature work.
Common causes of High severity findings
High severity findings often involve missing security controls, outdated dependencies with known CVEs, weak cryptography, path traversal patterns, SSRF primitives, or unsafe deserialization.
powdy/lgsl reported 2 high severity findings. Review each item for exploitability in your deployment context and assign owners for remediation.
High findings frequently appear in framework configuration, CI scripts, Dockerfiles, infrastructure-as-code templates, and little-reviewed utility modules.
Why repository security matters
Popular repositories like lgsl are high-value targets. A single leaked token, vulnerable dependency, or insecure default can propagate across thousands of downstream applications.
This project is tagged with open-source software and has 0 stars and 0 forks on GitHub, which increases its supply-chain exposure.
Repository security is not only about preventing breaches in the upstream project. It protects every developer, package consumer, and organisation that depends on the codebase.
Benefits of continuous security scanning
Point-in-time snapshots provide a valuable baseline, but security posture changes with every merge. Continuous scanning on pull requests catches regressions before they reach production.
Launchioo supports full repository audits, pull request reviews, AI-assisted remediation, and historical trend analysis when the GitHub App is installed.
Teams that scan continuously reduce mean time to remediation, improve audit readiness, and give security reviewers consistent evidence across releases.
Related repositories
Related repository security profiles by language, topics, and popularity.
Recently scanned repositories
Frequently Asked Questions
What is a repository security scan?
A repository security scan is a static analysis of source code and configuration files to detect vulnerabilities, exposed secrets, dependency risk, and insecure patterns. Launchioo scans public GitHub repositories without modifying them.
How often is powdy/lgsl scanned?
This page reflects the latest public Launchioo snapshot from 19 July 2026. Rescans occur when a new public snapshot is requested or when the repository changes materially.
Can repository security change over time?
Yes. New commits, dependency updates, configuration changes, and refactors can improve or worsen security posture. That is why continuous monitoring and pull request scanning are recommended for active projects.
Why does powdy/lgsl have a C+ grade (79/100)?
The grade reflects the number and severity of findings detected during the scan, weighted by repository size and exposure. This snapshot includes 0 critical and 2 high severity findings.
What does a Critical finding mean?
A Critical finding indicates a security issue that could lead to severe impact such as credential exposure, remote code execution, or complete compromise if exploited. Critical items should be remediated urgently.
Is this an official audit of the repository?
No. This is an independent Launchioo security snapshot intended to help developers prioritise remediation. It does not replace a formal penetration test or vendor security certification.
Create a free account to unlock:
Sign up free to unlock the complete repository security report, AI remediation, pull request scanning, and continuous monitoring — without running another scan.
- Full report
- AI remediation
- Pull Request scanning
- Continuous monitoring