Close Open Privacy Scan
App Privacy Score
—
/100
Not analyzed — coverage too low
Coverage too low to score · 14 finding(s)
Based on: 7 first-party package(s) · 10/22 deps analyzed
bar_chart Score Breakdown
env_fs
−3
list Scan Summary
0 high
0 medium
14 low
First-party packages:
2
Dependency packages:
2
Ecosystem:
java
swap_horiz Application data flows
Not enough of this repository was analyzed to look for application data flows. Absence of findings here is not evidence of a clean result.
</> First-Party Code
first-party (java): jvm-packages/xgboost4j
java first-partyexpand_more 3 low-confidence finding(s)
low env_fs — Environment-variable access. 3 locations
first-party (java): jvm-packages/xgboost4j-example
java first-partyexpand_more 2 low-confidence finding(s)
</> Dependencies
com.esotericsoftware:kryo
java dependencyexpand_more 2 low-confidence finding(s)
low env_fs — Environment-variable access. 2 locations
commons-logging:commons-logging
java dependencyexpand_more 7 low-confidence finding(s)
low env_fs — Environment-variable access. 7 locations
Skipped dependencies
Production
- scipy prod — sdist exceeds byte cap
- nvidia-nccl-cu12 prod — no sdist (wheels only)
- matplotlib prod — sdist exceeds byte cap
- pyspark prod — sdist exceeds byte cap
- org.scala-lang:scala-compiler prod — no sources jar (404)
- org.scala-lang:scala-library prod — no sources jar (404)
- org.scala-lang.modules:scala-collection-compat_${scala.binary.version} prod — no sources jar (404)
- ml.dmlc:xgboost4j-spark_2.12 prod — no sources jar (404)
- org.apache.hadoop:hadoop-common prod — no sources jar (404)
- ml.dmlc:xgboost4j-flink_2.12 prod — no sources jar (404)
- org.apache.flink:flink-clients prod — no sources jar (404)
- ml.dmlc:xgboost4j_2.12 prod — no sources jar (404)