# Claim Coverage Table Each row is a finding paired with whether existing tests cover the affected area. Phase B emits this shape; LLM-side claim generation lands in Phase C. | Claim | Code Location | Existing Test | Missing Test | Risk | |---|---|---|---|---| | Environment file in source tree | `.env:?` | _unknown_ | _likely_ | high | | Hardcoded absolute path | `src/handler.go:10` | _unknown_ | _likely_ | medium | | Shell command execution | `src/handler.go:19` | _unknown_ | _likely_ | high | | Raw SQL interpolation | `src/handler.go:14` | _unknown_ | _likely_ | high | | Possible secret committed to source | `src/handler.go:23` | _unknown_ | _likely_ | critical | | Possible secret committed to source | `src/handler.go:23` | _unknown_ | _likely_ | critical | | TODO/FIXME comment | `src/handler.go:9` | _unknown_ | _likely_ | low | | TODO/FIXME comment | `src/handler.go:22` | _unknown_ | _likely_ | low | | Hardcoded private-network IP | `src/handler.go:11` | _unknown_ | _likely_ | medium | | Large file | `src/huge.go:1-901` | _unknown_ | _likely_ | medium | | Wildcard CORS | `src/server.js:2` | _unknown_ | _likely_ | high | | Possible secret committed to source | `src/server.js:5` | _unknown_ | _likely_ | critical | | TODO/FIXME comment | `src/server.js:1` | _unknown_ | _likely_ | low | | Mutation route in file with no visible auth | `src/server.js:7` | _unknown_ | _likely_ | medium | | Mutation route in file with no visible auth | `src/server.js:8` | _unknown_ | _likely_ | medium | | No tests found | `.:?` | _unknown_ | _likely_ | medium |