目录
dependabot[bot]

Bump github/codeql-action from 4.38.1 to 4.38.2 (#44)

Bumps github/codeql-action from 4.38.1 to 4.38.2.


updated-dependencies:

  • dependency-name: github/codeql-action dependency-version: 4.38.2 dependency-type: direct:production update-type: version-update:semver-patch …

Signed-off-by: dependabot[bot] support@github.com Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>

10天前43次提交

Bandit by PyCQA

The official Bandit Action developed by the PyCQA.

Usage

Here is a minimal complete example workflow to create a Code Scanning action using Bandit.

name: Bandit

on:
  workflow_dispatch:

jobs:
  analyze:
    runs-on: ubuntu-latest
    permissions:
      # required for all workflows
      security-events: write
      # only required for workflows in private repositories
      actions: read
      contents: read
    steps:
      - name: Perform Bandit Analysis
        uses: PyCQA/bandit-action@v1

Inputs

Name Description Required Default Value
python-version Version of Python to use False "3.9"
configfile Config file to use for selecting plugins and overriding defaults False "DEFAULT"
profile Profile to use (defaults to executing all tests) False "DEFAULT"
tests Comma-separated list of test IDs to run False "DEFAULT"
skips Comma-separated list of test IDs to skip False "DEFAULT"
severity Report only issues of a given severity level or higher. “all” and “low” are likely to produce the same results, but it is possible for rules to be undefined which will not be listed in “low”. Options include: {all, high, medium, low} False "DEFAULT"
confidence Report only issues of a given confidence level or higher. “all” and “low” are likely to produce the same results, but it is possible for rules to be undefined which will not be listed in “low”. Options include: {all, high, medium, low} False "DEFAULT"
exclude Comma-separated list of paths (glob patterns supported) to exclude from scan (note that these are in addition to the excluded paths provided in the config file) False ".svn,CVS,.bzr,.hg,.git,__pycache__,.tox,.eggs,*.egg"
baseline Path of a baseline report to compare against (only JSON-formatted files are accepted) False "DEFAULT"
ini Path to a .bandit file that supplies command line arguments False "DEFAULT"
targets Source file(s) or directory(s) to be tested False "."
关于

Python 安全扫描

140.0 KB
邀请码
    Gitlink(确实开源)
  • 加入我们
  • 官网邮箱:gitlink@ccf.org.cn
  • QQ群
  • QQ群
  • 公众号
  • 公众号

版权所有:中国计算机学会技术支持:开源发展技术委员会
京ICP备13000930号-9 京公网安备 11010802047560号