Files
bambuddy/.gitignore
T
maziggy 53bd4fadb3 Fix safe security findings: hashlib, log injection, broad excepts
- Add usedforsecurity=False to MD5 (AMS fingerprint) and SHA1 (git blob
  hash) calls to silence Bandit B303 / CodeQL weak-crypto findings
- Convert ~996 f-string logging calls to parameterized %s-style across
  55 files to prevent log injection (Bandit G201 / CodeQL log-injection)
- Narrow ~199 broad except Exception blocks to specific types:
  OperationalError for DB migrations, OSError for network/file cleanup,
  (OSError, ftplib.error_reply) for FTP, and targeted tuples for
  ZIP/XML/JSON parsing — 36 intentionally left broad (mixed async,
  re-raise patterns)
2026-02-06 11:37:59 +01:00

67 lines
751 B
Plaintext

# Claude
.claude/
CLAUDE.md
# macOS
.DS_Store
**/.DS_Store
**/._.DS_Store
# Python
__pycache__/
*.py[cod]
*$py.class
*.so
venv/
.venv/
env/
.env
*.egg-info/
dist/
build/
# Node
frontend/node_modules/
frontend/coverage/
npm-debug.log*
# Database
*.db
*.db-journal
# Archive files (user data)
archive/
# Firmware cache (downloaded firmware files)
firmware/
# Virtual printer (auto-generated certs and uploads at repo root)
/virtual_printer/
# IDE
.idea/
.vscode/
*.swp
*.swo
# Screenshots (development - root folder only)
/screenshots/
# Logs
*.log
logs/
*.log*
bambutrack.log.*
firmware/
# Node modules
node_modules/
data/
# JWT secret file (should be in data dir, but protect project root too)
.jwt_secret
# Security scan output
*.sarif