mirror of
https://github.com/maziggy/bambuddy.git
synced 2026-09-30 19:21:33 +02:00
- Add usedforsecurity=False to MD5 (AMS fingerprint) and SHA1 (git blob hash) calls to silence Bandit B303 / CodeQL weak-crypto findings - Convert ~996 f-string logging calls to parameterized %s-style across 55 files to prevent log injection (Bandit G201 / CodeQL log-injection) - Narrow ~199 broad except Exception blocks to specific types: OperationalError for DB migrations, OSError for network/file cleanup, (OSError, ftplib.error_reply) for FTP, and targeted tuples for ZIP/XML/JSON parsing — 36 intentionally left broad (mixed async, re-raise patterns)
12 lines
199 B
Plaintext
12 lines
199 B
Plaintext
# Development and testing dependencies
|
|
pytest>=8.0.0
|
|
pytest-asyncio>=0.23.0
|
|
pytest-cov>=4.1.0
|
|
pytest-xdist>=3.5.0
|
|
httpx>=0.27.0
|
|
ruff>=0.8.0
|
|
|
|
# Security scanning
|
|
bandit[sarif]>=1.7.0
|
|
pip-audit>=2.7.0
|