Date: 17 Apr 2023

Module : Bandit


Installation : pip install bandit


About:

Bandit is a tool designed to find common security issues in Python code.

To do this Bandit processes each file, builds an AST from it, and runs
appropriate plugins against the AST nodes.

Once Bandit has finished scanning all the files it generates a report.

Bandit was originally developed within the OpenStack Security Project and
later rehomed to PyCQA.


Sample:

% bandit thirukkural_sample.py

[main] INFO profile include tests: None

[main] INFO profile exclude tests: None

[main] INFO cli include tests: None

[main] INFO cli exclude tests: None

[main] INFO running on Python 3.8.5

[node_visitor] WARNING Unable to find qualified name for module:
thirukkural_sample.py

Run started:2023-04-17 19:40:21.590814


Test results:

No issues identified.


Code scanned:

Total lines of code: 27

Total lines skipped (#nosec): 0


Run metrics:

Total issues (by severity):

Undefined: 0

Low: 0

Medium: 0

High: 0

Total issues (by confidence):

Undefined: 0

Low: 0

Medium: 0

High: 0

Files skipped (0):


Reference:

https://pypi.org/project/bandit/
_______________________________________________
Chennaipy mailing list
Chennaipy@python.org
https://mail.python.org/mailman/listinfo/chennaipy

Reply via email to