bandit
https://github.com/pycqa/bandit
Python
Bandit is a tool designed to find common security issues in Python code.
Triage Issues!
When you volunteer to triage issues, you'll receive an email each day with a link to an open issue that needs help in this project. You'll also receive instructions on how to triage issues.
Triage Docs!
Receive a documented method or class from your favorite GitHub repos in your inbox every day. If you're really pro, receive undocumented methods or classes and supercharge your commit history.
Python not yet supported6 Subscribers
Add a CodeTriage badge to bandit
Help out
- Issues
- Add an LDAP injection plugin
- Runtime error with screen/text formating
- List all checks done by this scanner
- Subprocess usage flagging
- Skip configuration for certain paths only
- Add an auto-fix or auto-correct feature
- Subprocess input data warning on literal command
- No recommendations for how to resolve warnings
- config file as described in README.rst does not work
- Bandit is too slow to parse some files
- Docs
- Python not yet supported