Skip to content

Conversation

@BartKaras1128
Copy link
Contributor

Added CWE-754 README.md along with 2 new code examples.

Signed-off-by: Bartlomiej Karas <bartlomiej.karas@ericsson.com>
Copy link
Contributor

@myteron myteron left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

sorry about this. bunch of issus need to be address that I did not see while it was in confluence for some reason.

Copy link
Contributor

@myteron myteron left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

need a bunch of changes that I did not see while it was in confluence for some reason.

BartKaras1128 and others added 8 commits April 15, 2025 11:06
Co-authored-by: myteron <myteron@gmail.com>
Signed-off-by: Bartlomiej Karas <moezarts@gmail.com>
Co-authored-by: myteron <myteron@gmail.com>
Signed-off-by: Bartlomiej Karas <moezarts@gmail.com>
I removed Bibliography section, it was actually not leading to an external link

Signed-off-by: Bartlomiej Karas <moezarts@gmail.com>
Updated Helge's "remove fluff" comment, including type fix

Signed-off-by: Bartlomiej Karas <moezarts@gmail.com>
Co-authored-by: myteron <myteron@gmail.com>
Signed-off-by: Bartlomiej Karas <moezarts@gmail.com>
Signed-off-by: Bartlomiej Karas <moezarts@gmail.com>
Added:
# TODO: input sanitation.
# TODO: proper exception handling

Into the "add_to_package" function

Signed-off-by: Bartlomiej Karas <moezarts@gmail.com>
Left a sentence about the output of "compliant01.py"

Signed-off-by: Bartlomiej Karas <moezarts@gmail.com>
@myteron myteron self-assigned this Apr 17, 2025
@s19110
Copy link
Contributor

s19110 commented Apr 17, 2025

Reviewing this as well.

Copy link
Contributor

@s19110 s19110 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Mostly cosmetic suggestions. The rule itself looks good.

Signed-off-by: Helge Wehder <helge.wehder@ericsson.com>
@myteron myteron self-requested a review April 17, 2025 16:13
Copy link
Contributor

@myteron myteron left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Hi @BartKaras1128 hi @s19110 . I applied a ton of cosmetics like backticks, fixed links in readme and a table. Could not help get rid of the warnings in my ide.

@BartKaras1128, I approve but believe Hubert has found some flaws he comment on that need fixing

BartKaras1128 and others added 6 commits April 22, 2025 11:16
Happy with that, changing it now.

Co-authored-by: Hubert Daniszewski <61824500+s19110@users.noreply.github.com>
Signed-off-by: Bartlomiej Karas <moezarts@gmail.com>
Co-authored-by: Hubert Daniszewski <61824500+s19110@users.noreply.github.com>
Signed-off-by: Bartlomiej Karas <moezarts@gmail.com>
…nt01.py

Co-authored-by: Hubert Daniszewski <61824500+s19110@users.noreply.github.com>
Signed-off-by: Bartlomiej Karas <moezarts@gmail.com>
…nt01.py

Co-authored-by: Hubert Daniszewski <61824500+s19110@users.noreply.github.com>
Signed-off-by: Bartlomiej Karas <moezarts@gmail.com>
I added Hubert's suggested change to the "noncompliant01.py" section

Signed-off-by: Bartlomiej Karas <moezarts@gmail.com>
Signed-off-by: myteron <myteron@gmail.com>
@myteron myteron merged commit 586eae3 into ossf:main May 13, 2025
2 checks passed
@myteron myteron moved this from Backlog to Done in Python Secure Coding Guide Jun 30, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants