PowerShell / PowerShell/PSScriptAnalyzer
AvoidUsingPlainTextForPassword docs do not cover all checked parameter names
还没有人认领这个 Issue。
- 主要语言
- C#
- 星标
- 2.2k
- 派生
- 414
- 平均合并
- 13 小时 1 分钟
- 30 天内合并 PR
- 2
描述
I have a script parameter that holds a path to the encrypted credential file named $CredentialFile for which I get the warning:
Parameter '$CredentialFile' should use SecureString, otherwise this will expose sensitive information. See ConvertTo-SecureString for more information.
There is no reason for me use SecureString here and I cannot think of a better alternative to the parameter name, so it would be nice to suppress this message for this particular instance, but not to the whole file or project. Besides, the documentation for PSAvoidUsingPlainTextForPassword needs to include Credential and whatever other strings it gets triggered of, since it only mentions one word: Password.
贡献指南
从这里开始
- 先读完整个 Issue,再读项目的贡献指南。
- 在 Issue 下留言说明你要接手 —— 这能避免两个人做同样的事。
- Fork 仓库,在一个分支上完成修改。
- 提交 Pull Request,并在描述里引用这个 Issue 编号。
调研方向
从 PSAvoidUsingPlainTextForPassword 规则及其文档条目开始;issue 中未指定文件路径或测试路径。检查 CredentialFile 等参数名称的覆盖方式,然后更新文档,说明所有适用的名称,以及在文档所述行为允许的情况下抑制单个警告的受支持方式。
由索引模型根据 Issue 内容生成。
评估
- 技术栈
- powershell
- 领域
- documentation, tooling
- Issue 类型
- 文档
- 难度
- 2/5
- 预计耗时
- 1-3 小时
- 活跃度
- 停滞
- 描述清晰度
- 基本清楚
- 新手友好度
- 35/100