[FEATURE] Create Github Action Pipeline for Bandit Scan
- Lingua principale
- Python
- Stelle
- 32
- Fork
- 15
- Metriche di merge delle PR
- Nessuna PR unita negli ultimi 30g
Descrizione
**Is your feature request related to a problem? Please describe. **
Run [Bandit tool](https://github.com/PyCQA/bandit) to find common security issues over repository
**Describe the solution you'd like**
1. Create GitHub action workflow to run bandit scan
2. Action Trigger
- weekly periodic scan
- Scan for every pull request
3. Documentation: https://bandit.readthedocs.io/en/latest/
Guida per i contributori
Apri la guida per i contributori
Direzione di ricerca
Start by reviewing the repository's GitHub Actions configuration and the Bandit documentation linked in the issue. Add a workflow that runs Bandit weekly and for every pull request, with the scan covering the repository; done means both triggers execute the scan successfully.
Scritto dal modello di indicizzazione a partire dal testo della issue.
Valutazione
- Stack tecnologico
- github-actions, python
- Ambito
- ci-cd, security
- Tipo di issue
- Funzionalità
- Difficoltà
- 2/5
- Tempo stimato
- 1-3 ore
- Stato di attività
- Ferma
- Chiarezza
- Abbastanza chiara
- Idoneità per principianti
- 50/100