bandit
A tool for finding security issues in Python code (https://bandit.readthedocs.io).
Backend: pants.core
Config section: [bandit]
Basic options
skip
--[no-]bandit-skip
PANTS_BANDIT_SKIP
default:
False
Don't use Bandit when running /home/josh/work/scie-pants/dist/scie-pants-linux-x86_64 lint
args
--bandit-args="[<shell_str>, <shell_str>, ...]"
PANTS_BANDIT_ARGS
default:
[]
Arguments to pass directly to Bandit, e.g. --bandit-args="--skip B101,B308 --confidence"
Advanced options
version
--bandit-version=<str>
PANTS_BANDIT_VERSION
default:
bandit>=1.6.2,<1.7
Requirement string for the tool.
extra_requirements
--bandit-extra-requirements="['<str>', '<str>', ...]"
PANTS_BANDIT_EXTRA_REQUIREMENTS
default:
[ "setuptools<45", "stevedore<3" ]
Any additional requirement strings to use with the tool. This is useful if the tool allows you to install plugins or if you need to constrain a dependency to a certain version.
entry_point
--bandit-entry-point=<str>
PANTS_BANDIT_ENTRY_POINT
default:
bandit
The main module for the tool. Usually, you will not want to change this from the default.
config
--bandit-config=<file_option>
PANTS_BANDIT_CONFIG
default:
None
Path to a Bandit YAML config file
Deprecated options
interpreter_constraints
--bandit-interpreter-constraints="['<str>', '<str>', ...]"
PANTS_BANDIT_INTERPRETER_CONSTRAINTS
default:
[]
Python interpreter constraints for this tool.