fdroidserver/fdroidserver
Hans-Christoph Steiner 2d5770985f gitlab-ci: silence irrelevant bandit error
This SSH connection is only ever to the Vagrant VM on the same machine.

>> Issue: [B507:ssh_no_host_key_verification] Paramiko call with policy set to automatically trust the unknown host key.
   Severity: High   Confidence: Medium
   CWE: CWE-295 (https://cwe.mitre.org/data/definitions/295.html)
   More Info: https://bandit.readthedocs.io/en/1.7.6/plugins/b507_ssh_no_host_key_verification.html
   Location: ./fdroidserver/build.py:104:8
103	        sshs = paramiko.SSHClient()
104	        sshs.set_missing_host_key_policy(paramiko.AutoAddPolicy())
105	        sshs.connect(sshinfo['hostname'], username=sshinfo['user'],
2023-12-15 08:40:27 +01:00
..
asynchronousfilereader enable black on fdroidserver/asynchronousfilereader/__init__.py 2023-04-27 11:34:18 +02:00
__init__.py download_repo_index_v2() for verified downloading of index-v2 2023-03-09 12:35:29 +01:00
__main__.py pylint: Reenable C0201 consider-iterating-dictionary 2023-03-20 16:33:16 +01:00
apksigcopier.py make F-Droid-specific changes to apksigcopier.py 2023-02-17 13:08:23 +00:00
btlog.py deploy: ensure mirrors and binary transparency always create 'master' 2023-05-10 09:21:14 +02:00
build.py gitlab-ci: silence irrelevant bandit error 2023-12-15 08:40:27 +01:00
checkupdates.py [checkupdates] Remove UpdateCheckMode "RepoTrunk" 2023-11-21 07:18:17 +00:00
common.py port to looseversion 2023-12-08 10:48:01 +01:00
deploy.py deploy: give useful error if rsync is not installed 2023-09-08 10:42:27 +02:00
exception.py basic downloading for scan_binary signatures 2022-10-06 12:08:23 +02:00
gpgsign.py fix code format for new black rule 2023-03-20 14:47:48 +01:00
import_subcommand.py Import - add more template content 2023-07-12 13:45:10 +00:00
index.py index: add datatype checking to mirrors: and config/mirrors.yml 2023-12-07 17:25:15 +01:00
init.py enable black on fdroidserver/init.py 2023-04-27 11:34:10 +02:00
install.py fix code format for new black rule 2023-03-20 14:47:48 +01:00
lint.py lint: remove check_bulletes_lists 2023-12-06 23:35:55 +08:00
looseversion.py add looseversion license information to vendored file 2023-12-08 10:42:29 +01:00
metadata.py [checkupdates] Remove UpdateCheckMode "RepoTrunk" 2023-11-21 07:18:17 +00:00
mirror.py mirror: make _run_wget() return to the dir it started in 2021-12-07 10:24:27 +01:00
net.py net.download_file(): retry on errors 2022-10-22 23:15:13 +02:00
nightly.py fix code format for new black rule 2023-03-20 14:47:48 +01:00
publish.py purge all references to zipalign, that is delegated to other things 2023-02-22 14:45:51 +01:00
readmeta.py fix code format for new black rule 2023-03-20 14:47:48 +01:00
rewritemeta.py metadata: handle TYPE_STRINGMAP when writing out YAML 2023-05-23 10:47:03 +02:00
scanner.py Support Uri.create() syntax for maven repositories 2023-12-07 01:30:59 +00:00
signatures.py enable black on fdroidserver/signatures.py 2023-04-27 11:34:16 +02:00
signindex.py fix code format for new black rule 2023-03-20 14:47:48 +01:00
tail.py Fix pylint warnings 2022-03-29 15:53:45 +02:00
update.py update: use proper name for PIL image filter ANTIALIAS -> LANCZOS 2023-07-03 17:44:47 +02:00
verify.py fix code format for new black rule 2023-03-20 14:47:48 +01:00
vmtools.py vmtools: Properly initialize provider member 2023-03-21 14:00:58 +01:00