Giter VIP home page Giter VIP logo

pycharm-security's Introduction

PyCharm Python Security plugin

GitHub Actions Downloads Version codecov Documentation Status Docker Cloud Build Status

A plugin to run security checks for common flaws in Python code and suggest quick fixes.

Demo

Check out the webinar for a full demo of the functionality in this plugin:

IMAGE ALT TEXT HERE

Documentation

Documentation is available on pycharm-security.readthedocs.io, including examples and explanations for all the checks.

GitHub Action Documentation

Documentation for the GitHub action is on the documentation site.

Snyk Support

Plugin has support for snyk.io as the vulnerability database. Snyk offers an up to date and in-depth database of Python package issues. Your installed packages will be checked against a live database of PyPi issues (subscription required.)

Bundled SafetyDB

This plugin will check the installed packages in your Python projects against the SafetyDB and raise a warning for any vulnerabilities.

PyPi vulnerability API

This plugin will check the installed packages in your Python projects against the OSV database in PyPi and raise a warning for any vulnerabilities.

Current checks

See Supported Checks for a current list.

Current quick fixes

See Fixes for a current list.

Release History

See Release History for the release history.

Contributing

If you would like to alter or add new checks and fixes, see the Development page.

License

This project is MIT Licensed.

Credits

Credit to the PyUp.io team for the SafetyDB. This project uses SafetyDB to scan packages, SafetyDB is licensed under "Attribution-NonCommercial 4.0 International" license.

pycharm-security's People

Contributors

tonybaloney avatar dependabot[bot] avatar depend-a-lot-bot[bot] avatar dependabot-preview[bot] avatar ehooo avatar jjm avatar jugmac00 avatar koxudaxi avatar lada-gagina avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.