Skip to content

Commit 70c79bf

Browse files
committed
Add section regarding security linter
1 parent 4ec6905 commit 70c79bf

File tree

1 file changed

+11
-5
lines changed

1 file changed

+11
-5
lines changed

doc/design.rst

Lines changed: 11 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -411,13 +411,19 @@ Transitioning to Ruff requires us to adjust the migration and improvement strate
411411

412412
Security Linter
413413
+++++++++++++++
414-
Currently the secuexit zero
415414

415+
**Description:**
416+
As of today, the security linter does not fail if it has findings. This was intentionally done to simplify integration and adoption of the tool. Developers can still use the results to improve and find issues within the codebase, and additionally, a rating will be generated to provide some guidance on which projects need attention.
417+
418+
**Downsides:**
419+
- No enforced safeguard on introducing potential security issues
416420

417-
Rationale:
418-
- simplify adaption into projects
419-
- rating makes it still visiable
420-
-
421+
**Rationale/History:**
422+
- Simplify adoption into projects
423+
- First step to introduce tooling and make the current state/rating visible
424+
425+
**Ideas/Possible Solutions:**
426+
Define a strategy to address potential security issues in projects. Once this has been done, enforce the immediate addressing of potential security issues in the codebase upon introduction.
421427

422428

423429
Workflows Dependency Structure

0 commit comments

Comments
 (0)