Skip to content

Conversation

@sirandreww-starkware
Copy link
Contributor

No description provided.

@reviewable-StarkWare
Copy link

This change is Reviewable

Copy link
Contributor Author

sirandreww-starkware commented Jul 29, 2025

Warning

This pull request is not mergeable via GitHub because a downstack PR is open. Once all requirements are satisfied, merge this PR as a stack on Graphite.
Learn more

This stack of pull requests is managed by Graphite. Learn more about stacking.

try:
result = subprocess.run(
cmd,
shell=True,
Copy link

@semgrep-code-starkware-libs semgrep-code-starkware-libs bot Jul 29, 2025

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Found 'subprocess' function 'run' with 'shell=True'. This is dangerous because this call will spawn the command using a shell process. Doing so propagates current shell settings and variables, which makes it much easier for a malicious actor to execute commands. Use 'shell=False' instead.

🍰 Removed in commit d7d84ce 🍰

@github-actions
Copy link

github-actions bot commented Jul 29, 2025

Benchmark movements: full_committer_flow performance regressed! full_committer_flow time: [16.824 ms 17.056 ms 17.298 ms] change: [+3.6401% +5.5651% +7.4524%] (p = 0.00 < 0.05) Performance has regressed. Found 3 outliers among 100 measurements (3.00%) 3 (3.00%) high mild

@sirandreww-starkware sirandreww-starkware changed the base branch from main to graphite-base/8303 July 30, 2025 11:28
@sirandreww-starkware sirandreww-starkware force-pushed the 07-29-apollo-network-broadcast-network-stress-test-draft branch from b24e12f to 30f4a37 Compare July 30, 2025 11:28
@sirandreww-starkware sirandreww-starkware changed the base branch from graphite-base/8303 to 07-29-waker-option-instead-of-vec-fix July 30, 2025 11:28
@sirandreww-starkware sirandreww-starkware removed the request for review from ShahakShama July 30, 2025 11:29
@sirandreww-starkware sirandreww-starkware self-assigned this Jul 30, 2025
@sirandreww-starkware sirandreww-starkware changed the base branch from 07-29-waker-option-instead-of-vec-fix to graphite-base/8303 August 6, 2025 18:10
@sirandreww-starkware sirandreww-starkware force-pushed the 07-29-apollo-network-broadcast-network-stress-test-draft branch from 30f4a37 to a604cea Compare August 6, 2025 18:10
@sirandreww-starkware sirandreww-starkware changed the base branch from graphite-base/8303 to 07-31-apollo_network_decreased_hearbeat_length_and_history_and_gossip August 6, 2025 18:10
@sirandreww-starkware sirandreww-starkware changed the base branch from 07-31-apollo_network_decreased_hearbeat_length_and_history_and_gossip to graphite-base/8303 August 11, 2025 05:26
@sirandreww-starkware sirandreww-starkware force-pushed the 07-29-apollo-network-broadcast-network-stress-test-draft branch from a604cea to f9b196a Compare August 11, 2025 05:27
@sirandreww-starkware sirandreww-starkware changed the base branch from graphite-base/8303 to 07-30-apollo_network_turned_off_flood_publish_in_gossipsub August 11, 2025 05:27
This was referenced Jan 7, 2026
@sirandreww-starkware sirandreww-starkware marked this pull request as ready for review January 8, 2026 17:42
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants