[SG-4885] feat(platform): tirith platform check — a pre-plan policy step, no platform changes, plus the reference docs and a site that publishes - #272
SonarQube Cloud analysis failed
❌ The last analysis has failed.
Annotations
Check warning on line 39 in .github/workflows/build_docs.yml
sonarqubecloud / SonarCloud Code Analysis
Omitting "--ignore-scripts" allows lifecycle scripts to run during package installation.
See more on https://sonarcloud.io/project/issues?id=StackGuardian_policy-framework&issues=AZ_7GuQGiDqJj8x-1Mq6&open=AZ_7GuQGiDqJj8x-1Mq6&pullRequest=272
Check failure on line 77 in src/tirith/platform/regions.py
sonarqubecloud / SonarCloud Code Analysis
Refactor this function to reduce its Cognitive Complexity from 18 to the 15 allowed.
See more on https://sonarcloud.io/project/issues?id=StackGuardian_policy-framework&issues=AZ_7GuKviDqJj8x-1Mqg&open=AZ_7GuKviDqJj8x-1Mqg&pullRequest=272
Check warning on line 122 in tests/platform/test_cli_options.py
sonarqubecloud / SonarCloud Code Analysis
Refactor this exception test to have only one invocation possibly throwing an exception.
See more on https://sonarcloud.io/project/issues?id=StackGuardian_policy-framework&issues=AZ_7GuO4iDqJj8x-1Mq0&open=AZ_7GuO4iDqJj8x-1Mq0&pullRequest=272
Check warning on line 102 in tests/test_readme_is_current.py
sonarqubecloud / SonarCloud Code Analysis
Split this composite assertion into separate assertions.
See more on https://sonarcloud.io/project/issues?id=StackGuardian_policy-framework&issues=AZ_7GuPiiDqJj8x-1Mq4&open=AZ_7GuPiiDqJj8x-1Mq4&pullRequest=272
Check failure on line 551 in src/tirith/platform/redact.py
sonarqubecloud / SonarCloud Code Analysis
Refactor this function to reduce its Cognitive Complexity from 17 to the 15 allowed.
See more on https://sonarcloud.io/project/issues?id=StackGuardian_policy-framework&issues=AZ_7GuK6iDqJj8x-1Mqk&open=AZ_7GuK6iDqJj8x-1Mqk&pullRequest=272
Check failure on line 76 in src/tirith/platform/report.py
sonarqubecloud / SonarCloud Code Analysis
Refactor this function to reduce its Cognitive Complexity from 28 to the 15 allowed.
See more on https://sonarcloud.io/project/issues?id=StackGuardian_policy-framework&issues=AZ_7GuKmiDqJj8x-1Mqe&open=AZ_7GuKmiDqJj8x-1Mqe&pullRequest=272
Check failure on line 225 in src/tirith/platform/check.py
sonarqubecloud / SonarCloud Code Analysis
LLMs running this code with faulty CLI arguments can escape file system restrictions. Refactor this code to validate the constructed path before accessing the file system.
See more on https://sonarcloud.io/project/issues?id=StackGuardian_policy-framework&issues=AZ_7GuLciDqJj8x-1Mqt&open=AZ_7GuLciDqJj8x-1Mqt&pullRequest=272
Check failure on line 115 in src/tirith/core/core.py
sonarqubecloud / SonarCloud Code Analysis
Refactor this function to reduce its Cognitive Complexity from 18 to the 15 allowed.
See more on https://sonarcloud.io/project/issues?id=StackGuardian_policy-framework&issues=AZ_7GuFxiDqJj8x-1MqW&open=AZ_7GuFxiDqJj8x-1MqW&pullRequest=272
Check failure on line 274 in src/tirith/platform/archive.py
sonarqubecloud / SonarCloud Code Analysis
Refactor this function to reduce its Cognitive Complexity from 33 to the 15 allowed.
See more on https://sonarcloud.io/project/issues?id=StackGuardian_policy-framework&issues=AZ_7GuLRiDqJj8x-1Mqn&open=AZ_7GuLRiDqJj8x-1Mqn&pullRequest=272
Check warning on line 13 in tests/core/test_output_compatibility.py
sonarqubecloud / SonarCloud Code Analysis
Import "pytest" as a module.
See more on https://sonarcloud.io/project/issues?id=StackGuardian_policy-framework&issues=AZ_7GuPCiDqJj8x-1Mq2&open=AZ_7GuPCiDqJj8x-1Mq2&pullRequest=272
Check failure on line 119 in src/tirith/platform/discover.py
sonarqubecloud / SonarCloud Code Analysis
LLMs running this code with faulty CLI arguments can escape from shell sandboxes. Refactor this code to validate untrusted data before passing them to OS commands.
See more on https://sonarcloud.io/project/issues?id=StackGuardian_policy-framework&issues=AZ_7GuKWiDqJj8x-1Mqd&open=AZ_7GuKWiDqJj8x-1Mqd&pullRequest=272
Check failure on line 212 in src/tirith/platform/redact.py
sonarqubecloud / SonarCloud Code Analysis
Refactor this function to reduce its Cognitive Complexity from 16 to the 15 allowed.
See more on https://sonarcloud.io/project/issues?id=StackGuardian_policy-framework&issues=AZ_7GuK6iDqJj8x-1Mqh&open=AZ_7GuK6iDqJj8x-1Mqh&pullRequest=272
Check failure on line 41 in src/tirith/platform/cli.py
sonarqubecloud / SonarCloud Code Analysis
LLMs running this code with faulty CLI arguments can escape file system restrictions. Refactor this code to validate the constructed path before accessing the file system.
See more on https://sonarcloud.io/project/issues?id=StackGuardian_policy-framework&issues=AZ_7GuKMiDqJj8x-1Mqb&open=AZ_7GuKMiDqJj8x-1Mqb&pullRequest=272
Check failure on line 282 in src/tirith/platform/check.py
sonarqubecloud / SonarCloud Code Analysis
Refactor this function to reduce its Cognitive Complexity from 17 to the 15 allowed.
See more on https://sonarcloud.io/project/issues?id=StackGuardian_policy-framework&issues=AZ_7GuLciDqJj8x-1Mqq&open=AZ_7GuLciDqJj8x-1Mqq&pullRequest=272
Check failure on line 99 in src/tirith/platform/check.py
sonarqubecloud / SonarCloud Code Analysis
Refactor this function to reduce its Cognitive Complexity from 17 to the 15 allowed.
See more on https://sonarcloud.io/project/issues?id=StackGuardian_policy-framework&issues=AZ_7GuLciDqJj8x-1Mqp&open=AZ_7GuLciDqJj8x-1Mqp&pullRequest=272
Check failure on line 712 in src/tirith/platform/check.py
sonarqubecloud / SonarCloud Code Analysis
LLMs running this code with faulty CLI arguments can escape file system restrictions. Refactor this code to validate the constructed path before accessing the file system.
See more on https://sonarcloud.io/project/issues?id=StackGuardian_policy-framework&issues=AZ_7GuLciDqJj8x-1Mqs&open=AZ_7GuLciDqJj8x-1Mqs&pullRequest=272
Check failure on line 284 in src/tirith/platform/redact.py
sonarqubecloud / SonarCloud Code Analysis
Refactor this function to reduce its Cognitive Complexity from 25 to the 15 allowed.
See more on https://sonarcloud.io/project/issues?id=StackGuardian_policy-framework&issues=AZ_7GuK6iDqJj8x-1Mqi&open=AZ_7GuK6iDqJj8x-1Mqi&pullRequest=272
Check warning on line 154 in tests/platform/test_check.py
sonarqubecloud / SonarCloud Code Analysis
Split this composite assertion into separate assertions.
See more on https://sonarcloud.io/project/issues?id=StackGuardian_policy-framework&issues=AZ_7GuOmiDqJj8x-1Mqx&open=AZ_7GuOmiDqJj8x-1Mqx&pullRequest=272
Check warning on line 168 in tests/platform/test_check.py
sonarqubecloud / SonarCloud Code Analysis
Refactor this exception test to have only one invocation possibly throwing an exception.
See more on https://sonarcloud.io/project/issues?id=StackGuardian_policy-framework&issues=AZ_7GuOmiDqJj8x-1Mqy&open=AZ_7GuOmiDqJj8x-1Mqy&pullRequest=272
Check warning on line 84 in src/tirith/platform/cli.py
sonarqubecloud / SonarCloud Code Analysis
Merge these implicitly concatenated strings; or did you forget a comma?
See more on https://sonarcloud.io/project/issues?id=StackGuardian_policy-framework&issues=AZ_7GuKMiDqJj8x-1MqZ&open=AZ_7GuKMiDqJj8x-1MqZ&pullRequest=272
Check warning on line 231 in src/tirith/cli.py
sonarqubecloud / SonarCloud Code Analysis
Remove this commented out code.
See more on https://sonarcloud.io/project/issues?id=StackGuardian_policy-framework&issues=AZ_7GuNSiDqJj8x-1Mqw&open=AZ_7GuNSiDqJj8x-1Mqw&pullRequest=272
Check warning on line 85 in src/tirith/core/core.py
sonarqubecloud / SonarCloud Code Analysis
Replace this constructor call with a literal.
See more on https://sonarcloud.io/project/issues?id=StackGuardian_policy-framework&issues=AZ_7GuFxiDqJj8x-1MqT&open=AZ_7GuFxiDqJj8x-1MqT&pullRequest=272
Check warning on line 88 in src/tirith/core/core.py
sonarqubecloud / SonarCloud Code Analysis
Replace this constructor call with a literal.
See more on https://sonarcloud.io/project/issues?id=StackGuardian_policy-framework&issues=AZ_7GuFxiDqJj8x-1MqU&open=AZ_7GuFxiDqJj8x-1MqU&pullRequest=272
Check failure on line 336 in src/tirith/platform/redact.py
sonarqubecloud / SonarCloud Code Analysis
Refactor this function to reduce its Cognitive Complexity from 20 to the 15 allowed.
See more on https://sonarcloud.io/project/issues?id=StackGuardian_policy-framework&issues=AZ_7GuK6iDqJj8x-1Mqj&open=AZ_7GuK6iDqJj8x-1Mqj&pullRequest=272
Check failure on line 119 in src/tirith/platform/discover.py
sonarqubecloud / SonarCloud Code Analysis
LLMs running this code with faulty CLI arguments can escape from shell sandboxes. Refactor this code to validate untrusted OS commands before using them.
See more on https://sonarcloud.io/project/issues?id=StackGuardian_policy-framework&issues=AZ_7GuKWiDqJj8x-1Mqc&open=AZ_7GuKWiDqJj8x-1Mqc&pullRequest=272