Scan Python code for risky security patterns with Bandit before review or release

Catch insecure Python calls, weak crypto usage, shell injection risks, and similar patterns before merge or release.

agentskillexchange Updated 28 repo stars

File contents

Scan Python code for risky security patterns with Bandit before review or release

Catch insecure Python calls, weak crypto usage, shell injection risks, and similar patterns before merge or release.

Prerequisites

Bandit CLI, Python source tree

Installation

Use the upstream install or setup path that matches your environment:

  • docker pull ghcr.io/pycqa/bandit/bandit
  • docker pull --platform= ghcr.io/pycqa/bandit/bandit:latest

Requirements and caveats from upstream:

Basic usage or getting-started notes:

Documentation

Source

agentskillexchange/skills/tree/main/skills/scan-python-code-for-risky-security-patterns-with-bandit-before-review-or-release commit 62e0838c12

Frequently asked questions

npx skillmds@latest add agentskillexchange/scan-python-code-for-risky-security-patterns-with-bandit-bef