Software /
code /
prosody
File
.semgrep.yml @ 13704:1f428259544c
Merge 13.0->trunk
author | Kim Alvefur <zash@zash.se> |
---|---|
date | Sat, 15 Feb 2025 16:57:31 +0100 |
parent | 13700:9b7687b47da9 |
line wrap: on
line source
rules: - id: log-variable-fmtstring patterns: - pattern: log("...", $A) - pattern-not: log("...", "...") message: Variable passed as format string to logging languages: [lua] severity: ERROR - id: module-log-variable-fmtstring patterns: - pattern: module:log("...", $A) - pattern-not: module:log("...", "...") message: Variable passed as format string to logging languages: [lua] severity: ERROR - id: module-getopt-string-default patterns: - pattern: module:get_option_string("...", $A) - pattern-not: module:get_option_string("...", "...") - pattern-not: module:get_option_string("...", host) - pattern-not: module:get_option_string("...", module.host) message: Non-string default from :get_option_string severity: ERROR languages: [lua] - id: stanza-empty-text-constructor patterns: - pattern: $A:text() message: Use :get_text() to read text, or pass a value here to add text severity: WARNING languages: [lua] - id: require-unprefixed-module patterns: - pattern: require("$X") - metavariable-regex: metavariable: $X regex: '^(core|net|util)\.' message: Prefix required module path with 'prosody.' severity: ERROR languages: [lua]