zulip/stubs
Graham Bleaney 461d5b1a3e pysa: Introduce sanitizers, models, and inline marking safe.
This commit adds three `.pysa` model files: `false_positives.pysa`
for ruling out false positive flows with `Sanitize` annotations,
`req_lib.pysa` for educating pysa about Zulip's `REQ()` pattern for
extracting user input, and `redirects.pysa` for capturing the risk
of open redirects within Zulip code. Additionally, this commit
introduces `mark_sanitized`, an identity function which can be used
to selectively clear taint in cases where `Sanitize` models will not
work. This commit also puts `mark_sanitized` to work removing known
false postive flows.
2020-06-11 12:57:49 -07:00
..
stripe mypy: Remove daemon mode. 2019-08-25 15:04:12 -07:00
taint pysa: Introduce sanitizers, models, and inline marking safe. 2020-06-11 12:57:49 -07:00
yamole.pyi mypy: Add a first stub file, for yamole. 2018-07-12 14:10:53 +05:30