We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent 8835466 commit b39505eCopy full SHA for b39505e
1 file changed
rules/security/authorization.yml
@@ -10,3 +10,13 @@ rules:
10
Avoid using "All" role. It's available to every user, including website user.
11
languages: [json]
12
severity: WARNING
13
+
14
+- id: frappe-setuser
15
+ patterns:
16
+ - pattern-either:
17
+ - pattern: frappe.set_user(...)
18
+ message: |
19
+ Detected the use of functions that can be dangerous if used incorrectly.
20
+ This code should be manually audited by security team.
21
+ languages: [python]
22
+ severity: WARNING
0 commit comments