Run bandit when verifying changes 49/67949/2
authorCédric Ollivier <cedric.ollivier@orange.com>
Sat, 25 May 2019 09:10:55 +0000 (11:10 +0200)
committerCédric Ollivier <cedric.ollivier@orange.com>
Sat, 25 May 2019 09:23:53 +0000 (11:23 +0200)
commit0440ffcac18991395799e5aafc9243e028917ab6
tree108f46cfa1d4c04579f94b3743c11d5ac59d0b76
parent5853dd1ef3c522a975f9685250b1b3e85588f738
Run bandit when verifying changes

It reports only MEDIUM issues or higher like nova [1].
It selects bandit 1.1.0 as defined in nova and neutron lower
constraints [2].

[1] https://github.com/openstack/nova/blob/master/tox.ini#L221
[2] https://github.com/openstack/nova/blob/master/lower-constraints.txt#L8

Change-Id: I6fc505f684701792d3e03659eb0feea8321452c0
Signed-off-by: Cédric Ollivier <cedric.ollivier@orange.com>
test-requirements.txt
tox.ini
upper-constraints.txt