Reply to post: False positives

About half of Python libraries in PyPI may have security issues, boffins say

DomDF

False positives

Doesn't bandit have a terrible false positive rate? I stopped using it because there was too much noise.

Is the article in press with a reputable journal, or just on the preprint server?

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon

Biting the hand that feeds IT © 1998–2021