Skip to content

Validate track manager integer inputs#2301

Merged
FlorianPfaff merged 1 commit into
mainfrom
fix-main-codebase-bug-14
May 27, 2026
Merged

Validate track manager integer inputs#2301
FlorianPfaff merged 1 commit into
mainfrom
fix-main-codebase-bug-14

Conversation

@FlorianPfaff
Copy link
Copy Markdown
Owner

Summary

  • validate TrackManager lifecycle thresholds as integer scalars before storing them
  • reject fractional, boolean, non-finite, and shaped-array association indices before normalization
  • add regression coverage for lifecycle threshold and association-index validation

Root cause

TrackManager and association normalization used bare int(...) conversions. That silently truncated fractional values like 1.5 and treated booleans as 0/1, which can change track confirmation/deletion timing or normalize associations to the wrong track/measurement.

Tests

  • py -3.12 -m pytest -q tests\filters\test_track_manager.py
  • py -3.12 -m ruff check src tests
  • git diff --check
  • git diff --cached --check

@FlorianPfaff FlorianPfaff enabled auto-merge (squash) May 27, 2026 16:10
@github-actions
Copy link
Copy Markdown
Contributor

MegaLinter analysis: Success

Descriptor Linter Files Fixed Errors Warnings Elapsed time
✅ COPYPASTE jscpd yes no no 35.6s
✅ JSON prettier 7 0 0 0 1.11s
✅ JSON v8r 7 0 0 4.56s
✅ MARKDOWN markdownlint 66 0 0 0 1.68s
✅ MARKDOWN markdown-table-formatter 66 0 0 0 0.8s
✅ PYTHON black 772 0 0 0 35.94s
✅ PYTHON isort 772 0 0 0 2.03s
✅ REPOSITORY checkov yes no no 42.95s
✅ REPOSITORY gitleaks yes no no 15.72s
✅ REPOSITORY git_diff yes no no 0.23s
✅ REPOSITORY secretlint yes no no 24.2s
✅ REPOSITORY syft yes no no 9.49s
✅ REPOSITORY trivy-sbom yes no no 4.87s
✅ REPOSITORY trufflehog yes no no 20.31s
✅ YAML prettier 11 0 0 0 0.67s
✅ YAML v8r 11 0 0 11.28s
✅ YAML yamllint 11 0 0 0.51s

Notices

📣 MegaLinter 9.5.0 is out! Discover the new features and security recommendations in the release announcement. (Skip this info by defining SECURITY_SUGGESTIONS: false)

See detailed reports in MegaLinter artifacts

Your project could benefit from a custom flavor, which would allow you to run only the linters you need, and thus improve runtime performances. (Skip this info by defining FLAVOR_SUGGESTIONS: false)

  • Documentation: Custom Flavors
  • Command: npx mega-linter-runner@9.5.0 --custom-flavor-setup --custom-flavor-linters PYTHON_BLACK,PYTHON_ISORT,COPYPASTE_JSCPD,JSON_V8R,JSON_PRETTIER,MARKDOWN_MARKDOWNLINT,MARKDOWN_MARKDOWN_TABLE_FORMATTER,REPOSITORY_CHECKOV,REPOSITORY_GIT_DIFF,REPOSITORY_GITLEAKS,REPOSITORY_SECRETLINT,REPOSITORY_SYFT,REPOSITORY_TRIVY_SBOM,REPOSITORY_TRUFFLEHOG,YAML_PRETTIER,YAML_YAMLLINT,YAML_V8R

MegaLinter is graciously provided by OX Security
Show us your support by starring ⭐ the repository

@FlorianPfaff FlorianPfaff merged commit 424d9b8 into main May 27, 2026
25 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant