Skip to content
Bandit Python Tool for Codacy
Branch: master
Clone or download
rtfpessoa Merge pull request #20 from codacy/IGFCoimbra-patch-1-1
Update docs about contributing your own tool
Latest commit 7c5a4a0 Oct 30, 2018
Type Name Latest commit message Commit time
Failed to load latest commit information.
.circleci Update to 1.5.1 Oct 9, 2018
project Update to 1.5.1 Oct 9, 2018
src/main Update to 1.5.1 Oct 9, 2018
tool-scripts Run bandit for both python2 and python3 May 25, 2016
.gitignore Update README Feb 7, 2018
LICENSE Update docs about contributing your own tool Oct 30, 2018
build.sbt Update to 1.5.1 Oct 9, 2018

Codacy Bandit

This is the docker engine we use at Codacy to have Bandit support. You can also create a docker to integrate the tool and language of your choice! See the codacy-engine-scala-seed repository for more information.

Codacy Badge Build Status


You can create the docker by doing:

sbt docker:publishLocal

The docker is ran with the following command:

docker run -it -v $srcDir:/src  <DOCKER_NAME>:<DOCKER_VERSION>


We use the codacy-plugins-test to test our external tools integration. You can follow the instructions there to make sure your tool is working as expected.

What is Codacy

Codacy is an Automated Code Review Tool that monitors your technical debt, helps you improve your code quality, teaches best practices to your developers, and helps you save time in Code Reviews.

Among Codacy’s features

  • Identify new Static Analysis issues
  • Commit and Pull Request Analysis with GitHub, BitBucket/Stash, GitLab (and also direct git repositories)
  • Auto-comments on Commits and Pull Requests
  • Integrations with Slack, HipChat, Jira, YouTrack
  • Track issues in Code Style, Security, Error Proneness, Performance, Unused Code and other categories

Codacy also helps keep track of Code Coverage, Code Duplication, and Code Complexity.

Codacy supports PHP, Python, Ruby, Java, JavaScript, and Scala, among others.

Free for Open Source

Codacy is free for Open Source projects.

You can’t perform that action at this time.