From a104ca4897830b66bb00e92c80a4d681af6416e2 Mon Sep 17 00:00:00 2001 From: gssakash Date: Wed, 22 Oct 2025 10:20:47 +0530 Subject: [PATCH] TODO: Google API for Library Checking needs to be implemented --- scanner_tool/owasp_checker.py | 4 ++++ tests/test_owasp_checker.py | 2 ++ 2 files changed, 6 insertions(+) diff --git a/scanner_tool/owasp_checker.py b/scanner_tool/owasp_checker.py index e11de4a..0ea770e 100644 --- a/scanner_tool/owasp_checker.py +++ b/scanner_tool/owasp_checker.py @@ -45,6 +45,10 @@ # A06: Vulnerable and Outdated Components (Simulated Check) # Key: package name, Value: First SAFE version (anything < this version is vulnerable) + + +##TODO: IMPLEMENT THE SAFE PACKAGES LIST FROM Google's safe package list through a GRPC CALL with API KEY +## SOURCE : https://cloud.google.com/assured-open-source-software/docs/supported-packages#python VULNERABLE_PACKAGES = { "requests": "2.29.0", "jinja2": "3.1.2", diff --git a/tests/test_owasp_checker.py b/tests/test_owasp_checker.py index 55d283d..96c4b02 100644 --- a/tests/test_owasp_checker.py +++ b/tests/test_owasp_checker.py @@ -1,3 +1,5 @@ + +#TODO: Update tests to match the updates on owasp file once ready. import unittest import os import tempfile