Remove ci_cd/publish-proxy-extras.sh (dead, unreferenced PyPI publish script) and .pre-commit-config.yaml (pulls external repos from GitHub on git commit). Add --only-binary :all: to scripts/install.sh to prevent execution of malicious setup.py during pip install. Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com> |
||
|---|---|---|
| .. | ||
| .grype.yaml | ||
| baseline_db.py | ||
| check_file_length.py | ||
| check_files_match.py | ||
| run_migration.py | ||
| security_scans_readme.md | ||
| security_scans.sh | ||
| TEST_KEY_PATTERNS.md | ||