open-vault/tools/semgrep/physical-storage.yml

13 lines
385 B
YAML
Raw Permalink Normal View History

# Copyright (c) HashiCorp, Inc.
# SPDX-License-Identifier: MPL-2.0
rules:
- id: physical-storage-bypass-encryption
patterns:
- pattern-either:
- pattern: $CORE.physical.Put(...)
- pattern: $CORE.underlyingPhysical.Put(...)
message: "Bypassing encryption by accessing physical storage directly"
languages: [go]
severity: WARNING