mirror of
https://github.com/qodo-ai/pr-agent.git
synced 2025-07-05 05:10:38 +08:00
fix: improve CLI argument validation for sensitive parameters with dot notation
This commit is contained in:
@ -66,9 +66,9 @@ class PRAgent:
|
|||||||
if args:
|
if args:
|
||||||
for arg in args:
|
for arg in args:
|
||||||
if arg.startswith('--'):
|
if arg.startswith('--'):
|
||||||
for forbidden_arg in forbidden_cli_args:
|
|
||||||
arg_word = arg.lower()
|
arg_word = arg.lower()
|
||||||
arg_word = arg_word.replace('__', '.') # replace double underscore with dot, e.g. --openai__key -> --openai.key
|
arg_word = arg_word.replace('__', '.') # replace double underscore with dot, e.g. --openai__key -> --openai.key
|
||||||
|
for forbidden_arg in forbidden_cli_args:
|
||||||
forbidden_arg_word = forbidden_arg.lower()
|
forbidden_arg_word = forbidden_arg.lower()
|
||||||
if '.' not in forbidden_arg_word:
|
if '.' not in forbidden_arg_word:
|
||||||
forbidden_arg_word = '.' + forbidden_arg_word
|
forbidden_arg_word = '.' + forbidden_arg_word
|
||||||
|
Reference in New Issue
Block a user