summaryrefslogtreecommitdiffstats
path: root/docs/code-quality/lint/linters/trojan-source.rst
blob: 250bdd9afe750bf6d2884de17edc52534bf4b140 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
Trojan Source
=============

This linter verifies if a change is using some invalid unicode.

The goal of this linter is to identify some potential usage of this
technique:

https://trojansource.codes/

The code is inspired by the Red Hat script published:

https://access.redhat.com/security/vulnerabilities/RHSB-2021-007#diagnostic-tools

Run Locally
-----------

This mozlint linter can be run using mach:

.. parsed-literal::

    $ mach lint --linter trojan-source <file paths>


Configuration
-------------

This linter is enabled on most of the code base on C/C++, Python and Rust.

Sources
-------

* `Configuration (YAML) <https://searchfox.org/mozilla-central/source/tools/lint/trojan-source.yml>`_
* `Source <https://searchfox.org/mozilla-central/source/tools/lint/trojan-source/__init__.py>`_