Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Can we find the source point through annotations? For example, I would like to use the parameter of the method with RequestMapping annotation as the source point #87

Closed
SEC-fsq opened this issue Jan 24, 2024 · 2 comments
Labels
type: enhancement A general enhancement

Comments

@SEC-fsq
Copy link

SEC-fsq commented Jan 24, 2024

Clear and concise description of the problem

Can we find the source point through annotations? For example, I would like to use the parameter of the method with RequestMapping annotation as the source point

Impact Analysis

No response

Suggested Solution

No response

Alternative

No response

Intention to submit PR

No

Additional Context

No response

@SEC-fsq SEC-fsq added the type: enhancement A general enhancement label Jan 24, 2024
@zhangt2333
Copy link
Member

Unfortunately, there is currently no direct support. Current workaround is to implement the Plugin or modify Tai-e's source code to achieve a high level of customization.

@zhangt2333
Copy link
Member

The taint rules with programmatic configuration support are now available in v0.5.1.

It allows you to scan the annotations in the IR for elements annotated with @RequestMapping and create taint rules for them without having to predefine the taint analysis rules in config files.

For details on usages, please refer to our documentation on programmatic taint configuration.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
type: enhancement A general enhancement
Projects
None yet
Development

No branches or pull requests

2 participants