mirror of
https://github.com/gesellix/Bose-SoundTouch.git
synced 2026-08-24 14:47:23 +00:00
Closes CodeQL alerts 280 and 281 (go/unhandled-writable-file-close).
scripts/extract-ws/main.go: change bare 'defer f.Close()' to
'defer func() { _ = f.Close() }()' — function returns void, silent
discard is the correct pattern (matches existing '_, _ = w.Write()'
usage elsewhere).
pkg/service/certmanager/certmanager.go: sequence encode + close for
both the cert file and the key file, checking both errors. This also
fixes resource leaks on the pem.Encode error path (file was previously
left open when encode failed). Matches the established pattern in
handlers_export.go (tw.Close / gz.Close).
.gitignore: exclude CODE-SCANNING-NOTES.md (local working notes;
will be added to VCS once the scanning sweep is complete and the
notes are stable).
Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
135 lines
2.3 KiB
Plaintext
135 lines
2.3 KiB
Plaintext
# Build artifacts
|
|
build/
|
|
dist/
|
|
*.exe
|
|
*.dll
|
|
*.so
|
|
*.dylib
|
|
|
|
# CLI binaries (should be in build/ directory)
|
|
#soundtouch-cli
|
|
#example-mdns
|
|
#example-upnp
|
|
|
|
# Root-level binary executables (exclude built binaries in root)
|
|
/soundtouch-backup
|
|
/soundtouch-cli
|
|
/soundtouch-service
|
|
/soundtouch-web
|
|
/dummy-speaker
|
|
/example-mdns
|
|
/example-upnp
|
|
/example-unified
|
|
/mdns-scanner
|
|
/websocket-demo
|
|
/main
|
|
/screenshots
|
|
|
|
# Environment configuration
|
|
.env
|
|
.env.local
|
|
.env.*.local
|
|
docker-compose.override.yml
|
|
|
|
# Test coverage reports
|
|
coverage.out
|
|
coverage*.out
|
|
coverage.html
|
|
*.prof
|
|
|
|
# Go workspace file
|
|
go.work
|
|
go.work.sum
|
|
|
|
# Dependency directories
|
|
vendor/
|
|
node_modules/
|
|
|
|
# IDE and editor files
|
|
.vscode/
|
|
.idea/
|
|
.claude/
|
|
.junie/
|
|
*.swp
|
|
*.swo
|
|
*~
|
|
|
|
# OS generated files
|
|
.DS_Store
|
|
.DS_Store?
|
|
._*
|
|
.Spotlight-V100
|
|
.Trashes
|
|
ehthumbs.db
|
|
Thumbs.db
|
|
|
|
# Android MITM setup — downloaded/generated artefacts, not committed
|
|
scripts/android/bose.apk
|
|
scripts/android/frida-server
|
|
scripts/android/frida-server.xz
|
|
scripts/android/frida/
|
|
scripts/android/frida-venv/
|
|
scripts/android/captures/
|
|
scripts/android/mitm/
|
|
|
|
# Temporary files
|
|
*.tmp
|
|
*.temp
|
|
*.log
|
|
*.pid
|
|
*.seed
|
|
*.pid.lock
|
|
.output.txt
|
|
|
|
# Runtime data
|
|
pids
|
|
*.pid
|
|
*.seed
|
|
*.pid.lock
|
|
|
|
# Optional npm cache directory
|
|
.npm
|
|
|
|
# Optional REPL history
|
|
.node_repl_history
|
|
|
|
# Output of 'npm pack'
|
|
*.tgz
|
|
|
|
# Yarn Integrity file
|
|
.yarn-integrity
|
|
|
|
# dotenv environment variables file (but keep .env.example)
|
|
!.env.example
|
|
|
|
# Stockholm frontend — generated by `make prepare-stockholm`, not committed
|
|
stockholm/
|
|
|
|
!pkg/service/stockholm/
|
|
|
|
# Stockholm source zip — large binary, place manually at stockholm_zip/stockholm.zip
|
|
stockholm_zip/*.zip
|
|
|
|
# Local working-tree notes — running pickup-here log (NEXT) + archive of
|
|
# resolved items (DONE). Both are session-local scratch, not project docs.
|
|
NEXT.md
|
|
DONE.md
|
|
|
|
# Code-scanning working notes — snapshot + remediation plan; not committed
|
|
# until the sweep is complete and the notes are stable.
|
|
CODE-SCANNING-NOTES.md
|
|
|
|
# Plan/tracking note for the Health-tab debug-utility programme.
|
|
# Living document; commit history of the checks themselves is the
|
|
# source of truth for what shipped.
|
|
SERVICE-HEALTH.md
|
|
|
|
# Diagnostic encryption keys — private key stays local with the maintainer
|
|
keys/private/
|
|
|
|
# Hugo (docs site)
|
|
# Hugo build artifacts (docs site)
|
|
docs/.hugo_build.lock
|
|
docs/public/
|
|
docs/resources/
|