[QGIS-Developer] Unblock legacy db-manager plugin

Nyall Dawson nyall.dawson at gmail.com
Tue Jun 23 15:40:30 PDT 2026


Hi list,

In order to implement the demotion of db manager to a community plugin (See
https://github.com/qgis/QGIS-Enhancement-Proposals/blob/master/qep-426-demote_dbmanager.md)
I need to be able to push a current version of that plugin to the plugin
repository.

I've tried this at https://plugins.qgis.org/plugins/db_manager/, but the
plugin is flagged with over 100 security issues due to extensive use of
exec and SQL injection risks.

Short story: I'm not going to fix these. (And it's a little ironic that
we've got more stringent requirements on 3rd party plugins then a
previously default-installed official plugin 😂😂😂😂)

Can someone with appropriate rights allow-list this plugin to skip the
security scan for now?

Nyall
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.osgeo.org/pipermail/qgis-developer/attachments/20260624/90f9f3c8/attachment.htm>


More information about the QGIS-Developer mailing list