Skip to content

BSL264 — Use of system information

Summary

Use of system information

Identifiers

Field Value
Rule code BSL264
Compatible alias UseSystemInformation
Severity WARNING
Enabled by default Yes
Implemented Yes
Tags security

Behavior

  • The public identifier BSL264 and alias UseSystemInformation are stable.
  • The rule reports the cases documented on this page.
  • Suppressions and project configuration are applied before publication.
  • The rule requires neither an external analyzer nor network access.

Configuration and suppression

BSL### is the primary stable identifier. The compatible alias is accepted in select, ignore, and compatible block suppression comments.

[tool.onec-hbk-bsl]
select = ["BSL264"]
ignore = ["UseSystemInformation"]

All three suppression families support both a current line and a range. When an opening comment follows code, it affects only that line. Use any one form:

  • noqa:
Value = "example";  // noqa: BSL264
  • bsl-disable:
Value = "example";  // bsl-disable: BSL264
  • compatible BSLLS form:
Value = "example";  // BSLLS:UseSystemInformation-off

When the same opening comment is on a line by itself, it starts a range. Close it with the matching marker from the same family:

// noqa: BSL264
// code without this diagnostic
// noqa-enable: BSL264

// bsl-disable: BSL264
// code without this diagnostic
// bsl-enable: BSL264

// BSLLS:UseSystemInformation-off
// code without this diagnostic
// BSLLS:UseSystemInformation-on

To disable the rule until the end of the file, omit the closing noqa-enable, bsl-enable, or BSLLS:…-on marker.

Opening and closing markers must belong to the same family.

Description

SystemInformation provides data about the computer and configuration in 1C, which can be used for malicious purposes.

Examples

Sources