Problem
data_diff/databases/mssql.py:181 hardcodes TrustServerCertificate=yes, which disables certificate validation for all MSSQL connections.
Impact
This is a security concern — it makes all MSSQL connections vulnerable to MITM attacks.
Suggested Fix
Make certificate validation configurable via connection parameters, defaulting to secure behavior.
References
- File:
data_diff/databases/mssql.py, line 181