def catalogue(query=None): rows = DB.get_products(query)[:20] images = list() directory = os.path.join(os.getcwd(), 'static/images/') files = os.listdir(directory) for i in range(len(rows)): images.append('static/images/' + random.choice(files)) r = make_response( render_template('catalogue.html', query=query, products=rows, images=images, dim=(140, 170), columns=3) ) r.headers.set('X-XSS-Protection', '0') return r