Skip to content

deps(deps): lock file maintenance #91

deps(deps): lock file maintenance

deps(deps): lock file maintenance #91

Workflow file for this run

name: Security
on:
push:
branches: [ 'master' ]
pull_request:
branches: [ '**' ]
concurrency:
group: ${{ github.workflow }}-${{ github.ref }}
cancel-in-progress: true
permissions: { }
jobs:
zizmor:
name: Zizmor
runs-on: ubuntu-latest
permissions:
contents: read # to fetch code
actions: read # to read action configurations
security-events: write # to upload SARIF results
steps:
- name: Harden Runner
uses: step-security/harden-runner@e3f713f2d8f53843e71c69a996d56f51aa9adfb9 # v2.14.1
with:
egress-policy: audit
- name: Checkout
uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6
with:
persist-credentials: false
- name: Run Zizmor
uses: zizmorcore/zizmor-action@135698455da5c3b3e55f73f4419e481ab68cdd95 # v0.4.1
with:
persona: pedantic