File tree Expand file tree Collapse file tree 2 files changed +31
-0
lines changed
Expand file tree Collapse file tree 2 files changed +31
-0
lines changed Original file line number Diff line number Diff line change 1+ name : GitHub Actions Security Analysis with zizmor 🌈
2+
3+ on :
4+ push :
5+ branches : ["main"]
6+ pull_request :
7+ branches : ["**"]
8+
9+ permissions : {}
10+
11+ jobs :
12+ zizmor :
13+ runs-on : ubuntu-latest
14+ permissions :
15+ security-events : write
16+ steps :
17+ - name : Checkout repository
18+ uses : actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
19+ with :
20+ persist-credentials : false
21+
22+ - name : Run zizmor 🌈
23+ uses : zizmorcore/zizmor-action@5ca5fc7a4779c5263a3ffa0e1f693009994446d1 # v0.1.2
Original file line number Diff line number Diff line change 1+ rules :
2+ unpinned-uses :
3+ config :
4+ policies :
5+ # Default policy for official actions.
6+ actions/* : ref-pin
7+ # Allow Ruby's official setup action, as it is continuously updated with new versions.
8+ ruby/setup-ruby : ref-pin
You can’t perform that action at this time.
0 commit comments