Skip to content

MINOR: Add Zizmor for workflow checks - #615

Merged
Fokko merged 2 commits into
masterfrom
fd-zizmor
Sep 3, 2026
Merged

MINOR: Add Zizmor for workflow checks#615
Fokko merged 2 commits into
masterfrom
fd-zizmor

Conversation

@Fokko

@Fokko Fokko commented Sep 1, 2026

Copy link
Copy Markdown
Contributor

Rationale for this change

Zizmor checks if the best practices are being used inside of the GitHub workflows

What changes are included in this PR?

Do these changes have PoC implementations?

Zizmor checks if the best practices are being used inside of the GitHub workflows

@kevinjqliu kevinjqliu left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

uses: zizmorcore/zizmor-action@3dc1ecc9bcb9e94e9b2c709687979e1298497054 # v0.6.2
with:
advanced-security: false
min-severity: medium

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Just a callout here: I think medium severity is a good trade off for signal to noise

@Fokko Fokko Sep 3, 2026

Copy link
Copy Markdown
Contributor Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks, let's start with medium then :)

@Fokko
Fokko merged commit 9cc7154 into master Sep 3, 2026
6 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants