Skip to content

Add pinact and zizmor workflow checks#5

Merged
demeyerthom merged 2 commits intomainfrom
pin-actions
May 7, 2026
Merged

Add pinact and zizmor workflow checks#5
demeyerthom merged 2 commits intomainfrom
pin-actions

Conversation

@demeyerthom
Copy link
Copy Markdown
Member

Summary

  • Pin all GitHub Actions to full-length commit SHAs using pinact
  • Add pinact and zizmor workflow checks for CI
  • Fix template injection vulnerabilities in release workflow by using environment variables instead of direct template expansion

@demeyerthom demeyerthom self-assigned this Apr 28, 2026
@demeyerthom demeyerthom merged commit 6bc61b1 into main May 7, 2026
4 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant