Skip to content

feat: rewrite unpinned-uses, fold in forbidden-uses - #663

Merged
woodruffw merged 30 commits into
mainfrom
refactor-unpinned-uses
Apr 13, 2025
Merged

feat: rewrite unpinned-uses, fold in forbidden-uses#663
woodruffw merged 30 commits into
mainfrom
refactor-unpinned-uses

Conversation

@woodruffw

@woodruffw woodruffw commented Apr 13, 2025

Copy link
Copy Markdown
Member

This rewrites unpinned-uses on top of the core idea of #574.

TODOs:

  • Snapshot tests, including config files
  • Documentation

Closes #574. See #558.

@woodruffw woodruffw self-assigned this Apr 13, 2025
@woodruffw
woodruffw marked this pull request as ready for review April 13, 2025 19:52
@woodruffw

Copy link
Copy Markdown
Member Author

This is good to go functionally, although I just realized it's missing a decent chunk of #558: it allows for various pinning policies, but doesn't provide a basic denylist capability.

Given that, I suppose zizmor does need some variant of a dedicated forbidden-uses audit. I'm going to merge here since this adds a lot of the needed scaffolding, then rebuild on top of #574.

@woodruffw woodruffw added the enhancement New feature or request label Apr 13, 2025
@woodruffw
woodruffw merged commit 8329726 into main Apr 13, 2025
@woodruffw
woodruffw deleted the refactor-unpinned-uses branch April 13, 2025 20:00
aldur pushed a commit to aldur/zizmor that referenced this pull request May 5, 2025
Co-authored-by: Jan Holthuis <jan.holthuis@ruhr-uni-bochum.de>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

enhancement New feature or request

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants