Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[PR #13062/ee8f98d2 backport][8.3.x] ci: harden github actions according to "zizmor" recommendations #13067

Conversation

patchback[bot]
Copy link

@patchback patchback bot commented Dec 16, 2024

This is a backport of PR #13062 as merged into main (ee8f98d).

"zizmor" is a new tool to statically analyze github actions files for security issues. See See: https://woodruffw.github.io/zizmor/.

Fix all issues reported by zizmor 0.9.2 running locally.

@bluetech
Copy link
Member

This backport should succeed after #13068 is merged.

Fix all issues reported by zizmor 0.9.2 running locally.

See: https://woodruffw.github.io/zizmor/
(cherry picked from commit ee8f98d)
@nicoddemus nicoddemus force-pushed the patchback/backports/8.3.x/ee8f98d2f976a1df17093eab12e00f0f3c4bee29/pr-13062 branch from 197bede to 01b0ca3 Compare December 16, 2024 11:00
@nicoddemus nicoddemus enabled auto-merge (squash) December 16, 2024 11:01
@nicoddemus nicoddemus merged commit c2abd05 into 8.3.x Dec 16, 2024
29 checks passed
@nicoddemus nicoddemus deleted the patchback/backports/8.3.x/ee8f98d2f976a1df17093eab12e00f0f3c4bee29/pr-13062 branch December 16, 2024 11:15
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants