Boshen
a78a72fb16
ci: fix overly broad permissions reported by zizmor ( #8611 )
...
https://woodruffw.github.io/zizmor/audits/#excessive-permissions
2025-01-20 13:19:50 +08:00
renovate[bot]
7923971783
chore(deps): update github-actions
2025-01-20 01:06:44 +00:00
Boshen
0726581f4f
chore(deps): update github-actions ( #8409 )
...
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-01-10 14:06:49 +08:00
Boshen
7a087b914e
ci: update .github/workflows/ci_security.yml
2024-12-14 17:45:39 +08:00
Boshen
0b67b37584
ci: fix ci_security.yml
2024-12-14 12:17:26 +08:00
Alexander S.
5172f32457
ci: use zizmor as a rust package ( #7844 )
...
Co-authored-by: Boshen <boshenc@gmail.com>
2024-12-13 20:54:26 +08:00
Boshen
0970168a48
chore(deps): pin dependencies ( #7837 )
...
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2024-12-13 19:45:48 +08:00
Alexander S.
b24a636b0a
ci: add zizmor for github actions security ( #7822 )
...
> zizmor is a static analysis tool for GitHub Actions. It can find many
common security issues in typical GitHub Actions CI/CD setups.
https://woodruffw.github.io/zizmor/
EDIT: what is the right PR-syntax for this?
---------
Co-authored-by: Boshen <boshenc@gmail.com>
2024-12-13 13:36:41 +08:00