Skip to content

Merge pull request #395 from flintlib/dependabot/github_actions/minor… #25

Merge pull request #395 from flintlib/dependabot/github_actions/minor…

Merge pull request #395 from flintlib/dependabot/github_actions/minor… #25

Workflow file for this run

name: Zizmor
on: [pull_request, push]
concurrency:
group: ${{ github.workflow }}-${{ github.ref }}
cancel-in-progress: true
permissions: {}
jobs:
zizmor:
name: Audit GitHub Actions
runs-on: ubuntu-latest
permissions:
contents: read
steps:
- name: Checkout repository
uses: actions/checkout@df4cb1c069e1874edd31b4311f1884172cec0e10 # v6.0.3
with:
persist-credentials: false
- name: Run zizmor
uses: zizmorcore/zizmor-action@5f14fd08f7cf1cb1609c1e344975f152c7ee938d # v0.5.6
with:
advanced-security: false
annotations: true
persona: auditor
inputs: .github/workflows/