Skip to content

Releases: zizmorcore/zizmor-action

v0.5.2

09 Mar 03:27
Immutable release. Only release title and notes can be modified.
71321a2

Choose a tag to compare

What's Changed

  • zizmor 1.23.1 is now the default used by this action.

Full Changelog: v0.5.1...v0.5.2

v0.5.1

08 Mar 16:31
Immutable release. Only release title and notes can be modified.
195d10a

Choose a tag to compare

What's Changed

  • zizmor 1.23.0 is now the default used by this action.

Full Changelog: v0.5.0...v0.5.1

v0.5.0

05 Feb 03:43
Immutable release. Only release title and notes can be modified.
0dce257

Choose a tag to compare

What's Changed

  • Expose output-file as an output when advanced-security: true by @unlobito in #87

New Contributors

Full Changelog: v0.4.1...v0.5.0

v0.4.1

18 Jan 15:06
Immutable release. Only release title and notes can be modified.
1356984

Choose a tag to compare

This version fixes an error in the 0.4.0 release that prevented non-relative use
of the action.

What's Changed

Full Changelog: v0.4.0...v0.4.1

v0.4.0

18 Jan 03:12
Immutable release. Only release title and notes can be modified.
3aa7e2f

Choose a tag to compare

v0.4.0 Pre-release
Pre-release

This new version of zizmor-action brings two major changes:

  • The new fail-on-no-inputs option can be used to control whether
    zizmor-action fails if no inputs were collected by zizmor. The default
    remains true, reflecting the pre-existing behavior.

  • The action's use of the official zizmor Docker images is now fully
    hash-checked internally, preventing accidental or malicious modification
    to the images. This also means that subsequent releases of zizmor
    will induce a release of this action, rather than the action always picking
    up the latest version by default.

What's Changed

  • docs: extended permissions required for internal repos by @AntoineSebert in #61
  • docs: clarify description of "token" to indicate it is only used for online audits by @rmuir in #63
  • Hash-check zizmor Docker images by @woodruffw in #68
  • Add fail-on-no-inputs option by @woodruffw in #67

New Contributors

Full Changelog: v0.3.0...v0.4.0

v0.3.0

23 Nov 04:52
Immutable release. Only release title and notes can be modified.
e639db9

Choose a tag to compare

What's Changed

New Contributors

Full Changelog: v0.2.0...v0.3.0

v0.2.0

15 Sep 00:38
Immutable release. Only release title and notes can be modified.
e673c39

Choose a tag to compare

What's Changed

  • feat: add support for color input by @birjj in #37
  • Adding option for GitHub annotations by @abdelq in #45

New Contributors

Full Changelog: v0.1.2...v0.2.0

v0.1.2

13 Aug 12:28
5ca5fc7

Choose a tag to compare

What's Changed

New Contributors

Full Changelog: v0.1.1...v0.1.2

v0.1.1

05 Jun 01:21
f52a838

Choose a tag to compare

refactor: run `zizmor` via Docker (#19)

v0.0.3

19 May 03:22
2520132

Choose a tag to compare

README: 🌈

Signed-off-by: William Woodruff <william@yossarian.net>