diff options
| author | Winter <winter@winter.cafe> | 2025-04-05 20:22:25 -0400 |
|---|---|---|
| committer | Thomas Gerbet <thomas@gerbet.me> | 2025-10-26 22:03:12 +0100 |
| commit | 1a9867167dd7c954a01ef78b03cf8ca7a7d0a30d (patch) | |
| tree | 3a6aa26e33f54abc1c887d937c4743b5951256a2 /pkgs/development/python-modules/rangehttpserver | |
| parent | 65bb095948c39864dae69a71ddd30e2150c75778 (diff) | |
ci: add zizmor check and configuration
`zizmor` is a tool that uses static analysis to find potential security
issues in GitHub Actions [0]. (Yes, it's a bit absurd that GitHub
made a CI system so complicated that tools like this were created, but
I digress.)
Given our increase in GHA usage recently, I think this is a good step
towards keeping our security posture in tip-top shape. (It also keeps
with the theme of automating as many things as possible!)
The rule related to the usages of dangerous-triggers have been disabled
to avoid false-positives. Explanations about the usage of
`pull_request_target` and expectations around its usage can be found in
`.github/workflows/README.md`.
[0]: https://woodruffw.github.io/zizmor/
Co-authored-by: Thomas Gerbet <thomas@gerbet.me>
Diffstat (limited to 'pkgs/development/python-modules/rangehttpserver')
0 files changed, 0 insertions, 0 deletions
