FazBrowse GitHub Viewer
|
Trending
|
URL:
|
Home
Tools:
[Download Repo ZIP]
[View Raw Code]
[Original HTTPS Page]
packaging.python.org/.github/workflows/zizmor.yml at main · cdz100/packaging.python.org · GitHub
cdz100
/
packaging.python.org
Public
forked from
pypa/packaging.python.org
Notifications
You must be signed in to change notification settings
Fork
0
Star
0
Code
Pull requests
0
Actions
Projects
Security and quality
0
Insights
Additional navigation options
Code
Pull requests
Actions
Projects
Security and quality
Insights
Expand file tree
Breadcrumbs
packaging.python.org
/
.github
/
workflows
/
zizmor.yml
Copy path
View runs
More file actions
More file actions
Latest commit
History
History
History
38 lines (32 loc) · 986 Bytes
Breadcrumbs
packaging.python.org
/
.github
/
workflows
/
zizmor.yml
Copy path
File metadata and controls
38 lines (32 loc) · 986 Bytes
Raw
Copy raw file
Download raw file
Open symbols panel
Edit and raw actions
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
#
From https://woodruffw.github.io/zizmor/usage/#use-in-github-actions
name
:
GitHub Actions Security Analysis with zizmor 🌈
on
:
push
:
branches
:
["main"]
pull_request
:
branches
:
["**"]
jobs
:
zizmor
:
name
:
zizmor latest via PyPI
runs-on
:
ubuntu-latest
permissions
:
security-events
:
write
#
required for workflows in private repositories
contents
:
read
actions
:
read
steps
:
-
name
:
Checkout repository
uses
:
actions/checkout@v4
with
:
persist-credentials
:
false
-
name
:
Install the latest version of uv
uses
:
astral-sh/setup-uv@v5
-
name
:
Run zizmor 🌈
run
:
uvx zizmor --format sarif source/guides/github-actions-ci-cd-sample/* > results.sarif
env
:
GH_TOKEN
:
${{ secrets.GITHUB_TOKEN }}
-
name
:
Upload SARIF file
uses
:
github/codeql-action/upload-sarif@v3
with
:
sarif_file
:
results.sarif
category
:
zizmor
Back
|
FazBrowse Home
|
New Git URL