-
-
Notifications
You must be signed in to change notification settings - Fork 1.3k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Github Actions -- zizmor #6954
Comments
Could you please share the output ? :) |
There are 278 findings, how do I share that? It makes for a long file. |
Can you just install and run zizmor? It is a Rust project. |
sure |
You may want to run it as |
I posted all of the errors via a pull request: #6968. Click on the Details of zizmor. |
I found out about this utility to check your Github Actions files for security flaws and it complains about your files a lot.
cargo install zizmor zizmor .github/workflows/*.yml
The text was updated successfully, but these errors were encountered: