Skip to content

 Implement zizmor to secure our actions #692

@jorgepiloto

Description

@jorgepiloto

zizmor is a static analysis tool for finding common vulnerability issues in GitHub Actions workflows. This is a must for us.

To take advantage of zizmor, we need to implement the following tasks:

  •  Create a check-actions-security action
  • Use previous action to validate this repository
  • Fix vulnerabilities across this repository

Metadata

Metadata

Assignees

Labels

No labels
No labels

Type

No type

Projects

No projects

Relationships

None yet

Development

No branches or pull requests

Issue actions