Skip to content

Commit 7ea8df0

Browse files
authored
chore: CI, deps cleanup (#788)
1 parent 792a438 commit 7ea8df0

File tree

11 files changed

+930
-795
lines changed

11 files changed

+930
-795
lines changed

.github/workflows/zizmor.yml

Lines changed: 3 additions & 14 deletions
Original file line numberDiff line numberDiff line change
@@ -10,28 +10,17 @@ permissions: {}
1010

1111
jobs:
1212
zizmor:
13-
name: zizmor latest via PyPI
13+
name: Run zizmor 🌈
1414
runs-on: ubuntu-latest
1515
permissions:
1616
security-events: write
1717
contents: read # only needed for private repos
1818
actions: read # only needed for private repos
1919
steps:
2020
- name: Checkout repository
21-
uses: actions/checkout@v4
21+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
2222
with:
2323
persist-credentials: false
2424

25-
- name: Install the latest version of uv
26-
uses: astral-sh/setup-uv@6b9c6063abd6010835644d4c2e1bef4cf5cd0fca # v6.0.1
27-
2825
- name: Run zizmor 🌈
29-
run: uvx zizmor --format=sarif . > results.sarif
30-
env:
31-
GH_TOKEN: ${{ secrets.GITHUB_TOKEN }}
32-
33-
- name: Upload SARIF file
34-
uses: github/codeql-action/upload-sarif@v3
35-
with:
36-
sarif_file: results.sarif
37-
category: zizmor
26+
uses: zizmorcore/zizmor-action@f52a838cfabf134edcbaa7c8b3677dde20045018 # v0.1.1

0 commit comments

Comments
 (0)