-
-
Notifications
You must be signed in to change notification settings - Fork 2k
MNT: upgrade zizmor (v1.0.0 -> v1.3.0)
#17721
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Conversation
|
Thank you for your contribution to Astropy! 🌌 This checklist is meant to remind the package maintainers who will review this pull request of some common things to look for.
|
|
👋 Thank you for your draft pull request! Do you know that you can use |
v1.0.0 -> v1.3.0)
|
LGTM but wait for the security team. |
pllim
left a comment
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Thanks!
This comment was marked as resolved.
This comment was marked as resolved.
|
@neutrinoceros are you able to help with manual backport? If not, I can do it. Let me know. Thanks! 🙏 |
|
Out of office hours for today, but happy to do it in the morning ! |
…r_1.3.0 MNT: upgrade zizmor (`v1.0.0` -> `v1.3.0`) (cherry picked from commit d1421cd)
|
Ah, don't worry about it then. I opened #17724 . Thanks! |
Backport PR #17721 on branch v7.0.x (MNT: upgrade zizmor (v1.0.0 -> v1.3.0))
Description
This is a manual upgrade for zizmor, previously attempted automatically in #17710
The one new error flagged is explained in zizmor's doc. I've attempted to set explicit permissions in all places reported by zizmor 1.3.0, but I expect a couple iterations might be needed to get this right.
EDIT: Also close #14072