feat(ci): zizmor github actions vuln scanner#5368
feat(ci): zizmor github actions vuln scanner#5368Skarlso merged 3 commits intoexternal-secrets:mainfrom arielrahamim:zizmor-action-scanning
Conversation
Signed-off-by: arielrahamim <ariel@projectcircle.co.il>
|
@arielrahamim Can you please sign your commit? :) |
Done! New to signing and verified commits haha |
|
This pull request sets up GitHub code scanning for this repository. Once the scans have completed and the checks have passed, the analysis results for this pull request branch will appear on this overview. Once you merge this pull request, the 'Security' tab will show more code scanning analysis results (for example, for the default branch). Depending on your configuration and choice of analysis tool, future pull requests will be annotated with code scanning analysis results. For more information about GitHub code scanning, check out the documentation. |
|
* zizmor-action-scanning Signed-off-by: arielrahamim <ariel@projectcircle.co.il> * WIP Signed-off-by: arielrahamim <ariel@projectcircle.co.il> --------- Signed-off-by: arielrahamim <ariel@projectcircle.co.il> Co-authored-by: Gergely Brautigam <skarlso777@gmail.com> Signed-off-by: Samuel Molling <samuelmolling@gmail.com>



Problem Statement
What is the problem you're trying to solve?
Adding Zizmor to scan github actions workflows
Related Issue
#4676
Fixes #...
Proposed Changes
How do you like to solve the issue and why?
Format
Please ensure that your PR follows the following format for the title:
Where
scopeis optionally one of:Checklist
git commit --signoffmake testmake reviewable