aboutsummaryrefslogtreecommitdiff
path: root/.github/workflows/zizmor.yml
diff options
context:
space:
mode:
authorXe Iaso <me@xeiaso.net>2025-04-02 20:00:07 -0400
committerGitHub <noreply@github.com>2025-04-02 20:00:07 -0400
commitb3848e7a4171642e5813a372675b17df45befa46 (patch)
treea7a0efc6263c4af705a2f36556374d66387856ee /.github/workflows/zizmor.yml
parentf9e2a18cf86f4b33766b483694926670a2134ec8 (diff)
parent266d8c0cc25f9d93ea7da87eb199bc87e41c653e (diff)
downloadanubis-Xe/imessage-scraper-bypass.tar.xz
anubis-Xe/imessage-scraper-bypass.zip
Merge branch 'main' into Xe/imessage-scraper-bypassXe/imessage-scraper-bypass
Signed-off-by: Xe Iaso <me@xeiaso.net>
Diffstat (limited to '.github/workflows/zizmor.yml')
-rw-r--r--.github/workflows/zizmor.yml35
1 files changed, 35 insertions, 0 deletions
diff --git a/.github/workflows/zizmor.yml b/.github/workflows/zizmor.yml
new file mode 100644
index 0000000..c2a03ab
--- /dev/null
+++ b/.github/workflows/zizmor.yml
@@ -0,0 +1,35 @@
+name: zizmor
+
+on:
+ push:
+ paths:
+ - '.github/workflows/*.ya?ml'
+ pull_request:
+ paths:
+ - '.github/workflows/*.ya?ml'
+
+jobs:
+ zizmor:
+ name: zizmor latest via PyPI
+ runs-on: ubuntu-latest
+ permissions:
+ security-events: write
+ steps:
+ - name: Checkout repository
+ uses: actions/checkout@v4
+ with:
+ persist-credentials: false
+
+ - name: Install the latest version of uv
+ uses: astral-sh/setup-uv@v5
+
+ - name: Run zizmor 🌈
+ run: uvx zizmor --format sarif . > results.sarif
+ env:
+ GH_TOKEN: ${{ secrets.GITHUB_TOKEN }}
+
+ - name: Upload SARIF file
+ uses: github/codeql-action/upload-sarif@v3
+ with:
+ sarif_file: results.sarif
+ category: zizmor