Skip to content

ci: fix zizmor findings#2490

Open
afuetterer wants to merge 1 commit into
MaartenGr:masterfrom
afuetterer:zizmor
Open

ci: fix zizmor findings#2490
afuetterer wants to merge 1 commit into
MaartenGr:masterfrom
afuetterer:zizmor

Conversation

@afuetterer

@afuetterer afuetterer commented Jun 8, 2026

Copy link
Copy Markdown
Contributor

What does this PR do?

This PR hardens the CI security a little bit, by running zizmor on the workflow file.

I fixed the following warnings:

  • warning[excessive-permissions]: overly broad permissions
  • help[artipacked]: credential persistence through GitHub Actions artifacts

Do you additionally want to pin the gha versions, as recommended by zizmor?

Ref: https://docs.zizmor.sh

Before submitting

  • This PR fixes a typo or improves the docs (if yes, ignore all other checks!).
  • Did you read the contributor guideline?
  • Was this discussed/approved via a Github issue? Please add a link to it if that's the case.
  • Did you make sure to update the documentation with your changes (if applicable)?
  • Did you write any new necessary tests?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant