Skip to content

feat(zizmor): enforce required rules#14

Open
jalseth wants to merge 3 commits into
mainfrom
jalseth/zizmor-update
Open

feat(zizmor): enforce required rules#14
jalseth wants to merge 3 commits into
mainfrom
jalseth/zizmor-update

Conversation

@jalseth

@jalseth jalseth commented Jun 4, 2026

Copy link
Copy Markdown
Collaborator

Added a new step to zizmor-output job that analyzes the SARIF results
for a predefined list of critical zizmor checks. If any of these required
checks fail, the step will output the findings and exit non-zero
regardless of user #ignore directives.

@jalseth jalseth force-pushed the jalseth/zizmor-update branch from f7a5776 to bfd996d Compare June 5, 2026 00:11
@jalseth jalseth changed the title feat(workflow): update zizmor checks and enforce required rules feat(zizmor): enforce required rules Jun 5, 2026
@google-gh-automation google-gh-automation deleted a comment from google-cla Bot Jun 5, 2026
@jalseth jalseth force-pushed the jalseth/zizmor-update branch from bfd996d to f4a4c1d Compare June 5, 2026 00:21
@jalseth jalseth marked this pull request as ready for review June 5, 2026 00:21
@jalseth jalseth requested a review from crwilcox June 5, 2026 00:21
@jalseth jalseth force-pushed the jalseth/zizmor-update branch 2 times, most recently from b08afca to 4b81d3a Compare June 5, 2026 19:44
jalseth added 2 commits June 5, 2026 19:47
Added a new step to `zizmor-output` job that analyzes the SARIF results
for a predefined list of critical zizmor checks. If any of these required
checks fail, the step will output the findings and exit non-zero
regardles of user #ignore directives.
@jalseth jalseth force-pushed the jalseth/zizmor-update branch from 4b81d3a to 0dfab3b Compare June 5, 2026 19:48
@jalseth jalseth force-pushed the jalseth/zizmor-update branch from 0dfab3b to 8925f8e Compare June 5, 2026 19:50
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants