We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent 08d55b0 commit ad479f9Copy full SHA for ad479f9
1 file changed
.github/workflows/zizmor.yml
@@ -19,7 +19,6 @@ jobs:
19
if: github.event_name != 'pull_request' || github.event.pull_request.head.repo.full_name == github.repository
20
runs-on: ubuntu-latest
21
permissions:
22
- security-events: write
23
contents: read
24
steps:
25
- name: Checkout
@@ -29,4 +28,7 @@ jobs:
29
28
- name: Run zizmor
30
uses: zizmorcore/zizmor-action@b1d7e1fb5de872772f31590499237e7cce841e8e # v0.5.3
31
with:
32
- advanced-security: true
+ # Using false as a code scanning ruleset would block the release
+ # workflow which creates a new commit and pushes directly to main.
33
+ advanced-security: false
34
+ min-severity: medium
0 commit comments