Skip to content

fix(ci): resolve all zizmor findings and add zizmor pre-commit checks#475

Open
gforsyth wants to merge 6 commits intorapidsai:mainfrom
gforsyth:securitize
Open

fix(ci): resolve all zizmor findings and add zizmor pre-commit checks#475
gforsyth wants to merge 6 commits intorapidsai:mainfrom
gforsyth:securitize

Conversation

@gforsyth
Copy link
Copy Markdown

@gforsyth gforsyth commented May 7, 2026

Similar to upstream changes in shared-workflows, this PR cleans up and annotates all of the workflows and adds the zizmor linter to make sure changes are checked.

Part of rapidsai/build-planning#275

Copy link
Copy Markdown
Member

@jakirkham jakirkham left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks Gil! 🙏

Generally this looks reasonable

Had one minor style question. Though no strong feelings on it

Comment on lines +32 to +33
env:
INPUTS_TOOL_CACHE: ${{ inputs.tool_cache }}
Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Would it make sense to move this above shell as is done in the other case?

Copy link
Copy Markdown
Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

No strong feelings, so I moved it for consistency. Thanks!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants