We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent ad239b2 commit 153668bCopy full SHA for 153668b
.github/workflows/super-linter.yml
@@ -67,4 +67,6 @@ jobs:
67
DEFAULT_BRANCH: main
68
FILTER_REGEX_EXCLUDE: "(gradlew|gradlew\\.bat|gradle/.*|mvnw|mvnw\\.cmd|\\.m2/.*|\\.mvn/.*)$"
69
ENFORCE_COMMITLINT_CONFIGURATION_CHECK: true
70
+ GITHUB_ACTIONS_ZIZMOR_CONFIG_FILE: .zizmor.yml
71
+ GH_TOKEN: ${{ secrets.GITHUB_TOKEN }}
72
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}
.zizmor.yml
@@ -0,0 +1,14 @@
1
+---
2
+rules:
3
+ forbidden-uses:
4
+ config:
5
+ allow:
6
+ - actions/*
7
+ - docker/*
8
+ - github/codeql-action/*
9
+ - google/osv-scanner-action/*
10
+ - microsoft/DevSkim-Action
11
+ - microsoft/security-devops-action
12
+ - ossf/scorecard-action
13
+ - sigstore/cosign-installer
14
+ - super-linter/super-linter
0 commit comments