Compare commits

..

2 Commits

Author SHA1 Message Date
Tõnis Tiigi
deaa0dee56 Merge pull request #644 from crazy-max/fix-zizmor
ci(zizmor): update rules
2026-04-15 14:25:48 -07:00
CrazyMax
0865878ea7 ci(zizmor): update rules
Signed-off-by: CrazyMax <1951866+crazy-max@users.noreply.github.com>
2026-04-15 16:01:58 +02:00
3 changed files with 4 additions and 5 deletions

View File

@@ -19,6 +19,8 @@ updates:
interval: "daily"
cooldown:
default-days: 2
exclude:
- "@docker/actions-toolkit"
versioning-strategy: "increase"
allow:
- dependency-type: "production"

View File

@@ -348,7 +348,7 @@ jobs:
type=sha
-
name: Build and push to local registry
uses: docker/build-push-action@bcafcacb16a39f128d818304e6c9c0c18556b85f # v7.1.0
uses: docker/build-push-action@d08e5c354a6adb9ed34480a06d141179aa583294 # v7.0.0
with:
context: ./test
file: ./test/Dockerfile
@@ -465,7 +465,7 @@ jobs:
maintainer=Foo
-
name: Build
uses: docker/build-push-action@bcafcacb16a39f128d818304e6c9c0c18556b85f # v7.1.0
uses: docker/build-push-action@d08e5c354a6adb9ed34480a06d141179aa583294 # v7.0.0
with:
context: ./test
file: ./test/output.Dockerfile

3
.github/zizmor.yml vendored
View File

@@ -1,3 +0,0 @@
rules:
secrets-outside-env: # FIXME: remove this rule when zizmor 1.24.0 is released, fixing the right persona attached to this rule: https://github.com/zizmorcore/zizmor/pull/1783
disable: true