feat: use with_job to give anonymous-definition findings a better span (#1416)

This commit is contained in:
William Woodruff 2025-12-07 22:25:58 -05:00 committed by GitHub
parent 1e25953cdd
commit 1e51d1fe9f
No known key found for this signature in database
GPG key ID: B5690EEEBB952194
37 changed files with 344 additions and 273 deletions

View file

@ -27,6 +27,9 @@ of `zizmor`.
* The [use-trusted-publishing] audit now detects additional publishing command
patterns, including `uv run ...`, `uvx ...`, and `poetry publish`
(#1402)
* zizmor now produces more useful and less ambiguous spans for many findings,
particularly those from the [anonymous-definition] audit (#1416)
## 1.18.0