Static analysis for GitHub Actions http://docs.zizmor.sh/
Find a file
William Woodruff d36c1911b4
docs: trophies, clean up install (#292)
Signed-off-by: William Woodruff <william@yossarian.net>
2024-12-13 21:53:56 +00:00
.github ci: make zizmor.yml very fast with uvx (#252) 2024-12-08 02:06:29 -05:00
docs docs: trophies, clean up install (#292) 2024-12-13 21:53:56 +00:00
src fix: dont crash when an expression does not expand a matrix (#284) 2024-12-12 15:20:58 -05:00
tests fix: dont crash when an expression does not expand a matrix (#284) 2024-12-12 15:20:58 -05:00
.gitignore feat: unsecure-commands-allowed audit (#176) 2024-11-19 21:11:10 +00:00
Cargo.lock chore: prep 0.9.1 (#285) 2024-12-12 20:24:46 +00:00
Cargo.toml chore: prep 0.9.1 (#285) 2024-12-12 20:24:46 +00:00
CONTRIBUTING.md doc: mention conventional commits 2024-11-01 10:13:15 -04:00
LICENSE chore: add LICENSE 2024-10-27 12:42:49 -04:00
Makefile docs: make the trophy case prettier (#279) 2024-12-11 22:45:27 -05:00
mkdocs.yml docs: add a trophy case (#243) 2024-12-07 00:00:35 +00:00
pyproject.toml ci: add a maturin matrix for PyPI releases (#241) 2024-12-06 17:55:51 -05:00
README.md docs: add sponsors badges 2024-12-02 14:29:42 -05:00
site-requirements.txt docs: enable social card generation (#175) 2024-11-18 13:45:10 -05:00

🌈 zizmor

CI Crates.io Packaging status GitHub Sponsors

zizmor is a static analysis tool for GitHub Actions. It can find many common security issues in typical GitHub Actions CI/CD setups.

Important

zizmor is currently in beta. You will encounter bugs; please file them!

zizmor demo

See zizmor's documentation for installation steps, as well as a quickstart and detailed usage recipes.

License

zizmor is licensed under the MIT License.

Contributing

See our contributing guide!

The name?

Now you can have beautiful clean workflows!

Star History

Star History Chart