Skip to content

Fix credentials for zizmor#18

Merged
reberhardt7 merged 1 commit intomasterfrom
rebs/fix-zizmor-creds
Mar 25, 2026
Merged

Fix credentials for zizmor#18
reberhardt7 merged 1 commit intomasterfrom
rebs/fix-zizmor-creds

Conversation

@reberhardt7
Copy link
Copy Markdown
Contributor

Zizmor needs to be explicitly passed a github token in order to analyze actions that are called. This analysis suppresses a lot of findings that are not contextually relevant, so this reduces the alert rate significantly.

@reberhardt7 reberhardt7 enabled auto-merge March 25, 2026 18:45
@reberhardt7 reberhardt7 merged commit fa93fd6 into master Mar 25, 2026
5 checks passed
@reberhardt7 reberhardt7 deleted the rebs/fix-zizmor-creds branch March 25, 2026 18:45
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants