Skip to content

build(deps): bump the github-actions group across 1 directory with 11 updates #34

build(deps): bump the github-actions group across 1 directory with 11 updates

build(deps): bump the github-actions group across 1 directory with 11 updates #34

Workflow file for this run

name: ci.yml
permissions:
contents: read
on:
pull_request:
push:
branches:
- main
jobs:
check-pinned-actions:
name: Check actions are SHA-pinned
runs-on: ubuntu-latest
steps:
- name: Checkout
uses: actions/checkout@df4cb1c069e1874edd31b4311f1884172cec0e10 # v6.0.3
with:
persist-credentials: false
- name: Check actions are SHA-pinned
uses: suzuki-shunsuke/pinact-action@896d595f299e71d65b9d28349d6956abe144390a # v3.0.0
with:
skip_push: "true"
github_token: ${{ secrets.GITHUB_TOKEN }}
test-scripts:
name: Test Python scripts
runs-on: ubuntu-latest
steps:
- name: Checkout
uses: actions/checkout@df4cb1c069e1874edd31b4311f1884172cec0e10 # v6.0.3
- name: Setup Python
uses: actions/setup-python@a309ff8b426b58ec0e2a45f0f869d46889d02405 # v6.2.0
with:
python-version: '3.x'
- name: Install pytest
run: pip install pytest
- name: Run script tests
run: pytest scripts/ -v
zizmor:
name: Workflow security audit (zizmor)
runs-on: ubuntu-latest
permissions:
security-events: write
steps:
- name: Checkout
uses: actions/checkout@df4cb1c069e1874edd31b4311f1884172cec0e10 # v6.0.3
with:
persist-credentials: false
- name: Run zizmor
uses: zizmorcore/zizmor-action@5f14fd08f7cf1cb1609c1e344975f152c7ee938d # v0.5.6