diff --git a/.github/workflows/ci.yml b/.github/workflows/ci.yml index af7da84360..c8e1ede1b8 100644 --- a/.github/workflows/ci.yml +++ b/.github/workflows/ci.yml @@ -331,3 +331,14 @@ jobs: - run: cargo xtask ci rs --arch ${{ matrix.arch }} --profile ${{ matrix.profile }} ${{ matrix.rs_flags }} --package loopback qemu ${{ matrix.qemu_flags }} env: HERMIT_IP: 127.0.0.1 + + zizmor: + name: zizmor + runs-on: ubuntu-latest + permissions: + security-events: write + steps: + - uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2 + with: + persist-credentials: false + - uses: zizmorcore/zizmor-action@71321a20a9ded102f6e9ce5718a2fcec2c4f70d8 # v0.5.2