File tree Expand file tree Collapse file tree 5 files changed +29
-34
lines changed Expand file tree Collapse file tree 5 files changed +29
-34
lines changed Original file line number Diff line number Diff line change 77  pull_request :
88  workflow_dispatch :
99
10+ permissions : {} 
11+ 
1012jobs :
1113  test :
1214    strategy :
3739    if : always() 
3840
3941    needs :
40-     - test 
42+        - test 
4143
4244    runs-on : ubuntu-latest 
4345
Original file line number Diff line number Diff line change 66      - main 
77  workflow_dispatch :
88
9+ permissions : {} 
10+ 
911jobs :
1012  build :
1113    runs-on : ubuntu-latest 
Original file line number Diff line number Diff line change 1010  schedule :
1111    - cron : " 0 0 * * 2" 
1212
13+ permissions : {} 
14+ 
1315jobs :
1416  pre-list-legacy :
1517    strategy :
4951    strategy :
5052      matrix :
5153        python :
52-           - " 3.7" 
53-           - " 3.8" 
54+           #   - "3.7" # EOL 
55+           #   - "3.8" # EOL 
5456          - " 3.9" 
5557
5658    runs-on : ubuntu-latest 
@@ -124,7 +126,6 @@ jobs:
124126        with :
125127          persist-credentials : false 
126128
127- 
128129      - uses : actions/setup-python@a26af69be951a213d495a4c3e4e4022e16d87065  #  v5.6.0
129130        with :
130131          python-version : ${{ matrix.python }} 
Original file line number Diff line number Diff line change 55
66name : release 
77
8+ permissions : {} 
9+ 
810jobs :
911  pypi :
1012    name : upload release to PyPI 
@@ -19,21 +21,21 @@ jobs:
1921      contents : write 
2022
2123    steps :
22-     - uses : actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8  #  v5.0.0
23-       with :
24-         persist-credentials : false 
24+        - uses : actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8  #  v5.0.0
25+          with :
26+            persist-credentials : false 
2527
26-     - uses : actions/setup-python@a26af69be951a213d495a4c3e4e4022e16d87065  #  v5.6.0
27-       with :
28-         python-version : " 3.x" 
28+        - uses : actions/setup-python@a26af69be951a213d495a4c3e4e4022e16d87065  #  v5.6.0
29+          with :
30+            python-version : " 3.x" 
2931
30-     - name : deps 
31-       run : python -m pip install -U build 
32+        - name : deps 
33+          run : python -m pip install -U build 
3234
33-     - name : build 
34-       run : python -m build 
35+        - name : build 
36+          run : python -m build 
3537
36-     - name : publish 
37-       uses : pypa/gh-action-pypi-publish@76f52bc884231f62b9a034ebfe128415bbaabdfc  #  v1.12.4
38-       with :
39-         attestations : true 
38+        - name : publish 
39+          uses : pypa/gh-action-pypi-publish@76f52bc884231f62b9a034ebfe128415bbaabdfc  #  v1.12.4
40+          with :
41+            attestations : true 
Original file line number Diff line number Diff line change 66  pull_request :
77    branches : ["**"] 
88
9+ permissions : {} 
10+ 
911jobs :
1012  zizmor :
11-     name : zizmor latest via PyPI  
13+     name : Run  zizmor 🌈 
1214    runs-on : ubuntu-latest 
1315    permissions :
1416      security-events : write 
15-       #  required for workflows in private repositories
16-       contents : read 
17-       actions : read 
1817    steps :
1918      - name : Checkout repository 
2019        uses : actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8  #  v5.0.0
2120        with :
2221          persist-credentials : false 
2322
24-       - name : Install the latest version of uv 
25-         uses : astral-sh/setup-uv@d9e0f98d3fc6adb07d1e3d37f3043649ddad06a1  #  v6.5.0
26- 
2723      - name : Run zizmor 🌈 
28-         run : uvx zizmor --format sarif . > results.sarif 
29-         env :
30-           GH_TOKEN : ${{ secrets.GITHUB_TOKEN }} 
31- 
32-       - name : Upload SARIF file 
33-         uses : github/codeql-action/upload-sarif@df559355d593797519d70b90fc8edd5db049e7a2  #  v3.29.5
34-         with :
35-           sarif_file : results.sarif 
36-           category : zizmor 
24+         uses : zizmorcore/zizmor-action@f52a838cfabf134edcbaa7c8b3677dde20045018  #  v0.1.1
 
 
   
 
     
   
   
          
    
    
     
    
      
     
     
    You can’t perform that action at this time.
  
 
    
  
    
      
        
     
       
      
     
   
 
    
    
  
 
  
 
     
    
0 commit comments