Skip to content

fix(ci): resolve all zizmor findings and add zizmor pre-commit checks - #475

Merged
gforsyth merged 6 commits into
rapidsai:mainfrom
gforsyth:securitize
May 11, 2026
Merged

gforsyth merged 6 commits into
rapidsai:mainfrom
gforsyth:securitize

Conversation

@gforsyth

@gforsyth gforsyth commented May 7, 2026

Copy link
Copy Markdown
Contributor

Similar to upstream changes in shared-workflows, this PR cleans up and annotates all of the workflows and adds the zizmor linter to make sure changes are checked.

Part of rapidsai/build-planning#275

@jakirkham jakirkham left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks Gil! 🙏

Generally this looks reasonable

Had one minor style question. Though no strong feelings on it

Comment on lines +32 to +33
env:
INPUTS_TOOL_CACHE: ${{ inputs.tool_cache }}

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Would it make sense to move this above shell as is done in the other case?

Copy link
Copy Markdown
Contributor Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

No strong feelings, so I moved it for consistency. Thanks!

@gforsyth
gforsyth merged commit 38b0635 into rapidsai:main May 11, 2026
5 checks passed
@gforsyth
gforsyth deleted the securitize branch May 11, 2026 14:48
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants