[PR #7465] [MERGED] Add GitHub Actions check step via zizmor #56488

Closed
opened 2026-05-01 04:23:41 -05:00 by GiteaMirror · 0 comments
Owner

📋 Pull Request Information

Original PR: https://github.com/actualbudget/actual/pull/7465
Author: @jfdoming
Created: 4/10/2026
Status: Merged
Merged: 4/17/2026
Merged by: @jfdoming

Base: masterHead: jfdoming/zizmor


📝 Commits (6)

  • a3d584f Add GitHub Actions check step via zizmor
  • 9c7ce77 Add security-events permissions to check-gh-actions
  • 28bd1de Add persist-credentials option to checkout action
  • ad71219 Add release notes for PR #7465
  • 2b8bbb5 Change category to Maintenance and update action step
  • 96c09fc Merge branch 'master' into jfdoming/zizmor

📊 Changes

2 files changed (+15 additions, -0 deletions)

View changed files

📝 .github/workflows/check.yml (+9 -0)
upcoming-release-notes/7465.md (+6 -0)

📄 Description

Description

Checks GitHub actions via zizmor static analysis

Testing

Let's see what it flags on this PR.

Checklist

  • Release notes added (see link above)
  • No obvious regressions in affected areas
  • Self-review has been performed - I understand what each change in the code does and why it is needed

🔄 This issue represents a GitHub Pull Request. It cannot be merged through Gitea due to API limitations.

## 📋 Pull Request Information **Original PR:** https://github.com/actualbudget/actual/pull/7465 **Author:** [@jfdoming](https://github.com/jfdoming) **Created:** 4/10/2026 **Status:** ✅ Merged **Merged:** 4/17/2026 **Merged by:** [@jfdoming](https://github.com/jfdoming) **Base:** `master` ← **Head:** `jfdoming/zizmor` --- ### 📝 Commits (6) - [`a3d584f`](https://github.com/actualbudget/actual/commit/a3d584f43ee0de86e02706ff88077f2afe5718d7) Add GitHub Actions check step via `zizmor` - [`9c7ce77`](https://github.com/actualbudget/actual/commit/9c7ce77c4d4be52b603c2ef66e1c325a5a20cda6) Add security-events permissions to check-gh-actions - [`28bd1de`](https://github.com/actualbudget/actual/commit/28bd1def4ff566e248b8d15987671811c377fb8f) Add persist-credentials option to checkout action - [`ad71219`](https://github.com/actualbudget/actual/commit/ad71219d3bfc275bbf8089c62e33e9573d313e22) Add release notes for PR #7465 - [`2b8bbb5`](https://github.com/actualbudget/actual/commit/2b8bbb5b0b948797b6b3c7682768fa532237039b) Change category to Maintenance and update action step - [`96c09fc`](https://github.com/actualbudget/actual/commit/96c09fcde09aa938a56e331ff47a7827e0de4f66) Merge branch 'master' into jfdoming/zizmor ### 📊 Changes **2 files changed** (+15 additions, -0 deletions) <details> <summary>View changed files</summary> 📝 `.github/workflows/check.yml` (+9 -0) ➕ `upcoming-release-notes/7465.md` (+6 -0) </details> ### 📄 Description <!-- Thank you for submitting a pull request! Make sure to follow the instructions to write release notes for your PR — it should only take a minute or two: https://github.com/actualbudget/docs#writing-good-release-notes. Try running yarn generate:release-notes *before* pushing your PR for an interactive experience. --> ## Description Checks GitHub actions via [zizmor](https://github.com/zizmorcore/zizmor) static analysis ## Related issue(s) <!-- e.g. Fixes #123, Relates to #456 --> ## Testing Let's see what it flags on this PR. ## Checklist - [x] Release notes added (see link above) - [x] No obvious regressions in affected areas - [x] Self-review has been performed - I understand what each change in the code does and why it is needed <!--- actual-bot-sections ---> --- <sub>🔄 This issue represents a GitHub Pull Request. It cannot be merged through Gitea due to API limitations.</sub>
GiteaMirror added the pull-request label 2026-05-01 04:23:41 -05:00
Sign in to join this conversation.
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: github-starred/actual#56488