diff --git a/.github/workflows/audit-gha-workflows.yml b/.github/workflows/audit-gha-workflows.yml deleted file mode 100644 index abd5cf3..0000000 --- a/.github/workflows/audit-gha-workflows.yml +++ /dev/null @@ -1,26 +0,0 @@ -name: Audit GHA Workflows -on: - pull_request: - push: - branches: [master, main] -permissions: - contents: read -jobs: - zizmor: - name: Audit GitHub Actions - runs-on: ubuntu-latest - timeout-minutes: 5 - steps: - - name: Checkout code - uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2 - with: - persist-credentials: false - - name: Install zizmor - run: pip install zizmor==1.23.1 - - name: Run zizmor - env: - GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }} - run: | - if [ -d .github ]; then - zizmor .github --gh-token "${GITHUB_TOKEN}" --min-severity medium - fi