Skip to content

ci(zizmor): adopt 1.28.0 — fix what is wrong, justify what is not, and pin the premises #463

ci(zizmor): adopt 1.28.0 — fix what is wrong, justify what is not, and pin the premises

ci(zizmor): adopt 1.28.0 — fix what is wrong, justify what is not, and pin the premises #463

Triggered via pull request August 2, 2026 00:36
Status Success
Total duration 3m 24s
Artifacts

security.yml

on: pull_request
pip-audit (dependency vulnerabilities)
1m 25s
pip-audit (dependency vulnerabilities)
npm-audit (ide dependency vulnerabilities)
9s
npm-audit (ide dependency vulnerabilities)
SBOMs (CycloneDX, multi-ecosystem)
SBOMs (CycloneDX, multi-ecosystem)
trivy (container image vulnerabilities)
trivy (container image vulnerabilities)
bandit (Python SAST)
26s
bandit (Python SAST)
gitleaks (secret scan)
16s
gitleaks (secret scan)
semgrep (project SAST rules)
37s
semgrep (project SAST rules)
crypto-inventory (ASVS 11.1.3 discovery gate)
10s
crypto-inventory (ASVS 11.1.3 discovery gate)
forbidden-content (customer/PHI leak guard)
29s
forbidden-content (customer/PHI leak guard)
Fit to window
Zoom out
Zoom in