Skip to content
Prev Previous commit
Next Next commit
Add zizmor conf
  • Loading branch information
ShaharNaveh committed Mar 31, 2026
commit 15178ce3a46b79ffa4c55ca5270a0b9192fff8ba
16 changes: 16 additions & 0 deletions .github/zizmor.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,16 @@
rules:
unpinned-uses:
config:
policies:
# dtolnay/rust-toolchain is a trusted action that uses lightweight branch
# refs (@stable, @nightly, etc.) by design. Pinning to a hash would break
# the intended usage pattern.
#
# We can remove this once https://github.com/dtolnay/rust-toolchain/issues/180 is resolved
dtolnay/rust-toolchain: any
# dtolnay/rust-toolchain handles component installation, target addition, and
# override configuration beyond what a bare `rustup` invocation provides.
#
# See: https://github.com/zizmorcore/zizmor/issues/1817
superfluous-actions:
disable: true