Skip to content

ci: address github action security warnings by zizmor#251

Draft
consideRatio wants to merge 12 commits intosensmetry:mainfrom
consideRatio:pr/zizmor
Draft

ci: address github action security warnings by zizmor#251
consideRatio wants to merge 12 commits intosensmetry:mainfrom
consideRatio:pr/zizmor

Conversation

@consideRatio
Copy link
Copy Markdown
Collaborator

@consideRatio consideRatio commented Apr 2, 2026

Based on top of #250, and where cache-poisoning is still to be considered.

This reverts commit 8fbda0c.

Signed-off-by: Erik Sundell <erik.sundell+2025@sensmetry.com>
Signed-off-by: Erik Sundell <erik.sundell+2025@sensmetry.com>
With this change, we stop using pre-commit that doesn't support rust as
a language to run hooks. We also stop using pre-commit.ci for the same
reason, and with that we need to run prek in GitHub Action's CI system.

I transitioned to run mypy checks using prek as well, and removed such
ci logic from the Python github actions workflow.

I cleaned up run_chores.sh scripts as well, as we can now rely on prek
for this.

Signed-off-by: Erik Sundell <erik.sundell+2025@sensmetry.com>
Signed-off-by: Erik Sundell <erik.sundell+2025@sensmetry.com>
Signed-off-by: Erik Sundell <erik.sundell+2025@sensmetry.com>
Signed-off-by: Erik Sundell <erik.sundell+2025@sensmetry.com>
Signed-off-by: Erik Sundell <erik.sundell+2025@sensmetry.com>
Signed-off-by: Erik Sundell <erik.sundell+2025@sensmetry.com>
Signed-off-by: Erik Sundell <erik.sundell+2025@sensmetry.com>
Signed-off-by: Erik Sundell <erik.sundell+2025@sensmetry.com>
Signed-off-by: Erik Sundell <erik.sundell+2025@sensmetry.com>
Signed-off-by: Erik Sundell <erik.sundell+2025@sensmetry.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant