Hacker News new | ask | show | jobs
by lknuth 37 days ago
Static analyzers like https://github.com/zizmorcore/zizmor can help find such misconfiguration. It is however unfortunate, that such footguns aren't harder to fire.
1 comments

Many thanks for sharing this. I wasn't aware it existed.