Hacker News new | ask | show | jobs
Static Analysis for GitHub Actions (github.com)
1 points by SEJeff 35 days ago
1 comments

Their action is also super handy: https://github.com/zizmorcore/zizmor-action

Use pinact (you can brew install it) to pin it by checksum: https://github.com/suzuki-shunsuke/pinact