Hackernews posts about Zizmor
- We hardened zizmor's GitHub Actions static analyzer (blog.trailofbits.com)
- 96% of GitHub repos have high severity issues in their Action workflows (pin-gh-actions.kammel.dev)
- Static Analysis for GitHub Actions (github.com)
- Static Analysis for GitHub Actions (github.com)
- Zizmor would have caught the Ultralytics workflow vulnerability (blog.yossarian.net)
- Zizmor: A static analysis tool for GitHub Actions (blog.yossarian.net)
- Zizmor would have caught the Ultralytics workflow vulnerability (blog.yossarian.net)
- Zizmor would have caught the Ultralytics workflow vulnerability (blog.yossarian.net)
- Show HN: Zizmor, static analysis for GitHub Actions (docs.zizmor.sh)
- Zizmor – static analysis for GitHub Actions (github.com)
- Zizmor 1.0 (blog.yossarian.net)
- Show HN: Zizmor, static analysis for GitHub Actions (woodruffw.github.io)
- Zizmor: Static analysis tool for GitHub Actions (woodruffw.github.io)
- Zizmor: Static Analysis for GitHub Actions (woodruffw.github.io)
- Zizmor – a tool for finding security issues in GitHub Actions setups (woodruffw.github.io)
- GitHub Actions Audit Rules (woodruffw.github.io)