Skip to main content

Code & supply chain

GitHub Actions security audit

Workflow files audited daily for IaC security anti-patterns.

Awaiting next run

scan output missing

Checked 5/29/2026, 3:16:35 AM · Source: Continuous integration

Zizmor did not produce output. Check the workflow run logs.

What this check means

A GitHub-Actions-specific security auditor (https://docs.zizmor.sh) inspects every workflow in .github/workflows for unpinned action references, template-injection footguns, secrets accessed outside a GH Environment, excessive permissions, cache-poisoning surfaces, and other CI-supply-chain risks. Complements the broader Checkov IaC pass with workflow-aware rules. Project-level exclusions are documented in zizmor.yml at the repo root.

Recent runs

WhenResultSource
5/29/2026, 3:16:35 AMscan output missingContinuous integration
5/28/2026, 3:18:10 AMscan output missingContinuous integration
5/27/2026, 3:22:21 AMscan output missingContinuous integration
5/26/2026, 3:18:39 AMscan output missingContinuous integration
5/25/2026, 3:17:14 AMscan output missingContinuous integration
5/24/2026, 3:19:35 AMscan output missingContinuous integration
5/23/2026, 3:16:56 AMscan output missingContinuous integration
5/22/2026, 3:15:56 AMscan output missingContinuous integration
5/21/2026, 6:07:03 AMscan output missingContinuous integration
5/21/2026, 3:18:58 AMscan output missingContinuous integration
5/20/2026, 3:23:13 AMscan output missingContinuous integration
5/19/2026, 3:17:59 AMscan output missingContinuous integration
5/18/2026, 3:18:24 AMscan output missingContinuous integration
5/17/2026, 3:15:07 AMscan output missingContinuous integration
5/16/2026, 3:12:42 AMscan output missingContinuous integration
5/15/2026, 3:15:26 AMscan output missingContinuous integration
5/14/2026, 3:14:55 AMscan output missingContinuous integration
5/13/2026, 3:14:44 AMscan output missingContinuous integration
5/12/2026, 3:14:42 AMscan output missingContinuous integration
5/11/2026, 3:16:16 AMscan output missingContinuous integration
5/10/2026, 3:15:11 AMscan output missingContinuous integration
5/9/2026, 5:29:44 AMscan output missingContinuous integration
5/9/2026, 3:14:17 AMscan output missingContinuous integration
5/8/2026, 4:48:27 AMscan output missingContinuous integration
5/8/2026, 3:51:35 AMscan output missingContinuous integration
5/7/2026, 3:14:24 AMscan output missingContinuous integration
5/6/2026, 3:14:30 AMscan output missingContinuous integration
5/5/2026, 3:32:57 AMscan output missingContinuous integration
5/5/2026, 3:13:27 AMscan output missingContinuous integration
5/4/2026, 3:19:41 AMscan output missingContinuous integration

Need additional detail (sanitised report, supporting evidence)? security@theartofcto.com