summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorJacob Walls <jacobtylerwalls@gmail.com>2025-11-14 14:06:21 -0500
committerJacob Walls <jacobtylerwalls@gmail.com>2025-11-21 15:06:02 -0500
commitb794e741296474955742a6af6f8ff86108e72df8 (patch)
treea63cf86ec1742fb64ed4b0abbfe675f30b6c8c9a
parent6a803907407780f717f30663b2ae3bad43d7ac54 (diff)
[4.2.x] Configured dangerous-triggers zizmor rule.
Backport of 846613e521104fa2f2e1c2023e4a1a9886a2ff48 from main.
-rw-r--r--.github/workflows/new_contributor_pr.yml4
-rw-r--r--zizmor.yml3
2 files changed, 7 insertions, 0 deletions
diff --git a/.github/workflows/new_contributor_pr.yml b/.github/workflows/new_contributor_pr.yml
index 3e0119ebdc..3602abf109 100644
--- a/.github/workflows/new_contributor_pr.yml
+++ b/.github/workflows/new_contributor_pr.yml
@@ -3,12 +3,16 @@ name: New contributor message
on:
pull_request_target:
types: [opened]
+ branches:
+ - main
permissions:
pull-requests: write
jobs:
build:
+ # Only trigger on the main Django repository
+ if: github.repository == 'django/django'
name: Hello new contributor
runs-on: ubuntu-latest
steps:
diff --git a/zizmor.yml b/zizmor.yml
index 8d1b34ed48..3fa168f3cf 100644
--- a/zizmor.yml
+++ b/zizmor.yml
@@ -1,4 +1,7 @@
rules:
+ dangerous-triggers:
+ ignore:
+ - new_contributor_pr.yml
unpinned-uses:
config:
policies: