summaryrefslogtreecommitdiff
path: root/zizmor.yml
diff options
context:
space:
mode:
Diffstat (limited to 'zizmor.yml')
-rw-r--r--zizmor.yml6
1 files changed, 6 insertions, 0 deletions
diff --git a/zizmor.yml b/zizmor.yml
new file mode 100644
index 0000000000..8d1b34ed48
--- /dev/null
+++ b/zizmor.yml
@@ -0,0 +1,6 @@
+rules:
+ unpinned-uses:
+ config:
+ policies:
+ actions/*: ref-pin
+ psf/*: ref-pin