Releases: woodruffw/zizmor
Releases · woodruffw/zizmor
v0.2.0
What's Changed
- chore: add description to
--help
by @woodruffw in #111 - fix: bump github-actions-models by @woodruffw in #112
- feat: improves plain output with audit confidence by @ubiratansoares in #119
- fix: bump github-actions-models by @woodruffw in #120
- docs: improve usage page and options for sarif and code scanning by @tobiastornros in #121
- feat: configuration file support by @woodruffw in #116
New Contributors
- @dependabot made their first contribution in #118
- @tobiastornros made their first contribution in #121
Full Changelog: v0.1.6...v0.2.0
v0.1.6
What's Changed
- feat: accept multiple arguments as inputs by @miketheman in #104
Full Changelog: v0.1.5...v0.1.6
v0.1.5
What's Changed
- Exclude
github.run_*
from template injection check by @funnelfiasco in #92 - fix(ci): move read permissions to job scope by @miketheman in #95
- fix: links in README.md by @dmwyatt in #96
- test: adds acceptance tests on top of json-formatted output by @ubiratansoares in #97
- docs: add an example GHA workflow by @woodruffw in #98
- docs: update readme by @miketheman in #100
- docs: show example for usage in private repos by @miketheman in #99
New Contributors
- @funnelfiasco made their first contribution in #92
- @dmwyatt made their first contribution in #96
- @ubiratansoares made their first contribution in #97
Full Changelog: v0.1.4...v0.1.5
v0.1.4
What's Changed
- perf: Enable Link-Time Optimization (LTO) by @zamazan4ik in #81
- feat: begin prepping zizmor's website by @woodruffw in #78
- fix: Always use the plain formatter even when the output is not a terminal by @asmeurer in #83
- feat: show version by @miketheman in #84
- fix: finding url link to audits doc by @amenasria in #87
New Contributors
- @zamazan4ik made their first contribution in #81
- @asmeurer made their first contribution in #83
- @amenasria made their first contribution in #87
Full Changelog: v0.1.3...v0.1.4
v0.1.3
What's Changed
- fix: use relative workflow paths in SARIF output by @woodruffw in #77
Full Changelog: v0.1.2...v0.1.3
v0.1.2
What's Changed
- feat: github.ref_name is always an injection risk by @woodruffw in #67
- Create workflow that runs zizmor latest by @colindean in #71
- Link to GitHub workflow examples by @ncoghlan in #70
- docs: add homebrew install by @miketheman in #74
- fix: bump github-actions-models by @woodruffw in #75
New Contributors
- @colindean made their first contribution in #71
- @ncoghlan made their first contribution in #70
Full Changelog: v0.1.1...v0.1.2