ci: allow zizmor action so the workflow can run
Los mantenedores suelen responder en 4 días
Nadie ha tomado este issue todavía.
Evaluación
- Dificultad
- 1/5
- Tiempo estimado
- Menos de una hora
- Aptitud para principiantes
- 55/100
- Tipo de issue
- Error
- Claridad
- Bien especificado
- Estado de actividad
- Activo
- Stack tecnológico
- github-actions
- Área
- ci-cd
Línea de trabajo
Start with the existing zizmor workflow and verify that its zizmorcore/zizmor-action reference is included in the repository's allowed GitHub Actions. A maintainer with Admin permissions must make the approval change; rerun the workflow afterward, and confirm it starts with jobs instead of ending in startup_failure.
Escrito por el modelo de indexación a partir del texto del issue.
Descripción
Description
The zizmor workflow added in #144 is currently failing before any job is created.
Affected runs end with:
startup_failure
and contain no jobs.
This also occurs on #148, which originated from nodejs/learn itself, so the failure is not specific to external pull requests.
Likely cause
nodejs/learn uses an explicit GitHub Actions allowlist. The workflow added in #146 documents that new Actions need to be approved by a maintainer with Admin permissions.
There is a direct precedent in nodejs/nodejs.org#8728: when zizmor was introduced there, maintainers confirmed that the workflow was not starting because zizmorcore/zizmor-action had not yet been added to that repository's Actions allowlist. After it was allowed, the existing zizmor workflow ran successfully.
The Learn workflow currently uses:
uses: zizmorcore/zizmor-action@3dc1ecc9bcb9e94e9b2c709687979e1298497054 # v0.6.2
Suggested fix
Could a maintainer with Admin permissions verify that zizmorcore/zizmor-action is included in this repository's allowed Actions?
After it is allowed, the existing workflow can be rerun to verify that it starts normally.
cc @nodejs/web-infra
- Lenguaje dominante
- JavaScript
- Estrellas
- 32
- Forks
- 173
- Merge medio
- 10 d 3 h
- PR fusionados (30 d)
- 12
Preparar el entorno
- Sin Dockerfile ni archivo de Docker Compose
- Sin plantilla de pull request
- Leer la guía de contribución
Primeros pasos
- Lee el issue completo y luego la guía de contribución del proyecto.
- Comenta en el issue que vas a ocuparte — evita que dos personas hagan lo mismo.
- Haz un fork del repositorio y trabaja en una rama.
- Abre un pull request que haga referencia al número del issue.
Más de nodejs/learn
-
Add an issue templateAbierto
Dificultad 3/5 1-2 días Aptitud para principiantes 35/100
Los mantenedores suelen responder en 4 días
-
Dificultad 3/5 1-2 días Aptitud para principiantes 65/100
nodejs/learn#112 · 1 comentario · 1 reacción ·
Los mantenedores suelen responder en 4 días
-
Dificultad 3/5 1-2 días Aptitud para principiantes 45/100
Los mantenedores suelen responder en 4 días
-
Dificultad 3/5 1-2 días Aptitud para principiantes 72/100
Los mantenedores suelen responder en 4 días
-
Add auto-merge workflowAbierto
Dificultad 3/5 1-2 días Aptitud para principiantes 35/100
Los mantenedores suelen responder en 4 días
Todos los issues de nodejs/learn
Issues similares
-
Dificultad 2/5 1-3 horas Aptitud para principiantes 80/100
-
AI question refinement does not preserve generated answers in follow-up conversation contextAbiertobug
Dificultad 2/5 1-3 horas Aptitud para principiantes 78/100
NationalSecurityAgency/skills-service#4052 ·
Los mantenedores suelen responder en 1 día
-
documentation
Dificultad 1/5 Menos de una hora Aptitud para principiantes 88/100
githubnext/gh-aw-workshop#4251 ·
Los mantenedores suelen responder en 1 día
-
customer-support needs-triage Platform(Default)
Dificultad 2/5 1-3 horas Aptitud para principiantes 75/100
Los mantenedores suelen responder en 2 días
-
Dificultad 2/5 1-3 horas Aptitud para principiantes 72/100
Leonxlnx/taste-skill#129 ·
Los mantenedores suelen responder en 1 día