Hacktoberfest 2026: le issue che i maintainer hanno segnato per ottobre, aperte e adatte ai principianti. Sfoglia le issue Hacktoberfest

Expand README with how to use some tools offline to maintain this repo

Aperta
#41 2 commenti 1 reazione 0 assegnatari Vedi su GitHub

Nessuno ha ancora preso questa issue.

Valutazione

Difficoltà
3/5
Tempo stimato
1-2 giorni
Idoneità per principianti
55/100
Tipo di issue
Documentazione
Chiarezza
Abbastanza chiara
Stato di attività
Tranquilla
Stack tecnologico
github-actions, shell

Direzione di ricerca

Inizia dalla sezione del README che spiega che il repository è minimale, quindi esamina i file di workflow. Ricerca approcci offline o per repository esterni usando gha-update, zizmor e strumenti analoghi, e documenta passaggi pratici per la manutenzione e lo scanning. Il lavoro è completato quando il README spiega chiaramente come eseguire questi controlli senza aggiungere strumenti a questo repository.

Scritto dal modello di indicizzazione a partire dal testo della issue.

Descrizione

We don't want to add more tools to this repo, as explained in the README under "This repository is minimal on purpose, for security reasons it contains only what is absolutely necessary. [...]". That includes no dependabot, no CodeQL, no zizmor, etc.

It'd be useful to expand a bit on that on how to use tools async (or possibly from another repo on a cron job) to perform regular maintenance and scanning for this repo. E.g.:

  • gha-update or similar to bump all pins of actions (or is there a newer tool for that now?)
  • zizmor to scan for common issues in workflow files
  • probably a custom script or an AI tool to go through the repo to check for anything else that isn't pinned
  • anything else?
Lingua principale
Shell
Stelle
4
Fork
10
Merge medio
8h 5m
PR unite (30g)
1

Preparare l'ambiente

Come iniziare

  1. Leggi tutta la issue e poi la guida ai contributi del progetto.
  2. Commenta sulla issue per dire che te ne occupi tu — evita che due persone facciano lo stesso lavoro.
  3. Fai un fork del repository e lavora su un branch.
  4. Apri una pull request che faccia riferimento al numero della issue.

Altre issue di numpy/numpy-release

Tutte le issue di numpy/numpy-release

Issue simili

Altre issue su Shell/Bash

Ricevi le nuove issue nella tua casella

Un breve riepilogo di issue GitHub adatte ai principianti.