ci: allow zizmor action so the workflow can run
Maintainer thường phản hồi trong vòng 4 ngày
Chưa có ai nhận issue này.
Đánh giá
- Độ khó
- 1/5
- Thời gian dự kiến
- Dưới một giờ
- Mức phù hợp với người mới
- 55/100
- Loại issue
- Lỗi
- Độ rõ ràng
- Đặc tả rõ ràng
- Mức độ hoạt động
- Sôi nổi
- Công nghệ
- github-actions
- Lĩnh vực
- ci-cd
Hướng nghiên cứu
Start with the existing zizmor workflow and verify that its zizmorcore/zizmor-action reference is included in the repository's allowed GitHub Actions. A maintainer with Admin permissions must make the approval change; rerun the workflow afterward, and confirm it starts with jobs instead of ending in startup_failure.
Do mô hình lập chỉ mục viết ra từ nội dung của issue.
Mô tả
Description
The zizmor workflow added in #144 is currently failing before any job is created.
Affected runs end with:
startup_failure
and contain no jobs.
This also occurs on #148, which originated from nodejs/learn itself, so the failure is not specific to external pull requests.
Likely cause
nodejs/learn uses an explicit GitHub Actions allowlist. The workflow added in #146 documents that new Actions need to be approved by a maintainer with Admin permissions.
There is a direct precedent in nodejs/nodejs.org#8728: when zizmor was introduced there, maintainers confirmed that the workflow was not starting because zizmorcore/zizmor-action had not yet been added to that repository's Actions allowlist. After it was allowed, the existing zizmor workflow ran successfully.
The Learn workflow currently uses:
uses: zizmorcore/zizmor-action@3dc1ecc9bcb9e94e9b2c709687979e1298497054 # v0.6.2
Suggested fix
Could a maintainer with Admin permissions verify that zizmorcore/zizmor-action is included in this repository's allowed Actions?
After it is allowed, the existing workflow can be rerun to verify that it starts normally.
cc @nodejs/web-infra
- Ngôn ngữ chính
- JavaScript
- Star
- 35
- Fork
- 176
- Merge trung bình
- 3 ngày 4 giờ
- Pull request đã merge (30 ngày)
- 18
Chuẩn bị môi trường
- Không có Dockerfile hay tệp Docker Compose
- Không có mẫu pull request
- Đọc hướng dẫn đóng góp
Bắt đầu từ đâu
- Đọc hết issue, rồi đọc hướng dẫn đóng góp của dự án.
- Bình luận trên issue rằng bạn sẽ nhận — tránh hai người làm cùng một việc.
- Fork repository và làm thay đổi trên một nhánh.
- Mở pull request có tham chiếu số hiệu của issue.
Issue khác của nodejs/learn
-
Add an issue templateĐang mở
Độ khó 3/5 1-2 ngày Mức phù hợp với người mới 35/100
Maintainer thường phản hồi trong vòng 4 ngày
-
Selecting a filter in search bar doesn't work as expectedCó thể làm lại được @Shivang9983 đã nhận 12 ngày trước và không có pull request nào đang mở. Đang mở
Độ khó 3/5 1-2 ngày Mức phù hợp với người mới 65/100
nodejs/learn#112 · 1 bình luận · 1 reaction ·
Maintainer thường phản hồi trong vòng 4 ngày
-
Độ khó 3/5 1-2 ngày Mức phù hợp với người mới 45/100
Maintainer thường phản hồi trong vòng 4 ngày
-
Độ khó 3/5 1-2 ngày Mức phù hợp với người mới 72/100
Maintainer thường phản hồi trong vòng 4 ngày
-
Add auto-merge workflowĐang mở
Độ khó 3/5 1-2 ngày Mức phù hợp với người mới 35/100
Maintainer thường phản hồi trong vòng 4 ngày
Issue tương tự
-
bug user-priority/P2
Độ khó 2/5 1-3 giờ Mức phù hợp với người mới 62/100
t8y2/dbx#11718 · 1 bình luận ·
Maintainer thường phản hồi trong vòng 1 ngày
-
bug confirmed perf
Độ khó 2/5 1-3 giờ Mức phù hợp với người mới 72/100
videojs/video.js#9400 · 1 bình luận ·
Maintainer thường phản hồi trong vòng 1 ngày
-
agent/scanner bug hive/hosted-available-lke648397-260827-5n31
Độ khó 2/5 1-3 giờ Mức phù hợp với người mới 75/100
Maintainer thường phản hồi trong vòng 1 ngày
-
Độ khó 2/5 1-3 giờ Mức phù hợp với người mới 65/100
rescript-lang/rescript#8765 ·
Maintainer thường phản hồi trong vòng 1 ngày
-
[workshop-sim] Improve: Add a required self-check gate to the agentic-workflows concept pageĐang mởfeedback simulation workshop
Độ khó 2/5 1-3 giờ Mức phù hợp với người mới 62/100
githubnext/gh-aw-workshop#4417 ·
Maintainer thường phản hồi trong vòng 1 ngày