Skip to content

docs: describe what the scan does on manual dispatch - #95

Merged
altaywtf merged 1 commit into
mainfrom
docs/distribution-scan-wording
Oct 5, 2026
Merged

altaywtf merged 1 commit into
mainfrom
docs/distribution-scan-wording

Conversation

@altaywtf

@altaywtf altaywtf commented Oct 5, 2026

Copy link
Copy Markdown
Member

Summary

docs/DISTRIBUTION.md said a manual dispatch has Actionlint and Zizmor audit "the full history". They lint every workflow in the current tree; full history is what Gitleaks scans, and the shared scan leaves Gitleaks off for public repositories. The trigger list also gains the manual dispatch ci.yml already accepts.

-1. `verify` on pull requests and `main` pushes.
+1. `verify` on pull requests, `main` pushes, and manual dispatch.
-…and an Actionlint and Zizmor audit when a `main` push changes workflows, or of the full history on manual dispatch.
+…and an Actionlint and Zizmor audit when a `main` push changes workflows and on manual dispatch. GitHub secret scanning and push protection cover secrets in this public repository.

Risks

None; docs: publishes nothing.

Verification

The secret-scanning sentence matches the repository's live settings (secret scanning and push protection both on).

Follow-Ups

N/A


Written by an agent (Claude Code, Claude Opus 5.5)

Actionlint and Zizmor lint every workflow on dispatch; full history is what
Gitleaks scans, and Gitleaks stays off for this public repository. Also list
manual dispatch among the verify job's triggers.
@chatgpt-codex-connector

Copy link
Copy Markdown

You have reached your Codex usage limits for code reviews. You can see your limits in the Codex usage dashboard.
To continue using code reviews, add credits to your account and enable them for code reviews in your settings.

@altaywtf
altaywtf merged commit 6b770a3 into main Oct 5, 2026
2 checks passed
@altaywtf
altaywtf deleted the docs/distribution-scan-wording branch October 5, 2026 11:26
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant