Skip to content

Commit 4b2d3f9

Browse files
committed
doc: update documentation
1 parent 4c10d96 commit 4b2d3f9

File tree

2 files changed

+6
-5
lines changed

2 files changed

+6
-5
lines changed

doc/source/how-to/vulnerabilities.rst

Lines changed: 4 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -54,7 +54,7 @@ have been integrated into the ``ansys/actions/check-vulnerabilities`` action.
5454
For third-party packages, the PyAnsys Core team has listed a set of excluded advisories so that
5555
the action does not fail. This is done to avoid false positives and to ensure that the action does
5656
not block the CI/CD pipeline unnecessarily. You can find the list of excluded advisories in
57-
`the check-vulnerabilities-action documentation`_.
57+
`the check-vulnerabilities action documentation`_.
5858

5959
For potential vulnerabilities in the codebase, repositories can configure Bandit to ignore
6060
specific advisories. This can be due to the code not being ready yet to be fixed or that the
@@ -72,7 +72,7 @@ and ensure that they are regularly reviewed to determine if they can be addresse
7272
.. warning::
7373

7474
Testing the action locally before enabling it in the CI/CD workflow is recommended. Information
75-
on how to do this can be found in `the check-vulnerabilities-action documentation`_.
75+
on how to do this can be found in `the check-vulnerabilities action documentation`_.
7676

7777
Vulnerability remediation and reporting
7878
----------------------------------------
@@ -348,7 +348,7 @@ Auditing CI/CD setups in the PyAnsys ecosystem
348348
For PyAnsys ecosystem projects, the recommended way to audit workflows is to use the
349349
``ansys/actions/check-actions-security`` action. The action wraps ``zizmor`` and provides
350350
additional functionality and configuration tailored to PyAnsys projects. For setup instructions,
351-
see `the check-actions-security-action documentation`_.
351+
see `the check-actions-security action documentation`_.
352352

353353
Fixing common issues detected by ``zizmor``
354354
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
@@ -803,6 +803,7 @@ For example, to ignore the ``artipacked`` rule:
803803
To ignore multiple rules in the same span, separate them with commas:
804804

805805
.. code:: yaml
806+
806807
# zizmor: ignore[github-env,template-injection]
807808
808809
For more information, see `ignoring zizmor results`_.

doc/source/links.rst

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -224,8 +224,8 @@
224224
.. _CVE: https://www.cve.org/
225225
.. _Safety: https://pyup.io/safety/
226226
.. _Bandit: https://bandit.readthedocs.io/en/latest/
227-
.. _the check-vulnerability-action documentation: https://actions.docs.ansys.com/version/stable/vulnerability-actions/index.html#check-vulnerabilities-action
228-
.. _the check-actions-security-action documentation: https://actions.docs.ansys.com/version/stable/vulnerability-actions/index.html#check-actions-security-action
227+
.. _the check-vulnerabilities action documentation: https://actions.docs.ansys.com/version/stable/vulnerability-actions/index.html#check-vulnerabilities-action
228+
.. _the check-actions-security action documentation: https://actions.docs.ansys.com/version/stable/vulnerability-actions/index.html#check-actions-security-action
229229
.. _PyACP security considerations: https://acp.docs.pyansys.com/version/dev/user_guide/security_considerations.html
230230
.. _Github's documentation: https://docs.github.com/en/code-security/security-advisories/working-with-repository-security-advisories/collaborating-in-a-temporary-private-fork-to-resolve-a-repository-security-vulnerability
231231
.. _PyAnsys Geometry subprocess advisory: https://github.com/ansys/pyansys-geometry/security/advisories/GHSA-38jr-29fh-w9vm

0 commit comments

Comments
 (0)