The GITHUB_PATH and GITHUB_ENV writes are safe as they use only workflow-controlled values, not attacker-controlled input. See: https://docs.zizmor.sh/audits/#github-env
The GITHUB_PATH and GITHUB_ENV writes are safe as they use only workflow-controlled values, not attacker-controlled input. See: https://docs.zizmor.sh/audits/#github-env