Pipeline Guardrails
Reference Gate Sequence
- Build and lint
- Unit and integration tests
- Coverage threshold validation
- Security scans (SAST + SCA)
- Dependency license checks
- Release readiness report
Blocking Policy
- Fail pipeline on Critical/High security issues.
- Fail pipeline when test coverage drops below team baseline.
- Fail pipeline when prohibited licenses are detected.
Operational Guidance
- Keep false-positive suppression centrally governed.
- Time-box non-blocking checks to protect feedback speed.
- Include gate summaries in PR comments for transparency.