CI/CD Pipeline Hardening
Workflow
- Review current pipeline stages and branch/release strategy.
- Enforce compile, test, lint, and static security checks.
- Add artifact traceability, SBOM/signing, and deployment approvals.
- Validate environment promotion and rollback controls.
- Produce prioritized hardening backlog.
Output template
## Pipeline gaps
- High risk:
- Medium risk:
## Hardening backlog
1.
2.