Developer CI/CD Policy

This policy is designed to be used by developers in a CI/CD pipeline.

  • Recommended for running in CI/CD
  • No environmental / server related rules
  • No long running rules
  • No rules with high false positives
  • No timing attacks
  • No informational only rules
  • Minimal overlap

For the list of scan rules included see the Alert Tag: POLICY_DEV_CICD page.

Return to main scan policies page.