CI/CD Pipeline¶
8 stages: lint, test, build, scan, push, security, sign, deploy
Registry¶
us-central1-docker.pkg.dev/viktor-integration/services/
Templates¶
- ci-templates/z-core-docker.gitlab-ci.yml (build/scan/push)
- ci-templates/gke-deploy.gitlab-ci.yml (deploy to GKE)
Security¶
- Trivy container scanning
- Semgrep SAST
- Gitleaks secret detection
- Cosign image signing + SBOM + SLSA