zeroclaw/scripts/ci
Argenis 2bdc17e5af
Merge pull request #2850 from zeroclaw-labs/pr/ci-guardrails-20260305
ci: add PR binary-size regression and release size parity
2026-03-05 09:49:01 -05:00
..
config chore(unsafe-debt): enforce strict full crate coverage defaults (RMN-54) 2026-02-24 21:00:46 +08:00
tests ci(security): add pre-push trivy gate and workflow-script safety checks 2026-03-05 06:46:35 -05:00
canary_guard.py feat(ci): formalize canary cohorts and observability policy 2026-02-25 22:29:26 +08:00
check_binary_size_regression.sh ci: add binary-size regression guard and windows release size parity 2026-03-05 06:47:52 -05:00
check_binary_size.sh fix(ci): correct binary path and script permissions in smoke build 2026-02-21 12:48:47 +08:00
ci_change_audit.py ci(security): add pre-push trivy gate and workflow-script safety checks 2026-03-05 06:46:35 -05:00
collect_changed_links.py ci: unify rust quality gate and add incremental docs/link checks 2026-02-17 15:21:55 +08:00
deny_policy_guard.py feat(ci): complete security audit governance and resilient CI control lanes 2026-02-24 16:25:53 +08:00
detect_change_scope.sh ci: fix PR scope detection and skip fast build for non-rust 2026-02-28 14:06:08 +08:00
docs_deploy_guard.py feat(ci): enforce docs deploy promotion and rollback contract 2026-02-25 21:55:13 +08:00
docs_links_gate.sh ci: unify rust quality gate and add incremental docs/link checks 2026-02-17 15:21:55 +08:00
docs_quality_gate.sh ci: fail docs gate on unclassified markdownlint errors 2026-02-17 15:21:55 +08:00
emit_audit_event.py feat(ci): complete security audit governance and resilient CI control lanes 2026-02-24 16:25:53 +08:00
ensure_c_toolchain.sh fix(ci): restore missing toolchain helper scripts for required gates 2026-03-05 06:10:08 -05:00
ensure_cargo_component.sh fix(ci): restore missing toolchain helper scripts for required gates 2026-03-05 06:10:08 -05:00
ensure_cc.sh ci(security): restore missing rust/c toolchain helper scripts 2026-03-05 05:48:22 -05:00
fetch_actions_data.py add params to actions data 2026-02-18 21:23:31 -08:00
flake_retry_probe.py feat(ci): complete security audit governance and resilient CI control lanes 2026-02-24 16:25:53 +08:00
generate_provenance.py feat(ci): complete security audit governance and resilient CI control lanes 2026-02-24 16:25:53 +08:00
ghcr_publish_contract_guard.py feat(ci): enforce GHCR publish tag contract and rollback mapping 2026-02-25 21:10:19 +08:00
ghcr_vulnerability_gate.py feat(ci): add GHCR vulnerability gate policy and audit traceability 2026-02-25 21:35:57 +08:00
install_gitleaks.sh feat(ci): complete security audit governance and resilient CI control lanes 2026-02-24 16:25:53 +08:00
install_syft.sh feat(ci): complete security audit governance and resilient CI control lanes 2026-02-24 16:25:53 +08:00
nightly_matrix_report.py feat(ci): add nightly profile retries and trend snapshot evidence 2026-02-25 23:01:49 +08:00
prerelease_guard.py feat(ci): harden prerelease stage matrix and transition audit 2026-02-25 19:30:11 +08:00
provider_connectivity_matrix.py feat(ci): complete security audit governance and resilient CI control lanes 2026-02-24 16:25:53 +08:00
release_artifact_guard.py feat(release): enforce artifact contract guard 2026-02-25 20:16:35 +08:00
release_manifest.py feat(ci): add release/canary/nightly automation and governance guards 2026-02-25 17:51:04 +08:00
release_notes_with_supply_chain_refs.py feat(release): automate supply-chain release notes preface 2026-02-25 20:38:51 +08:00
release_trigger_guard.py feat(ci): add release trigger authorization guard 2026-02-25 19:54:17 +08:00
reproducible_build_check.sh feat(ci): complete security audit governance and resilient CI control lanes 2026-02-24 16:25:53 +08:00
restricted_profile.sh ci(test): add restricted-environment hermetic validation lane 2026-03-05 05:48:15 -05:00
rollback_guard.py feat(ci): complete security audit governance and resilient CI control lanes 2026-02-24 16:25:53 +08:00
rust_quality_gate.sh ci: unify rust quality gate and add incremental docs/link checks 2026-02-17 15:21:55 +08:00
rust_strict_delta_gate.sh ci: tighten strict delta matching to changed line ranges 2026-02-17 15:21:55 +08:00
secrets_governance_guard.py feat(ci): complete security audit governance and resilient CI control lanes 2026-02-24 16:25:53 +08:00
security_regression_tests.sh ci: add security regression gate and focused test suite 2026-02-25 18:33:28 +08:00
self_heal_rust_toolchain.sh fix(ci): restore missing toolchain helper scripts for required gates 2026-03-05 06:10:08 -05:00
unsafe_debt_audit.py feat(unsafe-debt): integrate policy-driven audit coverage (RMN-53) 2026-02-24 20:30:57 +08:00
unsafe_policy_guard.py ci: enforce unsafe debt audit and policy governance 2026-02-24 21:36:47 +08:00