Policy templates for CI/CD tool detection
Endor Labs provides the following finding policy templates for detecting CI/CD tool usage. See Finding Policies for details on how to create policies from policy templates.
Policy Template | Description | Severity |
---|---|---|
Unauthorized tool usage | Raise a finding if a repository uses a tool that is specifically not approved by the company policy. | Medium |
Require tool category | Raise a finding if a repository does not have any tools in a required tool category. | Medium |
Require tool | Raise a finding if a required tool is not detected in a repository. | Medium |