Creating an unbreakable chain of custody within CI CD pipelines

CI/CD pipelines are notoriously opaque as to what exactly takes place inside. Yes, you do write the list of instructions but how sure are you that everything happens exactly as described? Worse, most pipelines are completely ephemeral so even if something bad did happen there are no traces left afterward. Barak Brudo, Scribe’s DevRel, and Angel Rivera, Circle CI’s DevRel, join forces to talk about securing a chain of evidence for what takes place in your pipeline. Using concrete examples we’ll offer lessons that should be applicable no matter what pipeline you happen to use.

