Pipeline issues per stage after switching to Auto DevOps
Here are some issues quickly identified in a merge request pipeline after switching to using Auto DevOps in !1216 (merged).
Build
- Shouldn't this upload the build artifacts and make them available to browse and download? See before v. after.
Test
- The
code_qualityseems to frequently fail, is this expected? See branch and master. - The
testjobs failed once. Expected? - Is it expected to upload container images for each merge requests? See container registry.
- The
container_scanningjob passed but the log shows some errors due to no space left. Same for thedependency_scanningjob. - When the
container_scanningjob completes what should require attention? Are these negligible severity warnings negligible? Same for thedependency_scanningjob. - The
license_managementis uploading a report, shouldn't this be available to browse and download? - The
sastjob looks ok! Maybe also add a message saying that scanning passed without any warnings?
DAST
- The
dastjob included some XSS warnings. Should the job pass?
Production
- The production rollout failed for 10% and 25%. Why and does the passing 100% rollout means it's deployed on all pods?
Edited by 🤖 GitLab Bot 🤖