Evaluate GitLab Serverless for Security Automation

This is mostly a placeholder issue to link to the original issue on the gl-security team.

Problem Statement

Security Automation is interested in dogfooding GitLab Serverless

Status

Following a discussion with @adietrich the key takeaways are:

  • they use serverless approaches for ChatOps mostly
  • they often run their tasks as scheduled jobs. The scheduled jobs are usually initiated from Google scheduler, not GitLab, as our CI is not stable for them.
  • secrets management is a crucial question for them
  • they don't run K8s clusters

Given these requirements, our solution might not add much value to them at this stage.

Edited Aug 03, 2020 by Viktor Nagy (GitLab)
Assignee Loading
Time tracking Loading