Audit SPP ruleset errors

What does this MR do and why?

Emits an audit event when Secret Push Protection skips scanning due to ruleset parse/compile errors that result in fail-open behavior.

  • Adds the spp_ruleset_error audit event definition
  • Logs the audit event from the SPP ruleset-error path
  • Updates audit event documentation and Secret Push Protection documentation
  • Updates specs for the new audit logging behavior

References

Partially resolves #604787.

MR acceptance checklist

I have evaluated this MR against the MR acceptance checklist.

Edited by Ahmed Hemdan

Merge request reports

Loading