Audit SPP ruleset errors
What does this MR do and why?
Emits an audit event when Secret Push Protection skips scanning due to ruleset parse/compile errors that result in fail-open behavior.
- Adds the
spp_ruleset_erroraudit event definition - Logs the audit event from the SPP ruleset-error path
- Updates audit event documentation and Secret Push Protection documentation
- Updates specs for the new audit logging behavior
References
Partially resolves #604787.
MR acceptance checklist
I have evaluated this MR against the MR acceptance checklist.
Edited by Ahmed Hemdan