Skip to content

Mount vulnerability report when feature flag is on

What does this MR do?

This tiny MR enables the vulnerability report when the pipeline_security_dashboard_graphql feature flag is turned on. A follow up MR will add the logic and the query to fetch the vulnerabilities inside the vulnerability report when the dashboard type is pipeline. I figured that the follow up MR will already be a big MR, therefore I decided to split the MR to keep the size minimal.

Screenshots (strongly suggested)

There are no visual changes here. This feature is developed behind a feature flag and when it's turned on, the pipeline security tab displays an empty list for now.

Does this MR meet the acceptance criteria?

Conformity

Availability and Testing

Security

If this MR contains changes to processing or storing of credentials or tokens, authorization and authentication methods and other items described in the security review guidelines:

  • Label as security and @ mention @gitlab-com/gl-security/appsec
  • The MR includes necessary changes to maintain consistency between UI, API, email, or other methods
  • Security reports checked/validated by a reviewer from the AppSec team

Related to #300753 (closed)

Merge request reports