From c49c7df9314af58fa6e8b17cf89e6a09cd6397c7 Mon Sep 17 00:00:00 2001 From: Maya-legit Date: Mon, 23 Sep 2024 14:55:58 +0300 Subject: [PATCH] feat: adding gitlab policy override variables (#335) * feat: adding override-variables policy * fix severity and threat * made title shorter * change name againnnn * fix: change name --- policies/gitlab/repository.rego | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/policies/gitlab/repository.rego b/policies/gitlab/repository.rego index 1087c007..cb61987f 100644 --- a/policies/gitlab/repository.rego +++ b/policies/gitlab/repository.rego @@ -347,7 +347,7 @@ repository_dismiss_stale_reviews := false { # METADATA # scope: rule -# title: The ability to override predefined variables should be limited only to users with at least Maintainer role. +# title: Overriding predefined CI/CD variables should be restricted. # description: It’s recommended to restrict users with low privileges from overriding predefined variables, as doing so could compromise the security and integrity of the CI/CD pipeline. # custom: # remediationSteps: