Security Scanning
Quick Start
-
Secrets: fail fast; rotate on exposure.
-
Dependencies: gate critical/high; automate updates.
-
SAST: start high-signal; ratchet over time.
-
Exceptions: require reason, owner, and expiry.
Load Next (References)
-
references/tooling-matrix.md
-
references/ci-workflows.md
-
references/triage-and-remediation.md
-
references/common-findings-and-fixes.md
-
references/supply-chain-and-sbom.md