-
-
Notifications
You must be signed in to change notification settings - Fork 3
Azure.DevOps.Pipelines.Environments.ProductionHumanApproval
github-actions edited this page Oct 21, 2023
·
5 revisions
category: Microsoft Azure DevOps Pipelines severity: Severe online version: https://github.com/cloudyspells/PSRule.Rules.AzureDevOps/blob/main/src/PSRule.Rules.AzureDevOps/en/Azure.DevOps.Pipelines.Environments.ProductionHumanApproval.md
An environment scoped to production should be protected by a human review and approval. This will help ensure no accidental changes are made to the production resources.
Protecting a service connection with a human check will help prevent accidental changes to production resources. For example, a service connection scoped to production should be protected with a check that requires a minimum number of reviewers or a specific CI pipeline must pass.
Mininum TokenType: FineGrained
Consider protecting a service connection scoped to production with a human approval check.