Guardrails express the configuration you expect every repository and pipeline to honor. DevOps Shield ships a curated policy catalog and lets you tune severity and scope per environment.

How it works

  1. Browse the built-in policy catalog grouped by DevSecOps control family.
  2. Select the controls that match your organization's risk appetite.
  3. Apply policies at the organization, project, or repository scope.
  4. Use exemptions with expiry dates for sanctioned exceptions.
  5. Re-assess to confirm the guardrails report green.