chore: add CI/CD security regression tests #22
Labels
No labels
P1
P2
P3
PHP
agent-ready
bug
clotho
discovery
docs
refactor
review
security
testing
athena
athena-gemini
audit
clotho
clotho-gemini
codex
darbs-claude
security
wiki
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference: core/php-mcp#22
Loading…
Add table
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Summary
There are no CI/CD pipeline checks to prevent security regressions. SQL injection prevention, workspace isolation, and quota enforcement should fail CI if broken.
Problem
Proposed Solution
Add a GitHub Actions / CI workflow:
./vendor/bin/pest tests/Unit/SqlQueryValidatorTest.phpas a required checkpest --group=securitytag to security-critical testsFiles
.github/workflows/security.yml(create) or equivalent CI config@group securityNotes
Also noted in TODO.md under Infrastructure.