mirror of
https://github.com/Sea-Haven-Industries/seahaven-door-unlock-api.git
synced 2026-09-30 07:03:12 +00:00
1.2 KiB
1.2 KiB
Sea Haven Org Governance
Full engineering standards: engineering-handbook.
Branching and PRs
- Branch prefixes:
feature/,fix/,hotfix/,chore/,docs/,refactor/,release/ - PR titles:
type(scope): description (DEV-123)— Jira key required (DEV/PLAT/SEC) - PR body sections (exact order): Summary, Validation, Tests, Notes
- Route work: DEV (product), PLAT (infra/platform), SEC (security)
Commits
- Conventional Commits:
type(scope): description - Allowed types:
feat fix docs style refactor perf test build ci chore revert release - No AI-attribution footers
Secrets and Security
- Secrets in AWS Secrets Manager only — never in code, env vars, logs, or commits
- Non-secret config in SSM Parameter Store
- IAM/IaC/payment/auth changes require security review
CI and SHA Pins
Pin every GitHub Actions ref to a full commit SHA with an inline version comment:
uses: actions/checkout@abc123def456 # v4.1.0
The deterministic global pre-push security hook must not be bypassed (--no-verify requires
explicit approval). Linting stays in CI; do not gate on it locally.