Commit Graph

316 Commits

Author SHA1 Message Date
cdc53e3141 upgrade Alpine 2025-08-08 15:01:45 +00:00
bcdcdfec41 trivyignore, ignore-unfixed 2025-08-08 14:46:08 +00:00
f654e0265f upgrade to bookworm 2025-08-08 14:37:46 +00:00
a322069448 security vulnerabilities upgrades 2025-08-08 14:23:03 +00:00
875e96a4ea removed secret scanning from static files 2025-08-08 13:45:57 +00:00
ad31a9ca27 pipeline rewrite v6 2025-08-08 13:30:48 +00:00
64fab06e8a pipeline rewrite v5 2025-08-08 13:29:05 +00:00
315dd6bca7 pipline rewrite v4 2025-08-08 13:26:13 +00:00
16b458a249 pipeline rewrite v3 2025-08-08 13:22:05 +00:00
29345fc292 pipeline rewrite v2 2025-08-08 13:14:51 +00:00
17311ab22a pipline rewrite 2025-08-08 13:06:32 +00:00
1842f0e4f2 fixed backslashes in yml 2025-08-08 13:05:21 +00:00
0b59ff6e07 verifyCanary, DEK safeguards 2025-08-08 12:51:57 +00:00
893cebc35f DEK isolation 2025-08-07 15:01:03 +00:00
e4352f27fa removed nginx volume mount from dev and staging ym; 2025-08-07 13:14:47 +00:00
e37584f3c4 staging docker-compose.yml for field-level 2025-08-07 11:41:40 +00:00
9c7bfd5d6b removed space after comma in preserve lines 2025-08-07 00:49:45 +00:00
5280753dc4 brackets removed around ENV 2025-08-07 00:43:10 +00:00
c6e6713cc8 updated pipeline for ENV variables vs. hardcoded 2025-08-07 00:39:12 +00:00
80d6133450 reverted pipeline back to working and added KMS and DEK secrets 2025-08-06 22:42:46 +00:00
a696106c28 pipeline 2025-08-06 22:41:24 +00:00
e2141737e8 fixed pipeline, deploy_all.sh, and encryption.js for field-level. Added fast-fail to encryption.js 2025-08-06 22:34:10 +00:00
a39da26729 Field-level encryption implemented 2025-08-06 19:44:50 +00:00
f8bf022b54 Fixed staging handlecareerclick. .pems are in this one 2025-08-05 15:34:20 +00:00
13e898242c Fixed limited data behavior, All Others in CareerExplorer 2025-08-05 15:18:54 +00:00
b5184f2a02 added DB vars to preserve lines 2025-08-05 12:08:39 +00:00
da04229060 pipeline: inject DB_SSL*? into staging deploy step 2025-08-05 12:05:35 +00:00
aa92537faf MySQL TLS, Retirement Chatbar, migrated AI_Risk to MySQL, client certs for MySQL from GCP 2025-08-05 11:20:48 +00:00
ee098148a4 Cleanup, all technical fixes prior to prod creation 2025-08-03 18:44:36 +00:00
7a425a955b updated tag format, nginx Dockerfile 2025-08-01 12:11:26 +00:00
c2ca91012e Fixed dockerfile.nginx for staging 2025-08-01 11:35:55 +00:00
5a7bc51ff4 Include nginx in deploy_all.sh 2025-08-01 11:21:57 +00:00
74ecad6280 pipeline build v53. DB_NAME add 2025-07-31 19:33:00 +00:00
79b95cf87b pipline build v52. inline secrets 2025-07-31 17:35:37 +00:00
b72e5f2ebe pipline build v51. injecting ALL secrets 2025-07-31 17:33:19 +00:00
c49eed87d4 pipline build v50. Injecting JWT_SECRET 2025-07-31 17:26:56 +00:00
e0cd2ff1eb pipeline build v49. removed STRIPE_PUB_KEY from secret block 2025-07-31 17:24:41 +00:00
617d928a07 pipeline build v48. add STRIPE_PUB_KEY 2025-07-31 17:21:55 +00:00
5d31c15760 pipeline build v47. add STRIPE_PUB_KEY 2025-07-31 17:18:45 +00:00
c9275f3b03 pipeline build v46. Reverted to working 2025-07-31 17:16:42 +00:00
e259c529af pipeline build v45. reverted GCP single block 2025-07-31 17:14:45 +00:00
3e292b8522 pipeline build v44. reverted and add single GCP secret 2025-07-31 17:13:13 +00:00
ee2ffe9f12 pipeline build v43. reverted and added GCP secrets block 2025-07-31 17:08:38 +00:00
9d5cd29a4b pipeline build v42. correct reversion v2 2025-07-31 17:04:31 +00:00
92c779cf64 pipeline build v41. correct reversion 2025-07-31 17:02:45 +00:00
1e1555fe19 pipeine build v40. Last know working version 2025-07-31 16:59:19 +00:00
101c7e8355 pipeline build v39. revert with IMG_TAG reinstate 2025-07-31 16:52:39 +00:00
8db411a405 pipeline build v38. revert back to no secrets 2025-07-31 16:50:07 +00:00
79ea4649f7 pipeline build v37 - back to only pipeline secrets 2025-07-31 16:47:57 +00:00
75ff919fb7 pipeline build v36 - single-line commands 2025-07-31 16:46:35 +00:00