Hey HN,
My friend and I built a ton of CI/CD pipelines on GitLab. We realized how all these pipelines are a huge mess and super hard to maintain.
A few years ago, everyone started to worry about supply chain security. We were surprised to see that no one was focusing on the CI/CD pipeline for this. So, we started building a product to get a clear view of all pipelines and their security issues.
I would love to hear your thoughts on whether it is useful for you.
You can test it on your pipelines by following the documentation: https://docs.r2devops.io/docs/self-managed