Repository navigation
XS✔ ◾ Relocate Azure DevOps Configuration - #863
Conversation
Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>
PR Metrics✔ Thanks for keeping your pull request small.
Metrics computed by PR Metrics. Add it to your Azure DevOps and GitHub PRs! |
Super-linter summary
All files and directories linted successfully For more information, see the GitHub Actions workflow run Powered by Super-linter |
There was a problem hiding this comment.
Warning
- Copilot's review of this pull request may be incomplete because some of the changed files are excluded by your Copilot content exclusion settings. See Excluding content from Copilot for details.
Copilot review overview
🔵 Needs a closer look
Existing Azure DevOps pipeline definitions will retain the old YAML paths unless migrated safely.
Review effort: Balanced
Findings: None
What changed in this PR
Relocates Azure DevOps configuration from .github/azure-devops to .azure-devops and updates repository references.
Changes:
- Moves nine Azure DevOps pipeline and security files.
- Updates pipeline, documentation, and agent paths.
- Adjusts ownership configuration.
| File | Description |
|---|---|
.azure-devops/CredScanSuppressions.json |
Relocates credential-scan suppressions. |
.azure-devops/PoliCheckExclusions.xml |
Relocates PoliCheck exclusions. |
.azure-devops/pr-test.yml |
Updates test pipeline suppression path. |
.azure-devops/pr.yml |
Updates PR pipeline suppression path. |
.azure-devops/prod.yml |
Updates production pipeline suppression path. |
.azure-devops/production-pr-metrics-steps.yml |
Relocates production steps. |
.azure-devops/release.yml |
Updates release pipeline suppression path. |
.azure-devops/template.yml |
Updates PoliCheck configuration path. |
.azure-devops/test-steps.yml |
Relocates test steps. |
.github/agents/refresh-ci-dependencies.agent.md |
Updates dependency-refresh instructions. |
.github/CODEOWNERS |
Excluded from review by repository policy. |
docs/dependency-management.md |
Updates the pipeline template link. |
docs/security-scanning-policy.md |
Updates the suppression-file link. |
Files excluded by content exclusion policy (1)
- .github/CODEOWNERS
💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.
Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>
There was a problem hiding this comment.
Warning
- Copilot's review of this pull request may be incomplete because some of the changed files are excluded by your Copilot content exclusion settings. See Excluding content from Copilot for details.
Copilot review overview
🟡 Changes recommended
The CredScan behavior contradicts the stated relocation-only scope, and added documentation violates Markdown line-length rules.
Review effort: Balanced
Findings: 1
Open (2)
Files excluded by content exclusion policy (2)
- .github/CODEOWNERS
- .github/azure-devops/CredScanSuppressions.json
Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>
There was a problem hiding this comment.
Warning
- Copilot's review of this pull request may be incomplete because some of the changed files are excluded by your Copilot content exclusion settings. See Excluding content from Copilot for details.
Copilot review overview
🔵 Needs a closer look
The security-scanning change and relocated hosted pipelines still require Azure DevOps validation.
Review effort: Balanced
Findings: None
Resolved since last review (2)
Files excluded by content exclusion policy (2)
- .github/CODEOWNERS
- .github/azure-devops/CredScanSuppressions.json
|
Copilot resolve the merge conflicts in this pull request |
Co-authored-by: muiriswoulfe <36772829+muiriswoulfe@users.noreply.github.com>
Merged |
There was a problem hiding this comment.
Warning
- Copilot's review of this pull request may be incomplete because some of the changed files are excluded by your Copilot content exclusion settings. See Excluding content from Copilot for details.
Copilot review overview
🔵 Needs a closer look
Hosted CredScan validation remains pending, and ownership-related changes were unavailable for review.
Review effort: Balanced
Findings: None
Files excluded by content exclusion policy (2)
- .github/CODEOWNERS
- .github/azure-devops/CredScanSuppressions.json


Summary
Move Azure DevOps configuration to a dedicated root location, separating it from GitHub configuration. Update references and preserve ownership.
This also intentionally removes the historical credential-scan suppression, as requested, to test whether its former false positive still occurs. This changes scanning behavior and is not a relocation-only change. Confirmation from an Azure DevOps credential scan remains pending.
Testing
Test Types
Unit Test Coverage
npm run test:fast: passed. Overall coverage: 100% for statements, branches, functions, and lines.npm run testwas not run.Other Test Details
Local configuration checks passed: eight retained configuration files, seven valid YAML documents, and nine resolved local pipeline references. No old paths or suppression references remain.
markdownlint-cli2 'docs\security-scanning-policy.md': passed.Hosted Azure DevOps pipelines were not run, so the result of removing the credential-scan suppression remains unverified. GitHub checks do not confirm that the former CredScan false positive is gone.
Screenshots