Skip to content

XS✔ ◾ Relocate Azure DevOps Configuration - #863

Merged
Muiris Woulfe (muiriswoulfe) merged 4 commits into
mainfrom
ci/relocate-azure-devops
Oct 8, 2026
Merged

Muiris Woulfe (muiriswoulfe) merged 4 commits into
mainfrom
ci/relocate-azure-devops

Conversation

@muiriswoulfe

@muiriswoulfe Muiris Woulfe (muiriswoulfe) commented Oct 6, 2026 •

Copy link
Copy Markdown
Member

Summary

Move Azure DevOps configuration to a dedicated root location, separating it from GitHub configuration. Update references and preserve ownership.

This also intentionally removes the historical credential-scan suppression, as requested, to test whether its former false positive still occurs. This changes scanning behavior and is not a relocation-only change. Confirmation from an Azure DevOps credential scan remains pending.

Testing

Test Types

  • Unit tests
  • Manual tests

Unit Test Coverage

npm run test:fast: passed. Overall coverage: 100% for statements, branches, functions, and lines. npm run test was not run.

Other Test Details

Local configuration checks passed: eight retained configuration files, seven valid YAML documents, and nine resolved local pipeline references. No old paths or suppression references remain.

markdownlint-cli2 'docs\security-scanning-policy.md': passed.

Hosted Azure DevOps pipelines were not run, so the result of removing the credential-scan suppression remains unverified. GitHub checks do not confirm that the former CredScan false positive is gone.

Screenshots

Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>
@muiriswoulfe
Muiris Woulfe (muiriswoulfe) requested a review from a team October 6, 2026 11:29
@muiriswoulfe
Muiris Woulfe (muiriswoulfe) requested a review from a team as a code owner October 6, 2026 11:29
Copilot AI balanced review requested due to automatic review settings October 6, 2026 11:29
@muiriswoulfe Muiris Woulfe (muiriswoulfe) added the enhancement New feature or request label Oct 6, 2026
@microsoft-pr-metrics

microsoft-pr-metrics Bot commented Oct 6, 2026 •

Copy link
Copy Markdown
Contributor

PR Metrics

✔ Thanks for keeping your pull request small.
✔ Thanks for adding tests.

Lines
Product Code -
Test Code -
Subtotal -
Ignored Code 8
Total 8

Metrics computed by PR Metrics. Add it to your Azure DevOps and GitHub PRs!

@microsoft-pr-metrics microsoft-pr-metrics Bot changed the title Relocate Azure DevOps Configuration XS✔ ◾ Relocate Azure DevOps Configuration Oct 6, 2026
@github-actions

github-actions Bot commented Oct 6, 2026 •

Copy link
Copy Markdown
Contributor

Super-linter summary

Language Validation result
CHECKOV Pass ✅
EDITORCONFIG Pass ✅
GITHUB_ACTIONS Pass ✅
GITHUB_ACTIONS_ZIZMOR Pass ✅
GITLEAKS Pass ✅
GIT_MERGE_CONFLICT_MARKERS Pass ✅
JSCPD Pass ✅
JSON_PRETTIER Pass ✅
MARKDOWN Pass ✅
MARKDOWN_PRETTIER Pass ✅
NATURAL_LANGUAGE Pass ✅
POWERSHELL Pass ✅
PRE_COMMIT Pass ✅
SPELL_CODESPELL Pass ✅
TRIVY Pass ✅
TYPESCRIPT_PRETTIER Pass ✅
XML Pass ✅
YAML Pass ✅
YAML_PRETTIER Pass ✅

All files and directories linted successfully

For more information, see the GitHub Actions workflow run

Powered by Super-linter

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Warning

  • Copilot's review of this pull request may be incomplete because some of the changed files are excluded by your Copilot content exclusion settings. See Excluding content from Copilot for details.

Copilot review overview

🔵 Needs a closer look

Existing Azure DevOps pipeline definitions will retain the old YAML paths unless migrated safely.

Review effort: Balanced
Findings: None

What changed in this PR

Relocates Azure DevOps configuration from .github/azure-devops to .azure-devops and updates repository references.

Changes:

  • Moves nine Azure DevOps pipeline and security files.
  • Updates pipeline, documentation, and agent paths.
  • Adjusts ownership configuration.
File Description
.azure-devops/​CredScanSuppressions.json Relocates credential-scan suppressions.
.azure-devops/​PoliCheckExclusions.xml Relocates PoliCheck exclusions.
.azure-devops/​pr-test.yml Updates test pipeline suppression path.
.azure-devops/​pr.yml Updates PR pipeline suppression path.
.azure-devops/​prod.yml Updates production pipeline suppression path.
.azure-devops/​production-pr-metrics-steps.yml Relocates production steps.
.azure-devops/​release.yml Updates release pipeline suppression path.
.azure-devops/​template.yml Updates PoliCheck configuration path.
.azure-devops/​test-steps.yml Relocates test steps.
.github/​agents/​refresh-ci-dependencies.agent.md Updates dependency-refresh instructions.
.github/​CODEOWNERS Excluded from review by repository policy.
docs/​dependency-management.md Updates the pipeline template link.
docs/​security-scanning-policy.md Updates the suppression-file link.
Files excluded by content exclusion policy (1)
  • .github/CODEOWNERS

💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.

Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>
Copilot AI balanced review requested due to automatic review settings October 6, 2026 11:43

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Warning

  • Copilot's review of this pull request may be incomplete because some of the changed files are excluded by your Copilot content exclusion settings. See Excluding content from Copilot for details.

Copilot review overview

🟡 Changes recommended

The CredScan behavior contradicts the stated relocation-only scope, and added documentation violates Markdown line-length rules.

Review effort: Balanced
Findings: 1 Medium severity · 1 Low severity

Open (2)
Files excluded by content exclusion policy (2)
  • .github/CODEOWNERS
  • .github/azure-devops/CredScanSuppressions.json

Comment thread docs/security-scanning-policy.md Outdated
Comment thread docs/security-scanning-policy.md Outdated
Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>
Copilot AI balanced review requested due to automatic review settings October 6, 2026 12:06

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Warning

  • Copilot's review of this pull request may be incomplete because some of the changed files are excluded by your Copilot content exclusion settings. See Excluding content from Copilot for details.

Copilot review overview

🔵 Needs a closer look

The security-scanning change and relocated hosted pipelines still require Azure DevOps validation.

Review effort: Balanced
Findings: None

Resolved since last review (2)
Files excluded by content exclusion policy (2)
  • .github/CODEOWNERS
  • .github/azure-devops/CredScanSuppressions.json

@muiriswoulfe

Copy link
Copy Markdown
Member Author

Copilot resolve the merge conflicts in this pull request

Co-authored-by: muiriswoulfe <36772829+muiriswoulfe@users.noreply.github.com>
Copilot AI balanced review requested due to automatic review settings October 7, 2026 09:25

Copilot AI commented Oct 7, 2026

Copy link
Copy Markdown
Contributor

Copilot resolve the merge conflicts in this pull request

Merged main into the PR branch; Git resolved the merge cleanly with no conflicts. Merge commit: 0a8d7c7.

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Warning

  • Copilot's review of this pull request may be incomplete because some of the changed files are excluded by your Copilot content exclusion settings. See Excluding content from Copilot for details.

Copilot review overview

🔵 Needs a closer look

Hosted CredScan validation remains pending, and ownership-related changes were unavailable for review.

Review effort: Balanced
Findings: None

Files excluded by content exclusion policy (2)
  • .github/CODEOWNERS
  • .github/azure-devops/CredScanSuppressions.json

@muiriswoulfe
Muiris Woulfe (muiriswoulfe) merged commit 8818e11 into main Oct 8, 2026
29 checks passed
@muiriswoulfe
Muiris Woulfe (muiriswoulfe) deleted the ci/relocate-azure-devops branch October 8, 2026 11:46

This branch was successfully deployed

1 active deployment
production — 0a8d7c72 Deployed Oct 7, 2026 by Copilot via PR Metrics #3761
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

enhancement New feature or request

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants