Free tier(Build minutes: 50 mins/mo) Thanks but no thank you, meanwhile GitLab offers 2000 mins/mo
Bitbucket Pipes
31–40 of 41 posts
Re: Bitbucket Pipes
#32Earlier quoted context omitted.
because "security" or some bullshit. Why does the bitbucket not saas implementation still not use the same API :|
Security isn't necessarily bullshit. CI/CD presents a significant risk and it's not like CI/CD vendors have never had a security incident. Not to mention the unpublished access a member of their staff may have to interfer with your runners or pull your access tokens/secrets. If an org is more comfortable having their own people assume this risk, I think the gitlab helm chart is better solution. At the same time, a sm…
[1]: https://en.wikipedia.org/wiki/Atlassian
[2]:https://www.nytimes.com/2018/12/06/world/australia/encryptio...
Re: Bitbucket Pipes
#33Seems like a smart move for Atlassian. Still no dominant CI cloud provider.
And that's a good thing. I don't want to be locked into providers.
Re: Bitbucket Pipes
#34Earlier quoted context omitted.
Security isn't necessarily bullshit. CI/CD presents a significant risk and it's not like CI/CD vendors have never had a security incident. Not to mention the unpublished access a member of their staff may have to interfer with your runners or pull your access tokens/secrets. If an org is more comfortable having their own people assume this risk, I think the gitlab helm chart is better solution. At the same time, a sm…
Plus Atlassian is located in Australia [1], and the Australian government passed a bill that requires a backdoor to all software products [2]. So if you care about security, it makes more sense to self-host. [1]: https://en.wikipedia.org/wiki/Atlassian [2]: https://www.nytimes.com/2018/12/06/world/australia/encryptio...
That's not quite accurate. There is now a legal mechanism that allows certain government agencies to force you to add a backdoor to your product. But until you are given a notice you don't need to do anything, and you can provide aggregated statistics to your users of how many requests you've been given. There are also some weasel-word caveats (the backdoor cannot be a "systemic vulnerability" but there has been much disagreement about whether this limitation actually means anything -- in my view it's basically meaningless within the context of a single company's product).
There is currently a review process open for the TOLA Act that closes in April[1], so any fellow Australians on HN should submit their comments -- there are only 65 submissions so far (and only 27 are by individuals).
[1]: https://www.aph.gov.au/Parliamentary_Business/Committees/Joi...
Re: Bitbucket Pipes
#35Why does my company need to use the stupid self hosted Bitbucket. argh.
Re: Bitbucket Pipes
#36Re: Bitbucket Pipes
#37Stopped reading at YAML.
Re: Bitbucket Pipes
#38Looks great! Is this a validation for GitHub Actions? Trying to understand whether Actions have been getting traction
I think GitHub Actions is picking up because of how big GitHub is.
Re: Bitbucket Pipes
#39Re: Bitbucket Pipes
#40Earlier quoted context omitted.
Security isn't necessarily bullshit. CI/CD presents a significant risk and it's not like CI/CD vendors have never had a security incident. Not to mention the unpublished access a member of their staff may have to interfer with your runners or pull your access tokens/secrets. If an org is more comfortable having their own people assume this risk, I think the gitlab helm chart is better solution. At the same time, a sm…
Plus Atlassian is located in Australia [1], and the Australian government passed a bill that requires a backdoor to all software products [2]. So if you care about security, it makes more sense to self-host. [1]: https://en.wikipedia.org/wiki/Atlassian [2]: https://www.nytimes.com/2018/12/06/world/australia/encryptio...