tracker
tracker copied to clipboard
Create Definition of Done/Ready
DoD == Definition of Done DoR == Definition of Ready
Per Merge Request
- [ ] Items found here: https://github.com/canada-ca/tracker/wiki/Code-conventions-and-Workflow
Per Sprint DoD
- [ ] Update SoS if required
- [ ] Patch/plan GCP containers, if required
- [ ] Patch/plan GitHub security advisories, if required.
- [ ] Fix/plan GitHub code scanning issues, if required.
- [ ] Patch/play for IMTD patching (containers, dependencies, other), if required
- [ ] Knowledge transfer session with the team (aka, team Damien something)
Per Quarter DoD
- [ ] Review org admins
- [ ] Review GitHub access controls
- [ ] Review GCP access controls
- [ ] Review Azure access controls
- [ ] Back up database, logs and code to GC controlled repository
- [ ] Review that all admins are using MFA. Fix as required.
- [ ] Review and update SCTM, if required.
- [ ] Conduct full team review of backlog.
Per release to non-TBS folk (UAT) DoD
- [ ] Both French and English wording is in good order.
- [ ] Everything is accessible as per GC requirements.
Every 365 days DoD
- [ ] Independent vulnerability testing
- [ ] IR-3 (your keys have leaked)
Other (PL-4)
- [ ] Only 2 pull requests (PR) allowed in the review queue. If you need to submit a PR you must review pending PR's if your PR will create a PR count greater than 2