Run dependency and container-image vulnerability scans in the pipeline and fail on critical findings.
Why This Matters
Known-vulnerable packages and base images ship to production undetected, expanding attack surface.
Related Rules
Catch this automatically on every PR
BeforeMerge scans your pull requests against this rule and dozens more. Get actionable feedback before code ships.