Governed CI/CD pipelines

Run LumenFlow governance inside your CI/CD pipelines. A first-party action lets your GitHub or GitLab workflows run governed checks and sandboxed tasks and emit the same evidence as any other governed work — so the pipeline is part of the audit trail, not a gap in it.

Governance in the pipeline#

Pipelines are where a lot of automated change actually happens — and often where the audit trail goes dark. LumenFlow closes that gap with a first-party CI/CD action.

What it does#

Dropped into a GitHub or GitLab workflow, the action can:

  • Run governed checks as part of the pipeline.
  • Execute sandboxed tasks under the same policy and budget rules as the rest of LumenFlow.
  • Emit evidence for what ran, so the pipeline's actions land on the same verifiable record as everything else.

Why it matters#

Your build and delivery automation becomes governed work like any other — same policies, same approvals where needed, same evidence chain — instead of a separate, unaudited system. See Gates and Policy Enforcement and Delivery Orchestration.