Skip to content

v2.2.0 - Adoption roadmap, Azure integration, and Bicep support

Latest

Choose a tag to compare

@mackeh mackeh released this 16 Feb 06:56

Highlights

  • Added DevSecOps adoption roadmap engine with prioritized 30/60/90-day actions and maturity/feasibility scoring.
  • Integrated roadmap generation into local scan flow and Docker scanner image.
  • Added MCP endpoint for roadmap retrieval (get_devsecops_adoption_roadmap).
  • Added first-class Bicep support in IaC scanning (bicep.sarif) plus summary/report integration.
  • Upgraded Azure DevOps template to run end-to-end FortressCI scanning, validate required secrets, and publish roadmap artifacts.
  • Expanded GitHub IaC scan scope to repository root for broader IaC coverage.
  • Updated README/roadmap/changelog documentation and added regression tests for roadmap and Bicep summary behavior.