- Schema validates everything and reports every error at once.
- Stages become jobs and steps on a neutral Pipeline, with environments, artifact and secrets.
- PolicyEngine checks rules such as
tests-before-deployandapproval-for-production. - SecretScanner refuses credentials in the config or the generated output.
- Each enabled driver (GitHub Actions, Bitbucket Pipelines, GitLab CI) writes YAML.
slipway:check detect drift with a byte comparison (line endings are ignored, so a Windows checkout with core.autocrlf is not reported as drift). Neither the header nor the hash contains the Slipway version, so upgrading Slipway never makes your committed pipeline files stale; only a change to the output itself does.