Integrations & Automation
Wire Chainsaw into your pipelines and manage it as code — CI/CD enforcement, YAML config-as-code, and custom hook scripts.
How to Integrate Chainsaw with CI/CD Pipelines
Configure GitHub Actions, GitLab CI, and Jenkins to route package installs through Chainsaw using scoped service tokens and job-local configuration.
How to Configure Chainsaw with YAML Configuration Files
Define repositories, policies, credentials, and settings as code using YAML configuration files for reproducible, version-controlled Chainsaw deployments.
How to Create Custom Hook Scripts for Package Validation
Write hook scripts that receive package metadata via environment variables and integrate custom validation logic into the proxy pipeline.
How to Route GitHub Actions Builds Through Chainsaw
Configure GitHub Actions to install packages through Chainsaw using a Service Token, repository secrets, and job-local package-manager configuration, with a PR-gating example.
How to Route GitLab CI Builds Through Chainsaw
Configure GitLab CI to install packages through Chainsaw using a Service Token, masked CI/CD variables, and job-local package-manager configuration, with a merge-request gating example.
How to Route Jenkins Builds Through Chainsaw
Configure a Jenkins declarative pipeline to install packages through Chainsaw using a Username-with-password credential and job-local package-manager configuration.
How to Route CircleCI Builds Through Chainsaw
Apply Chainsaw's CI/CD integration pattern to CircleCI: Service Token, CI-stored secrets, and job-local package-manager configuration. Platform-specific config examples are pending.
How to Route Azure Pipelines Builds Through Chainsaw
Apply Chainsaw's CI/CD integration pattern to Azure Pipelines: Service Token, secret variables, and job-local package-manager configuration. Platform-specific config examples are pending.
Troubleshooting CI/CD Integration
Diagnose common Chainsaw CI/CD failures — authentication 401/400 errors, org-slug URL mistakes, and policy-block 403 verdicts — using the CHW error codes Chainsaw returns.
Chainsaw is most effective when it is part of your automation, not a console someone visits. This section covers gating CI/CD on the proxy, version-controlling your configuration as YAML, and extending the proxy pipeline with custom validation hooks.
Config-as-code first. Managing repositories, policies, and exceptions
as version-controlled YAML makes every change reviewable and reproducible
— and lets you promote config between environments like any other code.
CI/CD
- Integrate Chainsaw with CI/CD pipelines — the combined reference for GitHub Actions, GitLab CI, and Jenkins.
Per-CI guides
- Route GitHub Actions builds through Chainsaw — repository secrets + a PR-gating example.
- Route GitLab CI builds through Chainsaw — masked CI/CD variables + a merge-request gating example.
- Route Jenkins builds through Chainsaw —
withCredentialsdeclarative pipeline. - Route CircleCI builds through Chainsaw — pattern guidance (platform-specific config pending).
- Route Azure Pipelines builds through Chainsaw — pattern guidance (platform-specific config pending).
Troubleshooting
- Troubleshooting CI/CD integration — authentication 401/400, org-slug URL mistakes, and policy-block 403 verdicts mapped to
CHW-NNNNcodes.
Config-as-code
- Configure Chainsaw with YAML imports — declarative, version-controlled configuration.
Extend
- Create custom hook scripts — add custom validation into the proxy pipeline.
Where to next
For signed events to external systems, see HMAC webhooks and SIEM export in Monitoring & Compliance.