This is deliberately the smallest engagement we sell. It is bounded to a single week against a stated scope, it produces a change you can point at, and it does not roll into anything else unless you ask it to. Most estates need it once.
- 01How it starts. Send us the pipeline definitions and a read-only role. We come back with the list of credentials the build holds, what each one can reach, and how long they have existed: before anything is quoted or changed.
- 02What we own. The federation setup, the pinning, the build-role scoping and the revocation of what is being replaced. Every change is a pull request in your repository, reviewed by your team, revertible by your team.
- 03How it is priced. Fixed fee against a stated scope, quoted once the mapping is done. We do not resell supply-chain products and we take no margin on the tooling we recommend, which is why the recommendation is worth reading.
- 04What we will not do. Quote before we have seen the pipeline. Leave old credentials live because revoking them is awkward. Audit your application source and call it supply-chain work. Sell you a platform to solve a configuration problem.
// start the conversation · [email protected]