Production Hardening Checklist

Use this checklist before each release to self-audit security posture for protected builds. This page is designed to be practical: check each control, fix gaps, then publish.

Audit Buckets
6
Required Controls
24
Release Rule
0 Critical Gaps

1) Secrets and Configuration

Prevent accidental credential exposure and remove plaintext secret distribution from release artifacts.

2) Build and Artifact Hygiene

Ensure output bundles are hardened and do not leak internals.

3) Runtime and Policy Controls

Validate trust enforcement and deny-by-default behavior before shipping.

4) CI/CD and Supply Chain

Protect pipelines because release compromise often starts at automation boundaries.

5) Operations and Incident Readiness

Prepare for rapid containment if a security issue appears after release.

6) Release Sign-off

Use this gate right before publishing.

Ship only when all critical controls are green. Hardening is most effective when repeated for every release candidate, not only major versions.