Ir al contenido

Scan Pipeline

GlassPlane ejecuta un pipeline unificado que combina 3 engines en una sola pasada:

Step 1: Compliance Engine (12 dimensiones deterministicas)
Step 2: Full Check (spec-first, security regex, code quality, gates)
Step 3: AI Review (Workers AI — analisis de codigo con LLM)
Step 4: Merge findings + deduplicate + AI summary
Step 5: Store scorecard + broadcast en tiempo real

Un solo boton. Un solo scorecard consistente. 3 engines en secuencia.

EngineChecksDimensiones
Compliance100+ artifacts, 12 dimensiones, track-aware12/12
Full CheckSpec-first, secrets, OWASP, SBOM, gates A-FEnriquece 6 dims
AI ReviewCode quality, security, spec compliance, test qualityAgrega findings “AI Review”

Los findings de los 3 engines se unifican y deduplican. Cada finding tiene:

  • dimension: a que dimension pertenece
  • severity: critical / high / medium / low / info
  • detail: descripcion enriquecida con impacto y contexto
  • fixHint: pasos concretos numerados para resolver
  • evidenceLevel: absent / present / valid / executed / confirmed