Faster, safer, and more compliant releases for regulated clients
Blog post from Upsun
ROLLIN, a development agency specializing in government and healthcare digital platforms, enhanced its deployment process by integrating a three-stage GitHub Actions pipeline with Upsun to automate code quality, security, and accessibility checks. This approach addresses the challenges posed by manual validation, which previously slowed down delivery cycles and increased the risk of human error, particularly in sensitive projects. The new pipeline features stages dedicated to code quality using PHP CodeSniffer and PHPStan, security via Composer audit and OWASP Dependency-Check, and accessibility assessments with Pa11y, ensuring consistent standards across Drupal projects. By embedding Upsun into its CI/CD flow, ROLLIN achieved faster, safer, and more compliant releases, providing developers with immediate feedback and allowing clients to review live, production-like environments. This setup not only reduces manual effort and the potential for errors but also facilitates collaboration and client sign-off, maintaining high-quality standards while adapting to individual client needs.