Skip to main content

Pillars of Creation documentation

Pillars of Creation is SmoothGlue's shared GitLab CI/CD pipeline. It provides framework builds, source and artifact analysis, evidence collection, and release jobs. Your project's files and settings determine which jobs run.

Use these guides and references from your application project. You do not need access to the Pillars implementation repository to read or use this documentation. To run the pipeline, your platform team must supply a template that GitLab can access, an approved revision, and suitable runners.

Start here​

  1. Read how Pillars works for its stages, responsibilities, and outputs.
  2. Follow Use the Pillars pipeline to connect your project, configure its jobs, and verify the first pipeline.
  3. Review your framework's prerequisites below before running its build. Some build jobs also publish packages to a staging registry.

Already have a failed run? Start with Troubleshoot Pillars.

Find your framework​

ApplicationPrerequisites, jobs, and settings
JavaScript or TypeScript using npmnpm
Java using GradleGradle
Python using pippip
Python using PoetryPoetry
GoGo
C or C++ using CMakeCMake
.NET.NET

Framework detection selects shared jobs; it does not generate missing application files or credentials. For a container build, also check the Dockerfile and image settings.

Configure your pipeline​

I need to…Read
Set variables, select jobs, or understand failure rulesPipeline configuration
Configure builds, tests, or package registriesFramework jobs
Configure scanners, SonarQube, or web testsAnalysis jobs
Build Helm charts or Zarf packages, update manifests, or publish releasesDelivery and releases
Look up a variable's declared default and scopeVariable defaults
Find SBOMs and understand evidence outputsSBOM generation and evidence

Use the functional reference for prerequisites and behavior, then the defaults catalog for exact values. Installation overrides can change those values; keep the approved template revision with your pipeline record.

Resolve a problem​

Keep the pipeline URL, template revision, affected job, and relevant non-secret error when asking your platform team for help.