Zero trust has become a key element of enterprise security.While zero trust principles are applied to networks, user identities, and endpoints, the CI/CD pipeline often remains undersecured.CI/CD pipelines orchestrate code validation for production deployment and may have persistent credentials and system privileges.Treating pipelines as untrusted by default is essential to aligning them with the rest of the zero trust model.