Skill v1.0.1
currentAutomated scan100/1001 files
version: "1.0.1" name: bitbucket-workflow description: Bitbucket best practices for pull requests, Pipelines CI/CD, Jira integration, and Atlassian ecosystem workflows
Bitbucket Workflow Best Practices
You are an expert in Bitbucket workflows, including pull requests, Bitbucket Pipelines, Jira integration, and Atlassian ecosystem best practices.
Core Principles
- Use pull requests for all code changes with proper review processes
- Implement CI/CD with Bitbucket Pipelines using
bitbucket-pipelines.yml - Leverage Jira integration for seamless issue tracking
- Follow branching models like Gitflow for structured development
- Maintain security through branch permissions and access controls
Pull Request Best Practices
Creating Effective Pull Requests
- Keep PRs focused and reviewable
- One feature or fix per PR
- Include context in the description
- PR Title Convention
- Reference Jira issue:
PROJ-123: Add user authentication - Use conventional format:
feat: implement login page
- PR Description Template
```markdown ## Summary Brief description of changes and motivation.
## Jira Issue PROJ-123
## Changes
- List of specific changes made
## Testing
- How the changes were tested
- Manual testing steps
## Checklist
- [ ] Tests added/updated
- [ ] Documentation updated
- [ ] Pipeline passes
```
Code Review in Bitbucket
- Add reviewers - Select appropriate team members
- Use tasks - Create tasks for actionable feedback
- Approve or request changes - Clear approval workflow
- Resolve discussions - Address all feedback before merge
Merge Strategies
- Merge commit: Preserves full branch history
- Squash: Combines commits into single commit
- Fast-forward: Linear history when possible
Bitbucket Pipelines
Basic Pipeline Configuration
image: node:20definitions:caches:npm: ~/.npmsteps:- step: &build-stepname: Buildcaches:- npmscript:- npm ci- npm run buildartifacts:- dist/**- step: &test-stepname: Testcaches:- npmscript:- npm ci- npm testpipelines:default:- step: *build-step- step: *test-stepbranches:main:- step: *build-step- step: *test-step- step:name: Deploy to Productiondeployment: productiontrigger: manualscript:- pipe: atlassian/aws-s3-deploy:1.1.0variables:AWS_ACCESS_KEY_ID: $AWS_ACCESS_KEY_IDAWS_SECRET_ACCESS_KEY: $AWS_SECRET_ACCESS_KEYAWS_DEFAULT_REGION: 'us-east-1'S3_BUCKET: 'my-bucket'LOCAL_PATH: 'dist'develop:- step: *build-step- step: *test-step- step:name: Deploy to Stagingdeployment: stagingscript:- ./deploy.sh staging
Pipeline Features
Parallel Steps
pipelines:default:- parallel:- step:name: Unit Testsscript:- npm test:unit- step:name: Integration Testsscript:- npm test:integration- step:name: Lintscript:- npm run lint
Conditional Steps
pipelines:pull-requests:'**':- step:name: Build and Testscript:- npm ci- npm testcondition:changesets:includePaths:- "src/**"- "package.json"
Custom Pipes
pipelines:default:- step:name: Deployscript:- pipe: atlassian/aws-ecs-deploy:1.6.0variables:AWS_ACCESS_KEY_ID: $AWS_ACCESS_KEY_IDAWS_SECRET_ACCESS_KEY: $AWS_SECRET_ACCESS_KEYAWS_DEFAULT_REGION: 'us-east-1'CLUSTER_NAME: 'my-cluster'SERVICE_NAME: 'my-service'TASK_DEFINITION: 'task-definition.json'
Services for Testing
definitions:services:postgres:image: postgres:15variables:POSTGRES_DB: test_dbPOSTGRES_USER: test_userPOSTGRES_PASSWORD: test_passredis:image: redis:7pipelines:default:- step:name: Integration Testsservices:- postgres- redisscript:- npm ci- npm run test:integration
Caching
definitions:caches:npm: ~/.npmpip: ~/.cache/pipgradle: ~/.gradle/cachespipelines:default:- step:caches:- npmscript:- npm ci- npm run build
Jira Integration
Smart Commits
Enable smart commits to update Jira issues from commit messages:
PROJ-123 #comment Fixed the login redirect issuePROJ-123 #time 2h 30mPROJ-123 #done
Branch Naming
Include Jira issue key in branch names:
feature/PROJ-123-user-authenticationbugfix/PROJ-456-fix-login-redirect
This automatically links branches to issues.
Automation Rules
Set up Jira automation:
- Move issue to "In Progress" when branch created
- Move issue to "In Review" when PR opened
- Move issue to "Done" when PR merged
Branching Models
Gitflow in Bitbucket
pipelines:branches:main:- step:name: Deploy Productiondeployment: productionscript:- ./deploy.sh productiondevelop:- step:name: Deploy Stagingdeployment: stagingscript:- ./deploy.sh staging'release/*':- step:name: Release Buildscript:- npm run build:release'feature/*':- step:name: Feature Build and Testscript:- npm ci- npm test'hotfix/*':- step:name: Hotfix Buildscript:- npm ci- npm test
Branch Permissions
Configure in Repository settings > Branch permissions:
Main branch:
- No direct pushes
- Require pull request
- Minimum 1 approval
- Require passing builds
- Require all tasks resolved
Develop branch:
- Require pull request
- Minimum 1 approval
- Require passing builds
Repository Management
Default Reviewers
Set up default reviewers for consistent code review:
- Add team leads as default reviewers
- Use CODEOWNERS-like patterns
Merge Checks
Enable merge checks:
- Minimum approvals
- No unresolved tasks
- Passing builds
- No changes requested
Access Levels
- Admin: Full control
- Write: Push and merge
- Read: Clone and view
Security Best Practices
Repository Variables
Configure secure variables in Repository settings > Pipelines > Variables:
# Reference in pipelinescript:- echo "Deploying with token"- ./deploy.sh --token=$DEPLOY_TOKEN
Variable options:
- Secured: Masked in logs
- Required for deployment
IP Allowlisting
Restrict pipeline access to specific IP ranges for deployment environments.
Access Tokens
Use repository or project access tokens instead of personal tokens:
- Scoped to specific repositories
- Easier to rotate
- Better audit trail
Deployment Environments
Environment Configuration
pipelines:branches:main:- step:name: Deploy to Productiondeployment: productionscript:- ./deploy.sh
Configure environments in Repository settings > Deployments:
- Set environment variables per environment
- Configure deployment permissions
- View deployment history
Deployment Permissions
- Require specific user approval for production
- Set up deployment windows
- Enable deployment freeze periods
Atlassian Ecosystem Integration
Confluence Integration
- Link repositories to Confluence spaces
- Embed code snippets
- Auto-update documentation from commits
Trello Integration
- Connect cards to commits
- Automatic card movement on PR events
Opsgenie Integration
- Trigger alerts from pipeline failures
- On-call notifications for deployment issues
Best Practices Summary
- Use descriptive branch names with Jira keys
- Configure branch permissions for main branches
- Implement comprehensive pipelines with proper stages
- Use pipes for common tasks (AWS, Docker, etc.)
- Enable smart commits for Jira updates
- Set up deployment environments with proper permissions
- Use repository variables for secrets
- Configure merge checks for quality gates
- Leverage Atlassian integrations for seamless workflow