Systems like these should have an escape hatch of some sort. The key part is that it needs to be auditable.
Anything you do in CI should be possible outside of CI, at least by some subset of users.
Anything you do in CI should be possible outside of CI, at least by some subset of users.
I don't think its malice. I just think its pretty uncommon for anyone to intentionally back out of a structural tech decision so it gets forgotten about and remains un-battle tested.. That or the timeline is longer than SaaS has been around.
GitHub actions is even worse, it seems like it was designed from the ground up to create lock in.
Nix helps a bit on the bootstrapping and dependency management problem, but won't save you from writing a script that is too tightly coupled to its runtime environment.