Add checking of pipelines runtime requirements before pushing (#2375)
* Gate authorisation headers to specific domains
* Only send authorisation headers to domains we
specifically control.
* Check pipelines runtime before pushing
* Make sure the requirements are in sync with what
we need in pipelines runtime