Commit Graph
44 Commits
Author SHA1 Message Date
marcopan f16c248019 docs: record private registry fingerprint repair 2026-08-26 03:55:32 +02:00
marcopan d638473c12 docs: record privileged server compose repair 2026-08-26 03:53:25 +02:00
marcopan dfc605da78 docs: record server restore ownership repair 2026-08-26 03:26:39 +02:00
marcopan 3af59cecbf docs: record projected revision repair 2026-08-26 02:58:54 +02:00
marcopan 737ec879d9 docs: record server status smoke repair 2026-08-26 02:33:56 +02:00
marcopan 52caabf83b docs: record projected auth smoke repair 2026-08-26 02:12:09 +02:00
marcopan 20341a7124 docs(evidence): record server secret projection repair 2026-08-26 01:46:10 +02:00
marcopan a1f1a63c88 docs(evidence): record server workspace smoke repair 2026-08-26 01:20:07 +02:00
marcopan 5877adcfac docs(evidence): record session CA smoke repair 2026-08-26 00:56:44 +02:00
marcopan 2ae11f26f2 docs(evidence): record final Linux smoke repair 2026-08-26 00:44:59 +02:00
marcopan 4c2c9b50a9 docs(evidence): record final deployment repair 2026-08-26 00:12:46 +02:00
marcopan 944b0edf7a docs(evidence): record PSD real acceptance 2026-08-25 23:50:00 +02:00
marcopan e9c65ef2db fix(evidence): resolve final review findings 2026-08-25 03:03:11 +02:00
marcopan d4818c8cc3 docs(evidence): narrow owner gate baseline 2026-08-25 02:43:01 +02:00
marcopan 8542124f27 test(evidence): harden owner gate acceptance 2026-08-25 02:34:10 +02:00
marcopan fc83d29b58 test(evidence): record restructuring acceptance 2026-08-25 02:17:05 +02:00
User ef7ae7053c docs(auth): document runtime projection operations 2026-08-22 01:51:26 +02:00
User 9974fb4bc0 docs: defer DWH client cutover before Project B 2026-08-21 14:35:37 +02:00
User 7b86ea9ce5 fix: harden DWH auth recovery guidance 2026-08-21 05:04:37 +02:00
User 707c13d781 fix: harden DWH auth operator guidance 2026-08-21 04:28:20 +02:00
User 7b9b8b308d docs: explain per-installation DWH access 2026-08-21 03:58:50 +02:00
marcopan 21caaa22e3 docs: plan PSD server deployment program 2026-08-20 00:57:47 +02:00
marcopan 1184b6db16 docs: converge operator guidance on tht 2026-08-19 16:12:11 +02:00
marcopan 8a3fa5031d test(auth): gate local and OIDC authentication release 2026-08-18 06:02:25 +02:00
marcopan 91925d64bf docs(auth): address authentication guide review 2026-08-18 03:33:00 +02:00
marcopan f4f38717e1 docs(auth): document local OIDC and Authentik operation 2026-08-18 03:07:33 +02:00
marcopan ecd986f208 docs: aggregate P2-P6 acceptance, full-suite results, and user guide 2026-08-13 13:00:08 +02:00
marcopan 486e144fcd docs: record P6 manual acceptance 2026-08-13 12:51:26 +02:00
marcopan be0e68e77d docs: record P6 implementation, contract, and automated acceptance PASS 2026-08-13 12:44:19 +02:00
marcopan 9605f77acb docs: record P5 manual acceptance 2026-08-13 12:25:08 +02:00
marcopan 55a61931b1 docs: record P5 implementation and finalize the P5 manual walkthrough 2026-08-13 05:10:22 +02:00
marcopan 3397911670 docs: record P3+P4 manual acceptance and rebind P4 automated run to e056c19 2026-08-13 04:44:50 +02:00
marcopan e056c19e62 feat: P4 qdrant collection lifecycle (self-heal + guarded rebuild)
- shared TS collection manager: self-heal creates missing collection (1024/cosine)
  and missing keyword payload indexes; never mutates incompatible contracts
  (semantic_index_incompatible); async index visibility polled with bounded deadline
- session admission (qdrantEnsure) uses the manager in self-heal mode; operator path
  keeps require_existing semantics
- runtime lease exposes semanticQdrantUrl to the operator
- operator commands vector-inspect/vector-rebuild with exact confirmation guards
- thothctl workspace vector inspect|rebuild (Go) with --collection/--confirm/--destroy
- p4 acceptance runner: real Qdrant (v1.18.2) lifecycle checks, 11/11 PASS
- docs: CLI contract, manual walkthrough P4 (PENDING), PROJECT_STATE
2026-08-12 20:00:14 +02:00
marcopan e23e526966 feat: P3 effective configuration, memory root, and revision-scoped records 2026-08-12 16:01:25 +02:00
marcopan 3c5c2e8afd docs: finalize P2 manuals, project state, and install-doc service contract 2026-08-11 20:09:11 +02:00
marcopan 3cfc8c53e6 docs: align P2-P6 planning artifacts with the P1.1 registry contract 2026-08-11 17:44:40 +02:00
marcopan a22d232aa2 test: add independent P1.1 acceptance and manual tooling 2026-08-11 16:04:44 +02:00
marcopan 16ee92c8f9 docs: design P2-P6 workspace preprocessing 2026-08-10 18:59:31 +02:00
marcopan c7338969d7 fix: bind complete P1 manual dist graph and snapshot identity
prepare records an immutable manifest of every regular backend/dist file
(path/size/sha256/dev/ino) in the owned root and binds its record identity
in ownership; serve revalidates record and every file before spawn, passes
the manifest to the child on fd 4, and the immutable preload hash-verifies
all files at startup and serves only cached verified bytes for any import
below backend/dist, so imported dependency replacement is refused before
RUNNING or never executes. The render command validates the commit
snapshot.json manifest, binds snapshot bytes to the manifest digest and the
installed Git blob, and passes the expected digest to the renderer, which
revalidates head/files digest with bounded no-follow reads and renders only
verified bytes with lease release on refusal.
2026-08-10 17:36:24 +02:00
marcopan 96362929d7 fix: harden P1 manual acceptance audit gates 2026-08-09 23:32:42 +02:00
marcopan a3129b8b81 fix: anchor P1 manual extraction and scans 2026-08-09 22:43:44 +02:00
marcopan bd1f4083e9 fix: use production entrypoint for P1 manual serve 2026-08-09 22:33:18 +02:00
marcopan 6b2fd71018 fix: serialize P1 manual server ownership 2026-08-09 21:51:45 +02:00
marcopan 74ddb86d13 test: add P1 manual configuration walkthrough 2026-08-09 21:12:08 +02:00