marcopan
|
ab61c1ad6d
|
feat(auth): persist opaque remembered sessions
|
2026-08-16 20:28:32 +02:00 |
|
marcopan
|
b80a2cc1e9
|
fix(auth): protect local registry directory
|
2026-08-16 20:11:30 +02:00 |
|
marcopan
|
de8844a4ac
|
fix(auth): bound local password encoding
|
2026-08-16 20:03:40 +02:00 |
|
marcopan
|
1ed1a34ae2
|
fix(auth): reject ill-formed local passwords
|
2026-08-16 19:56:43 +02:00 |
|
marcopan
|
5eed4f9449
|
feat(auth): verify local ThothII users in the backend
|
2026-08-16 19:49:02 +02:00 |
|
marcopan
|
f99bddcdf0
|
fix(auth): restore permission boundary safeguards
|
2026-08-16 18:03:36 +02:00 |
|
marcopan
|
2e0489ce22
|
feat(auth): centralize ThothII permission enforcement
|
2026-08-16 17:52:03 +02:00 |
|
marcopan
|
e54ce15426
|
fix(auth): fail closed configuration compatibility
|
2026-08-16 17:35:40 +02:00 |
|
marcopan
|
a66ef58766
|
feat(auth): define strict installation authentication config
|
2026-08-16 17:26:31 +02:00 |
|
marcopan
|
a94df262f4
|
fix: preserve deterministic runtime secret leases
|
2026-08-14 17:47:17 +02:00 |
|
marcopan
|
ae1215dc98
|
test: isolate workspace secret vaults under vitest
|
2026-08-14 17:32:22 +02:00 |
|
marcopan
|
87cefd120c
|
feat: configure workspace runtime secrets through API
|
2026-08-14 17:30:35 +02:00 |
|
marcopan
|
2114c94704
|
feat: derive workspace runtime secret requirements
|
2026-08-14 17:26:39 +02:00 |
|
marcopan
|
e4999c8420
|
feat: add encrypted workspace secret store
|
2026-08-14 17:23:23 +02:00 |
|
marcopan
|
747020a330
|
feat: declare workspace repository in installation config
|
2026-08-14 16:32:58 +02:00 |
|
marcopan
|
9db4463a83
|
refactor: remove workspace publishing and bundles
|
2026-08-14 16:28:01 +02:00 |
|
marcopan
|
42e02f8b1c
|
refactor: make workspace repository strictly read only
|
2026-08-14 16:20:08 +02:00 |
|
marcopan
|
db1a81cfa6
|
fix: surface reviewer response failures
|
2026-08-14 12:06:25 +02:00 |
|
marcopan
|
10edca5a09
|
fix: default the settings workspace to the active registry workspace
|
2026-08-13 22:02:02 +02:00 |
|
marcopan
|
a72ae2549a
|
fix: ping the active workspace runtime for /health/dwh instead of the legacy config
|
2026-08-13 21:06:32 +02:00 |
|
marcopan
|
9d7e9a05b7
|
fix: resolve diagnostic paths under the base path prefix and tolerate health-style ping responses
|
2026-08-13 20:58:10 +02:00 |
|
marcopan
|
f31b1e61ac
|
fix: upsert in bounded chunks, recreate Qdrant indexes on rebuild, larger maintenance tmpfs
|
2026-08-13 19:02:52 +02:00 |
|
marcopan
|
871de800f0
|
feat: make filesystem Evidence operational after materialization (P6)
|
2026-08-13 12:35:25 +02:00 |
|
marcopan
|
bb2eabceb6
|
feat: activate commit-addressed Evidence materialization with an integrity chain (P6)
|
2026-08-13 12:34:56 +02:00 |
|
marcopan
|
0c9e614100
|
feat: bounded Evidence materializer with manifest and atomic publication (P6)
|
2026-08-13 12:31:12 +02:00 |
|
marcopan
|
0c1033889a
|
feat: safe Evidence tree enumeration and bounded blob streaming (P6)
|
2026-08-13 12:28:49 +02:00 |
|
marcopan
|
d751188db7
|
feat: gate FK review on the accepted revision blob (P5)
|
2026-08-13 05:08:19 +02:00 |
|
marcopan
|
0459a6cd3e
|
feat: operator schema accept command for curated FK review (P5)
|
2026-08-13 05:06:23 +02:00 |
|
marcopan
|
5249798c03
|
feat: revision-qualified annotations root for pinned runtimes (P5)
|
2026-08-13 05:02:19 +02:00 |
|
marcopan
|
259d5a0374
|
feat: atomic revision-qualified annotations sync with ownership manifest (P5)
|
2026-08-13 04:58:56 +02:00 |
|
marcopan
|
b00b7f17c9
|
feat: read and validate curated FK annotations at the pinned commit (P5)
|
2026-08-13 04:56:03 +02:00 |
|
marcopan
|
e056c19e62
|
feat: P4 qdrant collection lifecycle (self-heal + guarded rebuild)
- shared TS collection manager: self-heal creates missing collection (1024/cosine)
and missing keyword payload indexes; never mutates incompatible contracts
(semantic_index_incompatible); async index visibility polled with bounded deadline
- session admission (qdrantEnsure) uses the manager in self-heal mode; operator path
keeps require_existing semantics
- runtime lease exposes semanticQdrantUrl to the operator
- operator commands vector-inspect/vector-rebuild with exact confirmation guards
- thothctl workspace vector inspect|rebuild (Go) with --collection/--confirm/--destroy
- p4 acceptance runner: real Qdrant (v1.18.2) lifecycle checks, 11/11 PASS
- docs: CLI contract, manual walkthrough P4 (PENDING), PROJECT_STATE
|
2026-08-12 20:00:14 +02:00 |
|
marcopan
|
e23e526966
|
feat: P3 effective configuration, memory root, and revision-scoped records
|
2026-08-12 16:01:25 +02:00 |
|
marcopan
|
de5de36f9a
|
chore: remove acceptance debug channels from the P2 operator path
|
2026-08-11 20:04:04 +02:00 |
|
marcopan
|
ec5ed413f7
|
fix: surface preprocessing state error codes to the operator result
|
2026-08-11 20:01:16 +02:00 |
|
marcopan
|
e197ba1fd4
|
chore: capture operator failure detail in result warnings under debug
|
2026-08-11 19:56:40 +02:00 |
|
marcopan
|
79e592894d
|
fix: refuse resume of a nonexistent preprocessing run
|
2026-08-11 19:54:21 +02:00 |
|
marcopan
|
657c117425
|
fix: honor an installation HTTP private-host allowlist for Evidence
|
2026-08-11 19:48:13 +02:00 |
|
marcopan
|
0986125327
|
fix: accept FK reviews by candidate digest across same-content runs
|
2026-08-11 19:46:16 +02:00 |
|
marcopan
|
340d673e75
|
chore: surface child failure detail under P2_CHILD_DEBUG
|
2026-08-11 19:27:34 +02:00 |
|
marcopan
|
f6c2e6fc40
|
chore: add temporary P2 child debug channel for acceptance diagnosis
|
2026-08-11 19:26:57 +02:00 |
|
marcopan
|
ad3c3125a8
|
fix: expose catalog identity as a sha256 content digest
|
2026-08-11 19:25:04 +02:00 |
|
marcopan
|
82b5453c88
|
fix: use sha256 descriptor digest and keep operator errors fully sanitized
|
2026-08-11 19:24:15 +02:00 |
|
marcopan
|
5aadc85808
|
fix: surface sanitized operator failure detail during P2 diagnosis
|
2026-08-11 19:20:54 +02:00 |
|
marcopan
|
fe49f5b6d8
|
fix: read active workspace state beneath the operator registry root
|
2026-08-11 19:18:02 +02:00 |
|
marcopan
|
436d8d2720
|
fix: resolve operator snapshot paths beneath the configured registry root
|
2026-08-11 19:14:24 +02:00 |
|
marcopan
|
f7c2b69837
|
feat: P2 operator, preprocessing state/service, and runtime config lease
|
2026-08-11 18:40:11 +02:00 |
|
marcopan
|
7ce25894a2
|
feat: reconcile generated docs on explicit registry pull
|
2026-08-11 16:19:10 +02:00 |
|
marcopan
|
25ec236f1f
|
feat: activate workspaces from the root catalog and bootstrap-only publication
|
2026-08-11 14:49:46 +02:00 |
|
marcopan
|
86af45acb4
|
refactor: enforce P1.1 registry path ownership
|
2026-08-11 14:29:00 +02:00 |
|