# StellaOps Documentation StellaOps is a deterministic, offline-first container security platform: every verdict links back to concrete evidence (SBOM slices, advisory/VEX observations, reachability proofs, policy explain traces) and can be replayed for audits. ## Two Levels of Documentation - **High-level (canonical):** the curated guides in `docs/*.md` (usually numbered). - **Detailed (reference):** deep dives under `docs/**` (module dossiers, architecture notes, API contracts/samples, runbooks, schemas). The entry point is `docs/technical/README.md`. This documentation set is internal and does not keep compatibility stubs for old paths. Content is consolidated to reduce duplication and outdated pages. ## Start Here | Goal | Open this | | --- | --- | | Understand the product in 2 minutes | [overview.md](/docs/overview/) | | Run a first scan (CLI) | [quickstart.md](/docs/quickstart/) | | Browse capabilities | [key-features.md](/docs/key-features/) | | Roadmap (priorities + definition of "done") | [05_ROADMAP.md](/docs/05_roadmap/) | | Architecture: high-level overview | [40_ARCHITECTURE_OVERVIEW.md](/docs/40_architecture_overview/) | | Architecture: full reference map | [07_HIGH_LEVEL_ARCHITECTURE.md](/docs/07_high_level_architecture/) | | Architecture: user flows (UML) | [technical/architecture/user-flows.md](/docs/technical/architecture/user-flows/) | | Architecture: module matrix (46 modules) | [technical/architecture/module-matrix.md](/docs/technical/architecture/module-matrix/) | | Architecture: data flows | [technical/architecture/data-flows.md](/docs/technical/architecture/data-flows/) | | Architecture: schema mapping | [technical/architecture/schema-mapping.md](/docs/technical/architecture/schema-mapping/) | | Offline / air-gap operations | [24_OFFLINE_KIT.md](/docs/24_offline_kit/) | | Security deployment hardening | [17_SECURITY_HARDENING_GUIDE.md](/docs/17_security_hardening_guide/) | | Ingest advisories (Concelier + CLI) | [10_CONCELIER_CLI_QUICKSTART.md](/docs/10_concelier_cli_quickstart/) | | Develop plugins/connectors | [10_PLUGIN_SDK_GUIDE.md](/docs/10_plugin_sdk_guide/) | | Console (Web UI) operator guide | [15_UI_GUIDE.md](/docs/15_ui_guide/) | | VEX consensus and issuer trust | [16_VEX_CONSENSUS_GUIDE.md](/docs/16_vex_consensus_guide/) | | Vulnerability Explorer guide | [20_VULNERABILITY_EXPLORER_GUIDE.md](/docs/20_vulnerability_explorer_guide/) | ## Detailed Indexes - **Technical index (everything):** [docs/technical/README.md](/docs/technical/) - **End-to-end workflow flows:** [docs/flows/](/docs/flows/) (16 detailed flow documents) - **Module dossiers:** [docs/modules/](/docs/modules/) - **API contracts and samples:** [docs/api/](/docs/api/) - **Architecture notes / ADRs:** [docs/architecture/](/docs/architecture/), [docs/adr/](/docs/adr/) - **Operations and deployment:** [docs/operations/](/docs/operations/), [docs/deploy/](/docs/deploy/), [docs/deployment/](/docs/deployment/) - **Air-gap workflows:** [docs/airgap/](/docs/airgap/) - **Security deep dives:** [docs/security/](/docs/security/) - **Benchmarks and fixtures:** [docs/benchmarks/](/docs/benchmarks/), [docs/assets/](/docs/assets/) ## Notes - The product is **offline-first**: docs and examples should avoid network dependencies and prefer deterministic fixtures. - Feature exposure is configuration-driven; module dossiers define authoritative schemas and contracts per component.