Files
git.stella-ops.org/docs/implplan/SPRINT_504_ops_devops_ii.md
StellaOps Bot 029002ad05 work
2025-11-23 23:40:10 +02:00

4.0 KiB

Sprint 504 - Ops & Offline · 190.B) Ops Devops.II

Active items only. Completed/historic work now resides in docs/implplan/archived/tasks.md (updated 2025-11-08).

[Ops & Offline] 190.B) Ops Devops.II Depends on: Sprint 190.B - Ops Devops.I Summary: Ops & Offline focus on Ops Devops (phase II).

Task ID State Task description Owners (Source)
DEVOPS-ATTEST-74-002 TODO Integrate attestation bundle builds into release/offline pipelines with checksum verification. Dependencies: DEVOPS-ATTEST-74-001. DevOps Guild, Export Attestation Guild (ops/devops)
DEVOPS-ATTEST-75-001 TODO Add dashboards/alerts for signing latency, verification failures, key rotation events. Dependencies: DEVOPS-ATTEST-74-002. DevOps Guild, Observability Guild (ops/devops)
DEVOPS-CLI-41-001 TODO Establish CLI build pipeline (multi-platform binaries, SBOM, checksums), parity matrix CI enforcement, and release artifact signing. DevOps Guild, DevEx/CLI Guild (ops/devops)
DEVOPS-CLI-42-001 TODO Add CLI golden output tests, parity diff automation, pack run CI harness, and artifact cache for remote mode. Dependencies: DEVOPS-CLI-41-001. DevOps Guild (ops/devops)
DEVOPS-CLI-43-002 TODO Implement Task Pack chaos smoke in CI (random failure injection, resume, sealed-mode toggle) and publish evidence bundles for review. Dependencies: DEVOPS-CLI-43-001. DevOps Guild, Task Runner Guild (ops/devops)
DEVOPS-CLI-43-003 TODO Integrate CLI golden output/parity diff automation into release gating; export parity report artifact consumed by Console Downloads workspace. Dependencies: DEVOPS-CLI-43-002. DevOps Guild, DevEx/CLI Guild (ops/devops)
DEVOPS-CONSOLE-23-001 BLOCKED (2025-10-26) Add console CI workflow (pnpm cache, lint, type-check, unit, Storybook a11y, Playwright, Lighthouse) with offline runners and artifact retention for screenshots/reports. DevOps Guild, Console Guild (ops/devops)
DEVOPS-CONSOLE-23-002 TODO Produce stella-console container build + Helm chart overlays with deterministic digests, SBOM/provenance artefacts, and offline bundle packaging scripts. Dependencies: DEVOPS-CONSOLE-23-001. DevOps Guild, Console Guild (ops/devops)
DEVOPS-CONTAINERS-44-001 TODO Automate multi-arch image builds with buildx, SBOM generation, cosign signing, and signature verification in CI. DevOps Guild (ops/devops)
DEVOPS-CONTAINERS-45-001 TODO Add Compose and Helm smoke tests (fresh VM + kind cluster) to CI; publish test artifacts and logs. Dependencies: DEVOPS-CONTAINERS-44-001. DevOps Guild (ops/devops)
DEVOPS-CONTAINERS-46-001 TODO Build air-gap bundle generator (src/Tools/make-airgap-bundle.sh), produce signed bundle, and verify in CI using private registry. Dependencies: DEVOPS-CONTAINERS-45-001. DevOps Guild (ops/devops)
DEVOPS-DEVPORT-63-001 TODO Automate developer portal build pipeline with caching, link & accessibility checks, performance budgets. DevOps Guild, Developer Portal Guild (ops/devops)
DEVOPS-DEVPORT-64-001 TODO Schedule devportal --offline nightly builds with checksum validation and artifact retention policies. Dependencies: DEVOPS-DEVPORT-63-001. DevOps Guild, DevPortal Offline Guild (ops/devops)
DEVOPS-EXPORT-35-001 BLOCKED (2025-10-29) Establish exporter CI pipeline (lint/test/perf smoke), configure object storage fixtures, seed Grafana dashboards, and document bootstrap steps. DevOps Guild, Exporter Service Guild (ops/devops)
DEVOPS-SCANNER-NATIVE-20-010-REL TODO Package/sign native analyzer plug-in for release/offline kits; depends on SCANNER-ANALYZERS-NATIVE-20-010 dev. DevOps Guild, Native Analyzer Guild (ops/devops)
DEVOPS-SCANNER-PHP-27-011-REL TODO Package/sign PHP analyzer plug-in for release/offline kits; depends on SCANNER-ANALYZERS-PHP-27-011 dev. DevOps Guild, PHP Analyzer Guild (ops/devops)
DEVOPS-SCANNER-RUBY-28-006-REL TODO Package/sign Ruby analyzer plug-in for release/offline kits; depends on SCANNER-ANALYZERS-RUBY-28-006 dev. DevOps Guild, Ruby Analyzer Guild (ops/devops)