Files
git.stella-ops.org/src/Authority/StellaOps.Authority/AGENTS.md
master 66cb6c4b8a
Some checks failed
Docs CI / lint-and-preview (push) Has been cancelled
feat: Add guild charters and task boards for various components
- Introduced guild charters for Scanner Deno, PHP, Ruby, Native, WebService, Java, Surface.Env, Surface.FS, Surface.Secrets, Surface.Validation, UI, Zastava Observer, Zastava Webhook, Zastava Core, and Plugin Platform.
- Each charter outlines the mission, scope, required reading, and working agreements for the respective guilds.
- Created task boards for Surface.Env, Surface.FS, Surface.Secrets, Surface.Validation, and Zastava components to track progress and dependencies.
- Ensured all documents emphasize determinism, offline readiness, security, and integration with shared Surface libraries.
2025-11-01 02:21:46 +02:00

1.7 KiB

Authority Host Crew

Mission

Own the StellaOps Authority host service: ASP.NET minimal API, OpenIddict flows, plugin loading, storage orchestration, and cross-cutting security controls (rate limiting, audit logging, revocation exports).

Teams On Call

  • Team 2 (Authority Core)
  • Team 8 (Security Guild) — collaborates on security-sensitive endpoints

Operating Principles

  • Deterministic responses, structured logging, cancellation-ready handlers.
  • Use StellaOps.Cryptography abstractions for any crypto operations.
  • Every change updates TASKS.md and related docs/tests.
  • Coordinate with plugin teams before altering plugin-facing contracts.

Key Directories

  • src/Authority/StellaOps.Authority/ — host app
  • src/Authority/StellaOps.Authority/StellaOps.Authority.Tests/ — integration/unit tests
  • src/Authority/StellaOps.Authority/StellaOps.Authority.Storage.Mongo/ — data access helpers
  • src/Authority/StellaOps.Authority/StellaOps.Authority.Plugin.Standard/ — default identity provider plugin

Required Reading

  • docs/modules/authority/architecture.md
  • docs/modules/platform/architecture-overview.md

Working Agreement

    1. Update task status to DOING/DONE in both docs/implplan/SPRINTS.md and the local TASKS.md when you start or finish work.
    1. Review this charter and the Required Reading documents before coding; confirm prerequisites are met.
    1. Keep changes deterministic (stable ordering, timestamps, hashes) and align with offline/air-gap expectations.
    1. Coordinate doc updates, tests, and cross-guild communication whenever contracts or workflows change.
    1. Revert to TODO if you pause the task without shipping changes; leave notes in commit/PR descriptions for context.