Files
git.stella-ops.org/docs/implplan/SPRINT_187_evidence_cli_replay.md
master 2eb6852d34
Some checks failed
Docs CI / lint-and-preview (push) Has been cancelled
Add unit tests for SBOM ingestion and transformation
- Implement `SbomIngestServiceCollectionExtensionsTests` to verify the SBOM ingestion pipeline exports snapshots correctly.
- Create `SbomIngestTransformerTests` to ensure the transformation produces expected nodes and edges, including deduplication of license nodes and normalization of timestamps.
- Add `SbomSnapshotExporterTests` to test the export functionality for manifest, adjacency, nodes, and edges.
- Introduce `VexOverlayTransformerTests` to validate the transformation of VEX nodes and edges.
- Set up project file for the test project with necessary dependencies and configurations.
- Include JSON fixture files for testing purposes.
2025-11-04 07:49:39 +02:00

1.9 KiB

Sprint 187 - Evidence & CLI Replay Enablement

[Replay Delivery] 187.A) Evidence Locker & CLI Integration
Depends on: Sprint 186 Scanner Record Mode, Sprint 160 Export & Evidence, Sprint 180 Experience & SDKs
Summary: Persist replay bundles in Evidence Locker, expose ledger-backed verification, and ship offline-ready CLI workflows.

Task ID State Task description Owners (Source)
EVID-REPLAY-187-001 TODO Implement replay bundle ingestion/retention APIs in Evidence Locker (WebService + Worker) and document storage/retention rules in docs/modules/evidence-locker/architecture.md, referencing docs/replay/DETERMINISTIC_REPLAY.md Sections 2 & 8. Evidence Locker Guild (src/EvidenceLocker/StellaOps.EvidenceLocker/TASKS.md, docs/modules/evidence-locker/architecture.md)
CLI-REPLAY-187-002 TODO Add scan --record, verify, replay, diff commands to the CLI with offline bundle resolution; update docs/modules/cli/architecture.md and add a replay commands appendix citing docs/replay/DEVS_GUIDE_REPLAY.md. DevEx/CLI Guild (src/Cli/StellaOps.Cli/TASKS.md, docs/modules/cli/architecture.md)
ATTEST-REPLAY-187-003 TODO Wire Attestor/Rekor anchoring for replay manifests and capture verification APIs; extend docs/modules/attestor/architecture.md with a replay ledger flow referencing docs/replay/DETERMINISTIC_REPLAY.md Section 9. Attestor Guild (src/Attestor/StellaOps.Attestor/TASKS.md, docs/modules/attestor/architecture.md)
RUNBOOK-REPLAY-187-004 TODO Publish /docs/runbooks/replay_ops.md covering retention enforcement, RootPack rotation, offline kits, and verification drills; cross-link from replay specification summary. Docs Guild, Ops Guild (docs/TASKS.md)

2025-11-03: /docs/runbooks/replay_ops.md created — Evidence Locker, CLI, Attestor teams can transition replay delivery tasks to DOING alongside Ops runbook rehearsals.