Files
git.stella-ops.org/src/Policy/StellaOps.Policy.Engine
StellaOps Bot 53889d85e7
Some checks failed
AOC Guard CI / aoc-guard (push) Has been cancelled
AOC Guard CI / aoc-verify (push) Has been cancelled
Concelier Attestation Tests / attestation-tests (push) Has been cancelled
Docs CI / lint-and-preview (push) Has been cancelled
feat: Add CVSS receipt management endpoints and related functionality
- Introduced new API endpoints for creating, retrieving, amending, and listing CVSS receipts.
- Updated IPolicyEngineClient interface to include methods for CVSS receipt operations.
- Implemented PolicyEngineClient to handle CVSS receipt requests.
- Enhanced Program.cs to map new CVSS receipt routes with appropriate authorization.
- Added necessary models and contracts for CVSS receipt requests and responses.
- Integrated Postgres document store for managing CVSS receipts and related data.
- Updated database schema with new migrations for source documents and payload storage.
- Refactored existing components to support new CVSS functionality.
2025-12-07 00:43:14 +02:00
..
up
2025-11-24 07:52:25 +02:00
up
2025-11-24 07:52:25 +02:00
up
2025-12-03 00:10:19 +02:00
up
2025-11-28 00:45:16 +02:00
up
2025-11-28 09:41:08 +02:00
up
2025-11-28 09:41:08 +02:00
up
2025-11-27 23:45:09 +02:00
up
2025-11-28 09:41:08 +02:00
up
2025-12-03 00:10:19 +02:00
up
2025-12-01 21:16:22 +02:00
up
2025-11-28 09:41:08 +02:00
up
2025-11-28 00:45:16 +02:00
up
2025-11-24 07:52:25 +02:00
up
2025-11-27 23:45:09 +02:00
up
2025-11-24 07:52:25 +02:00
up
2025-11-24 07:52:25 +02:00
up
2025-11-27 23:45:09 +02:00
up
2025-11-24 07:52:25 +02:00
up
2025-12-01 21:16:22 +02:00
up
2025-11-24 07:52:25 +02:00
up
2025-11-24 07:52:25 +02:00
up
2025-11-24 07:52:25 +02:00
up
2025-11-28 09:41:08 +02:00
up
2025-12-01 21:16:22 +02:00
up
2025-12-01 21:16:22 +02:00

Policy Engine Host Template

This service hosts the Policy Engine APIs and background workers introduced in Policy Engine v2. The project currently ships a minimal bootstrap that validates configuration, registers Authority clients, and exposes readiness/health endpoints. Future tasks will extend it with compilation, evaluation, and persistence features.

Compliance Checklist

  • Configuration loads from policy-engine.yaml/environment variables and validates on startup.
  • Authority client scaffolding enforces policy:* + effective:write scopes and respects back-channel timeouts.
  • Resource server authentication requires Policy Engine scopes with tenant-aware policies.
  • Health and readiness endpoints exist for platform probes.
  • Deterministic policy evaluation pipeline implemented (POLICY-ENGINE-20-002).
  • Mongo materialisation writers implemented (POLICY-ENGINE-20-004).
  • Observability (metrics/traces/logs) completed (POLICY-ENGINE-20-007).
  • Comprehensive test suites and perf baselines established (POLICY-ENGINE-20-008).