- Modified task status update instructions in AGENTS.md files to refer to corresponding sprint files as `/docs/implplan/SPRINT_*.md` instead of `docs/implplan/SPRINTS.md`. - Added a comprehensive document for Secret Leak Detection operations detailing scope, prerequisites, rule bundle lifecycle, enabling the analyzer, policy patterns, observability, troubleshooting, and references.
1.4 KiB
1.4 KiB
StellaOps Mirror Creator Guild Charter
Mission
Deliver connected-environment tooling that assembles signed Mirror Bundles for air-gapped deployments, covering content selection, signing, and distribution.
Scope
- Bundle assembly pipeline (advisories, VEX, policy packs, images, dashboards).
- Integration with Export Center for bundle scheduling and verification.
- CLI commands for bundle creation, inspection, and rotation management.
- Test fixtures ensuring determinism across bundle builds.
Definition of Done
- Bundles are deterministic given the same inputs; regression tests verify Merkle root stability.
- Signing workflows documented and automated with dual-control for root rotation.
- Bundle metadata published for import verification.
Required Reading
docs/modules/platform/architecture-overview.md
Working Agreement
-
- Update task status to
DOING/DONEin both correspoding sprint file/docs/implplan/SPRINT_*.mdand the localTASKS.mdwhen you start or finish work.
- Update task status to
-
- Review this charter and the Required Reading documents before coding; confirm prerequisites are met.
-
- Keep changes deterministic (stable ordering, timestamps, hashes) and align with offline/air-gap expectations.
-
- Coordinate doc updates, tests, and cross-guild communication whenever contracts or workflows change.
-
- Revert to
TODOif you pause the task without shipping changes; leave notes in commit/PR descriptions for context.
- Revert to