- Added detailed task completion records for KMS interface implementation and CLI support for file-based keys. - Documented security enhancements including Argon2id password hashing, audit event contracts, and rate limiting configurations. - Included scoped service support and integration updates for the Plugin platform, ensuring proper DI handling and testing coverage.
2.0 KiB
TASKS — Epic 1: Aggregation-Only Contract
| ID | Status | Owner(s) | Depends on | Notes |
|---|
2025-10-31: Worker now runs in raw-only mode;
DefaultVexProviderRunnerno longer normalizes or schedules consensus refresh and logs document counts only. Tests updated to assert the normalizer is not invoked. 2025-10-28: Resuming implementation to finish attestation metadata plumbing, wiring into runner, and tests (WorkerSignatureVerifier,DefaultVexProviderRunner). 2025-10-28: Attestation verification now enriches signature metadata & runner tests cover DSSE path; metrics unchanged. 2025-10-31: Worker wraps raw sink with checksum enforcement. Digest mismatches raiseERR_AOC_005, signature metadata is captured when present, andingestion_signature_verified_totalis emitted (result=ok|fail|skipped). 2025-10-28: Added Mongo-backed integration suite validating large batch replay, guard-triggered failures, and restart idempotency (DefaultVexProviderRunnerIntegrationTests). Worker unit tests now exercise the verifying sink path, anddotnet testpasses after attestation envelope fixes.
Orchestrator Dashboard
| ID | Status | Owner(s) | Depends on | Notes |
|---|---|---|---|---|
EXCITITOR-ORCH-32-001 Worker SDK adoption |
TODO | Excititor Worker Guild | ORCH-SVC-32-005, WORKER-GO-32-001, WORKER-PY-32-001 | Integrate orchestrator worker SDK in Excititor ingestion jobs, emit heartbeats/progress/artifact hashes, and register source metadata. |
EXCITITOR-ORCH-33-001 Control compliance |
TODO | Excititor Worker Guild | EXCITITOR-ORCH-32-001, ORCH-SVC-33-001, ORCH-SVC-33-002 | Honor orchestrator pause/throttle/retry actions, classify error outputs, and persist restart checkpoints. |
EXCITITOR-ORCH-34-001 Backfill & circuit breaker |
TODO | Excititor Worker Guild | EXCITITOR-ORCH-33-001, ORCH-SVC-33-003, ORCH-SVC-34-001 | Implement orchestrator-driven backfills, apply circuit breaker reset rules, and ensure artifact dedupe alignment. |