- Created `StellaOps.TestKit.Tests` project for unit tests related to determinism. - Implemented `DeterminismManifestTests` to validate deterministic output for canonical bytes and strings, file read/write operations, and error handling for invalid schema versions. - Added `SbomDeterminismTests` to ensure identical inputs produce consistent SBOMs across SPDX 3.0.1 and CycloneDX 1.6/1.7 formats, including parallel execution tests. - Updated project references in `StellaOps.Integration.Determinism` to include the new determinism testing library.
1.0 KiB
1.0 KiB
Operations runbooks
Runbooks capture operational procedures for incidents, replay verification, policy emergencies, and airgap workflows. They are designed to be offline and deterministic.
Runbook set (current)
- docs/runbooks/assistant-ops.md
- docs/runbooks/incidents.md
- docs/runbooks/policy-incident.md
- docs/runbooks/reachability-runtime.md
- docs/runbooks/replay_ops.md
- docs/runbooks/vex-ops.md
- docs/runbooks/vuln-ops.md
- operations/score-proofs.md
- operations/proof-verification.md
- operations/reachability.md
- operations/trust-lattice.md
- operations/unknowns-queue.md
- operations/key-rotation.md
Common expectations
- Hash and store any inbound artifacts with SHA256SUMS.
- Record UTC timestamps and stable ordering in logs.
- Avoid external network calls unless explicitly permitted.
- Keep links to the relevant specs and schemas for verification.
Operational evidence
- Replay verification logs
- Policy decision evidence bundles
- Incident timelines and postmortems
Related references
- docs/operations/*
- docs/airgap/*