- Created `StellaOps.TestKit.Tests` project for unit tests related to determinism. - Implemented `DeterminismManifestTests` to validate deterministic output for canonical bytes and strings, file read/write operations, and error handling for invalid schema versions. - Added `SbomDeterminismTests` to ensure identical inputs produce consistent SBOMs across SPDX 3.0.1 and CycloneDX 1.6/1.7 formats, including parallel execution tests. - Updated project references in `StellaOps.Integration.Determinism` to include the new determinism testing library.
36 lines
1.0 KiB
Markdown
36 lines
1.0 KiB
Markdown
# Operations runbooks
|
|
|
|
Runbooks capture operational procedures for incidents, replay verification,
|
|
policy emergencies, and airgap workflows. They are designed to be offline
|
|
and deterministic.
|
|
|
|
Runbook set (current)
|
|
- docs/runbooks/assistant-ops.md
|
|
- docs/runbooks/incidents.md
|
|
- docs/runbooks/policy-incident.md
|
|
- docs/runbooks/reachability-runtime.md
|
|
- docs/runbooks/replay_ops.md
|
|
- docs/runbooks/vex-ops.md
|
|
- docs/runbooks/vuln-ops.md
|
|
- operations/score-proofs.md
|
|
- operations/proof-verification.md
|
|
- operations/reachability.md
|
|
- operations/trust-lattice.md
|
|
- operations/unknowns-queue.md
|
|
- operations/key-rotation.md
|
|
|
|
Common expectations
|
|
- Hash and store any inbound artifacts with SHA256SUMS.
|
|
- Record UTC timestamps and stable ordering in logs.
|
|
- Avoid external network calls unless explicitly permitted.
|
|
- Keep links to the relevant specs and schemas for verification.
|
|
|
|
Operational evidence
|
|
- Replay verification logs
|
|
- Policy decision evidence bundles
|
|
- Incident timelines and postmortems
|
|
|
|
Related references
|
|
- docs/operations/*
|
|
- docs/airgap/*
|