Files
git.stella-ops.org/docs/implplan/SPRINT_505_ops_devops_iii.md
master ae69b1a8a1 feat: Add documentation and task tracking for Sprints 508 to 514 in Ops & Offline
- Created detailed markdown files for Sprints 508 (Ops Offline Kit), 509 (Samples), 510 (AirGap), 511 (Api), 512 (Bench), 513 (Provenance), and 514 (Sovereign Crypto Enablement) outlining tasks, dependencies, and owners.
- Introduced a comprehensive Reachability Evidence Delivery Guide to streamline the reachability signal process.
- Implemented unit tests for Advisory AI to block known injection patterns and redact secrets.
- Added AuthoritySenderConstraintHelper to manage sender constraints in OpenIddict transactions.
2025-11-08 23:18:28 +02:00

3.8 KiB

Sprint 505 - Ops & Offline · 190.B) Ops Devops.III

Active items only. Completed/historic work now resides in docs/implplan/archived_sprints_tasks.md (updated 2025-11-08).

[Ops & Offline] 190.B) Ops Devops.III Depends on: Sprint 190.B - Ops Devops.II Summary: Ops & Offline focus on Ops Devops (phase III).

Task ID State Task description Owners (Source)
DEVOPS-EXPORT-36-001 TODO Integrate Trivy compatibility validation, cosign signature checks, trivy module db import smoke tests, OCI distribution verification, and throughput/error dashboards. Dependencies: DEVOPS-EXPORT-35-001. DevOps Guild, Exporter Service Guild (ops/devops/TASKS.md)
DEVOPS-EXPORT-37-001 TODO Finalize exporter monitoring (failure alerts, verify metrics, retention jobs) and chaos/latency tests ahead of GA. Dependencies: DEVOPS-EXPORT-36-001. DevOps Guild, Exporter Service Guild (ops/devops/TASKS.md)
DEVOPS-GRAPH-24-001 TODO Load test graph index/adjacency APIs with 40k-node assets; capture perf dashboards and alert thresholds. DevOps Guild, SBOM Service Guild (ops/devops/TASKS.md)
DEVOPS-GRAPH-24-002 TODO Integrate synthetic UI perf runs (Playwright/WebGL metrics) for Graph/Vuln explorers; fail builds on regression. Dependencies: DEVOPS-GRAPH-24-001. DevOps Guild, UI Guild (ops/devops/TASKS.md)
DEVOPS-GRAPH-24-003 TODO Implement smoke job for simulation endpoints ensuring we stay within SLA (<3s upgrade) and log results. Dependencies: DEVOPS-GRAPH-24-002. DevOps Guild (ops/devops/TASKS.md)
DEVOPS-LNM-22-001 BLOCKED (2025-10-27) Run migration/backfill pipelines for advisory observations/linksets in staging, validate counts/conflicts, and automate deployment steps. Awaiting storage backfill tooling. DevOps Guild, Concelier Guild (ops/devops/TASKS.md)
DEVOPS-LNM-22-002 BLOCKED (2025-10-27) Execute VEX observation/linkset backfill with monitoring; ensure NATS/Redis events integrated; document ops runbook. Blocked until Excititor storage migration lands. Dependencies: DEVOPS-LNM-22-001. DevOps Guild, Excititor Guild (ops/devops/TASKS.md)
DEVOPS-LNM-22-003 TODO Add CI/monitoring coverage for new metrics (advisory_observations_total, linksets_total, etc.) and alerts on ingest-to-API SLA breaches. Dependencies: DEVOPS-LNM-22-002. DevOps Guild, Observability Guild (ops/devops/TASKS.md)
DEVOPS-OAS-61-001 TODO Add CI stages for OpenAPI linting, validation, and compatibility diff; enforce gating on PRs. DevOps Guild, API Contracts Guild (ops/devops/TASKS.md)
DEVOPS-OAS-61-002 TODO Integrate mock server + contract test suite into PR and nightly workflows; publish artifacts. Dependencies: DEVOPS-OAS-61-001. DevOps Guild, Contract Testing Guild (ops/devops/TASKS.md)
DEVOPS-OBS-51-001 TODO Implement SLO evaluator service (burn rate calculators, webhook emitters), Grafana dashboards, and alert routing to Notifier. Provide Terraform/Helm automation. Dependencies: DEVOPS-OBS-50-002. DevOps Guild, Observability Guild (ops/devops/TASKS.md)
DEVOPS-OBS-52-001 TODO Configure streaming pipeline (NATS/Redis/Kafka) with retention, partitioning, and backpressure tuning for timeline events; add CI validation of schema + rate caps. Dependencies: DEVOPS-OBS-51-001. DevOps Guild, Timeline Indexer Guild (ops/devops/TASKS.md)
DEVOPS-OBS-53-001 TODO Provision object storage with WORM/retention options (S3 Object Lock / MinIO immutability), legal hold automation, and backup/restore scripts for evidence locker. Dependencies: DEVOPS-OBS-52-001. DevOps Guild, Evidence Locker Guild (ops/devops/TASKS.md)
DEVOPS-OBS-54-001 TODO Manage provenance signing infrastructure (KMS keys, rotation schedule, timestamp authority integration) and integrate verification jobs into CI. Dependencies: DEVOPS-OBS-53-001. DevOps Guild, Security Guild (ops/devops/TASKS.md)