Files
git.stella-ops.org/docs/implplan/SPRINT_504_ops_devops_ii.md
StellaOps Bot e6119cbe91
Some checks failed
AOC Guard CI / aoc-guard (push) Has been cancelled
AOC Guard CI / aoc-verify (push) Has been cancelled
Docs CI / lint-and-preview (push) Has been cancelled
up
2025-11-24 09:07:40 +02:00

4.2 KiB

Sprint 504 - Ops & Offline · 190.B) Ops Devops.II

Active items only. Completed/historic work now resides in docs/implplan/archived/tasks.md (updated 2025-11-08).

[Ops & Offline] 190.B) Ops Devops.II Depends on: Sprint 190.B - Ops Devops.I Summary: Ops & Offline focus on Ops Devops (phase II).

Task ID State Task description Owners (Source)
DEVOPS-ATTEST-74-002 DONE (2025-11-24) Integrate attestation bundle builds into release/offline pipelines with checksum verification. Dependencies: DEVOPS-ATTEST-74-001. DevOps Guild, Export Attestation Guild (ops/devops)
DEVOPS-ATTEST-75-001 DONE (2025-11-24) Add dashboards/alerts for signing latency, verification failures, key rotation events. Dependencies: DEVOPS-ATTEST-74-002. DevOps Guild, Observability Guild (ops/devops)
DEVOPS-CLI-41-001 DONE (2025-11-24) Establish CLI build pipeline (multi-platform binaries, SBOM, checksums), parity matrix CI enforcement, and release artifact signing. DevOps Guild, DevEx/CLI Guild (ops/devops)
DEVOPS-CLI-42-001 DONE (2025-11-24) Add CLI golden output tests, parity diff automation, pack run CI harness, and artifact cache for remote mode. Dependencies: DEVOPS-CLI-41-001. DevOps Guild (ops/devops)
DEVOPS-CLI-43-002 DONE (2025-11-24) Implement Task Pack chaos smoke in CI (random failure injection, resume, sealed-mode toggle) and publish evidence bundles for review. Dependencies: DEVOPS-CLI-43-001. DevOps Guild, Task Runner Guild (ops/devops)
DEVOPS-CLI-43-003 DONE (2025-11-24) Integrate CLI golden output/parity diff automation into release gating; export parity report artifact consumed by Console Downloads workspace. Dependencies: DEVOPS-CLI-43-002. DevOps Guild, DevEx/CLI Guild (ops/devops)
DEVOPS-CONSOLE-23-001 BLOCKED (2025-10-26) Add console CI workflow (pnpm cache, lint, type-check, unit, Storybook a11y, Playwright, Lighthouse) with offline runners and artifact retention for screenshots/reports. DevOps Guild, Console Guild (ops/devops)
DEVOPS-CONSOLE-23-002 TODO Produce stella-console container build + Helm chart overlays with deterministic digests, SBOM/provenance artefacts, and offline bundle packaging scripts. Dependencies: DEVOPS-CONSOLE-23-001. DevOps Guild, Console Guild (ops/devops)
DEVOPS-CONTAINERS-44-001 DONE (2025-11-24) Automate multi-arch image builds with buildx, SBOM generation, cosign signing, and signature verification in CI. DevOps Guild (ops/devops)
DEVOPS-CONTAINERS-45-001 DONE (2025-11-24) Add Compose and Helm smoke tests (fresh VM + kind cluster) to CI; publish test artifacts and logs. Dependencies: DEVOPS-CONTAINERS-44-001. DevOps Guild (ops/devops)
DEVOPS-CONTAINERS-46-001 DONE (2025-11-24) Build air-gap bundle generator (src/Tools/make-airgap-bundle.sh), produce signed bundle, and verify in CI using private registry. Dependencies: DEVOPS-CONTAINERS-45-001. DevOps Guild (ops/devops)
DEVOPS-DEVPORT-63-001 DONE (2025-11-24) Automate developer portal build pipeline with caching, link & accessibility checks, performance budgets. DevOps Guild, Developer Portal Guild (ops/devops)
DEVOPS-DEVPORT-64-001 DONE (2025-11-24) Schedule devportal --offline nightly builds with checksum validation and artifact retention policies. Dependencies: DEVOPS-DEVPORT-63-001. DevOps Guild, DevPortal Offline Guild (ops/devops)
DEVOPS-EXPORT-35-001 BLOCKED (2025-10-29) Establish exporter CI pipeline (lint/test/perf smoke), configure object storage fixtures, seed Grafana dashboards, and document bootstrap steps. DevOps Guild, Exporter Service Guild (ops/devops)
DEVOPS-SCANNER-NATIVE-20-010-REL BLOCKED (2025-11-24) Package/sign native analyzer plug-in for release/offline kits; depends on SCANNER-ANALYZERS-NATIVE-20-010 dev (not present in repo). DevOps Guild, Native Analyzer Guild (ops/devops)
DEVOPS-SCANNER-PHP-27-011-REL DONE (2025-11-24) Package/sign PHP analyzer plug-in for release/offline kits; depends on SCANNER-ANALYZERS-PHP-27-011 dev. DevOps Guild, PHP Analyzer Guild (ops/devops)
DEVOPS-SCANNER-RUBY-28-006-REL DONE (2025-11-24) Package/sign Ruby analyzer plug-in for release/offline kits; depends on SCANNER-ANALYZERS-RUBY-28-006 dev. DevOps Guild, Ruby Analyzer Guild (ops/devops)