hub-core/docs/platform-access-inventory.json

7949 lines
239 KiB
JSON
Raw Normal View History

{
"schema_version": "hub-access-inventory/0.1-draft",
"observed_on": "2026-09-28",
"source_commit": "e5b67b391d306c2b76d3b6e8c73449d51571561c",
"cluster": "railiance01",
"purpose": "T01 coverage specification; not an authorization grant or passing security receipt",
"profiles": {
"hub-api": {
"actor_tenant": "tenant:platform for root; named workload tenant otherwise",
"target_tenant": "resolved server-side from resource; root cross-tenant action explicitly audited",
"action_resource_rule": "HTTP method + canonical route/tool + target resource; normalize aliases to same action; final owner action IDs pending T01 review",
"cases": [
"ROOT",
"OTHER",
"INVALID",
"REVOKE",
"OUTAGE",
"BYPASS",
"CALLER"
],
"audience": "hub-core (proposed; issuer registration not proven)",
"test_owner": "hub-core",
"enforcement": "Hub Core API dependency; all aliases/direct Service paths; healthz alone uses HEALTH"
},
"embedded-host": {
"actor_tenant": "tenant:platform for root; named workload tenant otherwise",
"target_tenant": "resolved server-side from resource; root cross-tenant action explicitly audited",
"action_resource_rule": "HTTP method + canonical route/tool + target resource; normalize aliases to same action; final owner action IDs pending T01 review",
"cases": [
"ROOT",
"OTHER",
"INVALID",
"REVOKE",
"OUTAGE",
"BYPASS",
"CALLER"
],
"audience": "host service audience, never implicitly hub-core",
"test_owner": "hub-core + embedding host",
"enforcement": "Host-injected authentication/policy seam; listed default paths may be remounted or disabled"
},
"mcp-client": {
"actor_tenant": "tenant:platform for root; named workload tenant otherwise",
"target_tenant": "resolved server-side from resource; root cross-tenant action explicitly audited",
"action_resource_rule": "HTTP method + canonical route/tool + target resource; normalize aliases to same action; final owner action IDs pending T01 review",
"cases": [
"ROOT",
"OTHER",
"INVALID",
"REVOKE",
"OUTAGE",
"BYPASS",
"CALLER"
],
"audience": "MCP audience plus explicit downstream API audience",
"test_owner": "hub-core + MCP host",
"enforcement": "Authenticate MCP session; bind tool actor; downstream API independently enforces; no universal server token"
},
"platform-owner": {
"actor_tenant": "tenant:platform for root; named workload tenant otherwise",
"target_tenant": "resolved server-side from resource; root cross-tenant action explicitly audited",
"action_resource_rule": "HTTP method + canonical route/tool + target resource; normalize aliases to same action; final owner action IDs pending T01 review",
"cases": [
"ROOT",
"OTHER",
"INVALID",
"REVOKE",
"OUTAGE",
"BYPASS",
"CALLER"
],
"audience": "per-row owner-native audience/realm; pending owner confirmation",
"test_owner": "row.owner",
"enforcement": "Owner API/session, Kubernetes RBAC or native management gate; hub login is insufficient"
},
"extension": {
"actor_tenant": "tenant:platform for root; named workload tenant otherwise",
"target_tenant": "resolved server-side from resource; root cross-tenant action explicitly audited",
"action_resource_rule": "HTTP method + canonical route/tool + target resource; normalize aliases to same action; final owner action IDs pending T01 review",
"cases": [
"ROOT",
"OTHER",
"INVALID",
"REVOKE",
"OUTAGE",
"BYPASS",
"CALLER"
],
"audience": "per-extension audience; pending registration",
"test_owner": "row.owner",
"enforcement": "Extension API and downstream owner both enforce signed identity/delegation"
},
"native-control": {
"actor_tenant": "tenant:platform for root; named workload tenant otherwise",
"target_tenant": "resolved server-side from resource; root cross-tenant action explicitly audited",
"action_resource_rule": "HTTP method + canonical route/tool + target resource; normalize aliases to same action; final owner action IDs pending T01 review",
"cases": [
"ROOT",
"OTHER",
"INVALID",
"REVOKE",
"OUTAGE",
"BYPASS",
"CALLER",
"APPROVAL"
],
"audience": "per-row native realm; do not use hub-core bearer",
"test_owner": "row.owner",
"enforcement": "Native RBAC, SSH certificate/principal, GitOps, secrets or approval policy"
},
"minimal-health": {
"actor_tenant": "none",
"target_tenant": "none",
"action_resource_rule": "GET /healthz: process liveness only",
"cases": [
"HEALTH"
],
"audience": "none: minimal process liveness",
"test_owner": "hub-core",
"enforcement": "No identity required; no sensitive details"
},
"browser-session": {
"actor_tenant": "tenant:platform for root; named workload tenant otherwise",
"target_tenant": "resolved server-side from resource; root cross-tenant action explicitly audited",
"action_resource_rule": "hub.browser.session for login/session authority; protected API uses existing route action",
"cases": [
"ROOT",
"OTHER",
"INVALID",
"REVOKE",
"OUTAGE",
"BYPASS",
"CALLER"
],
"audience": "hub-browser (OIDC ID token); hub-core (access token); deployment registration required",
"test_owner": "hub-core",
"enforcement": "Explicit BrowserSessions: login is public initiation; callback requires one-time browser-bound state, PKCE and nonce; session requires current authority; logout requires session and CSRF"
}
},
"acceptance_cases": {
"ROOT": {
"actor": "verified platform-root (iss,sub), current entitlement, AAL2",
"expected": "allow registered action through normal owner boundary; independent readback and actor audit",
"execution": "not-run"
},
"OTHER": {
"actor": "ordinary authenticated user and tenant administrator",
"expected": "deny platform action before side effect; no cross-tenant data or existence leak",
"execution": "not-run"
},
"INVALID": {
"actor": "anonymous, expired, wrong issuer/audience, forged username/headers",
"expected": "reject authentication; no side effect",
"execution": "not-run"
},
"REVOKE": {
"actor": "formerly privileged subject after grant removal/suspension/logout",
"expected": "deny within documented bound; privileged mutation checks current authority",
"execution": "not-run"
},
"OUTAGE": {
"actor": "root with unavailable/untrusted policy or required audit dependency",
"expected": "fail closed before privileged mutation",
"execution": "not-run"
},
"BYPASS": {
"actor": "direct Service caller, alias client, MCP/embedded client",
"expected": "same decision as canonical route; no shared-token or network-origin bypass",
"execution": "not-run"
},
"CALLER": {
"actor": "named workload and spoofed producer/delegated subject",
"expected": "allow only registered audience/action/address; reject root inheritance and spoofed delegation",
"execution": "not-run"
},
"APPROVAL": {
"actor": "root invoking an action with confirmation/approval obligation",
"expected": "root entitlement preserved but missing obligation denies execution; use isolated/reversible target",
"execution": "not-run"
},
"HEALTH": {
"actor": "unauthenticated health probe",
"expected": "minimal liveness only; no identity, tenant, dependency or business data",
"execution": "not-run"
}
},
"hub_surfaces": [
{
"id": "http:GET:/annotation-categories:hub_core.runtime.compat.annotation_categories",
"kind": "runtime-http",
"method": "GET",
"path": "/annotation-categories",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "annotation_categories"
},
{
"id": "http:GET:/annotations:hub_core.runtime.compat.empty_collection",
"kind": "runtime-http",
"method": "GET",
"path": "/annotations",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "empty_collection"
},
{
"id": "http:GET:/api-consumers:hub_core.runtime.compat.list_consumers",
"kind": "runtime-http",
"method": "GET",
"path": "/api-consumers",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "list_consumers"
},
{
"id": "http:GET:/api/v2/annotation-categories:hub_core.runtime.compat.annotation_categories",
"kind": "runtime-http",
"method": "GET",
"path": "/api/v2/annotation-categories",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "annotation_categories"
},
{
"id": "http:GET:/api/v2/annotations:hub_core.runtime.compat.empty_collection",
"kind": "runtime-http",
"method": "GET",
"path": "/api/v2/annotations",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "empty_collection"
},
{
"id": "http:GET:/api/v2/api-consumers:hub_core.runtime.compat.list_consumers",
"kind": "runtime-http",
"method": "GET",
"path": "/api/v2/api-consumers",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "list_consumers"
},
{
"id": "http:GET:/api/v2/decision-records:hub_core.runtime.compat.empty_collection",
"kind": "runtime-http",
"method": "GET",
"path": "/api/v2/decision-records",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "empty_collection"
},
{
"id": "http:GET:/api/v2/deployment-records:hub_core.runtime.compat.empty_collection",
"kind": "runtime-http",
"method": "GET",
"path": "/api/v2/deployment-records",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "empty_collection"
},
{
"id": "http:GET:/api/v2/docs:hub_core.runtime.compat.docs",
"kind": "runtime-http",
"method": "GET",
"path": "/api/v2/docs",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "docs"
},
{
"id": "http:GET:/api/v2/event-types:hub_core.runtime.compat.event_types",
"kind": "runtime-http",
"method": "GET",
"path": "/api/v2/event-types",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "event_types"
},
{
"id": "http:GET:/api/v2/hub-capability-manifests:hub_core.runtime.compat.list_manifests",
"kind": "runtime-http",
"method": "GET",
"path": "/api/v2/hub-capability-manifests",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "list_manifests"
},
{
"id": "http:GET:/api/v2/hub-registry:hub_core.runtime.compat.hub_registry",
"kind": "runtime-http",
"method": "GET",
"path": "/api/v2/hub-registry",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "hub_registry"
},
{
"id": "http:GET:/api/v2/hubs:hub_core.runtime.compat.list_hubs",
"kind": "runtime-http",
"method": "GET",
"path": "/api/v2/hubs",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "list_hubs"
},
{
"id": "http:GET:/api/v2/interaction-events:hub_core.runtime.compat.list_interactions",
"kind": "runtime-http",
"method": "GET",
"path": "/api/v2/interaction-events",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "list_interactions"
},
{
"id": "http:GET:/api/v2/openapi.json:hub_core.runtime.compat.openapi_json",
"kind": "runtime-http",
"method": "GET",
"path": "/api/v2/openapi.json",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "openapi_json"
},
{
"id": "http:GET:/api/v2/openapi.yaml:hub_core.runtime.compat.openapi_yaml",
"kind": "runtime-http",
"method": "GET",
"path": "/api/v2/openapi.yaml",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "openapi_yaml"
},
{
"id": "http:GET:/api/v2/outcome-signals:hub_core.runtime.compat.empty_collection",
"kind": "runtime-http",
"method": "GET",
"path": "/api/v2/outcome-signals",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "empty_collection"
},
{
"id": "http:GET:/api/v2/policy-scopes:hub_core.runtime.compat.policy_scopes",
"kind": "runtime-http",
"method": "GET",
"path": "/api/v2/policy-scopes",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "policy_scopes"
},
{
"id": "http:GET:/api/v2/requirement-candidates:hub_core.runtime.compat.empty_collection",
"kind": "runtime-http",
"method": "GET",
"path": "/api/v2/requirement-candidates",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "empty_collection"
},
{
"id": "http:GET:/api/v2/widget-types:hub_core.runtime.compat.widget_types",
"kind": "runtime-http",
"method": "GET",
"path": "/api/v2/widget-types",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "widget_types"
},
{
"id": "http:GET:/api/v2/widgets:hub_core.runtime.compat.list_widgets",
"kind": "runtime-http",
"method": "GET",
"path": "/api/v2/widgets",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "list_widgets"
},
{
"id": "http:GET:/auth/callback:hub_core.security.browser.browser_flow",
"kind": "runtime-http",
"method": "GET",
"path": "/auth/callback",
"profile": "browser-session",
"current_gate": "OIDC state/PKCE callback or server-side session; explicit browser composition only",
"source": "hub_core.security.browser",
"conditional": true,
"handler": "browser_flow"
},
{
"id": "http:GET:/auth/login:hub_core.security.browser.browser_flow",
"kind": "runtime-http",
"method": "GET",
"path": "/auth/login",
"profile": "browser-session",
"current_gate": "OIDC state/PKCE callback or server-side session; explicit browser composition only",
"source": "hub_core.security.browser",
"conditional": true,
"handler": "browser_flow"
},
{
"id": "http:GET:/auth/session:hub_core.security.browser.browser_flow",
"kind": "runtime-http",
"method": "GET",
"path": "/auth/session",
"profile": "browser-session",
"current_gate": "OIDC state/PKCE callback or server-side session; explicit browser composition only",
"source": "hub_core.security.browser",
"conditional": true,
"handler": "browser_flow"
},
{
"id": "http:GET:/console:hub_core.runtime.compat.console",
"kind": "runtime-http",
"method": "GET",
"path": "/console",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "console"
},
{
"id": "http:GET:/decision-records:hub_core.runtime.compat.empty_collection",
"kind": "runtime-http",
"method": "GET",
"path": "/decision-records",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "empty_collection"
},
{
"id": "http:GET:/deployment-records:hub_core.runtime.compat.empty_collection",
"kind": "runtime-http",
"method": "GET",
"path": "/deployment-records",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "empty_collection"
},
{
"id": "http:GET:/docs/oauth2-redirect:fastapi.applications.swagger_ui_redirect",
"kind": "runtime-http",
"method": "GET",
"path": "/docs/oauth2-redirect",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "fastapi.applications",
"conditional": false,
"handler": "swagger_ui_redirect"
},
{
"id": "http:GET:/docs:fastapi.applications.swagger_ui_html",
"kind": "runtime-http",
"method": "GET",
"path": "/docs",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "fastapi.applications",
"conditional": false,
"handler": "swagger_ui_html"
},
{
"id": "http:GET:/docs:hub_core.runtime.compat.docs",
"kind": "runtime-http",
"method": "GET",
"path": "/docs",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "docs"
},
{
"id": "http:GET:/event-types:hub_core.runtime.compat.event_types",
"kind": "runtime-http",
"method": "GET",
"path": "/event-types",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "event_types"
},
{
"id": "http:GET:/healthz:hub_core.runtime.app.healthz",
"kind": "runtime-http",
"method": "GET",
"path": "/healthz",
"profile": "minimal-health",
"current_gate": "no-identity-check-in-handler",
"source": "hub_core.runtime.app",
"conditional": false,
"handler": "healthz"
},
{
"id": "http:GET:/hub-capability-manifests:hub_core.runtime.compat.list_manifests",
"kind": "runtime-http",
"method": "GET",
"path": "/hub-capability-manifests",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "list_manifests"
},
{
"id": "http:GET:/hub-registry:hub_core.runtime.compat.hub_registry",
"kind": "runtime-http",
"method": "GET",
"path": "/hub-registry",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "hub_registry"
},
{
"id": "http:GET:/hubs:hub_core.runtime.compat.list_hubs",
"kind": "runtime-http",
"method": "GET",
"path": "/hubs",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "list_hubs"
},
{
"id": "http:GET:/interaction-events:hub_core.runtime.compat.list_interactions",
"kind": "runtime-http",
"method": "GET",
"path": "/interaction-events",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "list_interactions"
},
{
"id": "http:GET:/openapi.json:fastapi.applications.openapi",
"kind": "runtime-http",
"method": "GET",
"path": "/openapi.json",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "fastapi.applications",
"conditional": false,
"handler": "openapi"
},
{
"id": "http:GET:/openapi.json:hub_core.runtime.compat.openapi_json",
"kind": "runtime-http",
"method": "GET",
"path": "/openapi.json",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "openapi_json"
},
{
"id": "http:GET:/openapi.yaml:hub_core.runtime.compat.openapi_yaml",
"kind": "runtime-http",
"method": "GET",
"path": "/openapi.yaml",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "openapi_yaml"
},
{
"id": "http:GET:/outcome-signals:hub_core.runtime.compat.empty_collection",
"kind": "runtime-http",
"method": "GET",
"path": "/outcome-signals",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "empty_collection"
},
{
"id": "http:GET:/policy-scopes:hub_core.runtime.compat.policy_scopes",
"kind": "runtime-http",
"method": "GET",
"path": "/policy-scopes",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "policy_scopes"
},
{
"id": "http:GET:/ports/messaging/messages:hub_core.runtime.ports.list_messages",
"kind": "runtime-http",
"method": "GET",
"path": "/ports/messaging/messages",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.ports",
"conditional": false,
"handler": "list_messages"
},
{
"id": "http:GET:/ports/projections/repository-navigation/facets/{facet_kind}/{facet_value}:hub_core.runtime.repository_navigation_routes.query_facet",
"kind": "runtime-http",
"method": "GET",
"path": "/ports/projections/repository-navigation/facets/{facet_kind}/{facet_value}",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.repository_navigation_routes",
"conditional": false,
"handler": "query_facet"
},
{
"id": "http:GET:/ports/projections/repository-navigation/repositories:hub_core.runtime.repository_navigation_routes.query_repositories",
"kind": "runtime-http",
"method": "GET",
"path": "/ports/projections/repository-navigation/repositories",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.repository_navigation_routes",
"conditional": false,
"handler": "query_repositories"
},
{
"id": "http:GET:/ports/projections/statehub-inbox:hub_core.runtime.inbox_projection.inbox",
"kind": "runtime-http",
"method": "GET",
"path": "/ports/projections/statehub-inbox",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.inbox_projection",
"conditional": true,
"handler": "inbox"
},
{
"id": "http:GET:/ports/projections/workloads/resolve:hub_core.runtime.workload_projection_routes.resolve_workload",
"kind": "runtime-http",
"method": "GET",
"path": "/ports/projections/workloads/resolve",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.workload_projection_routes",
"conditional": false,
"handler": "resolve_workload"
},
{
"id": "http:GET:/ports/projections/workloads:hub_core.runtime.workload_projection_routes.query_workloads",
"kind": "runtime-http",
"method": "GET",
"path": "/ports/projections/workloads",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.workload_projection_routes",
"conditional": false,
"handler": "query_workloads"
},
{
"id": "http:GET:/ports/projections/{projection_id}:hub_core.runtime.ports.query_projection",
"kind": "runtime-http",
"method": "GET",
"path": "/ports/projections/{projection_id}",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.ports",
"conditional": false,
"handler": "query_projection"
},
{
"id": "http:GET:/ports/registry/registrations/{hub_slug}/audit:hub_core.runtime.ports.registration_audit",
"kind": "runtime-http",
"method": "GET",
"path": "/ports/registry/registrations/{hub_slug}/audit",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.ports",
"conditional": false,
"handler": "registration_audit"
},
{
"id": "http:GET:/ports/registry/registrations/{hub_slug}:hub_core.runtime.ports.resolve_registration",
"kind": "runtime-http",
"method": "GET",
"path": "/ports/registry/registrations/{hub_slug}",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.ports",
"conditional": false,
"handler": "resolve_registration"
},
{
"id": "http:GET:/readyz:hub_core.runtime.app.readyz",
"kind": "runtime-http",
"method": "GET",
"path": "/readyz",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.app",
"conditional": false,
"handler": "readyz"
},
{
"id": "http:GET:/redoc:fastapi.applications.redoc_html",
"kind": "runtime-http",
"method": "GET",
"path": "/redoc",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "fastapi.applications",
"conditional": false,
"handler": "redoc_html"
},
{
"id": "http:GET:/requirement-candidates:hub_core.runtime.compat.empty_collection",
"kind": "runtime-http",
"method": "GET",
"path": "/requirement-candidates",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "empty_collection"
},
{
"id": "http:GET:/widget-types:hub_core.runtime.compat.widget_types",
"kind": "runtime-http",
"method": "GET",
"path": "/widget-types",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "widget_types"
},
{
"id": "http:GET:/widgets:hub_core.runtime.compat.list_widgets",
"kind": "runtime-http",
"method": "GET",
"path": "/widgets",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "list_widgets"
},
{
"id": "http:HEAD:/docs/oauth2-redirect:fastapi.applications.swagger_ui_redirect",
"kind": "runtime-http",
"method": "HEAD",
"path": "/docs/oauth2-redirect",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "fastapi.applications",
"conditional": false,
"handler": "swagger_ui_redirect"
},
{
"id": "http:HEAD:/docs:fastapi.applications.swagger_ui_html",
"kind": "runtime-http",
"method": "HEAD",
"path": "/docs",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "fastapi.applications",
"conditional": false,
"handler": "swagger_ui_html"
},
{
"id": "http:HEAD:/openapi.json:fastapi.applications.openapi",
"kind": "runtime-http",
"method": "HEAD",
"path": "/openapi.json",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "fastapi.applications",
"conditional": false,
"handler": "openapi"
},
{
"id": "http:HEAD:/redoc:fastapi.applications.redoc_html",
"kind": "runtime-http",
"method": "HEAD",
"path": "/redoc",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "fastapi.applications",
"conditional": false,
"handler": "redoc_html"
},
{
"id": "http:PATCH:/api/v2/hub-capability-manifests/{manifest_id}:hub_core.runtime.compat.patch_manifest",
"kind": "runtime-http",
"method": "PATCH",
"path": "/api/v2/hub-capability-manifests/{manifest_id}",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "patch_manifest"
},
{
"id": "http:PATCH:/hub-capability-manifests/{manifest_id}:hub_core.runtime.compat.patch_manifest",
"kind": "runtime-http",
"method": "PATCH",
"path": "/hub-capability-manifests/{manifest_id}",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "patch_manifest"
},
{
"id": "http:POST:/annotations:hub_core.runtime.compat.accept_deferred",
"kind": "runtime-http",
"method": "POST",
"path": "/annotations",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "accept_deferred"
},
{
"id": "http:POST:/api-consumers/{consumer_id}/api-keys:hub_core.runtime.compat.create_key",
"kind": "runtime-http",
"method": "POST",
"path": "/api-consumers/{consumer_id}/api-keys",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "create_key"
},
{
"id": "http:POST:/api-consumers:hub_core.runtime.compat.create_consumer",
"kind": "runtime-http",
"method": "POST",
"path": "/api-consumers",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "create_consumer"
},
{
"id": "http:POST:/api/v2/annotations:hub_core.runtime.compat.accept_deferred",
"kind": "runtime-http",
"method": "POST",
"path": "/api/v2/annotations",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "accept_deferred"
},
{
"id": "http:POST:/api/v2/api-consumers/{consumer_id}/api-keys:hub_core.runtime.compat.create_key",
"kind": "runtime-http",
"method": "POST",
"path": "/api/v2/api-consumers/{consumer_id}/api-keys",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "create_key"
},
{
"id": "http:POST:/api/v2/api-consumers:hub_core.runtime.compat.create_consumer",
"kind": "runtime-http",
"method": "POST",
"path": "/api/v2/api-consumers",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "create_consumer"
},
{
"id": "http:POST:/api/v2/decision-records:hub_core.runtime.compat.accept_deferred",
"kind": "runtime-http",
"method": "POST",
"path": "/api/v2/decision-records",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "accept_deferred"
},
{
"id": "http:POST:/api/v2/deployment-records:hub_core.runtime.compat.accept_deferred",
"kind": "runtime-http",
"method": "POST",
"path": "/api/v2/deployment-records",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "accept_deferred"
},
{
"id": "http:POST:/api/v2/hub-capability-manifests/{manifest_id}/activate:hub_core.runtime.compat.activate_manifest",
"kind": "runtime-http",
"method": "POST",
"path": "/api/v2/hub-capability-manifests/{manifest_id}/activate",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "activate_manifest"
},
{
"id": "http:POST:/api/v2/hub-capability-manifests:hub_core.runtime.compat.create_manifest",
"kind": "runtime-http",
"method": "POST",
"path": "/api/v2/hub-capability-manifests",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "create_manifest"
},
{
"id": "http:POST:/api/v2/hubs:hub_core.runtime.compat.create_hub",
"kind": "runtime-http",
"method": "POST",
"path": "/api/v2/hubs",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "create_hub"
},
{
"id": "http:POST:/api/v2/interaction-events:hub_core.runtime.compat.create_interaction",
"kind": "runtime-http",
"method": "POST",
"path": "/api/v2/interaction-events",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "create_interaction"
},
{
"id": "http:POST:/api/v2/outcome-signals:hub_core.runtime.compat.accept_deferred",
"kind": "runtime-http",
"method": "POST",
"path": "/api/v2/outcome-signals",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "accept_deferred"
},
{
"id": "http:POST:/api/v2/requirement-candidates:hub_core.runtime.compat.accept_deferred",
"kind": "runtime-http",
"method": "POST",
"path": "/api/v2/requirement-candidates",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "accept_deferred"
},
{
"id": "http:POST:/api/v2/token:hub_core.runtime.compat.token",
"kind": "runtime-http",
"method": "POST",
"path": "/api/v2/token",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "token"
},
{
"id": "http:POST:/api/v2/widgets:hub_core.runtime.compat.create_widget",
"kind": "runtime-http",
"method": "POST",
"path": "/api/v2/widgets",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "create_widget"
},
{
"id": "http:POST:/auth/logout:hub_core.security.browser.browser_flow",
"kind": "runtime-http",
"method": "POST",
"path": "/auth/logout",
"profile": "browser-session",
"current_gate": "OIDC state/PKCE callback or server-side session; explicit browser composition only",
"source": "hub_core.security.browser",
"conditional": true,
"handler": "browser_flow"
},
{
"id": "http:POST:/decision-records:hub_core.runtime.compat.accept_deferred",
"kind": "runtime-http",
"method": "POST",
"path": "/decision-records",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "accept_deferred"
},
{
"id": "http:POST:/deployment-records:hub_core.runtime.compat.accept_deferred",
"kind": "runtime-http",
"method": "POST",
"path": "/deployment-records",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "accept_deferred"
},
{
"id": "http:POST:/hub-capability-manifests/{manifest_id}/activate:hub_core.runtime.compat.activate_manifest",
"kind": "runtime-http",
"method": "POST",
"path": "/hub-capability-manifests/{manifest_id}/activate",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "activate_manifest"
},
{
"id": "http:POST:/hub-capability-manifests:hub_core.runtime.compat.create_manifest",
"kind": "runtime-http",
"method": "POST",
"path": "/hub-capability-manifests",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "create_manifest"
},
{
"id": "http:POST:/hubs:hub_core.runtime.compat.create_hub",
"kind": "runtime-http",
"method": "POST",
"path": "/hubs",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "create_hub"
},
{
"id": "http:POST:/interaction-events:hub_core.runtime.compat.create_interaction",
"kind": "runtime-http",
"method": "POST",
"path": "/interaction-events",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "create_interaction"
},
{
"id": "http:POST:/outcome-signals:hub_core.runtime.compat.accept_deferred",
"kind": "runtime-http",
"method": "POST",
"path": "/outcome-signals",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "accept_deferred"
},
{
"id": "http:POST:/ports/events/interaction:hub_core.runtime.ports.append_interaction",
"kind": "runtime-http",
"method": "POST",
"path": "/ports/events/interaction",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.ports",
"conditional": false,
"handler": "append_interaction"
},
{
"id": "http:POST:/ports/events/progress:hub_core.runtime.ports.append_progress",
"kind": "runtime-http",
"method": "POST",
"path": "/ports/events/progress",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.ports",
"conditional": false,
"handler": "append_progress"
},
{
"id": "http:POST:/ports/messaging/messages:hub_core.runtime.ports.send_message",
"kind": "runtime-http",
"method": "POST",
"path": "/ports/messaging/messages",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.ports",
"conditional": false,
"handler": "send_message"
},
{
"id": "http:POST:/ports/registry/registrations:hub_core.runtime.ports.register_extension",
"kind": "runtime-http",
"method": "POST",
"path": "/ports/registry/registrations",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: no-identity-check-in-handler",
"source": "hub_core.runtime.ports",
"conditional": false,
"handler": "register_extension"
},
{
"id": "http:POST:/requirement-candidates:hub_core.runtime.compat.accept_deferred",
"kind": "runtime-http",
"method": "POST",
"path": "/requirement-candidates",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "accept_deferred"
},
{
"id": "http:POST:/token:hub_core.runtime.compat.token",
"kind": "runtime-http",
"method": "POST",
"path": "/token",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "token"
},
{
"id": "http:POST:/widgets:hub_core.runtime.compat.create_widget",
"kind": "runtime-http",
"method": "POST",
"path": "/widgets",
"profile": "hub-api",
"current_gate": "access-profile-v1 in enforcement mode; development: shared-bearer",
"source": "hub_core.runtime.compat",
"conditional": false,
"handler": "create_widget"
},
{
"id": "mcp:accept_capability_request",
"kind": "mcp",
"tool": "accept_capability_request",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 248,
"target_calls": [
{
"method": "POST",
"path_expression": "f'/capability-requests/{request_id}/accept/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:append_progress",
"kind": "mcp",
"tool": "append_progress",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 503,
"target_calls": [
{
"method": "POST",
"path_expression": "'/progress/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:check_repo_doi",
"kind": "mcp",
"tool": "check_repo_doi",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 409,
"target_calls": [
{
"method": "GET",
"path_expression": "f'/repos/{repo_slug}/doi/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:get_alerts",
"kind": "mcp",
"tool": "get_alerts",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 490,
"target_calls": [
{
"method": "GET",
"path_expression": "'/progress/alerts/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:get_capability_request",
"kind": "mcp",
"tool": "get_capability_request",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 290,
"target_calls": [
{
"method": "GET",
"path_expression": "f'/capability-requests/{request_id}/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:get_doi_summary",
"kind": "mcp",
"tool": "get_doi_summary",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 418,
"target_calls": [
{
"method": "GET",
"path_expression": "'/repos/doi/summary/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:get_domain",
"kind": "mcp",
"tool": "get_domain",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 128,
"target_calls": [
{
"method": "GET",
"path_expression": "f'/domains/{domain_slug}/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:get_domain_summary",
"kind": "mcp",
"tool": "get_domain_summary",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 124,
"target_calls": [
{
"method": "GET",
"path_expression": "f'/domains/{domain_slug}/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:get_gdpr_report",
"kind": "mcp",
"tool": "get_gdpr_report",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 473,
"target_calls": [
{
"method": "GET",
"path_expression": "'/tpsc/report/gdpr/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:get_messages",
"kind": "mcp",
"tool": "get_messages",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 153,
"target_calls": [
{
"method": "GET",
"path_expression": "'/messages/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:get_repository_navigation_facet",
"kind": "mcp",
"tool": "get_repository_navigation_facet",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 357,
"target_calls": [
{
"method": "GET",
"path_expression": "f'/ports/projections/repository-navigation/facets/{self._segment(facet_kind)}/{self._segment(facet_value)}'"
}
],
"backend_profiles": [
"embedded",
"runtime"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:get_risks",
"kind": "mcp",
"tool": "get_risks",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 477,
"target_calls": [
{
"method": "GET",
"path_expression": "'/progress/risks/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:get_state_summary",
"kind": "mcp",
"tool": "get_state_summary",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 116,
"target_calls": [
{
"method": "GET",
"path_expression": "'/state/summary/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:ingest_tpsc_tool",
"kind": "mcp",
"tool": "ingest_tpsc_tool",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 464,
"target_calls": [
{
"method": "POST",
"path_expression": "'/tpsc/ingest/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:list_capabilities",
"kind": "mcp",
"tool": "list_capabilities",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 208,
"target_calls": [
{
"method": "GET",
"path_expression": "'/capability-catalog/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:list_capability_requests",
"kind": "mcp",
"tool": "list_capability_requests",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 277,
"target_calls": [
{
"method": "GET",
"path_expression": "'/capability-requests/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:list_domain_repos",
"kind": "mcp",
"tool": "list_domain_repos",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 325,
"target_calls": [
{
"method": "GET",
"path_expression": "'/repos/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:list_domains",
"kind": "mcp",
"tool": "list_domains",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 120,
"target_calls": [
{
"method": "GET",
"path_expression": "'/domains/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:list_services",
"kind": "mcp",
"tool": "list_services",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 447,
"target_calls": [
{
"method": "GET",
"path_expression": "'/tpsc/catalog/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:mark_message_read",
"kind": "mcp",
"tool": "mark_message_read",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 172,
"target_calls": [
{
"method": "PATCH",
"path_expression": "f'/messages/{message_id}/read/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:query_repository_navigation",
"kind": "mcp",
"tool": "query_repository_navigation",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 329,
"target_calls": [
{
"method": "GET",
"path_expression": "'/ports/projections/repository-navigation/repositories'"
}
],
"backend_profiles": [
"embedded",
"runtime"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:query_workloads",
"kind": "mcp",
"tool": "query_workloads",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 373,
"target_calls": [
{
"method": "GET",
"path_expression": "'/ports/projections/workloads'"
}
],
"backend_profiles": [
"embedded",
"runtime"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:register_capability",
"kind": "mcp",
"tool": "register_capability",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 185,
"target_calls": [
{
"method": "POST",
"path_expression": "'/capability-catalog/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:register_repo",
"kind": "mcp",
"tool": "register_repo",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 294,
"target_calls": [
{
"method": "POST",
"path_expression": "'/repos/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:register_service",
"kind": "mcp",
"tool": "register_service",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 422,
"target_calls": [
{
"method": "POST",
"path_expression": "'/tpsc/catalog/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:reply_to_message",
"kind": "mcp",
"tool": "reply_to_message",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 176,
"target_calls": [
{
"method": "POST",
"path_expression": "f'/messages/{message_id}/reply/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:request_capability",
"kind": "mcp",
"tool": "request_capability",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 221,
"target_calls": [
{
"method": "POST",
"path_expression": "'/capability-requests/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:resolve_workload_reference",
"kind": "mcp",
"tool": "resolve_workload_reference",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 395,
"target_calls": [
{
"method": "GET",
"path_expression": "'/ports/projections/workloads/resolve'"
}
],
"backend_profiles": [
"embedded",
"runtime"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:send_message",
"kind": "mcp",
"tool": "send_message",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 132,
"target_calls": [
{
"method": "POST",
"path_expression": "'/messages/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:update_capability_request_status",
"kind": "mcp",
"tool": "update_capability_request_status",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 264,
"target_calls": [
{
"method": "PATCH",
"path_expression": "f'/capability-requests/{request_id}/status/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "mcp:update_repo_path",
"kind": "mcp",
"tool": "update_repo_path",
"profile": "mcp-client",
"source": "hub_core/mcp/server.py",
"line": 319,
"target_calls": [
{
"method": "POST",
"path_expression": "f'/repos/{repo_slug}/paths/'"
}
],
"backend_profiles": [
"embedded"
],
"current_gate": "per-invocation credential provider available; enforced runtime requires stdio credential file; embedded host admission required"
},
{
"id": "sdk:create_capability_catalog_router:GET:/capability-catalog/",
"kind": "embedded-http",
"method": "GET",
"path": "/capability-catalog/",
"profile": "embedded-host",
"factory": "create_capability_catalog_router",
"source": "hub_core/routers/capabilities.py",
"line": 91,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_capability_catalog_router:PATCH:/capability-catalog/{entry_id}",
"kind": "embedded-http",
"method": "PATCH",
"path": "/capability-catalog/{entry_id}",
"profile": "embedded-host",
"factory": "create_capability_catalog_router",
"source": "hub_core/routers/capabilities.py",
"line": 111,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_capability_catalog_router:POST:/capability-catalog/",
"kind": "embedded-http",
"method": "POST",
"path": "/capability-catalog/",
"profile": "embedded-host",
"factory": "create_capability_catalog_router",
"source": "hub_core/routers/capabilities.py",
"line": 58,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_capability_request_read_router:GET:/capability-requests/",
"kind": "embedded-http",
"method": "GET",
"path": "/capability-requests/",
"profile": "embedded-host",
"factory": "create_capability_request_read_router",
"source": "hub_core/routers/capabilities.py",
"line": 146,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_capability_request_read_router:GET:/capability-requests/{request_id}",
"kind": "embedded-http",
"method": "GET",
"path": "/capability-requests/{request_id}",
"profile": "embedded-host",
"factory": "create_capability_request_read_router",
"source": "hub_core/routers/capabilities.py",
"line": 170,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_capability_request_write_router:PATCH:/capability-requests/{request_id}",
"kind": "embedded-http",
"method": "PATCH",
"path": "/capability-requests/{request_id}",
"profile": "embedded-host",
"factory": "create_capability_request_write_router",
"source": "hub_core/routers/capabilities.py",
"line": 308,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_capability_request_write_router:PATCH:/capability-requests/{request_id}/status",
"kind": "embedded-http",
"method": "PATCH",
"path": "/capability-requests/{request_id}/status",
"profile": "embedded-host",
"factory": "create_capability_request_write_router",
"source": "hub_core/routers/capabilities.py",
"line": 283,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_capability_request_write_router:POST:/capability-requests/",
"kind": "embedded-http",
"method": "POST",
"path": "/capability-requests/",
"profile": "embedded-host",
"factory": "create_capability_request_write_router",
"source": "hub_core/routers/capabilities.py",
"line": 214,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_capability_request_write_router:POST:/capability-requests/{request_id}/accept",
"kind": "embedded-http",
"method": "POST",
"path": "/capability-requests/{request_id}/accept",
"profile": "embedded-host",
"factory": "create_capability_request_write_router",
"source": "hub_core/routers/capabilities.py",
"line": 258,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_capability_request_write_router:POST:/capability-requests/{request_id}/dispute",
"kind": "embedded-http",
"method": "POST",
"path": "/capability-requests/{request_id}/dispute",
"profile": "embedded-host",
"factory": "create_capability_request_write_router",
"source": "hub_core/routers/capabilities.py",
"line": 335,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_capability_request_write_router:POST:/capability-requests/{request_id}/reroute",
"kind": "embedded-http",
"method": "POST",
"path": "/capability-requests/{request_id}/reroute",
"profile": "embedded-host",
"factory": "create_capability_request_write_router",
"source": "hub_core/routers/capabilities.py",
"line": 361,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_domains_router:GET:/domains/",
"kind": "embedded-http",
"method": "GET",
"path": "/domains/",
"profile": "embedded-host",
"factory": "create_domains_router",
"source": "hub_core/routers/domains.py",
"line": 38,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_domains_router:GET:/domains/{slug}",
"kind": "embedded-http",
"method": "GET",
"path": "/domains/{slug}",
"profile": "embedded-host",
"factory": "create_domains_router",
"source": "hub_core/routers/domains.py",
"line": 73,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_domains_router:PATCH:/domains/{slug}",
"kind": "embedded-http",
"method": "PATCH",
"path": "/domains/{slug}",
"profile": "embedded-host",
"factory": "create_domains_router",
"source": "hub_core/routers/domains.py",
"line": 90,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_domains_router:PATCH:/domains/{slug}/archive",
"kind": "embedded-http",
"method": "PATCH",
"path": "/domains/{slug}/archive",
"profile": "embedded-host",
"factory": "create_domains_router",
"source": "hub_core/routers/domains.py",
"line": 120,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_domains_router:PATCH:/domains/{slug}/rename",
"kind": "embedded-http",
"method": "PATCH",
"path": "/domains/{slug}/rename",
"profile": "embedded-host",
"factory": "create_domains_router",
"source": "hub_core/routers/domains.py",
"line": 103,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_domains_router:POST:/domains/",
"kind": "embedded-http",
"method": "POST",
"path": "/domains/",
"profile": "embedded-host",
"factory": "create_domains_router",
"source": "hub_core/routers/domains.py",
"line": 59,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_messages_router:GET:/messages/",
"kind": "embedded-http",
"method": "GET",
"path": "/messages/",
"profile": "embedded-host",
"factory": "create_messages_router",
"source": "hub_core/routers/messages.py",
"line": 58,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_messages_router:GET:/messages/thread/{thread_id}",
"kind": "embedded-http",
"method": "GET",
"path": "/messages/thread/{thread_id}",
"profile": "embedded-host",
"factory": "create_messages_router",
"source": "hub_core/routers/messages.py",
"line": 79,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_messages_router:PATCH:/messages/{message_id}/archive",
"kind": "embedded-http",
"method": "PATCH",
"path": "/messages/{message_id}/archive",
"profile": "embedded-host",
"factory": "create_messages_router",
"source": "hub_core/routers/messages.py",
"line": 113,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_messages_router:PATCH:/messages/{message_id}/read",
"kind": "embedded-http",
"method": "PATCH",
"path": "/messages/{message_id}/read",
"profile": "embedded-host",
"factory": "create_messages_router",
"source": "hub_core/routers/messages.py",
"line": 101,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_messages_router:POST:/messages/",
"kind": "embedded-http",
"method": "POST",
"path": "/messages/",
"profile": "embedded-host",
"factory": "create_messages_router",
"source": "hub_core/routers/messages.py",
"line": 43,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_messages_router:POST:/messages/{message_id}/reply",
"kind": "embedded-http",
"method": "POST",
"path": "/messages/{message_id}/reply",
"profile": "embedded-host",
"factory": "create_messages_router",
"source": "hub_core/routers/messages.py",
"line": 126,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_policy_router:GET:/policy/{name}",
"kind": "embedded-http",
"method": "GET",
"path": "/policy/{name}",
"profile": "embedded-host",
"factory": "create_policy_router",
"source": "hub_core/routers/policy.py",
"line": 18,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_policy_router:PUT:/policy/{name}",
"kind": "embedded-http",
"method": "PUT",
"path": "/policy/{name}",
"profile": "embedded-host",
"factory": "create_policy_router",
"source": "hub_core/routers/policy.py",
"line": 27,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_progress_router:GET:/progress/",
"kind": "embedded-http",
"method": "GET",
"path": "/progress/",
"profile": "embedded-host",
"factory": "create_progress_router",
"source": "hub_core/routers/progress.py",
"line": 91,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_progress_router:GET:/progress/alerts",
"kind": "embedded-http",
"method": "GET",
"path": "/progress/alerts",
"profile": "embedded-host",
"factory": "create_progress_router",
"source": "hub_core/routers/progress.py",
"line": 140,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_progress_router:GET:/progress/risks",
"kind": "embedded-http",
"method": "GET",
"path": "/progress/risks",
"profile": "embedded-host",
"factory": "create_progress_router",
"source": "hub_core/routers/progress.py",
"line": 125,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_progress_router:POST:/progress/",
"kind": "embedded-http",
"method": "POST",
"path": "/progress/",
"profile": "embedded-host",
"factory": "create_progress_router",
"source": "hub_core/routers/progress.py",
"line": 155,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_repos_router:GET:/repos/",
"kind": "embedded-http",
"method": "GET",
"path": "/repos/",
"profile": "embedded-host",
"factory": "create_repos_router",
"source": "hub_core/routers/repos.py",
"line": 39,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_repos_router:GET:/repos/by-fingerprint",
"kind": "embedded-http",
"method": "GET",
"path": "/repos/by-fingerprint",
"profile": "embedded-host",
"factory": "create_repos_router",
"source": "hub_core/routers/repos.py",
"line": 92,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_repos_router:GET:/repos/by-remote",
"kind": "embedded-http",
"method": "GET",
"path": "/repos/by-remote",
"profile": "embedded-host",
"factory": "create_repos_router",
"source": "hub_core/routers/repos.py",
"line": 104,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_repos_router:GET:/repos/{slug}",
"kind": "embedded-http",
"method": "GET",
"path": "/repos/{slug}",
"profile": "embedded-host",
"factory": "create_repos_router",
"source": "hub_core/routers/repos.py",
"line": 116,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_repos_router:PATCH:/repos/{slug}",
"kind": "embedded-http",
"method": "PATCH",
"path": "/repos/{slug}",
"profile": "embedded-host",
"factory": "create_repos_router",
"source": "hub_core/routers/repos.py",
"line": 123,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_repos_router:POST:/repos/",
"kind": "embedded-http",
"method": "POST",
"path": "/repos/",
"profile": "embedded-host",
"factory": "create_repos_router",
"source": "hub_core/routers/repos.py",
"line": 59,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_repos_router:POST:/repos/{slug}/paths",
"kind": "embedded-http",
"method": "POST",
"path": "/repos/{slug}/paths",
"profile": "embedded-host",
"factory": "create_repos_router",
"source": "hub_core/routers/repos.py",
"line": 136,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_tpsc_router:GET:/tpsc/catalog/",
"kind": "embedded-http",
"method": "GET",
"path": "/tpsc/catalog/",
"profile": "embedded-host",
"factory": "create_tpsc_router",
"source": "hub_core/routers/tpsc.py",
"line": 35,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_tpsc_router:GET:/tpsc/catalog/{slug}",
"kind": "embedded-http",
"method": "GET",
"path": "/tpsc/catalog/{slug}",
"profile": "embedded-host",
"factory": "create_tpsc_router",
"source": "hub_core/routers/tpsc.py",
"line": 53,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_tpsc_router:GET:/tpsc/report/gdpr",
"kind": "embedded-http",
"method": "GET",
"path": "/tpsc/report/gdpr",
"profile": "embedded-host",
"factory": "create_tpsc_router",
"source": "hub_core/routers/tpsc.py",
"line": 157,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_tpsc_router:GET:/tpsc/snapshots/",
"kind": "embedded-http",
"method": "GET",
"path": "/tpsc/snapshots/",
"profile": "embedded-host",
"factory": "create_tpsc_router",
"source": "hub_core/routers/tpsc.py",
"line": 138,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_tpsc_router:POST:/tpsc/catalog/",
"kind": "embedded-http",
"method": "POST",
"path": "/tpsc/catalog/",
"profile": "embedded-host",
"factory": "create_tpsc_router",
"source": "hub_core/routers/tpsc.py",
"line": 65,
"current_gate": "host-injected; not established by inventory",
"conditional": true
},
{
"id": "sdk:create_tpsc_router:POST:/tpsc/ingest/",
"kind": "embedded-http",
"method": "POST",
"path": "/tpsc/ingest/",
"profile": "embedded-host",
"factory": "create_tpsc_router",
"source": "hub_core/routers/tpsc.py",
"line": 86,
"current_gate": "host-injected; not established by inventory",
"conditional": true
}
],
"platform_surfaces": [
{
"id": "namespace:activity-core",
"owner": "activity-core",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "activity-core or native owner realm (not verified)",
"resource_scope": "platform administration of namespace activity-core; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "activity-core",
"name": "actcore-api",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "activity-core",
"name": "actcore-event-router",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "activity-core",
"name": "actcore-statehub-edge-relay",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "activity-core",
"name": "actcore-temporal",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "activity-core",
"name": "actcore-temporal-ui",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "activity-core",
"name": "actcore-worker",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "activity-core",
"name": "llm-connect",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "StatefulSet",
"namespace": "activity-core",
"name": "actcore-app-db",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "StatefulSet",
"namespace": "activity-core",
"name": "actcore-nats",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "StatefulSet",
"namespace": "activity-core",
"name": "actcore-temporal-db",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "activity-core",
"name": "actcore-api",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "activity-core",
"name": "actcore-app-db",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "activity-core",
"name": "actcore-nats",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "activity-core",
"name": "actcore-statehub-edge-relay",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "activity-core",
"name": "actcore-temporal",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "activity-core",
"name": "actcore-temporal-db",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "activity-core",
"name": "actcore-temporal-ui",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "activity-core",
"name": "actcore-worker-metrics",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "activity-core",
"name": "cm-acme-http-solver-2vrbs",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "NodePort"
},
{
"kind": "Service",
"namespace": "activity-core",
"name": "llm-connect",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Ingress",
"namespace": "activity-core",
"name": "actcore-ops",
"hosts": [
"activity.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "activity-core",
"name": "actcore-temporal-ui",
"hosts": [
"temporal.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:approval-engine",
"owner": "approval-engine",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "approval-engine or native owner realm (not verified)",
"resource_scope": "platform administration of namespace approval-engine; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "StatefulSet",
"namespace": "approval-engine",
"name": "approval-engine",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "approval-engine",
"name": "approval-engine",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:argocd",
"owner": "railiance-platform / railiance-enablement",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "argocd or native owner realm (not verified)",
"resource_scope": "platform administration of namespace argocd; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "argocd",
"name": "argocd-applicationset-controller",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "argocd",
"name": "argocd-redis",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "argocd",
"name": "argocd-repo-server",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "StatefulSet",
"namespace": "argocd",
"name": "argocd-application-controller",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "argocd",
"name": "argocd-applicationset-controller",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "argocd",
"name": "argocd-metrics",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "argocd",
"name": "argocd-redis",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "argocd",
"name": "argocd-repo-server",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:audit-core",
"owner": "audit-core",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "audit-core or native owner realm (not verified)",
"resource_scope": "platform administration of namespace audit-core; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "audit-core",
"name": "audit-core",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "CronJob",
"namespace": "audit-core",
"name": "audit-core-attest-chain",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": false,
"service_type": null
},
{
"kind": "Service",
"namespace": "audit-core",
"name": "audit-core",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:bao-notice",
"owner": "railiance-platform",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "bao-notice or native owner realm (not verified)",
"resource_scope": "platform administration of namespace bao-notice; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "bao-notice",
"name": "bao-notice",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "bao-notice",
"name": "bao-notice",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Ingress",
"namespace": "bao-notice",
"name": "bao-notice",
"hosts": [
"bao.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "bao-notice",
"name": "bao-notice-http-redirect",
"hosts": [
"bao.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:canned-prompts",
"owner": "rapp-canned-prompts",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "canned-prompts or native owner realm (not verified)",
"resource_scope": "platform administration of namespace canned-prompts; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "canned-prompts",
"name": "canned-prompts",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "canned-prompts",
"name": "canned-prompts",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:cert-manager",
"owner": "railiance-platform",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "cert-manager or native owner realm (not verified)",
"resource_scope": "platform administration of namespace cert-manager; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "cert-manager",
"name": "cert-manager",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "cert-manager",
"name": "cert-manager-cainjector",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "cert-manager",
"name": "cert-manager-webhook",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "cert-manager",
"name": "cert-manager",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "cert-manager",
"name": "cert-manager-cainjector",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "cert-manager",
"name": "cert-manager-webhook",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:cnpg-system",
"owner": "rapp-postgres",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "cnpg-system or native owner realm (not verified)",
"resource_scope": "platform administration of namespace cnpg-system; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "cnpg-system",
"name": "cnpg-controller-manager",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "cnpg-system",
"name": "cnpg-webhook-service",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:core-hub",
"owner": "hub-core / rapp-core-hub / repo-manager",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "core-hub or native owner realm (not verified)",
"resource_scope": "platform administration of namespace core-hub; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "core-hub",
"name": "core-hub-api",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "core-hub",
"name": "core-hub-api-candidate",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "core-hub",
"name": "core-hub-api-repository-publisher",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "core-hub",
"name": "core-hub-api",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "core-hub",
"name": "core-hub-api-candidate",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "core-hub",
"name": "core-hub-api-repository-publisher",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:coulomb",
"owner": "railiance-platform (probe owner to confirm)",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "coulomb or native owner realm (not verified)",
"resource_scope": "platform administration of namespace coulomb; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "coulomb",
"name": "ihp-railiance-probe",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "coulomb",
"name": "ihp-railiance-probe",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Ingress",
"namespace": "coulomb",
"name": "ihp-railiance-probe",
"hosts": [
"probe.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:coulomb-social",
"owner": "coulomb-social",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "coulomb-social or native owner realm (not verified)",
"resource_scope": "platform administration of namespace coulomb-social; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "coulomb-social",
"name": "coulomb-social",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "coulomb-social",
"name": "coulomb-social",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Ingress",
"namespace": "coulomb-social",
"name": "coulomb-social",
"hosts": [
"app.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:databases",
"owner": "rapp-postgres / railiance-platform",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "databases or native owner realm (not verified)",
"resource_scope": "platform administration of namespace databases; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Service",
"namespace": "databases",
"name": "apps-pg-r",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "apps-pg-ro",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "apps-pg-rw",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "forgejo-db-r",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "forgejo-db-ro",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "forgejo-db-rw",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "net-kingdom-pg-r",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "net-kingdom-pg-ro",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "net-kingdom-pg-rw",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "platform-pg-2-r",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "platform-pg-2-ro",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "platform-pg-2-rw",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "platform-pg-r",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "platform-pg-ro",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "platform-pg-rw",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "state-hub-db-r",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "state-hub-db-ro",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "state-hub-db-rw",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:default",
"owner": "railiance-platform",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "default or native owner realm (not verified)",
"resource_scope": "platform administration of namespace default; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Service",
"namespace": "default",
"name": "kubernetes",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:email-connect",
"owner": "email-connect",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "email-connect or native owner realm (not verified)",
"resource_scope": "platform administration of namespace email-connect; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "email-connect",
"name": "email-connect",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "email-connect",
"name": "email-connect",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:external-secrets",
"owner": "railiance-platform",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "external-secrets or native owner realm (not verified)",
"resource_scope": "platform administration of namespace external-secrets; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "external-secrets",
"name": "external-secrets",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "external-secrets",
"name": "external-secrets-cert-controller",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "external-secrets",
"name": "external-secrets-webhook",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "CronJob",
"namespace": "external-secrets",
"name": "eso-token-renewer",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": false,
"service_type": null
},
{
"kind": "Service",
"namespace": "external-secrets",
"name": "external-secrets-webhook",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:flex-auth",
"owner": "flex-auth",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "flex-auth or native owner realm (not verified)",
"resource_scope": "platform administration of namespace flex-auth; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "flex-auth",
"name": "flex-auth-informed-decision-sitting",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "flex-auth",
"name": "flex-auth-informed-decision-t03",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "flex-auth",
"name": "flex-auth-ops-warden",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "flex-auth",
"name": "flex-auth-secrets-engine",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "flex-auth",
"name": "flex-auth-tenant-engine",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "flex-auth",
"name": "flex-auth-user-engine",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "flex-auth",
"name": "flex-auth-informed-decision-sitting",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "flex-auth",
"name": "flex-auth-informed-decision-t03",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "flex-auth",
"name": "flex-auth-ops-warden",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "flex-auth",
"name": "flex-auth-secrets-engine",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "flex-auth",
"name": "flex-auth-tenant-engine",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "flex-auth",
"name": "flex-auth-user-engine",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:forgejo",
"owner": "railiance-forge / railiance-platform",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "forgejo or native owner realm (not verified)",
"resource_scope": "platform administration of namespace forgejo; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "forgejo",
"name": "forgejo-gitea",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "forgejo",
"name": "forgejo-runner",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "forgejo",
"name": "forgejo-gitea-http",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "forgejo",
"name": "forgejo-gitea-ssh",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "forgejo",
"name": "forgejo-ssh-nodeport",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "NodePort"
},
{
"kind": "Ingress",
"namespace": "forgejo",
"name": "forgejo",
"hosts": [
"forgejo.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:informed-decision",
"owner": "informed-decision",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "informed-decision or native owner realm (not verified)",
"resource_scope": "platform administration of namespace informed-decision; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "informed-decision",
"name": "informed-decision",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "informed-decision",
"name": "informed-decision",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Ingress",
"namespace": "informed-decision",
"name": "informed-decision",
"hosts": [
"decisions.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "informed-decision",
"name": "informed-decision-http-redirect",
"hosts": [
"decisions.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:inter-hub",
"owner": "prj-state-hub-retirement / railiance-platform",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "inter-hub or native owner realm (not verified)",
"resource_scope": "platform administration of namespace inter-hub; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "inter-hub",
"name": "inter-hub",
"hosts": [],
"desired_replicas": 0,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "inter-hub",
"name": "inter-hub",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:issue-core",
"owner": "issue-core",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "issue-core or native owner realm (not verified)",
"resource_scope": "platform administration of namespace issue-core; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "issue-core",
"name": "issue-core",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "issue-core",
"name": "issue-core",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:knative-serving",
"owner": "rail-knative / railiance-platform",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "knative-serving or native owner realm (not verified)",
"resource_scope": "platform administration of namespace knative-serving; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "knative-serving",
"name": "activator",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "knative-serving",
"name": "autoscaler",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "knative-serving",
"name": "controller",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "knative-serving",
"name": "net-kourier-controller",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "knative-serving",
"name": "webhook",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "knative-serving",
"name": "activator-service",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "knative-serving",
"name": "autoscaler",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "knative-serving",
"name": "autoscaler-bucket-00-of-01",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "knative-serving",
"name": "controller",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "knative-serving",
"name": "net-kourier-controller",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "knative-serving",
"name": "webhook",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:kourier-system",
"owner": "rail-knative / railiance-platform",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "kourier-system or native owner realm (not verified)",
"resource_scope": "platform administration of namespace kourier-system; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "kourier-system",
"name": "3scale-kourier-gateway",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "kourier-system",
"name": "kourier",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "kourier-system",
"name": "kourier-internal",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:kube-system",
"owner": "rail-kubernetes / railiance-platform",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "kube-system or native owner realm (not verified)",
"resource_scope": "platform administration of namespace kube-system; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "kube-system",
"name": "coredns",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "kube-system",
"name": "local-path-provisioner",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "kube-system",
"name": "metrics-server",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "kube-system",
"name": "traefik",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "DaemonSet",
"namespace": "kube-system",
"name": "svclb-traefik-0c8aecaf",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "kube-system",
"name": "kube-dns",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "kube-system",
"name": "metrics-server",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "kube-system",
"name": "telemetry-coredns",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "kube-system",
"name": "telemetry-kubelet",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "kube-system",
"name": "traefik",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "LoadBalancer"
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:mfa",
"owner": "net-kingdom / key-cape",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "mfa or native owner realm (not verified)",
"resource_scope": "platform administration of namespace mfa; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "mfa",
"name": "privacyidea",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "CronJob",
"namespace": "mfa",
"name": "privacyidea-backup",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": false,
"service_type": null
},
{
"kind": "Service",
"namespace": "mfa",
"name": "factor-recovery",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "mfa",
"name": "privacyidea",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Ingress",
"namespace": "mfa",
"name": "privacyidea",
"hosts": [
"pink.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "mfa",
"name": "privacyidea-account",
"hosts": [
"pink-account.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "mfa",
"name": "privacyidea-admin",
"hosts": [
"pink.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:openbao",
"owner": "rapp-openbao / railiance-platform",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "openbao or native owner realm (not verified)",
"resource_scope": "platform administration of namespace openbao; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "openbao",
"name": "openbao-ui-gateway",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "StatefulSet",
"namespace": "openbao",
"name": "openbao",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "openbao",
"name": "openbao",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "openbao",
"name": "openbao-active",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "openbao",
"name": "openbao-internal",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "openbao",
"name": "openbao-standby",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "openbao",
"name": "openbao-ui",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "openbao",
"name": "openbao-ui-gateway",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:platform-pg-drill",
"owner": "rapp-postgres",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "platform-pg-drill or native owner realm (not verified)",
"resource_scope": "platform administration of namespace platform-pg-drill; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "platform-pg-drill",
"name": "drill-minio",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "platform-pg-drill",
"name": "minio",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:policy-nexus",
"owner": "policy-nexus",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "policy-nexus or native owner realm (not verified)",
"resource_scope": "platform administration of namespace policy-nexus; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "policy-nexus",
"name": "policy-nexus",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "policy-nexus",
"name": "policy-nexus",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Ingress",
"namespace": "policy-nexus",
"name": "policy-nexus-http",
"hosts": [
"policy.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "policy-nexus",
"name": "policy-nexus-https",
"hosts": [
"policy.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:rapp-qonto",
"owner": "rapp-qonto",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "rapp-qonto or native owner realm (not verified)",
"resource_scope": "platform administration of namespace rapp-qonto; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00001-deployment",
"hosts": [],
"desired_replicas": 0,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00002-deployment",
"hosts": [],
"desired_replicas": 0,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00003-deployment",
"hosts": [],
"desired_replicas": 0,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00004-deployment",
"hosts": [],
"desired_replicas": 0,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00005-deployment",
"hosts": [],
"desired_replicas": 0,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00006-deployment",
"hosts": [],
"desired_replicas": 0,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00007-deployment",
"hosts": [],
"desired_replicas": 0,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00008-deployment",
"hosts": [],
"desired_replicas": 0,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00009-deployment",
"hosts": [],
"desired_replicas": 0,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ExternalName"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00001",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00001-private",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00002",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00002-private",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00003",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00003-private",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00004",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00004-private",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00005",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00005-private",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00006",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00006-private",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00007",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00007-private",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00008",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00008-private",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00009",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00009-private",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:rapp-qonto-egress",
"owner": "rapp-qonto",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "rapp-qonto-egress or native owner realm (not verified)",
"resource_scope": "platform administration of namespace rapp-qonto-egress; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "rapp-qonto-egress",
"name": "qonto-egress-proxy",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "rapp-qonto-egress",
"name": "qonto-egress-proxy",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:rein-aharness",
"owner": "rein-aharness",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "rein-aharness or native owner realm (not verified)",
"resource_scope": "platform administration of namespace rein-aharness; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "rein-aharness",
"name": "rein-aharness",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:reuse",
"owner": "reuse-surface",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "reuse or native owner realm (not verified)",
"resource_scope": "platform administration of namespace reuse; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "reuse",
"name": "reuse-surface",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "reuse",
"name": "reuse-surface-landing",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "reuse",
"name": "reuse-surface",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "reuse",
"name": "reuse-surface-landing",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Ingress",
"namespace": "reuse",
"name": "reuse-surface",
"hosts": [
"reuse.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "reuse",
"name": "reuse-surface-http-redirect",
"hosts": [
"reuse.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "reuse",
"name": "reuse-surface-landing",
"hosts": [
"reuse.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:sbom-nexus",
"owner": "sbom-nexus",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "sbom-nexus or native owner realm (not verified)",
"resource_scope": "platform administration of namespace sbom-nexus; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "sbom-nexus",
"name": "sbom-nexus",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "sbom-nexus",
"name": "sbom-nexus",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:sso",
"owner": "net-kingdom / key-cape",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "sso or native owner realm (not verified)",
"resource_scope": "platform administration of namespace sso; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "sso",
"name": "authelia",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "sso",
"name": "identity-provisioner",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "sso",
"name": "keycape",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "sso",
"name": "lldap",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "CronJob",
"namespace": "sso",
"name": "authelia-backup",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": false,
"service_type": null
},
{
"kind": "CronJob",
"namespace": "sso",
"name": "keycape-factor-renewer",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": false,
"service_type": null
},
{
"kind": "CronJob",
"namespace": "sso",
"name": "lldap-backup",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": false,
"service_type": null
},
{
"kind": "Service",
"namespace": "sso",
"name": "authelia",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "sso",
"name": "identity-provisioner",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "sso",
"name": "keycape",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "sso",
"name": "lldap",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Ingress",
"namespace": "sso",
"name": "authelia",
"hosts": [
"auth.coulomb.social",
"login.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "sso",
"name": "identity-password-setup",
"hosts": [
"kc.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "sso",
"name": "keycape",
"hosts": [
"kc.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "sso",
"name": "lldap",
"hosts": [
"lldap.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:state-hub",
"owner": "state-hub",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "state-hub or native owner realm (not verified)",
"resource_scope": "platform administration of namespace state-hub; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "state-hub",
"name": "state-hub",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "state-hub",
"name": "state-hub-mcp",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "state-hub",
"name": "state-hub",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "state-hub",
"name": "state-hub-mcp",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:target-revenue",
"owner": "target-revenue",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "target-revenue or native owner realm (not verified)",
"resource_scope": "platform administration of namespace target-revenue; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "target-revenue",
"name": "target-revenue",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "target-revenue",
"name": "target-revenue",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "target-revenue",
"name": "target-revenue-pg-r",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "target-revenue",
"name": "target-revenue-pg-ro",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "target-revenue",
"name": "target-revenue-pg-rw",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Ingress",
"namespace": "target-revenue",
"name": "target-revenue",
"hosts": [
"revenue.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:telemetry",
"owner": "rapp-telemetry / railiance-platform",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "telemetry or native owner realm (not verified)",
"resource_scope": "platform administration of namespace telemetry; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "telemetry",
"name": "telemetry-grafana",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "telemetry",
"name": "telemetry-kube-state-metrics",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "telemetry",
"name": "telemetry-operator",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "StatefulSet",
"namespace": "telemetry",
"name": "alertmanager-telemetry-alertmanager",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "StatefulSet",
"namespace": "telemetry",
"name": "prometheus-telemetry-prometheus",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "telemetry",
"name": "alertmanager-operated",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "telemetry",
"name": "prometheus-operated",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "telemetry",
"name": "telemetry-alertmanager",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "telemetry",
"name": "telemetry-grafana",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "telemetry",
"name": "telemetry-kube-state-metrics",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "telemetry",
"name": "telemetry-operator",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "telemetry",
"name": "telemetry-prometheus",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:tenant-engine",
"owner": "tenant-engine",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "tenant-engine or native owner realm (not verified)",
"resource_scope": "platform administration of namespace tenant-engine; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "tenant-engine",
"name": "tenant-engine",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "tenant-engine",
"name": "tenant-engine",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:user-engine",
"owner": "user-engine",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "user-engine or native owner realm (not verified)",
"resource_scope": "platform administration of namespace user-engine; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "user-engine",
"name": "user-engine",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "CronJob",
"namespace": "user-engine",
"name": "user-engine-backup",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": false,
"service_type": null
},
{
"kind": "Service",
"namespace": "user-engine",
"name": "user-engine",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "user-engine",
"name": "user-engine-pg-r",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "user-engine",
"name": "user-engine-pg-ro",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "user-engine",
"name": "user-engine-pg-rw",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Ingress",
"namespace": "user-engine",
"name": "user-engine",
"hosts": [
"users.92-205-62-239.nip.io"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "user-engine",
"name": "user-engine-canonical",
"hosts": [
"users.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "user-engine",
"name": "user-engine-canonical-http",
"hosts": [
"users.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "namespace:vergabe-demo-company",
"owner": "vergabe-demo-company",
"profile": "platform-owner",
"review_status": "owner attribution inferred; owner confirmation and root acceptance pending",
"audience_candidate": "vergabe-demo-company or native owner realm (not verified)",
"resource_scope": "platform administration of namespace vergabe-demo-company; tenant business-data access requires explicit target grant",
"objects": [
{
"kind": "Deployment",
"namespace": "vergabe-demo-company",
"name": "vergabe-teilnahme",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Service",
"namespace": "vergabe-demo-company",
"name": "vergabe-teilnahme",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Ingress",
"namespace": "vergabe-demo-company",
"name": "vergabe-demo-company",
"hosts": [
"vergabe-teilnahme.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "vergabe-demo-company",
"name": "vergabe-demo-company-http",
"hosts": [
"vergabe-teilnahme.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
}
],
"current_gate": "not assessed by discovery; workload readiness does not prove authorization",
"evidence": "read-only Kubernetes metadata snapshot 2026-09-28"
},
{
"id": "management:ops-hub",
"owner": "ops-hub",
"profile": "extension",
"review_status": "pending owner review and live acceptance",
"audience_candidate": "owner native audience/realm; unresolved",
"resource_scope": "service.ops-hub.http, framework /api/v2, ops-console, ops-bootstrap",
"evidence": "registry/hub-extension/v0.1.0/ops-hub.extension.json; standalone live service unresolved",
"current_gate": "not proven for platform-root",
"objects": []
},
{
"id": "management:financial-fabric",
"owner": "fin-hub / railiance-fabric",
"profile": "extension",
"review_status": "pending owner review and live acceptance",
"audience_candidate": "owner native audience/realm; unresolved",
"resource_scope": "financial graph owner API and projection/export",
"evidence": "FIN-WP-0003; RAIL-FAB-WP-0028 hosted authority blocked",
"current_gate": "not proven for platform-root",
"objects": []
},
{
"id": "management:repo-manager",
"owner": "repo-manager",
"profile": "platform-owner",
"review_status": "pending owner review and live acceptance",
"audience_candidate": "owner native audience/realm; unresolved",
"resource_scope": "registry/work projections, governed CLI/Git mutations, Forgejo-backed publisher",
"evidence": "RMGR workplans; publisher is grouped under core-hub; standalone service coverage unverified",
"current_gate": "not proven for platform-root",
"objects": []
},
{
"id": "management:kubernetes",
"owner": "rail-kubernetes / railiance-platform",
"profile": "native-control",
"review_status": "pending owner review and live acceptance",
"audience_candidate": "owner native audience/realm; unresolved",
"resource_scope": "realm:kubernetes/railiance01; API, RBAC, nodes, workload lifecycle",
"evidence": "explicit kubeconfig target 92.205.62.239; root OIDC/native identity mapping unverified",
"current_gate": "not proven for platform-root",
"objects": []
},
{
"id": "management:ssh-tunnels",
"owner": "ops-warden / ops-bridge",
"profile": "native-control",
"review_status": "pending owner review and live acceptance",
"audience_candidate": "owner native audience/realm; unresolved",
"resource_scope": "railiance01 SSH certificate/principal and named tunnels",
"evidence": "credential routing and bridge owner contracts; root identity mapping unverified",
"current_gate": "not proven for platform-root",
"objects": []
},
{
"id": "management:gitops-deploy",
"owner": "railiance-platform / railiance-enablement",
"profile": "native-control",
"review_status": "pending owner review and live acceptance",
"audience_candidate": "owner native audience/realm; unresolved",
"resource_scope": "ArgoCD Core CLI, repo authorization, per-workload release/rollback",
"evidence": "RPF-WP-0044 and owner deployment contracts; no public ArgoCD requirement",
"current_gate": "not proven for platform-root",
"objects": []
},
{
"id": "management:secrets-engine",
"owner": "secrets-engine / railiance-platform",
"profile": "native-control",
"review_status": "pending owner review and live acceptance",
"audience_candidate": "owner native audience/realm; unresolved",
"resource_scope": "credential issue/rotate/revoke and approval-bound OpenBao operations",
"evidence": "owner CLI/API plus flex-auth-secrets-engine; no root secret disclosure",
"current_gate": "not proven for platform-root",
"objects": []
},
{
"id": "management:host-jobs",
"owner": "railiance-platform / activity-core",
"profile": "native-control",
"review_status": "pending owner review and live acceptance",
"audience_candidate": "owner native audience/realm; unresolved",
"resource_scope": "host systemd timers, cron, backup/restore and DR execution",
"evidence": "not enumerated by Kubernetes snapshot; owner inventory outstanding",
"current_gate": "not proven for platform-root",
"objects": []
},
{
"id": "management:external-control",
"owner": "railiance-platform / net-kingdom",
"profile": "native-control",
"review_status": "pending owner review and live acceptance",
"audience_candidate": "owner native audience/realm; unresolved",
"resource_scope": "DNS, registrar, hosting, object storage and off-cluster recovery administration",
"evidence": "provider inventories and entitlement mappings outstanding; no credentials requested",
"current_gate": "not proven for platform-root",
"objects": []
}
],
"cluster_snapshot": [
{
"kind": "Deployment",
"namespace": "activity-core",
"name": "actcore-api",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "activity-core",
"name": "actcore-event-router",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "activity-core",
"name": "actcore-statehub-edge-relay",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "activity-core",
"name": "actcore-temporal",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "activity-core",
"name": "actcore-temporal-ui",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "activity-core",
"name": "actcore-worker",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "activity-core",
"name": "llm-connect",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "argocd",
"name": "argocd-applicationset-controller",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "argocd",
"name": "argocd-redis",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "argocd",
"name": "argocd-repo-server",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "audit-core",
"name": "audit-core",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "bao-notice",
"name": "bao-notice",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "canned-prompts",
"name": "canned-prompts",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "cert-manager",
"name": "cert-manager",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "cert-manager",
"name": "cert-manager-cainjector",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "cert-manager",
"name": "cert-manager-webhook",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "cnpg-system",
"name": "cnpg-controller-manager",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "core-hub",
"name": "core-hub-api",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "core-hub",
"name": "core-hub-api-candidate",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "core-hub",
"name": "core-hub-api-repository-publisher",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "coulomb-social",
"name": "coulomb-social",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "coulomb",
"name": "ihp-railiance-probe",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "email-connect",
"name": "email-connect",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "external-secrets",
"name": "external-secrets",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "external-secrets",
"name": "external-secrets-cert-controller",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "external-secrets",
"name": "external-secrets-webhook",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "flex-auth",
"name": "flex-auth-informed-decision-sitting",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "flex-auth",
"name": "flex-auth-informed-decision-t03",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "flex-auth",
"name": "flex-auth-ops-warden",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "flex-auth",
"name": "flex-auth-secrets-engine",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "flex-auth",
"name": "flex-auth-tenant-engine",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "flex-auth",
"name": "flex-auth-user-engine",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "forgejo",
"name": "forgejo-gitea",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "forgejo",
"name": "forgejo-runner",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "informed-decision",
"name": "informed-decision",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "inter-hub",
"name": "inter-hub",
"hosts": [],
"desired_replicas": 0,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "issue-core",
"name": "issue-core",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "knative-serving",
"name": "activator",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "knative-serving",
"name": "autoscaler",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "knative-serving",
"name": "controller",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "knative-serving",
"name": "net-kourier-controller",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "knative-serving",
"name": "webhook",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "kourier-system",
"name": "3scale-kourier-gateway",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "kube-system",
"name": "coredns",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "kube-system",
"name": "local-path-provisioner",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "kube-system",
"name": "metrics-server",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "kube-system",
"name": "traefik",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "mfa",
"name": "privacyidea",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "openbao",
"name": "openbao-ui-gateway",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "platform-pg-drill",
"name": "drill-minio",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "policy-nexus",
"name": "policy-nexus",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "rapp-qonto-egress",
"name": "qonto-egress-proxy",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00001-deployment",
"hosts": [],
"desired_replicas": 0,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00002-deployment",
"hosts": [],
"desired_replicas": 0,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00003-deployment",
"hosts": [],
"desired_replicas": 0,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00004-deployment",
"hosts": [],
"desired_replicas": 0,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00005-deployment",
"hosts": [],
"desired_replicas": 0,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00006-deployment",
"hosts": [],
"desired_replicas": 0,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00007-deployment",
"hosts": [],
"desired_replicas": 0,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00008-deployment",
"hosts": [],
"desired_replicas": 0,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00009-deployment",
"hosts": [],
"desired_replicas": 0,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "rein-aharness",
"name": "rein-aharness",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "reuse",
"name": "reuse-surface",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "reuse",
"name": "reuse-surface-landing",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "sbom-nexus",
"name": "sbom-nexus",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "sso",
"name": "authelia",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "sso",
"name": "identity-provisioner",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "sso",
"name": "keycape",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "sso",
"name": "lldap",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "state-hub",
"name": "state-hub",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "state-hub",
"name": "state-hub-mcp",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "target-revenue",
"name": "target-revenue",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "telemetry",
"name": "telemetry-grafana",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "telemetry",
"name": "telemetry-kube-state-metrics",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "telemetry",
"name": "telemetry-operator",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "tenant-engine",
"name": "tenant-engine",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "user-engine",
"name": "user-engine",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "Deployment",
"namespace": "vergabe-demo-company",
"name": "vergabe-teilnahme",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "StatefulSet",
"namespace": "activity-core",
"name": "actcore-app-db",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "StatefulSet",
"namespace": "activity-core",
"name": "actcore-nats",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "StatefulSet",
"namespace": "activity-core",
"name": "actcore-temporal-db",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "StatefulSet",
"namespace": "approval-engine",
"name": "approval-engine",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "StatefulSet",
"namespace": "argocd",
"name": "argocd-application-controller",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "StatefulSet",
"namespace": "openbao",
"name": "openbao",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "StatefulSet",
"namespace": "telemetry",
"name": "alertmanager-telemetry-alertmanager",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "StatefulSet",
"namespace": "telemetry",
"name": "prometheus-telemetry-prometheus",
"hosts": [],
"desired_replicas": 1,
"ready_replicas": 1,
"suspended": null,
"service_type": null
},
{
"kind": "DaemonSet",
"namespace": "kube-system",
"name": "svclb-traefik-0c8aecaf",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "CronJob",
"namespace": "audit-core",
"name": "audit-core-attest-chain",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": false,
"service_type": null
},
{
"kind": "CronJob",
"namespace": "external-secrets",
"name": "eso-token-renewer",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": false,
"service_type": null
},
{
"kind": "CronJob",
"namespace": "mfa",
"name": "privacyidea-backup",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": false,
"service_type": null
},
{
"kind": "CronJob",
"namespace": "sso",
"name": "authelia-backup",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": false,
"service_type": null
},
{
"kind": "CronJob",
"namespace": "sso",
"name": "keycape-factor-renewer",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": false,
"service_type": null
},
{
"kind": "CronJob",
"namespace": "sso",
"name": "lldap-backup",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": false,
"service_type": null
},
{
"kind": "CronJob",
"namespace": "user-engine",
"name": "user-engine-backup",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": false,
"service_type": null
},
{
"kind": "Service",
"namespace": "activity-core",
"name": "actcore-api",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "activity-core",
"name": "actcore-app-db",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "activity-core",
"name": "actcore-nats",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "activity-core",
"name": "actcore-statehub-edge-relay",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "activity-core",
"name": "actcore-temporal",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "activity-core",
"name": "actcore-temporal-db",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "activity-core",
"name": "actcore-temporal-ui",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "activity-core",
"name": "actcore-worker-metrics",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "activity-core",
"name": "cm-acme-http-solver-2vrbs",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "NodePort"
},
{
"kind": "Service",
"namespace": "activity-core",
"name": "llm-connect",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "approval-engine",
"name": "approval-engine",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "argocd",
"name": "argocd-applicationset-controller",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "argocd",
"name": "argocd-metrics",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "argocd",
"name": "argocd-redis",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "argocd",
"name": "argocd-repo-server",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "audit-core",
"name": "audit-core",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "bao-notice",
"name": "bao-notice",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "canned-prompts",
"name": "canned-prompts",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "cert-manager",
"name": "cert-manager",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "cert-manager",
"name": "cert-manager-cainjector",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "cert-manager",
"name": "cert-manager-webhook",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "cnpg-system",
"name": "cnpg-webhook-service",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "core-hub",
"name": "core-hub-api",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "core-hub",
"name": "core-hub-api-candidate",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "core-hub",
"name": "core-hub-api-repository-publisher",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "coulomb-social",
"name": "coulomb-social",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "coulomb",
"name": "ihp-railiance-probe",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "apps-pg-r",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "apps-pg-ro",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "apps-pg-rw",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "forgejo-db-r",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "forgejo-db-ro",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "forgejo-db-rw",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "net-kingdom-pg-r",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "net-kingdom-pg-ro",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "net-kingdom-pg-rw",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "platform-pg-2-r",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "platform-pg-2-ro",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "platform-pg-2-rw",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "platform-pg-r",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "platform-pg-ro",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "platform-pg-rw",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "state-hub-db-r",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "state-hub-db-ro",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "databases",
"name": "state-hub-db-rw",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "default",
"name": "kubernetes",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "email-connect",
"name": "email-connect",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "external-secrets",
"name": "external-secrets-webhook",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "flex-auth",
"name": "flex-auth-informed-decision-sitting",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "flex-auth",
"name": "flex-auth-informed-decision-t03",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "flex-auth",
"name": "flex-auth-ops-warden",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "flex-auth",
"name": "flex-auth-secrets-engine",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "flex-auth",
"name": "flex-auth-tenant-engine",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "flex-auth",
"name": "flex-auth-user-engine",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "forgejo",
"name": "forgejo-gitea-http",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "forgejo",
"name": "forgejo-gitea-ssh",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "forgejo",
"name": "forgejo-ssh-nodeport",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "NodePort"
},
{
"kind": "Service",
"namespace": "informed-decision",
"name": "informed-decision",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "inter-hub",
"name": "inter-hub",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "issue-core",
"name": "issue-core",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "knative-serving",
"name": "activator-service",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "knative-serving",
"name": "autoscaler",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "knative-serving",
"name": "autoscaler-bucket-00-of-01",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "knative-serving",
"name": "controller",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "knative-serving",
"name": "net-kourier-controller",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "knative-serving",
"name": "webhook",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "kourier-system",
"name": "kourier",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "kourier-system",
"name": "kourier-internal",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "kube-system",
"name": "kube-dns",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "kube-system",
"name": "metrics-server",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "kube-system",
"name": "telemetry-coredns",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "kube-system",
"name": "telemetry-kubelet",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "kube-system",
"name": "traefik",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "LoadBalancer"
},
{
"kind": "Service",
"namespace": "mfa",
"name": "factor-recovery",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "mfa",
"name": "privacyidea",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "openbao",
"name": "openbao",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "openbao",
"name": "openbao-active",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "openbao",
"name": "openbao-internal",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "openbao",
"name": "openbao-standby",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "openbao",
"name": "openbao-ui",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "openbao",
"name": "openbao-ui-gateway",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "platform-pg-drill",
"name": "minio",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "policy-nexus",
"name": "policy-nexus",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto-egress",
"name": "qonto-egress-proxy",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ExternalName"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00001",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00001-private",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00002",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00002-private",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00003",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00003-private",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00004",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00004-private",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00005",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00005-private",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00006",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00006-private",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00007",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00007-private",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00008",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00008-private",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00009",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "rapp-qonto",
"name": "rapp-qonto-00009-private",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "reuse",
"name": "reuse-surface",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "reuse",
"name": "reuse-surface-landing",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "sbom-nexus",
"name": "sbom-nexus",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "sso",
"name": "authelia",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "sso",
"name": "identity-provisioner",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "sso",
"name": "keycape",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "sso",
"name": "lldap",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "state-hub",
"name": "state-hub",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "state-hub",
"name": "state-hub-mcp",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "target-revenue",
"name": "target-revenue",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "target-revenue",
"name": "target-revenue-pg-r",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "target-revenue",
"name": "target-revenue-pg-ro",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "target-revenue",
"name": "target-revenue-pg-rw",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "telemetry",
"name": "alertmanager-operated",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "telemetry",
"name": "prometheus-operated",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "telemetry",
"name": "telemetry-alertmanager",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "telemetry",
"name": "telemetry-grafana",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "telemetry",
"name": "telemetry-kube-state-metrics",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "telemetry",
"name": "telemetry-operator",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "telemetry",
"name": "telemetry-prometheus",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "tenant-engine",
"name": "tenant-engine",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "user-engine",
"name": "user-engine",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "user-engine",
"name": "user-engine-pg-r",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "user-engine",
"name": "user-engine-pg-ro",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "user-engine",
"name": "user-engine-pg-rw",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Service",
"namespace": "vergabe-demo-company",
"name": "vergabe-teilnahme",
"hosts": [],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": "ClusterIP"
},
{
"kind": "Ingress",
"namespace": "activity-core",
"name": "actcore-ops",
"hosts": [
"activity.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "activity-core",
"name": "actcore-temporal-ui",
"hosts": [
"temporal.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "bao-notice",
"name": "bao-notice",
"hosts": [
"bao.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "bao-notice",
"name": "bao-notice-http-redirect",
"hosts": [
"bao.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "coulomb-social",
"name": "coulomb-social",
"hosts": [
"app.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "coulomb",
"name": "ihp-railiance-probe",
"hosts": [
"probe.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "forgejo",
"name": "forgejo",
"hosts": [
"forgejo.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "informed-decision",
"name": "informed-decision",
"hosts": [
"decisions.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "informed-decision",
"name": "informed-decision-http-redirect",
"hosts": [
"decisions.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "mfa",
"name": "privacyidea",
"hosts": [
"pink.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "mfa",
"name": "privacyidea-account",
"hosts": [
"pink-account.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "mfa",
"name": "privacyidea-admin",
"hosts": [
"pink.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "policy-nexus",
"name": "policy-nexus-http",
"hosts": [
"policy.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "policy-nexus",
"name": "policy-nexus-https",
"hosts": [
"policy.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "reuse",
"name": "reuse-surface",
"hosts": [
"reuse.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "reuse",
"name": "reuse-surface-http-redirect",
"hosts": [
"reuse.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "reuse",
"name": "reuse-surface-landing",
"hosts": [
"reuse.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "sso",
"name": "authelia",
"hosts": [
"auth.coulomb.social",
"login.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "sso",
"name": "identity-password-setup",
"hosts": [
"kc.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "sso",
"name": "keycape",
"hosts": [
"kc.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "sso",
"name": "lldap",
"hosts": [
"lldap.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "target-revenue",
"name": "target-revenue",
"hosts": [
"revenue.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "user-engine",
"name": "user-engine",
"hosts": [
"users.92-205-62-239.nip.io"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "user-engine",
"name": "user-engine-canonical",
"hosts": [
"users.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "user-engine",
"name": "user-engine-canonical-http",
"hosts": [
"users.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "vergabe-demo-company",
"name": "vergabe-demo-company",
"hosts": [
"vergabe-teilnahme.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
},
{
"kind": "Ingress",
"namespace": "vergabe-demo-company",
"name": "vergabe-demo-company-http",
"hosts": [
"vergabe-teilnahme.coulomb.social"
],
"desired_replicas": null,
"ready_replicas": null,
"suspended": null,
"service_type": null
}
]
}