diff --git a/SCOPE.md b/SCOPE.md index 73cf9e8..4fd559c 100644 --- a/SCOPE.md +++ b/SCOPE.md @@ -70,18 +70,21 @@ NetKingdom is a self-optimizing security platform for Kubernetes-based IT infras ## Current State -- Status: active — core identity and bootstrap phases delivered; follow-on work proposed +- Status: active — core identity and bootstrap phases delivered; follow-on work + in backlog - Implementation: NK-WP-0001 (SSO/MFA), NK-WP-0002 (local identity), the security bootstrap arc (NET-WP-0015–0017, 0019), the IAM Profile spec (NK-WP-0012), user-engine boundary contracts (NK-WP-0014), and OpenBao unseal custody + SSH automation (NET-WP-0020) are all finished — see `workplans/archived/` -- Open: NK-WP-0009 (security pattern tutorials) and NK-WP-0011 (enterprise - federation / SAML) are proposed, not yet started +- Backlog: NK-WP-0009 (security pattern tutorials) and NK-WP-0011 (enterprise + federation / SAML) — postponed, not yet started - Stability: stabilizing — bootstrap/custody tooling is live-proven (greenfield OpenBao init/unseal proof 2026-07-02); production custody models are gated by evidence - Usage: foundational authentication layer for all NetKingdom deployments +- Ecosystem snapshot: `STATUS.md` (sister-repo maturity via + [reuse.coulomb.social](https://reuse.coulomb.social)) --- @@ -142,14 +145,15 @@ keywords: [bootstrap, local-identity, oidc, minimal, dev, sandbox] ## Getting Oriented -- Start with: `wiki/` (specifications and decisions), `DECISIONS.md` (key architectural choices D1–D5) +- Start with: `STATUS.md` (ecosystem snapshot), `wiki/` (specifications and + decisions), `DECISIONS.md` (key architectural choices D1–D5) - Key files / directories: `docs/platform-root-custody.md`, `sso-mfa/` (SSO/MFA platform + bootstrap scripts), `local-identity/`, `tools/security-bootstrap-console/`, `workplans/` (finished plans in `workplans/archived/`) -- Entry points: `workplans/NK-WP-0009-netkingdom-security-pattern-tutorials.md` - and `workplans/NK-WP-0011-enterprise-federation-saml.md` (proposed next - work); finished context in `workplans/archived/` +- Backlog entry points: `workplans/NK-WP-0009-netkingdom-security-pattern-tutorials.md` + and `workplans/NK-WP-0011-enterprise-federation-saml.md`; finished context + in `workplans/archived/` - User-domain boundary contract: `canon/standards/user-engine-boundary-contract_v0.1.md` - User-engine integration assessment (intent/scope fit, gaps, and recommendations):