diff --git a/.custodian-brief.md b/.custodian-brief.md index 7e265b3..76834a4 100644 --- a/.custodian-brief.md +++ b/.custodian-brief.md @@ -2,7 +2,7 @@ # Custodian Brief — ops-warden **Domain:** infotech -**Last synced:** 2026-09-28 07:45 UTC +**Last synced:** 2026-09-28 21:40 UTC **State Hub:** http://127.0.0.1:8000 *(adjust if running on a remote machine)* ## Active Workstreams @@ -12,31 +12,24 @@ Progress: 1/4 done | workplan_id: `c8ee441e-1be1-5219-910c-e79ff23cc9ec` **Open tasks:** - ! Tasks `611f0901` - *(wait: Await authoritative owner declaration of the actual continuity actor/target and z2-continuity resolution. adm-example is not an admitted repair actor.)* - ! Tasks `54ad4864` - *(wait: Coverage refreshed: 0 resolved, 3 unknown, 1 not-applicable signing targets. Owner routing/declaration follow-up remains for ops-bridge-tunnel, codex-interhub-bootstrap and backup-daily.)* + *(wait: Owners of agt-codex-interhub-bootstrap, agt-state-hub-bridge and atm-backup-daily must publish authoritative workload identity declarations.)* - ! Tasks `93eaf1f2` - *(wait: Await classified continuity path (T01) and acceptance of security-layer-model v0.8 or successor; local authoritative v0.8 remains proposed.)* + *(wait: Gated on T01 and on layer model v0.8 (or successor) reaching accepted; never convert against a proposed standard.)* ### Layer model v0.7 conformance — state the deadline, bind the agent boundary, steward the estate's newest rule Progress: 5/6 done | workplan_id: `ae3ff76f-883d-5e2f-b6aa-144d61e8fdef` **Open tasks:** - ! Tasks `7d1b3c82` - *(wait: Await ops-mason stance-map answer and railiance-infra KRL-versus-TTL answer. Flex-auth decision-lifetime answer already recorded.)* + *(wait: Two items to route, not absorb: ops-mason has published no stance map; the second is another repository's to own.)* ### Tamper-resistant credential governance + mass rotation/lockdown (Strand B) Progress: 2/3 done | workplan_id: `21528e8d-a049-523d-9ae1-da7a27cb8bbf` **Open tasks:** - ! Task: Graded lockdown / break-glass with explicit trust-root `cae498ee` - *(wait: Await fresh platform-owned attended emergency seal/unseal scenario, current platform/infra/master receipts and new founder GO. Prior NO-GO consumed the August scenario.)* - -### Repoint the whynot-design npm lane to Forgejo -Progress: 2/3 done | workplan_id: `42a097db-1c24-558e-a724-030bb2b4443e` - -**Open tasks:** -- ! Prove routing and publication `a8b1b855` + *(wait: Trust-root design is a founder decision: who holds unseal shares and recovery keys, quorum, break-glass invocation; executable seal steps are attended.)* ### Preserve explicit policy caller refusals before credential and CA effects Progress: 2/3 done | workplan_id: `ae44a935-6fca-514c-a385-4550dd2b1fe8` @@ -45,6 +38,12 @@ Progress: 2/3 done | workplan_id: `ae44a935-6fca-514c-a385-4550dd2b1fe8` - ! Resolve the credential proxy's admitted policy binding `8ca28b63` *(wait: The configured ops-warden caller represents ops-warden; credential requests name their owner as resource.system. Need the flex-auth/credential-owner contract for that exact delegated read, without broadening caller bindings or relabelling resource ownership.)* +### Repoint the whynot-design npm lane to Forgejo +Progress: 2/3 done | workplan_id: `42a097db-1c24-558e-a724-030bb2b4443e` + +**Open tasks:** +- ! Prove routing and publication `a8b1b855` + --- ## MCP Orientation (when available)