ops-warden/wiki
tegwick 83fdd08f88 fix: name the npm KV field, not the env var it becomes
secrets-engine corrected our claim (msg 15f0c0ca): `npm_token` is the KV
field on the whynot-design publish lane; `NPM_AUTH_TOKEN` is the environment
variable their publication-scope policy injects. Their doc lists the two as
separate rows and we had copied the env var in as the field name, so our
`fetch_command` named a field that does not exist -- `bao kv get
-field=NPM_AUTH_TOKEN` could only ever have failed.

This is ADR-0001's failure mode, not a typo: a pointer layer restating an
owner's procedure and getting it wrong. Corrected from the owner's statement
rather than re-derived here, and the catalog now records the distinction
inline so the env var does not get copied back in.

The path is a separate and still-open question. secrets-engine declined to
resolve it unilaterally -- which location backs the lane for reads is
railiance-platform's custody state -- so the path is unchanged and routed to
them rather than moved on a coordination message.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_013EPuTc18FjU5WFqoSEKH3C

Assistant: claude-code
Assistant-Model: opus
Assistant-Process: 1276224@bnt-lap001
Assistant-Session: 426ec497-e1c4-4dd3-b417-dfce1ca1dbc3
2026-09-09 14:43:44 +02:00
..
playbooks fix: name the npm KV field, not the env var it becomes 2026-09-09 14:43:44 +02:00
AccessManagementDirective.md Initial Commit 2026-03-28 00:45:43 +00:00
AccessRouting.md Scale the blocker window by lane risk, converging with risk-nexus 2026-08-21 13:29:29 +02:00
ActorInventoryPatterns.md WARDEN-WP-0006: NetKingdom stewardship docs and alignment 2026-06-17 08:22:45 +02:00
AuditTrail.md Review layer model v0.6; publish the PEP stance map §6.4 requires 2026-08-29 10:20:49 +02:00
CertCommandInterface.md Retire CoulombCore references; correct the 16443 diagnosis 2026-08-19 19:31:41 +02:00
CredentialRouting.md Add NetKingdom SSO credential routing lanes 2026-08-23 21:43:12 +02:00
InterHubBootstrapAccessLane.md feat(WP-0012): add inter-hub-bootstrap-ssh catalog entry and align wiki 2026-06-24 12:45:23 +02:00
NetKingdomSecurityMap.md feat: adopt security zones and explicit workload refs 2026-08-22 15:36:37 +02:00
OpenBaoSshEngineChecklist.md WARDEN-WP-0006: NetKingdom stewardship docs and alignment 2026-06-17 08:22:45 +02:00
OperatorAccessAssist.md feat: adopt security zones and explicit workload refs 2026-08-22 15:36:37 +02:00
OpsWardenConfig.md feat: adopt security zones and explicit workload refs 2026-08-22 15:36:37 +02:00
OpsWardenMemory.md Enable implicit phase-memory activation on every warden command. 2026-07-03 00:49:36 +02:00
PolicyGatedSigning.md Refuse explicit policy authentication and binding denials before side effects 2026-09-08 16:46:00 +02:00
WorkloadSecurityPosture.md feat: adopt security zones and explicit workload refs 2026-08-22 15:36:37 +02:00