ops-warden/workplans
tegwick dcfcc4b20a docs(WP-0010): rewire INTENT to "issue SSH, route the rest"; add access-routing plan
Drop the "operational access desk" framing (and the rejected "coach"
metaphor) for plain language: ops-warden issues short-lived SSH certs and
routes every other credential need to its owner. SSH is the only lane it
executes.

Adds WARDEN-WP-0010/0011/0012 with a pointer-layer routing catalog that
points at owner docs rather than restating them, enforced structurally
(non-SSH entries carrying a steps block fail CI). Drops the scope-creep-prone
`check` command; hides unshipped-path scenarios as draft.

Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
2026-06-18 20:07:01 +02:00
..
archived chore(WP-0008): finish and archive production SSH path closeout 2026-06-18 01:28:49 +02:00
WARDEN-WP-0009-flex-auth-policy-gate-production.md chore(WP-0008): finish and archive production SSH path closeout 2026-06-18 01:28:49 +02:00
WARDEN-WP-0010-access-routing-charter.md docs(WP-0010): rewire INTENT to "issue SSH, route the rest"; add access-routing plan 2026-06-18 20:07:01 +02:00
WARDEN-WP-0011-routing-guide-cli.md docs(WP-0010): rewire INTENT to "issue SSH, route the rest"; add access-routing plan 2026-06-18 20:07:01 +02:00
WARDEN-WP-0012-routing-scenario-playbooks.md docs(WP-0010): rewire INTENT to "issue SSH, route the rest"; add access-routing plan 2026-06-18 20:07:01 +02:00