Complete Phase 1: policy kernel, REST service, and local smoke tooling
Implements QONTO-WP-0002 (policy-gated Qonto REST service with audit logging, rate limiting, and credential handling) and the ADHOC-2026-07-21 follow-up (fixture-backed local smoke mode, repo classification metadata). Marks QONTO-WP-0001/0002 and the ad-hoc workplan finished, and regenerates WORK-RECORDS.md and the ADHOC workplan's state_hub_workstream_id via fix-consistency. Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
This commit is contained in:
parent
eef408bb19
commit
ca12843013
33 changed files with 2533 additions and 30 deletions
27
README.md
27
README.md
|
|
@ -14,10 +14,35 @@ no spend, no volume-cost actions.**
|
|||
| [`INTENT.md`](INTENT.md) | Why this exists; boundaries |
|
||||
| [`specs/ArchitectureBlueprint.md`](specs/ArchitectureBlueprint.md) | Architecture, phases, policy model |
|
||||
| [`research/2026-07-21-mcp-gateway-and-governed-domain-assistant.md`](research/2026-07-21-mcp-gateway-and-governed-domain-assistant.md) | External + internal research |
|
||||
| [`docs/operator-runbook.md`](docs/operator-runbook.md) | How to run and verify Phase 1 |
|
||||
|
||||
## Status
|
||||
|
||||
Scaffold + intent + blueprint. Implementation tracked in `workplans/`.
|
||||
Phase 1 runtime is implemented:
|
||||
|
||||
- Python 3.12 service under `src/qonto_assistant/`
|
||||
- default-deny YAML policy
|
||||
- Qonto read-only client (`organization`, `transactions`)
|
||||
- REST endpoints: `/v1/health`, `/v1/accounts`, `/v1/transactions`, `/v1/snapshot`
|
||||
- audit metadata, rate limiting, concurrency bounds, tests
|
||||
|
||||
Current verification:
|
||||
|
||||
- `PYTHONPATH=src ../state-hub/.venv/bin/python -m pytest` → `16 passed`
|
||||
- `python3 -m compileall src tests scripts`
|
||||
- `../state-hub/.venv/bin/python scripts/smoke_rest_api.py --python ../state-hub/.venv/bin/python`
|
||||
|
||||
Local fixture-backed smoke mode is available through `QONTO_FIXTURE_DIR`, so the
|
||||
service can be exercised without real Qonto credentials. The smoke path checks
|
||||
both a `31`-day recent snapshot and a `90`-day recurring-cost snapshot.
|
||||
|
||||
Normal local workflow, when toolchain support exists:
|
||||
|
||||
```bash
|
||||
make install-dev
|
||||
make test
|
||||
make run
|
||||
```
|
||||
|
||||
## Related
|
||||
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue