2026-07-24 00:29:20 +02:00
|
|
|
# Work Records — railiance-platform
|
|
|
|
|
|
|
|
|
|
> Generated by `statehub fix-consistency` (CUST-WP-0061-T04, work-record
|
|
|
|
|
> stage 3). Do not edit by hand — edit the source file/block listed for
|
|
|
|
|
> each record and re-run fix-consistency to refresh this index. Archived
|
|
|
|
|
> workplans are omitted; closed decisions/intakes/engagements stay listed
|
|
|
|
|
> so recently-resolved work is still visible. [auto]
|
|
|
|
|
|
|
|
|
|
| Kind | ID | Status | Lane | Source |
|
|
|
|
|
| --- | --- | --- | --- | --- |
|
|
|
|
|
| workplan | RAILIANCE-WP-0005 | finished | — | workplans/RAILIANCE-WP-0005-credential-request-and-lease-broker.md |
|
|
|
|
|
| workplan | RAILIANCE-WP-0008 | finished | — | workplans/RAILIANCE-WP-0008-openbao-approved-automation-delegation.md |
|
|
|
|
|
| workplan | RAILIANCE-WP-0009 | finished | — | workplans/RAILIANCE-WP-0009-issue-core-runtime-ingestion-key-lane.md |
|
|
|
|
|
| workplan | RAILIANCE-WP-0010 | finished | — | workplans/RAILIANCE-WP-0010-llm-connect-openrouter-provider-key-lane.md |
|
|
|
|
|
| workplan | RAILIANCE-WP-0011 | finished | — | workplans/RAILIANCE-WP-0011-reuse-surface-runtime-secrets-openbao-lane.md |
|
2026-07-26 10:39:40 +02:00
|
|
|
| workplan | RAILIANCE-WP-0012 | finished | — | workplans/RAILIANCE-WP-0012-rapp-openbao-extraction-boundary.md |
|
2026-07-26 09:32:08 +02:00
|
|
|
| workplan | RAILIANCE-WP-0013 | finished | — | workplans/RAILIANCE-WP-0013-forgejo-admin-pat-openbao-cutover.md |
|
2026-08-11 11:08:44 +02:00
|
|
|
| workplan | RAILIANCE-WP-0014 | finished | — | workplans/RAILIANCE-WP-0014-credential-change-suite-stabilization.md |
|
Publish S3 platform-service rapp pattern; route family proposals
T01: docs/rapp-platform-service-pattern.md generalizes the ownership split
already drawn in the rapp-openbao and rapp-postgres boundary docs into a
reusable four-question test, a reference rapp.yaml for platform services, the
grouped-rapp member rule, and the credential-lane position. It deliberately
does not restate the four-axis model, which railiance-master owns.
T03/T04/T05: proposals routed to the repos that own the model rather than
authored here - reef-railiance (bound_rapps lists 1 of 3 live rapps, and should
be derived rather than hand-listed), railiance-master (rapp.schema.json plus a
family declaration validator, grouped-rapp members field, wave-2 candidate
refresh), the-custodian (canon promotion of the four-axis model, which also
closes the open C-31 multi-segment prefix failures).
T02 is held until the schema settles so the platform rapps and the schema do
not converge on different answers.
Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
2026-08-11 11:11:57 +02:00
|
|
|
| workplan | RAILIANCE-WP-0015 | active | — | workplans/RAILIANCE-WP-0015-platform-rapp-consistency.md |
|
2026-08-11 21:01:21 +02:00
|
|
|
| workplan | RAILIANCE-WP-0016 | ready | — | workplans/RAILIANCE-WP-0016-apps-pg-resource-evidence.md |
|
2026-08-12 01:35:04 +02:00
|
|
|
| workplan | RAILIANCE-WP-0016 | active | — | workplans/RAILIANCE-WP-0016-architecture-cleanup-backlog.md |
|
2026-07-24 00:29:20 +02:00
|
|
|
| task | RAILIANCE-WP-0005-T01 | done | — | workplans/RAILIANCE-WP-0005-credential-request-and-lease-broker.md |
|
|
|
|
|
| task | RAILIANCE-WP-0005-T02 | done | — | workplans/RAILIANCE-WP-0005-credential-request-and-lease-broker.md |
|
|
|
|
|
| task | RAILIANCE-WP-0005-T03 | done | — | workplans/RAILIANCE-WP-0005-credential-request-and-lease-broker.md |
|
|
|
|
|
| task | RAILIANCE-WP-0005-T04 | done | — | workplans/RAILIANCE-WP-0005-credential-request-and-lease-broker.md |
|
|
|
|
|
| task | RAILIANCE-WP-0005-T05 | done | — | workplans/RAILIANCE-WP-0005-credential-request-and-lease-broker.md |
|
|
|
|
|
| task | RAILIANCE-WP-0005-T06 | done | — | workplans/RAILIANCE-WP-0005-credential-request-and-lease-broker.md |
|
|
|
|
|
| task | RAILIANCE-WP-0005-T07 | done | — | workplans/RAILIANCE-WP-0005-credential-request-and-lease-broker.md |
|
|
|
|
|
| task | RAILIANCE-WP-0005-T08 | done | — | workplans/RAILIANCE-WP-0005-credential-request-and-lease-broker.md |
|
|
|
|
|
| task | RAILIANCE-WP-0005-T09 | done | — | workplans/RAILIANCE-WP-0005-credential-request-and-lease-broker.md |
|
|
|
|
|
| task | RAILIANCE-WP-0005-T10 | done | — | workplans/RAILIANCE-WP-0005-credential-request-and-lease-broker.md |
|
|
|
|
|
| task | RAILIANCE-WP-0008-T01 | done | — | workplans/RAILIANCE-WP-0008-openbao-approved-automation-delegation.md |
|
|
|
|
|
| task | RAILIANCE-WP-0008-T02 | done | — | workplans/RAILIANCE-WP-0008-openbao-approved-automation-delegation.md |
|
|
|
|
|
| task | RAILIANCE-WP-0008-T03 | done | — | workplans/RAILIANCE-WP-0008-openbao-approved-automation-delegation.md |
|
|
|
|
|
| task | RAILIANCE-WP-0008-T04 | done | — | workplans/RAILIANCE-WP-0008-openbao-approved-automation-delegation.md |
|
|
|
|
|
| task | RAILIANCE-WP-0008-T05 | done | — | workplans/RAILIANCE-WP-0008-openbao-approved-automation-delegation.md |
|
|
|
|
|
| task | RAILIANCE-WP-0009-T01 | done | — | workplans/RAILIANCE-WP-0009-issue-core-runtime-ingestion-key-lane.md |
|
|
|
|
|
| task | RAILIANCE-WP-0009-T02 | done | — | workplans/RAILIANCE-WP-0009-issue-core-runtime-ingestion-key-lane.md |
|
|
|
|
|
| task | RAILIANCE-WP-0009-T03 | done | — | workplans/RAILIANCE-WP-0009-issue-core-runtime-ingestion-key-lane.md |
|
|
|
|
|
| task | RAILIANCE-WP-0009-T04 | done | — | workplans/RAILIANCE-WP-0009-issue-core-runtime-ingestion-key-lane.md |
|
|
|
|
|
| task | RAILIANCE-WP-0009-T05 | done | — | workplans/RAILIANCE-WP-0009-issue-core-runtime-ingestion-key-lane.md |
|
|
|
|
|
| task | RAILIANCE-WP-0009-T06 | done | — | workplans/RAILIANCE-WP-0009-issue-core-runtime-ingestion-key-lane.md |
|
|
|
|
|
| task | RAILIANCE-WP-0009-T07 | done | — | workplans/RAILIANCE-WP-0009-issue-core-runtime-ingestion-key-lane.md |
|
|
|
|
|
| task | RAILIANCE-WP-0010-T01 | done | — | workplans/RAILIANCE-WP-0010-llm-connect-openrouter-provider-key-lane.md |
|
|
|
|
|
| task | RAILIANCE-WP-0010-T02 | done | — | workplans/RAILIANCE-WP-0010-llm-connect-openrouter-provider-key-lane.md |
|
|
|
|
|
| task | RAILIANCE-WP-0010-T03 | done | — | workplans/RAILIANCE-WP-0010-llm-connect-openrouter-provider-key-lane.md |
|
|
|
|
|
| task | RAILIANCE-WP-0010-T04 | done | — | workplans/RAILIANCE-WP-0010-llm-connect-openrouter-provider-key-lane.md |
|
|
|
|
|
| task | RAILIANCE-WP-0010-T05 | done | — | workplans/RAILIANCE-WP-0010-llm-connect-openrouter-provider-key-lane.md |
|
|
|
|
|
| task | RAILIANCE-WP-0010-T06 | done | — | workplans/RAILIANCE-WP-0010-llm-connect-openrouter-provider-key-lane.md |
|
|
|
|
|
| task | RAILIANCE-WP-0010-T07 | done | — | workplans/RAILIANCE-WP-0010-llm-connect-openrouter-provider-key-lane.md |
|
|
|
|
|
| task | RAILIANCE-WP-0011-T01 | done | — | workplans/RAILIANCE-WP-0011-reuse-surface-runtime-secrets-openbao-lane.md |
|
|
|
|
|
| task | RAILIANCE-WP-0011-T02 | done | — | workplans/RAILIANCE-WP-0011-reuse-surface-runtime-secrets-openbao-lane.md |
|
|
|
|
|
| task | RAILIANCE-WP-0011-T03 | done | — | workplans/RAILIANCE-WP-0011-reuse-surface-runtime-secrets-openbao-lane.md |
|
|
|
|
|
| task | RAILIANCE-WP-0011-T04 | done | — | workplans/RAILIANCE-WP-0011-reuse-surface-runtime-secrets-openbao-lane.md |
|
2026-07-25 11:22:50 +02:00
|
|
|
| task | RAILIANCE-WP-0012-T01 | done | — | workplans/RAILIANCE-WP-0012-rapp-openbao-extraction-boundary.md |
|
|
|
|
|
| task | RAILIANCE-WP-0012-T02 | done | — | workplans/RAILIANCE-WP-0012-rapp-openbao-extraction-boundary.md |
|
|
|
|
|
| task | RAILIANCE-WP-0012-T03 | done | — | workplans/RAILIANCE-WP-0012-rapp-openbao-extraction-boundary.md |
|
2026-07-26 10:39:40 +02:00
|
|
|
| task | RAILIANCE-WP-0012-T04 | done | — | workplans/RAILIANCE-WP-0012-rapp-openbao-extraction-boundary.md |
|
2026-07-26 09:32:08 +02:00
|
|
|
| task | RAILIANCE-WP-0013-T01 | done | — | workplans/RAILIANCE-WP-0013-forgejo-admin-pat-openbao-cutover.md |
|
|
|
|
|
| task | RAILIANCE-WP-0013-T02 | done | — | workplans/RAILIANCE-WP-0013-forgejo-admin-pat-openbao-cutover.md |
|
|
|
|
|
| task | RAILIANCE-WP-0013-T03 | done | — | workplans/RAILIANCE-WP-0013-forgejo-admin-pat-openbao-cutover.md |
|
|
|
|
|
| task | RAILIANCE-WP-0013-T04 | done | — | workplans/RAILIANCE-WP-0013-forgejo-admin-pat-openbao-cutover.md |
|
2026-08-11 11:08:44 +02:00
|
|
|
| task | RAILIANCE-WP-0014-T01 | done | — | workplans/RAILIANCE-WP-0014-credential-change-suite-stabilization.md |
|
|
|
|
|
| task | RAILIANCE-WP-0014-T02 | done | — | workplans/RAILIANCE-WP-0014-credential-change-suite-stabilization.md |
|
|
|
|
|
| task | RAILIANCE-WP-0014-T03 | done | — | workplans/RAILIANCE-WP-0014-credential-change-suite-stabilization.md |
|
|
|
|
|
| task | RAILIANCE-WP-0014-T04 | done | — | workplans/RAILIANCE-WP-0014-credential-change-suite-stabilization.md |
|
2026-08-11 11:34:51 +02:00
|
|
|
| task | RAILIANCE-WP-0015-T01 | done | — | workplans/RAILIANCE-WP-0015-platform-rapp-consistency.md |
|
Publish S3 platform-service rapp pattern; route family proposals
T01: docs/rapp-platform-service-pattern.md generalizes the ownership split
already drawn in the rapp-openbao and rapp-postgres boundary docs into a
reusable four-question test, a reference rapp.yaml for platform services, the
grouped-rapp member rule, and the credential-lane position. It deliberately
does not restate the four-axis model, which railiance-master owns.
T03/T04/T05: proposals routed to the repos that own the model rather than
authored here - reef-railiance (bound_rapps lists 1 of 3 live rapps, and should
be derived rather than hand-listed), railiance-master (rapp.schema.json plus a
family declaration validator, grouped-rapp members field, wave-2 candidate
refresh), the-custodian (canon promotion of the four-axis model, which also
closes the open C-31 multi-segment prefix failures).
T02 is held until the schema settles so the platform rapps and the schema do
not converge on different answers.
Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
2026-08-11 11:11:57 +02:00
|
|
|
| task | RAILIANCE-WP-0015-T02 | todo | — | workplans/RAILIANCE-WP-0015-platform-rapp-consistency.md |
|
2026-08-11 11:34:51 +02:00
|
|
|
| task | RAILIANCE-WP-0015-T03 | done | — | workplans/RAILIANCE-WP-0015-platform-rapp-consistency.md |
|
|
|
|
|
| task | RAILIANCE-WP-0015-T04 | done | — | workplans/RAILIANCE-WP-0015-platform-rapp-consistency.md |
|
|
|
|
|
| task | RAILIANCE-WP-0015-T05 | done | — | workplans/RAILIANCE-WP-0015-platform-rapp-consistency.md |
|
Publish S3 platform-service rapp pattern; route family proposals
T01: docs/rapp-platform-service-pattern.md generalizes the ownership split
already drawn in the rapp-openbao and rapp-postgres boundary docs into a
reusable four-question test, a reference rapp.yaml for platform services, the
grouped-rapp member rule, and the credential-lane position. It deliberately
does not restate the four-axis model, which railiance-master owns.
T03/T04/T05: proposals routed to the repos that own the model rather than
authored here - reef-railiance (bound_rapps lists 1 of 3 live rapps, and should
be derived rather than hand-listed), railiance-master (rapp.schema.json plus a
family declaration validator, grouped-rapp members field, wave-2 candidate
refresh), the-custodian (canon promotion of the four-axis model, which also
closes the open C-31 multi-segment prefix failures).
T02 is held until the schema settles so the platform rapps and the schema do
not converge on different answers.
Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
2026-08-11 11:11:57 +02:00
|
|
|
| task | RAILIANCE-WP-0015-T06 | todo | — | workplans/RAILIANCE-WP-0015-platform-rapp-consistency.md |
|
2026-08-11 21:01:21 +02:00
|
|
|
| task | RAILIANCE-WP-0016-T01 | todo | — | workplans/RAILIANCE-WP-0016-apps-pg-resource-evidence.md |
|
|
|
|
|
| task | RAILIANCE-WP-0016-T02 | todo | — | workplans/RAILIANCE-WP-0016-apps-pg-resource-evidence.md |
|
|
|
|
|
| task | RAILIANCE-WP-0016-T03 | todo | — | workplans/RAILIANCE-WP-0016-apps-pg-resource-evidence.md |
|
2026-08-12 01:35:04 +02:00
|
|
|
| task | RAILIANCE-WP-0016-T01 | done | — | workplans/RAILIANCE-WP-0016-architecture-cleanup-backlog.md |
|
|
|
|
|
| task | RAILIANCE-WP-0016-T02 | done | — | workplans/RAILIANCE-WP-0016-architecture-cleanup-backlog.md |
|
Rescope items 9 and 10; item 10 was badly mis-sized
T04 done, and the answer changes the order. Item 10 was scored size 5 as a
greenfield build. It is not. railiance-infra already has a Goss baseline suite,
an ansible runner, a make verify target that runs it against all hosts and
commits TAP reports to git, and an evidence trail in reports/. The mechanism is
built and wired.
Two things are wrong with it and neither is a build. Nothing runs it - the last
TAP report is dated 2026-03-09, five months ago. And its firewall assertion
matches /6443\/tcp.*ALLOW/, which asserts the port is allowed but not from
whom - it passes identically whether 6443 is restricted to one operator address
or open to the internet, which is exactly the drift that went undetected. It
would however have caught the other finding, since it asserts Status: active and
UFW is inactive on CoulombCore.
Rescoped into slices: 10a (run it, tighten the assertion) is size 1-2 and rises
to WSJF 12.0, fourth overall and the highest-value item after the ratifications.
10b (schedule + alert path) is 7.0. Names the shared dependency - 10b and 9b are
the same plumbing, and building either of 9 or 10 without it produces logs
nobody reads.
The lesson recorded: the gap analysis correctly identified no-conformance-loop
as a capability gap, but the capability was two-thirds built and abandoned.
Before sizing a gap as a build, check whether it is actually an abandonment.
Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
2026-08-12 02:01:44 +02:00
|
|
|
| task | RAILIANCE-WP-0016-T03 | done | — | workplans/RAILIANCE-WP-0016-architecture-cleanup-backlog.md |
|
2026-08-12 03:30:34 +02:00
|
|
|
| task | RAILIANCE-WP-0016-T04 | done | — | workplans/RAILIANCE-WP-0016-architecture-cleanup-backlog.md |
|
2026-08-12 01:35:04 +02:00
|
|
|
| task | RAILIANCE-WP-0016-T05 | todo | — | workplans/RAILIANCE-WP-0016-architecture-cleanup-backlog.md |
|