S3 Platform Services — PostgreSQL HA, Valkey, object storage
Find a file
codex 9d24086004
All checks were successful
CI Smoke / host-smoke (push) Successful in 0s
CI Smoke / container-smoke (push) Successful in 1s
Settle the npm lane field, and record an ungoverned duplicate
The attended session enumerated field names at the governed path: NPM_AUTH_TOKEN
is the only field present, at KV version 2. This repository's record was correct.
secrets-engine's lowercase field name and the ops-warden catalog change made on
that statement both name a field absent from that path, so that change points the
front door at nothing and must be reverted before next use. The both-fields
reconciliation is ruled out.

The same session found the legacy path is real: secret/coulomb/whynot-design/
npm/publish exists at version 1, created five days after the governed lane was
verified, outside its policy and outside any CCR. Only metadata was read; field
names were not enumerated and nothing was deleted. Disposition is the new
RPF-WP-0035-T07, which asks first whether the consumer's proven publish has been
reading the duplicate rather than the governed lane.

Receipt carries field names only, attended_identity true, no mutation.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01WLUjpv3ssxNRAEPPgLFnEB

Assistant: claude-code
Assistant-Model: opus
Assistant-Process: 1275505@bnt-lap001
Assistant-Session: 97265baa-f08f-4032-b290-a1e2965a69c5
2026-09-10 09:03:22 +02:00
.claude/rules docs: add scoped registrar recovery guidance 2026-08-21 21:38:35 +02:00
.forgejo/workflows Add Forgejo CI smoke workflow (enablement template) 2026-07-04 12:49:59 +02:00
argocd Admit KeyCape approval-engine client custody paths and delivery 2026-09-08 14:53:32 +02:00
assurance Declare the security layer, and repair the placement admission check 2026-09-09 23:27:14 +02:00
credential-change-requests Settle the npm lane field, and record an ungoverned duplicate 2026-09-10 09:03:22 +02:00
credential-grants Close RAILIANCE-WP-0015-T06 rapp credential-lane binding 2026-08-14 00:47:28 +02:00
data/consumption-mode Finish RAILIANCE-WP-0017 consumption-mode enforcement 2026-08-15 14:56:02 +02:00
docs Settle the npm lane field, and record an ungoverned duplicate 2026-09-10 09:03:22 +02:00
helm Define scoped Forgejo native backup on the Scaleway primary 2026-09-06 00:48:25 +02:00
history Verify telemetry essentials recovery from versioned Scaleway archive 2026-09-06 23:46:20 +02:00
interfaces Add direct WP-0024 load driver handoff 2026-08-22 16:17:03 +02:00
lib Contain backup upload credentials and prepare provider recovery gates 2026-09-05 19:21:06 +02:00
manifests Bind audit E2 retry projection to new engagement 2026-08-22 20:56:58 +02:00
openbao Prepare the two approval client-side reader admissions 2026-09-09 14:41:01 +02:00
registry Draft capability entry (reuse-surface REUSE-WP-0017-T04, cohort 3) 2026-07-06 19:50:54 +02:00
reviews Record WP0027 platform snapshot receipt 2026-08-23 00:32:20 +02:00
schemas Cancel withdrawn approval operator reader without inventing auth 2026-09-10 08:10:33 +02:00
scripts Run the custody session through a Make target, and give the runner a shebang 2026-09-10 08:15:41 +02:00
tests Cancel withdrawn approval operator reader without inventing auth 2026-09-10 08:10:33 +02:00
tools Reject unfinished or truncated Forgejo backup archives before encryption 2026-09-05 22:10:22 +02:00
workplans Settle the npm lane field, and record an ungoverned duplicate 2026-09-10 09:03:22 +02:00
.custodian-brief.md chore(consistency): sync task status from DB [auto] 2026-09-09 14:41:39 +02:00
.gitignore Ignore derived local Repo Manager cache 2026-09-05 10:19:08 +02:00
.repo-classification.yaml Human-review .repo-classification.yaml (CUST-WP-0050 follow-up) 2026-06-22 17:56:17 +02:00
.sops.yaml Finish architecture-cleanup RAILIANCE-WP-0016 T05 2026-08-15 14:43:44 +02:00
AGENTS.md Document credential lane designs and adopt fast projection sync 2026-09-05 10:41:56 +02:00
ArchitectureBlueprint.md Reopen the ArgoCD question on corrected evidence 2026-08-12 00:05:14 +02:00
CLAUDE.md Add credential routing instructions for all agent runtimes 2026-06-18 22:48:39 +02:00
INTENT.md Declare the security layer, and repair the placement admission check 2026-09-09 23:27:14 +02:00
layer.yaml Declare the security layer, and repair the placement admission check 2026-09-09 23:27:14 +02:00
LICENSE Adopt Target Revenue Source License V1C1 (org-wide preliminary rollout) 2026-07-30 00:54:20 +02:00
Makefile Run the custody session through a Make target, and give the runner a shebang 2026-09-10 08:15:41 +02:00
SCOPE.md Declare the security layer, and repair the placement admission check 2026-09-09 23:27:14 +02:00
tenancy.yaml Fix apps-pg tenancy evidence declaration 2026-08-23 13:21:42 +02:00
WORK-RECORDS.md Refresh the generated work record index 2026-09-09 14:42:10 +02:00