Add audit maintenance, verified recovery and reproducible verification
Assistant: codex Assistant-Model: gpt-6-astra Assistant-Session: 01a0e6f1-443f-7783-9920-a16b2ffc467f
This commit is contained in:
parent
820f0ff7b5
commit
3166da1d2e
13 changed files with 413 additions and 5 deletions
13
README.md
13
README.md
|
|
@ -30,7 +30,15 @@ carries and surfaces their output.
|
|||
Quality dimension, Q2 Observability, as recorded in INTENT/SCOPE. Monitoring
|
||||
workload packaging remains outside this repo.
|
||||
|
||||
Run `python3 -m unittest discover -s tests -v` (Python 3.11+, no dependencies).
|
||||
Run `python3 -m unittest discover -s tests -v` for the dependency-free core
|
||||
suite (native receiver check is optional there). For the full core/runtime and
|
||||
native owner-contract suite, run **`bash scripts/verify.sh`** with Python 3.11+,
|
||||
uv, Go and sibling `audit-core` / `flex-auth` checkouts. The script installs the
|
||||
hash-locked runtime dependencies in `.venv-verify`, builds Flex Auth into
|
||||
`.cache/verify`, and fails if either native source is absent. Override checkout
|
||||
locations with `RTEL_AUDIT_CORE_SOURCE` and `RTEL_FLEX_AUTH_SOURCE`. It reports
|
||||
the tested owner revisions; those source checkouts are not fetched or changed.
|
||||
This command tests local contracts, not live infrastructure or Prometheus rules.
|
||||
Live acceptance is tracked by RTEL-WP-0002-T04; local receipts are not external
|
||||
operator delivery proof.
|
||||
|
||||
|
|
@ -51,3 +59,6 @@ not activated. Identity/policy adapters are implemented; native package admissio
|
|||
webhook/audit custody and audited alert confirmation remain under T04. SMTP
|
||||
custody and delivery are verified, including Bernd’s confirmed inbox receipt
|
||||
of the transport-test email.
|
||||
|
||||
[Maintenance and recovery](docs/acknowledgment-operations.md) covers private audit
|
||||
metrics, explicit event requeue and verified backup/restore to a new database.
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue