Add audit maintenance, verified recovery and reproducible verification

Assistant: codex
Assistant-Model: gpt-6-astra
Assistant-Session: 01a0e6f1-443f-7783-9920-a16b2ffc467f
This commit is contained in:
tegwick 2026-09-28 11:48:01 +02:00
parent 820f0ff7b5
commit 3166da1d2e
13 changed files with 413 additions and 5 deletions

View file

@ -159,9 +159,14 @@ email does not establish those remaining facts.
Runtime validation (hash-pinned dependencies in requirements-runtime.lock):
```bash
RTEL_FLEX_AUTH_BINARY=/tmp/rtel-flex-auth /tmp/rtel-ack-venv/bin/python -m unittest discover -s tests_runtime -v
bash scripts/verify.sh
```
The candidate workload, container recipe and runtime settings are owned by
`rapp-telemetry/acknowledgment`. The policy source and exact client registration
are in `integration/`; they are not active registrations.
See [maintenance and recovery](acknowledgment-operations.md) for aggregate
metrics, explicit blocked-event retries, and backup/restore. The full verification
command requires the documented sibling owner checkouts; it never silently skips
the native contract tests.