Activate FI open-weight reserve bucket on Scaleway

Bucket railiance-fi-open-weight-reserve is live in nl-ams: versioning
on, no expiry, strategic/ Glacier after 90 days (provider minimum).
S-tier PUT uses Glacier immediately. Scoped IAM key still residual.

Assistant: grok
Assistant-Session: 01a09c6a-1cfc-75b1-a78d-c13eaf22241d
This commit is contained in:
tegwick 2026-09-13 22:55:53 +02:00
parent 117612eae2
commit 463cf59dd9
3 changed files with 16 additions and 7 deletions

View file

@ -1,16 +1,16 @@
# Planned attributes for FI-WP-0004. No secrets in this file.
# Live attributes for FI-WP-0004. No secrets in this file.
# Do NOT copy the postgres backup 30-day expiry onto this bucket.
schema_version: "0.1"
resource_id: resource:agents:fi-open-weight-reserve
provider: Scaleway
product: onezone-ia-plus-glacier
status: planned
status: active
endpoint: https://s3.nl-ams.scw.cloud
region: nl-ams
bucket: railiance-fi-open-weight-reserve
prefix: ""
versioning: true
lifecycle: "no object expiry; prefix strategic/ → Glacier after 1 day"
lifecycle: "no object expiry; prefix strategic/ → Glacier after 90 days (Scaleway minimum). S-tier PUT uses StorageClass=GLACIER immediately."
provider_project_ref: e1a0dd0e-04b8-4ea9-8b30-d53f8c35c688
intended:
public_access: disabled
@ -26,5 +26,8 @@ notes:
- "Decision: freedom-intelligence/docs/decisions/2026-09-13-scaleway-object-reserve.md"
- "Soft budget EUR 15/month. Founder Scaleway billing alert is the hard backstop."
- "NEVER apply the 30-day expiry used on railiance-platform-pg-backup."
- "Bucket create is FI-WP-0004-T08 (operator). This file stays planned until then."
- "Bucket created 2026-09-13. Versioning on. No object expiry."
- "Lifecycle: strategic/ Glacier after 90 days (Scaleway minimum). S-tier PUT uses StorageClass=GLACIER immediately."
- "Smoke 2026-09-13: STANDARD PUT/GET ok; Glacier PUT ok; Glacier GET is InvalidObjectState until restore (expected)."
- "Scoped IAM application key not yet created: bootstrap key can create buckets but cannot list IAM applications. Collect uses bootstrap via OpenBao at runtime until a founder-made bucket-scoped key lands at platform/workloads/railiance/freedom-intelligence/object-storage."
- "resource-control may later cite reef:storage/substrate/object-stores/fi-open-weight-reserve.yaml"