reef-storage/substrate/object-stores/fi-open-weight-reserve.yaml
tegwick 463cf59dd9 Activate FI open-weight reserve bucket on Scaleway
Bucket railiance-fi-open-weight-reserve is live in nl-ams: versioning
on, no expiry, strategic/ Glacier after 90 days (provider minimum).
S-tier PUT uses Glacier immediately. Scoped IAM key still residual.

Assistant: grok
Assistant-Session: 01a09c6a-1cfc-75b1-a78d-c13eaf22241d
2026-09-13 22:55:53 +02:00

33 lines
1.8 KiB
YAML

# Live attributes for FI-WP-0004. No secrets in this file.
# Do NOT copy the postgres backup 30-day expiry onto this bucket.
schema_version: "0.1"
resource_id: resource:agents:fi-open-weight-reserve
provider: Scaleway
product: onezone-ia-plus-glacier
status: active
endpoint: https://s3.nl-ams.scw.cloud
region: nl-ams
bucket: railiance-fi-open-weight-reserve
prefix: ""
versioning: true
lifecycle: "no object expiry; prefix strategic/ → Glacier after 90 days (Scaleway minimum). S-tier PUT uses StorageClass=GLACIER immediately."
provider_project_ref: e1a0dd0e-04b8-4ea9-8b30-d53f8c35c688
intended:
public_access: disabled
versioning: true
lifecycle: long retention (open-weight reserve, not WAL)
encryption_at_rest: provider-managed
identity: bucket-scoped key, distinct from postgres backup
storage_classes:
models: ONEZONE_IA
strategic: GLACIER
notes:
- "Consumer: freedom-intelligence (catalog in git, blobs here)."
- "Decision: freedom-intelligence/docs/decisions/2026-09-13-scaleway-object-reserve.md"
- "Soft budget EUR 15/month. Founder Scaleway billing alert is the hard backstop."
- "NEVER apply the 30-day expiry used on railiance-platform-pg-backup."
- "Bucket created 2026-09-13. Versioning on. No object expiry."
- "Lifecycle: strategic/ Glacier after 90 days (Scaleway minimum). S-tier PUT uses StorageClass=GLACIER immediately."
- "Smoke 2026-09-13: STANDARD PUT/GET ok; Glacier PUT ok; Glacier GET is InvalidObjectState until restore (expected)."
- "Scoped IAM application key not yet created: bootstrap key can create buckets but cannot list IAM applications. Collect uses bootstrap via OpenBao at runtime until a founder-made bucket-scoped key lands at platform/workloads/railiance/freedom-intelligence/object-storage."
- "resource-control may later cite reef:storage/substrate/object-stores/fi-open-weight-reserve.yaml"