diff --git a/.custodian-brief.md b/.custodian-brief.md index 4c60574..465dab6 100644 --- a/.custodian-brief.md +++ b/.custodian-brief.md @@ -2,12 +2,27 @@ # Custodian Brief — secrets-engine **Domain:** infotech -**Last synced:** 2026-07-03 15:04 UTC +**Last synced:** 2026-08-25 15:48 UTC **State Hub:** http://127.0.0.1:8000 *(adjust if running on a remote machine)* ## Active Workstreams -*(none — repo may need first-session setup)* +### Production-safe provisioning, authorization, and lifecycle hardening +Progress: 2/7 done | workplan_id: `68a39be1-bd9c-5133-ad64-e7bca892aaf3` + +**Open tasks:** +- ! Resume native production lane adoption `a0a1dd92` +- ► Split suspend, deactivate, and destroy semantics `bb6073e1` +- ► Bind approvals to exact production actions `4b58edec` +- ► Make delivery sessions short-lived and explicitly closed `36bcd64d` +- ► Strengthen verification, readiness, and evidence `431bc91b` + +### Adopt concrete OpenBao credential lanes from ops-warden +Progress: 4/6 done | workplan_id: `31f7f8ea-7f73-516c-8877-f03a13f1db82` + +**Open tasks:** +- ! Stage live apply and verification `fb103f1e` +- ! Reconcile routing ownership and retire interim proxies `1431edae` --- ## MCP Orientation (when available)