secrets-engine/scripts
tegwick 1945e16685
All checks were successful
CI Smoke / host-smoke (push) Successful in 0s
CI Smoke / container-smoke (push) Successful in 1s
Declare Engine/Lifecycle against security layer model v0.7
Replace the gate-house review note with this repository's own declaration:
INTENT.md frontmatter, layer.yaml, and a published PEP stance map. SCOPE.md
and agent boundary docs now match that layer. The review under history/
identifies the implementation remainder; SECRETS-WP-0008 is the follow-on
workplan. SECRETS-IN-0001 is closed.

The layer is not contested. Catalog "custody" is a finding: OpenBao owns
custody, this engine owns the lifecycle API over it. SSH-CA signing is
accepted as a proposed engine API and declined as a Staff lane.

Assistant: grok
Assistant-Session: 01a04cea-cb33-7c63-bad7-c1b0f9f0076b
2026-08-29 11:57:47 +02:00
..
check_layer_conformance.py Declare Engine/Lifecycle against security layer model v0.7 2026-08-29 11:57:47 +02:00
demo-e2e.sh Harden production authorization and service auth 2026-08-23 14:15:42 +02:00
npm-publish-demo.sh Harden production authorization and service auth 2026-08-23 14:15:42 +02:00
whynot-real-publish-preflight.sh feat: add auth-capability lanes and pilot closeout 2026-06-29 16:58:16 +02:00