Commit Graph

  • 54b1fe326c status(2): Q2 RE-CLAIMED — F2-5 dep-teardown-verify fix cold-verified clean autonomic-botandClaude Opus 4.7 2026-05-28 09:22:24 +01:00
  • 874bfbb915 feat(2): Q3.1 partial — lasuite-docs PARITY + health_check + auth_required (Q2.4 still passes) autonomic-botandClaude Opus 4.7 2026-05-28 09:21:00 +01:00
  • c6e94af766 fix(2): F2-5 — dep teardown verify=True, errors propagate to run-fail (Adversary cold) autonomic-botandClaude Opus 4.7 2026-05-28 09:00:37 +01:00
  • 9a857d9ef4 review(2): Q2 FAIL — F2-5 dep teardown silently suppressed (keyc-c12afe still up); F2-6 install 502 flake; F2-7 SSO setup partial pluggability notplantsandClaude Opus 4.7 2026-05-28 08:57:49 +01:00
  • ad6b25982f status(2): Q2 CLAIMED — dep resolver + SSO harness + Q2.4 acceptance proven cold autonomic-botandClaude Opus 4.7 2026-05-28 08:09:56 +01:00
  • 9e88741864 feat(2): Q2.4 acceptance — lasuite-docs + keycloak dep + OIDC password grant (cold green) autonomic-botandClaude Opus 4.7 2026-05-28 08:08:11 +01:00
  • 47f7cb47c2 fix(2): F2-3 systemic — harness.browser.goto_with_retry; applied to all install overlays autonomic-botandClaude Opus 4.7 2026-05-28 07:46:34 +01:00
  • 4d6b040ba7 feat(2): Q2.3 — dep resolver + SSO-setup harness primitives autonomic-botandClaude Opus 4.7 2026-05-28 07:41:56 +01:00
  • 0d3232409d backlog(2): Q2.1 keycloak DONE; Q2.3 absorbs the Q0.4 dep-resolver primitive autonomic-bot 2026-05-28 07:34:56 +01:00
  • d5f5e86c7b feat(2): Q2.1 — keycloak Phase-2 parity + functional (full e2e green) autonomic-botandClaude Opus 4.7 2026-05-28 07:34:14 +01:00
  • 9c79215fb9 status(2): Q1 Adversary PASS; Q2 keycloak in flight (timeouts bumped to 900s) autonomic-botandClaude Opus 4.7 2026-05-28 07:12:47 +01:00
  • adb3bf9669 review(2): Q1 PASS — F2-3 + F2-4 fixed; n8n workflow round-trip cold-verified, 4/4 custom + deploy-count=1; NO VETO notplantsandClaude Opus 4.7 2026-05-28 07:11:51 +01:00
  • 764fd8f330 status(2): Q1 RE-CLAIMED — F2-3 + F2-4 closed by Builder autonomic-botandClaude Opus 4.7 2026-05-28 07:08:57 +01:00
  • fc89552347 fix(2): F2-4 + F2-3 — n8n workflow round-trip + Playwright exception catch autonomic-botandClaude Opus 4.7 2026-05-28 07:07:34 +01:00
  • 90e95270a0 review(2): Q1 FAIL — F2-4 n8n specific tests miss §4.3 P3 floor (no create-and-read-back); F2-3 install hardening flake gap notplantsandClaude Opus 4.7 2026-05-28 07:02:33 +01:00
  • df28cef590 review(2): watchdog FP — no Q1 CLAIMED in STATUS-2 (still shows stale Q0 RE-CLAIMED) notplantsandClaude Opus 4.7 2026-05-28 06:49:33 +01:00
  • 695a06aedd status(2): Q1 CLAIMED — n8n + custom-html full e2e green; ready for Q2 autonomic-botandClaude Opus 4.7 2026-05-28 06:49:25 +01:00
  • 2f3d5aa78f feat(2): Q1.2 — n8n Phase-2 parity + functional + robust install (full e2e green) autonomic-botandClaude Opus 4.7 2026-05-28 06:48:00 +01:00
  • 5ab25c3dea review(2): Q0 PASS — F2-1 fix verified cold (pytest 21/21), e2e from prior verdict stands; NO VETO notplantsandClaude Opus 4.7 2026-05-28 06:34:37 +01:00
  • 0b834e90f2 status(2): Q0 RE-CLAIMED — F2-1 fix verified cold (21/21 unit PASS) autonomic-botandClaude Opus 4.7 2026-05-28 06:33:41 +01:00
  • 5741e8838f fix(2): F2-1 — test_custom_tests_repo_local_gated uses synthetic recipe (Adversary cold) autonomic-botandClaude Opus 4.7 2026-05-28 06:32:47 +01:00
  • 097234e9ce review(2): Q0 FAIL — F2-1 pytest regression (test_custom_tests_repo_local_gated stale assertion); e2e PASS, harness work sound notplantsandClaude Opus 4.7 2026-05-28 06:31:03 +01:00
  • d480411413 review(2): record watchdog false-positive — no Phase-2 gate CLAIMED yet notplantsandClaude Opus 4.7 2026-05-28 04:43:20 +01:00
  • 125a4ef8b2 status(2): Q0 CLAIMED — harness additions + custom-html parity reference proven autonomic-botandClaude Opus 4.7 2026-05-28 04:43:02 +01:00
  • bec92659b1 feat(2): Q0.3/Q1.1 — custom-html PARITY + functional + playwright (Phase 2) autonomic-botandClaude Opus 4.7 2026-05-28 04:40:12 +01:00
  • 0d0fc6c4bc feat(2): Q0.1/Q0.2 — harness.http + discovery recurses functional/playwright (Phase 2) autonomic-botandClaude Opus 4.7 2026-05-28 04:36:49 +01:00
  • 8f5df6d257 chore(2): bootstrap Phase 2 loop state + decisions autonomic-botandClaude Opus 4.7 2026-05-28 04:34:27 +01:00
  • e7e3e24aed review(2): seed REVIEW-2.md — Adversary first wake; no Builder activity yet notplantsandClaude Opus 4.7 2026-05-28 04:29:54 +01:00
  • 0fe12188f2 DONE(1e): Phase 1e complete — HC1-HC4 all Adversary cold-verified PASS, NO VETO autonomic-botandClaude Opus 4.7 2026-05-28 04:26:42 +01:00
  • 4cf40c6334 review(1e): E3/HC4 PASS + FINAL — own !testme build #155 production cold (head_ref==chaos-version full sha, additive, deploy-count=1, no secret leak, clean teardown); NO VETO — Builder may write ## DONE notplants 2026-05-28 04:24:57 +01:00
  • 6397cd5609 status(1e): HC1 PASS; E3/HC4 CLAIMED — no-regression rationale + docs done autonomic-botandClaude Opus 4.7 2026-05-28 04:11:14 +01:00
  • 9d52aa420d review(1e): E2/HC1 PASS — head_ref==chaos-version proven cold (custom-html 1.10.0→1.11.0, deploy-count=1); non-vacuousness proven via adversarial probe notplants 2026-05-28 04:09:06 +01:00
  • 49dc00a504 status(1e): E2/HC1 CLAIMED — chaos-version==head_ref proven on hedgedoc autonomic-botandClaude Opus 4.7 2026-05-28 04:05:42 +01:00
  • 74725610ab fix(1e): HC1 upgrade/restore tier calls now pass head_ref (multi-line edit miss) autonomic-botandClaude Opus 4.7 2026-05-28 04:04:13 +01:00
  • 1a9632c2e8 review(1e): E1/HC3 PASS — fix 6eabfdc verified cold (opt-out backup/restore PASS, no silent-empty exec path); F1e-1 CLOSED notplants 2026-05-28 03:47:19 +01:00
  • 75f7e5d46b review(1e): CORRECT F1e-1 — isolated repro disproves opt-out theory (3/3 pass); reframe as load/concurrency trigger; file F1e-2 (recipe-fetch race); fix-verify in flight notplants 2026-05-28 03:45:44 +01:00
  • e75ec1b3d0 status(1e): E1/HC3 RE-CLAIMED — F1e-1 fix verified (opt-out backup/restore PASS) autonomic-botandClaude Opus 4.7 2026-05-28 03:42:45 +01:00
  • 6eabfdc0fb fix(1e): F1e-1 exec_in_app race + HC1 head_ref/move hardening autonomic-botandClaude Opus 4.7 2026-05-28 03:41:42 +01:00
  • 4334e19a7b review(1e): E1/HC3 FAIL — opt-out surfaces backup/restore race (F1e-1); additive+count=1 confirmed, PASS withheld notplants 2026-05-28 03:30:24 +01:00
  • 7fba6b0547 status(1e): E1/HC3 CLAIMED — additive generic + op-once verified e2e (custom-html) autonomic-botandClaude Opus 4.7 2026-05-28 03:18:41 +01:00
  • b7e6cbd7be feat(1e): HC3 additive generic + op/assertion split (orchestrator owns the op) autonomic-botandClaude Opus 4.7 2026-05-28 03:12:04 +01:00
  • 6a59343996 review(1e): E0/HC2 PASS — repo-local trust gate cold-verified (8 unit + hostile-code break-it probe; no bypass) notplants 2026-05-28 03:01:29 +01:00
  • c7ae2967a7 status(1e): E0/HC2 CLAIMED — repo-local trust gate (8 unit tests PASS on cc-ci) autonomic-botandClaude Opus 4.7 2026-05-28 02:57:37 +01:00
  • d38a695fa3 feat(1e): HC2 repo-local approval allowlist (default-deny) + discovery gate autonomic-botandClaude Opus 4.7 2026-05-28 02:55:58 +01:00
  • 0226167b49 chore(1e): bootstrap Phase 1e loop state + settle HC1/HC2/HC3 decisions autonomic-botandClaude Opus 4.7 2026-05-28 02:53:22 +01:00
  • f9257fc891 review(1e): seed REVIEW-1e ledger + HC1-HC4 tracker; cold access re-verified notplants 2026-05-28 02:48:50 +01:00
  • d3cb5844e4 status(1d): tidy ledger post-DONE (clear In-flight; settle DG6/DG7 lines) autonomic-botandClaude Opus 4.7 2026-05-28 02:26:34 +01:00
  • 3ebec24268 DONE(1d): Phase 1d complete — DG1-DG8 all Adversary cold-verified PASS, NO VETO autonomic-botandClaude Opus 4.7 2026-05-28 02:26:03 +01:00
  • 4a6d6cf4bf review(1d): G4 PASS + FINAL sign-off — DG1-DG8 all Adversary cold-verified, NO VETO notplantsandClaude Opus 4.7 2026-05-28 02:25:02 +01:00
  • b10daddbef status(1d): DG6 GREEN (build #153 hedgedoc e2e); G4 CLAIMED — requesting Adversary cold-verify DG1-DG8 autonomic-botandClaude Opus 4.7 2026-05-28 02:15:25 +01:00
  • 7c0f0edcb8 status(1d): G4 — DG7 migration + DG8 docs done; DG6 !testme e2e in flight (build #153, hedgedoc) autonomic-botandClaude Opus 4.7 2026-05-28 02:12:28 +01:00
  • 8262912015 feat(1d): enroll hedgedoc in bridge POLL_REPOS (DG6 unconfigured-recipe target) autonomic-botandClaude Opus 4.7 2026-05-28 01:47:29 +01:00
  • b756e72cc2 docs(1d): DG8 — docs/testing.md (generic suite + overlay convention + install-steps hook); update enroll-recipe.md to the deploy-once contract; README pointer autonomic-botandClaude Opus 4.7 2026-05-28 01:35:16 +01:00
  • afd75a48db feat(1d): migrate keycloak/cryptpad/matrix-synapse/n8n/lasuite-docs overlays to deploy-once contract (DG7) autonomic-botandClaude Opus 4.7 2026-05-28 01:32:53 +01:00
  • 9b5bcff92a review(1d): G3 PASS — install-steps hook + graceful-generic + DG3 N/A-skip notplantsandClaude Opus 4.7 2026-05-28 00:26:14 +01:00
  • 4425cc6429 status(1d): G2 Adversary PASS @2026-05-28 (DG4/DG4.1); .drone.yml STAGES -> full generic suite autonomic-botandClaude Opus 4.7 2026-05-28 00:23:27 +01:00
  • ce3c0f8e7f review(1d): G2 PASS — overlays override+extend, deploy-count=1, precedence proven notplantsandClaude Opus 4.7 2026-05-28 00:22:07 +01:00
  • e0a0132360 status(1d): G1 Adversary PASS @2026-05-28 (DG2/DG3); F1d-1+F1d-2 closed autonomic-botandClaude Opus 4.7 2026-05-28 00:20:28 +01:00
  • 44c513e83f feat(1d): G3 — custom install-steps hook + graceful-generic (DG5) + DG3 N/A-skip demo autonomic-botandClaude Opus 4.7 2026-05-28 00:19:45 +01:00
  • b5c1faffea review(1d): G1 PASS (re-claim) — F1d-2 fixed, upgrade non-vacuous (verified both ways) notplantsandClaude Opus 4.7 2026-05-28 00:18:22 +01:00
  • c965f6cc9a status(1d): re-claim G1 (DG2 non-vacuous after F1d-2 fix) + claim G2 (DG4/DG4.1 overlay layering) autonomic-botandClaude Opus 4.7 2026-05-28 00:12:39 +01:00
  • b758767830 fix(1d): custom-html backup/restore overlay reads marker via exec (volume-direct) autonomic-botandClaude Opus 4.7 2026-05-28 00:10:35 +01:00
  • feb6f80d50 fix(1d): bounded retry in _app_container (backup briefly cycles the app container) autonomic-botandClaude Opus 4.7 2026-05-28 00:06:28 +01:00
  • 81e26a1bdc fix(1d): F1d-2 — pinned base deploys the pinned version; upgrade is non-vacuous autonomic-botandClaude Opus 4.7 2026-05-28 00:02:59 +01:00
  • 1aea1541a7 review(1d): G1 FAIL — DG2 upgrade is a vacuous no-op (base deploys LATEST, not previous) notplantsandClaude Opus 4.7 2026-05-27 23:49:23 +01:00
  • 9d771a125d status(1d): G1 CLAIMED — DG2+DG3 green on hedgedoc full lifecycle (deploy-count=1) autonomic-botandClaude Opus 4.7 2026-05-27 23:41:11 +01:00
  • 6c5d8f28ea fix(1d): G1 backup/restore + F1d-1 cert-check reframe autonomic-botandClaude Opus 4.7 2026-05-27 23:39:45 +01:00
  • a8f78b8673 review(1d): G0/DG1 PASS — generic install green on hedgedoc, cold-verified from my own clone @ef44d46 notplantsandClaude Opus 4.7 2026-05-27 23:36:42 +01:00
  • ef44d4658b feat(1d): G0 — generic install + deploy-once orchestrator (DG1 green on hedgedoc) autonomic-botandClaude Opus 4.7 2026-05-27 23:27:55 +01:00
  • a31095a087 status(1d): bootstrap Phase 1d — design recorded (tier model, override precedence, deploy-once), state files seeded autonomic-botandClaude Opus 4.7 2026-05-27 23:06:21 +01:00
  • 6300cba503 review(1d): open Phase-1d Adversary ledger — cold access OK, IDLE awaiting first gate (G0/DG1) notplantsandClaude Opus 4.7 2026-05-27 23:00:49 +01:00
  • 82c8220434 ## DONE — Phase 1b complete: RL1-RL6 all Adversary-PASS <24h, no VETO (lint/format + nix/ + machine-docs/ refactor, D1-D10 re-verified cold, nothing weakened) autonomic-botandClaude Opus 4.7 2026-05-27 22:57:44 +01:00
  • 8e0f0cbc7d review(1b): RL6 PASS + Adversary FINAL SIGN-OFF — git mv my REVIEW*.md → machine-docs/ (lockstep; Builder moved theirs in 992d87c, README stays root). Watchdog survived (resolve_state prefers machine-docs/; it pinged me from machine-docs/STATUS-1b.md). Refs re-verified (README+install.md updated; no .drone/flake/scripts refs; closure byte-identical 8i3jcad9 unaffected). ALL RL1-RL6 Adversary-PASS, no VETO — Builder cleared to write ## DONE notplants 2026-05-27 22:56:25 +01:00
  • 7545bf20b3 status(1b): claim RL6 gate (CLAIMED, awaiting Adversary) so the watchdog pings — REVIEW* move + re-verify autonomic-botandClaude Opus 4.7 2026-05-27 22:53:03 +01:00
  • 992d87cfcd refactor(1b): RL6 — move Builder protocol files into machine-docs/ (README stays root) autonomic-botandClaude Opus 4.7 2026-05-27 22:35:30 +01:00
  • ffb1c98225 status(1b): RL3 FULL D1-D10 PASS (no VETO); flag orchestrator — ready for RL6 coordinated machine-docs/ cutover autonomic-botandClaude Opus 4.7 2026-05-27 22:09:29 +01:00
  • 53efd54983 review(1b): RL3 PASS — full cold D1-D10 re-verify on the byte-identical cleaned closure, NOTHING weakened. 2 fresh green e2e (custom-html #151 + keycloak #152 SSO/DB, all 3 stages, upgrade ran); D6 leak test clean (8/8 infra + wildcard cert/key + generated keycloak admin pw = 0 in logs/dashboard; white-box secret_generate captured-never-printed); teardown no orphans; byte-identical rebuild=D8. D10 2-fresh + Phase-1 6/6 carry-forward. RL1-RL5 all Adversary-PASS, no VETO — only RL6 (coordinated machine-docs/ move) before DONE; ready for lockstep cutover notplants 2026-05-27 22:07:43 +01:00
  • e58b69d16f docs(1b): record the tests/_template deviation (enroll=copy-existing-recipe) per Adversary RL3/D5 advisory autonomic-botandClaude Opus 4.7 2026-05-27 21:43:15 +01:00
  • 9bfd6f2ad3 review(1b): RL3 fresh e2e #1 (custom-html #151) — D1(20s trigger)/D2(install+upgrade+backup green, upgrade ACTUALLY RAN)/D3(playwright)/D7(PR comment+dashboard)/D6-infra(0 secret matches) all PASS on the byte-identical cleaned closure. D6 app-secret watch-item RESOLVED white-box (secret_generate output captured, never printed); keycloak e2e #2 in flight for behavioral confirm. D5/D8/D9 PASS; D10 breadth carry-forward + 2 fresh runs; D4 byte-identical carried notplants 2026-05-27 21:42:26 +01:00
  • 41c6571895 review(1b): RL3 live !testme e2e in flight — triggered custom-html PR#2 @20:33:16Z (comment 13743, bot=org-member); watching trigger latency (D1) + install/upgrade/backup stages (D2-D4) + run URL (D7) on the byte-identical cleaned closure; D6 leak test to follow on this run's logs/dashboard. Noted: push→Drone webhook flaky (no push build for 1b commits) — RL1 advisory notplants 2026-05-27 21:34:24 +01:00
  • f033139aca review(1b): RL3 D8+RL5 byte-identical cold rebuild PASS — fresh recursive clone on cc-ci → nixos-rebuild build git+file://...?submodules=1#cc-ci → toplevel 8i3jcad9==running (build==running). Confirms reproducibility survived format+nix/ refactor; secrets genuinely from submodule (no-submodule build fails). RL3 remaining: live !testme e2e + D6 leak test + D5/D9/D10 refresh notplants 2026-05-27 21:31:38 +01:00
  • aa120d10d0 review(1b): RL2 PASS (no blocking §3 findings) + RL5 structural PASS (nix/ layout, flake at root, #cc-ci unchanged, no dangling refs) + RL3 cardinal-rule PASS (tests NOT weakened — diff 6d2bc3d..HEAD is ruff line-wrapping only, all assertions/operators/values preserved, no skip/xfail added). cc-ci running==8i3jcad9, healthy, 5 stacks. RL3 byte-identical cold rebuild + e2e + leak test next notplants 2026-05-27 21:28:01 +01:00
  • bbfa915925 journal(1b): push-webhook diagnostic — inbound gateway delivery not reaching Drone (operator/gateway, §9); recipe-CI polling unaffected autonomic-botandClaude Opus 4.7 2026-05-27 21:25:11 +01:00
  • c4b816683d status(1b): RL2 clean + RL5 done + canonical switched to cleaned closure (build==running 8i3jcad9); claim RL3 gate autonomic-botandClaude Opus 4.7 2026-05-27 21:23:16 +01:00
  • 433ec9de30 refactor(1b): RL5 — consolidate Nix code under nix/ (modules->nix/modules, hosts->nix/hosts) autonomic-botandClaude Opus 4.7 2026-05-27 21:19:09 +01:00
  • 5a811e4ae4 review(1b): acknowledge operator RL5+RL6 (plan §7) as new blocking items. RL5 (nix/ folder consolidation) verification folds into RL3 cold byte-identical rebuild; RL6 (machine-docs/ move) is coordinated near-end-of-1b — REVIEW*.md are my files, I keep writing at root until the lockstep watchdog cutover then git mv my own. DoD now RL1–RL6 notplants 2026-05-27 21:13:19 +01:00
  • 12e1336d2a review(1b): white-box §3 pass #2 (RL2 input) — harness DRY PASS (no harness surgery), architecture-matches-plan PASS (poll-primary §4.1, real traefik recipe §4.2), Nix idempotent/no-sentinels PASS, log-redaction real for infra secrets. No blocking findings; 2 advisories (old_app copy-paste→IDEAS; generated-app-secret redaction→RL3/D6 watch-item) notplants 2026-05-27 21:08:29 +01:00
  • 938f312345 review(1b): W0/RL1 PASS logged; W1 Builder §3 self-review — all blocking invariants hold, no fixes; await Adversary RL2 pass #2 autonomic-botandClaude Opus 4.7 2026-05-27 21:06:57 +01:00
  • 1237d29899 review(1b): W0 PASS (RL1) — lint/format tooling verified COLD on cc-ci over pristine archive of 233939a: nix develop .#lint → lint: PASS exit 0 (8 linters clean); stage wired in .drone.yml; break-it probe confirms FAIL exit 1 on injected violations (gate has teeth). Advisory: confirm push→Drone actually fires lint stage at RL3 (webhook flaky per §4.1) notplants 2026-05-27 21:04:40 +01:00
  • 8e1b9ee932 docs(1b): README — how to run lint/format locally + that CI enforces it (RL4) autonomic-botandClaude Opus 4.7 2026-05-27 21:01:25 +01:00
  • 233939a58b docs(1b): record W0 lint decisions (DECISIONS) + claim W0 gate (STATUS/JOURNAL) autonomic-botandClaude Opus 4.7 2026-05-27 21:00:31 +01:00
  • 4af427c01e ci(1b): add lint stage to .drone.yml push pipeline — enforces format/lint on every commit (RL1) autonomic-botandClaude Opus 4.7 2026-05-27 20:53:08 +01:00
  • 2cede01ed7 style(1b): auto-format + lint-clean the whole codebase (RL1) autonomic-botandClaude Opus 4.7 2026-05-27 20:52:05 +01:00
  • a0ea2f0aa9 fix(1b): merge devShells.${system} into one attr (dynamic-attr collision) autonomic-bot 2026-05-27 20:43:48 +01:00
  • 07952c0383 fix(1b): remove duplicate nixosConfigurations.cc-ci in flake (broke eval) autonomic-bot 2026-05-27 20:43:17 +01:00
  • f1438eb8c9 fix(1b): lint.sh excludes the secrets/ submodule (correct path) autonomic-bot 2026-05-27 20:41:59 +01:00
  • a74925bf7d review(1b): phase-1b Adversary ledger seeded; white-box §3 prep pass #1 over post-1c baseline — tests real, no sentinels, no committed secrets, sleeps are poll intervals, teardown verified. Awaiting Builder to seed 1b state + claim W0 notplants 2026-05-27 20:40:31 +01:00
  • 1de0885e2d feat(1b): add lint/format toolchain — lint devshell + scripts/lint.sh + ruff/yamllint config autonomic-bot 2026-05-27 20:40:50 +01:00
  • 575e0b5f11 chore(1b): seed Phase 1b loop state (STATUS/BACKLOG/JOURNAL/REVIEW) autonomic-bot 2026-05-27 20:39:15 +01:00
  • 6d2bc3d8e0 review(1c): DONE confirmed — Adversary final sign-off. All C1-C7 + E2E-TESTME PASS <24h, no VETO, no open findings; cc-ci healthy cqym8knj byte-identical, public TLS 200. Phase 1c genuinely DONE; loop terminating notplants 2026-05-27 20:34:22 +01:00