Skip to main content

Platform Foundation designed

The platform foundation work defines shared-service boundaries, production readiness, code ownership, deployment topology, and the execution plan for safe implementation.

Reading Path

  1. Source of truth map for current authority, migration-state material, future-state material, and superseded/historical references.
  2. Gap portfolio for readiness priorities.
  3. PSSM v2 for shared-service ownership.
  4. Code and deployment architecture for package, route, schema, event, frontend, and deployment boundaries.
  5. Orchestrator work plan for maps, guards, first slices, and graduation.
  6. Completion roadmap and Phase 5 shared-surface model for the remaining shared-service tracks.
  7. Product onboarding, policy/quota/capacity, reconciliation evidence, analytics boundary, release-profile gates, and service-level CI/CD operating mode for the next product and runtime proof.
  8. Secrets/PKI runtime-trust model for credential delivery, rotation evidence, and extraction packet decisions.
  9. Registry, artifact trust, App SDK readiness, and local automation utility docs for current developer/operations execution.

Invariant

Maps first, guard visibility second, facade implementation third.

Every phase must produce a reviewable artifact: an ownership map, guard report, facade, read model, CI/report artifact, or evidence packet. The first implementation slice is platform evidence/status so UAT, release, security, and operator signals become durable platform-owned state instead of scattered test notes.

Current Production-Completion Contracts

ContractWhat it gives reviewers
Product onboarding executable packetRequired packet fields, fail-closed validation, review matrix, and next-product example.
Policy/quota/capacity compositionShared scope order, quota dimensions, capacity reservations, and decision evidence.
Runtime reconciliation evidenceDrift classification, orphan cleanup, quarantine, retry, and API-first operator verification.
Usage analytics OLTP/OLAP boundaryHot ingestion/rating paths, rollup dimensions, token/request analytics, and dashboard query rules.
Release profile gatesProfile-specific gate families, required evidence payload, failure handling, and graduation rule.
Service-level CI/CD operating modeGlobal contract gates, domain-local gates, consumer smokes, service evidence, and independent promotion eligibility.
Registry and artifact trustProduct/app/artifact registries, trust-state APIs, promotion evidence, and runtime verification.
Local automation utility layerDeterministic CI, deploy, UAT, evidence, closeout, ops smoke, and release verification utilities.

Portal Publication Posture

The source corpus is now classified before broad portal refresh. Superseded docs should not be presented as current authority, migration-state docs need exit criteria, and future-state docs need explicit target-state labeling.

Canonical sources