#229: operations manual (VS-NfD) #274

Merged
fable-5 merged 1 commits from issue-229-operations-manual into main 2026-07-31 10:56:25 +02:00
Collaborator

Adds docs/vs-nfd/70-betriebshandbuch.md: installation (airgap pending #218-#221), update/rollback with migration caveats, backup/restore incl. rehearsed monthly drill (#98 logs) and #192 target restriction, deletion/destruction per content type on the #228 copy list, role separation with explicit Site-Admin limits. Evidence level stated per procedure. Stacked on #273.

Adds docs/vs-nfd/70-betriebshandbuch.md: installation (airgap pending #218-#221), update/rollback with migration caveats, backup/restore incl. rehearsed monthly drill (#98 logs) and #192 target restriction, deletion/destruction per content type on the #228 copy list, role separation with explicit Site-Admin limits. Evidence level stated per procedure. Stacked on #273.
fable-5 added 2 commits 2026-07-31 09:57:18 +02:00
#228: security documentation (architecture, data flows, network plan)
Some checks failed
CI / Lint, typecheck, test (pull_request) Successful in 6m26s
CI / Build container images (pull_request) Successful in 13s
CI / Auth e2e pack (pull_request) Successful in 9m27s
CI / Import/export fidelity gate (pull_request) Failing after 13s
1cf0458593
docs/vs-nfd/60-sicherheitsdokumentation.md: component diagram with per-
service purpose and privileges, network plan digit-exact against the
deploy compose (127.0.0.1-only app bindings, internal-only data zone),
data-flow diagrams (auth, realtime editing incl. LISTEN/NOTIFY and the
60s collab token, export via the pinned sidecars, backup incl. the
ADR-0026 allowlist, and every read channel), named trust boundaries
(reverse proxy, plugin sandbox, outbound SMTP/mirror), and the complete
list of content copies — in-database, on-volume and outside the
instance — that the deletion concept in #229 builds on. Mermaid only,
German (assessor audience), with the maintained-in-same-PR rule stated.

Co-Authored-By: Claude Fable 5 (1M context) <noreply@anthropic.com>
#229: operations manual (install, update, backup/restore, deletion, roles)
All checks were successful
CI / Lint, typecheck, test (pull_request) Successful in 6m33s
CI / Build container images (pull_request) Successful in 15s
CI / Auth e2e pack (pull_request) Successful in 9m20s
CI / Import/export fidelity gate (pull_request) Successful in 1m7s
d641c5dc8a
docs/vs-nfd/70-betriebshandbuch.md: installation as run on the real
stages (airgap variant explicitly pending #218-#221 with what already
exists as groundwork), update/rollback incl. the no-down-migrations
caveat, backup/restore with the ADR-0026 target allowlist and the
rehearsed monthly restore drill (evidence: logs on #98), the full
scheduler-job table (cadences verified against code), the deletion-and-
destruction chapter built on the #228 copy list (per content type:
what deletion reaches, what remains, immediate-destruction path,
decommissioning), and role separation incl. the deliberate limits of a
Site Admin and the honest note that Site Admin read-bypass makes the
content/platform split non-absolute app-side. Every procedure carries
its evidence level (erprobt / nicht geprobt / offen) — nothing claimed
above what was actually executed.

Co-Authored-By: Claude Fable 5 (1M context) <noreply@anthropic.com>
fable-5 force-pushed issue-229-operations-manual from d641c5dc8a to 040f3fbeae 2026-07-31 10:35:39 +02:00 Compare
fable-5 merged commit 040f3fbeae into main 2026-07-31 10:56:25 +02:00
Sign in to join this conversation.
No description provided.