feat: add guarded Forgejo storage measurement #940

Merged
coilysiren merged 4 commits from aos/codex/20260806t050901z-50407-6291ab0a into main 2026-08-06 07:16:36 +00:00
Owner

Closes #939

Status

Ready for review. AOSguard and both deployment paths pin released cli-guard/specgen v0.132.0.

Summary

  • Add sealed aosguard ops forgejo-storage measure policy with fixed Kubernetes targets, filesystem paths, shell pipelines, and SQL.
  • Compile the reviewed Python source into AOSguard and invoke its materialized absolute path with python3 -I.
  • Remove doc-link from every AOSguard guardfile and remove the storage bridge from Python-module packaging.
  • Continue independent report sections after timeout or failure and return nonzero for incomplete evidence.
  • Document the AOSguard, generic kubectl, node-stats, and infrastructure rollout boundaries.

Validation

  • ward exec repo-test-gate: 547 tests passed and every pre-commit hook passed.
  • ward exec aosguard-build passed with the embedded source.
  • ward exec aosguard-run -- ops forgejo-storage --help rendered python3 -I <embedded:forgejo_storage_measure.py>.
  • cli-guard PR #273 and its CI passed, then release v0.132.0 was pinned.
Closes #939 ## Status Ready for review. AOSguard and both deployment paths pin released cli-guard/specgen `v0.132.0`. ## Summary * Add sealed `aosguard ops forgejo-storage measure` policy with fixed Kubernetes targets, filesystem paths, shell pipelines, and SQL. * Compile the reviewed Python source into AOSguard and invoke its materialized absolute path with `python3 -I`. * Remove `doc-link` from every AOSguard guardfile and remove the storage bridge from Python-module packaging. * Continue independent report sections after timeout or failure and return nonzero for incomplete evidence. * Document the AOSguard, generic kubectl, node-stats, and infrastructure rollout boundaries. ## Validation * `ward exec repo-test-gate`: 547 tests passed and every pre-commit hook passed. * `ward exec aosguard-build` passed with the embedded source. * `ward exec aosguard-run -- ops forgejo-storage --help` rendered `python3 -I <embedded:forgejo_storage_measure.py>`. * cli-guard PR #273 and its CI passed, then release `v0.132.0` was pinned.
feat: add guarded Forgejo storage measurement
All checks were successful
dev-base-pr / build (pull_request) Successful in 2m21s
ci / aos-cli-tests (pull_request) Successful in 41s
ci / ward-doctor (pull_request) Successful in 11s
ci / gate (pull_request) Successful in 2m1s
f928b4a615
Closes #939

Co-authored-by: Kai Siren <coilysiren@gmail.com>
Co-authored-by: Codex <noreply@openai.com>
refactor: embed Forgejo storage measurement in aosguard
Some checks failed
ci / aos-cli-tests (pull_request) Failing after 17s
ci / ward-doctor (pull_request) Successful in 12s
ci / gate (pull_request) Failing after 27s
9689a7cfda
Closes #939
chore: pin embedded specgen release
Some checks failed
ci / aos-cli-tests (pull_request) Failing after 15s
ci / ward-doctor (pull_request) Successful in 10s
ci / gate (pull_request) Successful in 52s
dev-base-pr / build (pull_request) Successful in 2m38s
8719ca822b
Closes #939
merge: refresh Forgejo storage branch
All checks were successful
ci / ward-doctor (pull_request) Successful in 18s
ci / aos-cli-tests (pull_request) Successful in 34s
ci / gate (pull_request) Successful in 1m41s
dev-base-pr / build (pull_request) Successful in 30m27s
425a616c45
Closes #939

Co-authored-by: Kai Siren <coilysiren@gmail.com>
Co-authored-by: Codex <noreply@openai.com>
coilysiren deleted branch aos/codex/20260806t050901z-50407-6291ab0a 2026-08-06 07:16:37 +00:00
Sign in to join this conversation.
No reviewers
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set

Reference
coilyco-flight-deck/agentic-os!940
No description provided.