Define production topology, secrets, backup, and rollback runbook #39

Open
opened 2026-08-19 01:59:02 +00:00 by timmy · 0 comments
Owner

Parent epic: #7

Outcome

Specify how app, API, model worker, and optional training store run and recover.

Acceptance criteria

  • Network boundaries and least-privilege secrets are documented.
  • Backup excludes transient inference images and tests restore user-owned records.
  • Rollback procedure is exercised on staging.

Dependencies

  • #20 — Write the end-to-end photo data-flow threat model
  • #15 — Containerize the llama.cpp GPU worker with pinned model receipts

Required evidence

  • Test or executable receipt attached to the issue/PR
  • Privacy/safety boundary checked where applicable
  • Clean checkout and relevant full suite pass

Delivery

Open a focused branch and PR with Closes #ISSUE. Do not include real medical images in issue comments or Git history.

Parent epic: #7 ## Outcome Specify how app, API, model worker, and optional training store run and recover. ## Acceptance criteria - [ ] Network boundaries and least-privilege secrets are documented. - [ ] Backup excludes transient inference images and tests restore user-owned records. - [ ] Rollback procedure is exercised on staging. ## Dependencies - #20 — Write the end-to-end photo data-flow threat model - #15 — Containerize the llama.cpp GPU worker with pinned model receipts ## Required evidence - Test or executable receipt attached to the issue/PR - Privacy/safety boundary checked where applicable - Clean checkout and relevant full suite pass ## Delivery Open a focused branch and PR with `Closes #ISSUE`. Do not include real medical images in issue comments or Git history.
timmy added this to the M4 — Production Readiness & Release milestone 2026-08-19 01:59:02 +00:00
timmy added the
type/ops
priority/P0
area/privacy
area/release
labels 2026-08-19 01:59:02 +00:00
Sign in to join this conversation.
No project
No Assignees
1 Participants
Notifications
Due Date
The due date is invalid or out of range. Please use the format 'yyyy-mm-dd'.

No due date set.

Dependencies

No dependencies set.

Reference: stackchain/timmy-talking-turd#39
No description provided.