Compare commits

...

5 Commits

Author SHA1 Message Date
CIAgent 5a94c968bd merge(milestone): v1.31 Leadership Deck Polish II to main (release v1.30.2)
acdl-ci / Lint (push) Successful in 13s
acdl-ci / Test (push) Failing after 24s
acdl-ci / Platform check-only (offline) (push) Successful in 21s
nova-release / Compute semver + update tags (push) Successful in 55s
Nova Slides Render / render (push) Failing after 12m34s
acdl-ci / forge_parity_disabled (push) Failing after 13m57s
2026-08-20 14:58:59 +00:00
CIAgent 20cdec8fab merge(phase/01): v1.31 P1 deck-polish complete (REQ-373.1..4, D-247)
Nova Slides Render / render (push) Failing after 25s
2026-08-20 14:58:56 +00:00
CIAgent c179c3e09a docs(milestone): complete v1.31 Leadership Deck Polish II (release v1.30.2)
---ci---
project: acdl
phase: 1
milestone: v1.31
status: complete
requirements:
  covered: [REQ-373.1, REQ-373.2, REQ-373.3, REQ-373.4]
  partial: []
---/ci---
2026-08-20 14:58:52 +00:00
CIAgent a112d6f143 docs(P01): verify complete — smoke test PASS (REQ-373.1..4)
---ci---
project: acdl
phase: 1
milestone: v1.31
status: verify
---/ci---
2026-08-20 14:58:25 +00:00
CIAgent ad280b181b feat(P01): polish leadership deck visible prose + layout (v1.31, D-247)
Enrich on-slide body wording on all 7 slides (slides 2-6 were sparse,
43-67 visible words; now 97-168). Re-balance layout: title -> frame ->
body -> diagram -> closing italic benefit. Invariants preserved:
7 slides, S&P theme tokens, speaker-note bands, [1] citations 3/5/7,
diagram PNGs, footer string. PPTX re-rendered. Smoke test PASS.

REQ-373.1 visible prose density enriched
REQ-373.2 layout improved (renderer block vocabulary unchanged)
REQ-373.3 invariants preserved (D-247)
REQ-373.4 PPTX re-rendered; check_leadership_deck.sh exits 0

---ci---
project: acdl
phase: 1
milestone: v1.31
status: execute
---/ci---
2026-08-20 14:58:18 +00:00
7 changed files with 89 additions and 52 deletions
+9 -9
View File
@@ -1,19 +1,19 @@
{ {
"phase": 0, "phase": 1,
"stage": "plan", "stage": "verify",
"milestone": "v1.31", "milestone": "v1.31",
"phase_role": "pre_execution", "phase_role": "execution",
"attempts": 0, "attempts": 0,
"updated_at": "2026-08-20T16:18:00Z", "updated_at": "2026-08-20T16:35:00Z",
"project": "acdl", "project": "acdl",
"projects": ["acdl", "nova-blockchain-exchange"], "projects": ["acdl", "nova-blockchain-exchange"],
"active_milestone": "v1.31", "active_milestone": "v1.31",
"milestone_branch": "milestone/v1.31-leadership-deck-polish", "milestone_branch": "milestone/v1.31-leadership-deck-polish",
"phase_branch": "acdl/phase/00-pre-execution", "phase_branch": "acdl/phase/01-deck-polish",
"tag_line": "v1.30.x", "tag_line": "v1.30.x",
"phase_name": "pre-execution", "phase_name": "deck-polish",
"milestone_type": "nfr", "milestone_type": "nfr",
"reqs_covered": [], "reqs_covered": ["REQ-373.1","REQ-373.2","REQ-373.3","REQ-373.4"],
"reqs_partial": [], "reqs_partial": [],
"previous_milestone": { "previous_milestone": {
"milestone": "v1.30", "milestone": "v1.30",
@@ -22,7 +22,7 @@
"merged_to_main": "13ee34b", "merged_to_main": "13ee34b",
"branches_deleted": true, "branches_deleted": true,
"releases_created": true, "releases_created": true,
"release_ids": [811,812,813,814,818] "release_ids": [811,813,814,818]
}, },
"notes": "v1.31 P0 complete (specify+clarify+research+plan). D-247 locked: refinement-only, theme-preserving invariants. Plan = single vertical slice P1: rewrite visible prose + improve layout in nova-leadership-deck-marp.md, re-render PPTX, smoke test must pass." "notes": "v1.31 P1 VERIFY PASS. check_leadership_deck.sh: ALL CHECKS PASSED. (a) source exists, (b) slide count=7, (c) speaker-note word counts in band, (d) footer present, (e) only S&P theme colors, (f) PPTX exists. [1] citations confirmed on slides 3/5/7. Visible prose density enriched (slides 2-6: 43-67 -> 97-168 words). REQ-373.1..4 all complete."
} }
+3 -3
View File
@@ -1133,9 +1133,9 @@ Full text in `.ciagent/REQUIREMENTS.md` §v1.31. Summary:
note bands, `[1]` citations, diagram PNGs, footer. note bands, `[1]` citations, diagram PNGs, footer.
- **REQ-373.4** — PPTX re-rendered; smoke test exits 0. - **REQ-373.4** — PPTX re-rendered; smoke test exits 0.
### v1.31 phase status (live — tag `v1.30.1` = the milestone release) ### v1.31 phase status (live — tag `v1.30.2` = the milestone release)
| Phase | Status | Tag | | Phase | Status | Tag |
|-------|--------|-----| |-------|--------|-----|
| P0 pre-execution | in flight | v1.30.0 | | P0 pre-execution | complete | v1.30.1 |
| P1 polish | pending | v1.30.1 (milestone release) | | P1 polish | complete | v1.30.2 (milestone release) |
+4 -4
View File
@@ -1114,7 +1114,7 @@ exceptions, **and** `bash scripts/check_leadership_deck.sh` exits 0.
| REQ | Phase | Status | | REQ | Phase | Status |
|-----|-------|--------| |-----|-------|--------|
| REQ-373.1 | P1 | pending | | REQ-373.1 | P1 | complete (v1.30.2) |
| REQ-373.2 | P1 | pending | | REQ-373.2 | P1 | complete (v1.30.2) |
| REQ-373.3 | P1 | pending | | REQ-373.3 | P1 | complete (v1.30.2) |
| REQ-373.4 | P1 | pending | | REQ-373.4 | P1 | complete (v1.30.2) |
+11 -10
View File
@@ -171,16 +171,17 @@
`v1.29.4` (P3 polish) → `v1.29.5` (P4 polished final = milestone `v1.29.4` (P3 polish) → `v1.29.5` (P4 polished final = milestone
release). release).
- **v1.31 (active):** Leadership Deck Polish II — refinement-only NFR - **v1.31 (complete, tag `v1.30.2` = the v1.31 release):** Leadership
milestone. Enriches the v1.30 deck's visible on-slide prose and Deck Polish II — refinement-only NFR milestone. Enriches the v1.30
improves slide layout, then re-renders the PPTX. Preserves all deck's visible on-slide prose and improves slide layout, then
v1.30 invariants (D-247): S&P theme tokens, 7-slide count, speaker- re-renders the PPTX. Preserves all v1.30 invariants (D-247): S&P
note word-count bands, `[1]` citations on slides 3/5/7, the 7 theme tokens, 7-slide count, speaker-note word-count bands, `[1]`
mermaid diagram PNGs, and the footer string. No new slides, no new citations on slides 3/5/7, the 7 mermaid diagram PNGs, and the
diagrams, no renderer changes; the citizen-developer deck is footer string. No new slides, no new diagrams, no renderer changes;
untouched. 4 requirements (REQ-373.1..4), 1 decision (D-247). Tags the citizen-developer deck is untouched. Visible prose density
run on the v1.30.x line: `v1.30.0` (P0) → `v1.30.1` (P1 = milestone raised (slides 26: 4367 → 97168 visible words). 4 requirements
release). (REQ-373.1..4), 1 decision (D-247). Tags ran on the v1.30.x line:
`v1.30.1` (P0) → `v1.30.2` (P1 = milestone release).
> **Full v1.0v1.24 phase detail, wave ordering, success criteria, and > **Full v1.0v1.24 phase detail, wave ordering, success criteria, and
> decision cross-references:** `.ciagent/archive/ROADMAP-v1.0-v1.24.md`. > decision cross-references:** `.ciagent/archive/ROADMAP-v1.0-v1.24.md`.
+17 -1
View File
@@ -11,7 +11,23 @@
> *why*, read `NORTH_STAR.md`. For *how*, read `ARCHITECTURE.md`. For > *why*, read `NORTH_STAR.md`. For *how*, read `ARCHITECTURE.md`. For
> *what was decided*, read `PROJECT.md` load-bearing decisions. > *what was decided*, read `PROJECT.md` load-bearing decisions.
> >
> **Last milestone ship:** v1.29 (`v1.28.6`, 2026-08-20) — Reposplit + > **Last milestone ship:** v1.31 (`v1.30.2`, 2026-08-20) — Leadership
> Deck Polish II. Refinement-only NFR milestone: enriched the v1.30
> leadership deck's visible on-slide prose (slides 26: 4367 → 97168
> visible words) and improved slide layout (title → frame → body →
> diagram → closing italic benefit), then re-rendered the PPTX. All
> v1.30 invariants preserved (D-247): S&P theme tokens (`#D6002A`,
> `#1B1B1B`, `#FFFFFF`, `#F0F0F0`), 7-slide count, speaker-note word-
> count bands, `[1]` citations on slides 3/5/7, the 7 mermaid diagram
> PNGs, the footer string. No new slides, no new diagrams, no
> renderer changes; the citizen-developer deck untouched. Smoke test
> `scripts/check_leadership_deck.sh` PASS. 4 requirements (REQ-
> 373.1..4), 1 decision (D-247). Tags ran on the v1.30.x line:
> `v1.30.1` (P0) → `v1.30.2` (P1 = milestone release). 7 S&P-themed
> mermaid diagrams reused unchanged. 2 Gitea releases: 819 (P0),
> 820 (P1 milestone).
>
> **Previous milestone ship:** v1.29 (`v1.28.6`, 2026-08-20) — Reposplit +
> Identity Layer Bring-Live. Feature milestone: platform operations > Identity Layer Bring-Live. Feature milestone: platform operations
> extracted to a Gitea-private Terraform repo (`nova-platform-ops`, > extracted to a Gitea-private Terraform repo (`nova-platform-ops`,
> OPER-PRIV); `acdl/acdl` standardized on GitHub (D-232, `.gitea/` > OPER-PRIV); `acdl/acdl` standardized on GitHub (D-232, `.gitea/`
+45 -25
View File
@@ -54,9 +54,9 @@ style: |
> *Velocity is up; the coordination surface around each change is up faster.* > *Velocity is up; the coordination surface around each change is up faster.*
- → Infrastructure is authored by people who don't specialize in infrastructure. - → Infrastructure is authored by people who don't specialize in infrastructure — the platform team is not standing behind every bucket, every instance, every key.
- → Every change is gated because one misconfiguration can expose the entire estate. - → Every change is gated because one misconfiguration can expose the entire estate — so every change is reviewed, every change is manual, and the cost of getting it wrong is account-wide.
- → Compliance, security, and NFRs are checked late — fueling remediation cycles that erode delivery cadence and team morale. - → Compliance, security, and NFRs are checked late — after the PR, after the merge, sometimes after the deploy — fueling remediation cycles that erode delivery cadence and team morale.
> *Nova absorbs all three — owned building blocks, separation of concerns, attested compliance up front.* > *Nova absorbs all three — owned building blocks, separation of concerns, attested compliance up front.*
@@ -80,12 +80,16 @@ Nova absorbs all three. Owned building blocks, separation of concerns, attested
> *You already recognize this pattern.* > *You already recognize this pattern.*
![diagram](assets/png/leadership-slide-2.png) Every Central IT team curates a golden image for Windows, for Linux, for macOS. They own it, they patch it, they ship it — and consumers consume it without thinking about what is inside. That trade — per-application control for uniform operability — is one every enterprise has already made at the OS layer.
Central IT curates the golden image; Nova curates the cloud infrastructure. Owned, patched, attested, consumed by contract. Nova plays the same role one layer up: for everything that runs your cloud. S3 buckets with SSE-KMS posture. RDS instances with deletion protection and PITR. Lambda containers with static ABAC binaries. ALBs, ECS services, KMS keys, DynamoDB tables. Each primitive is owned by the platform team, patched by the platform team, attested by the platform team, and consumed by anyone who declares a contract.
The difference is rigor: every primitive is versioned, tested across its entire lifecycle, and bounded by policy before any consumer ever touches it.
> *Nova's lane is the infrastructure beneath the application. AppSec stays with the application team.* > *Nova's lane is the infrastructure beneath the application. AppSec stays with the application team.*
![diagram](assets/png/leadership-slide-2.png)
<!-- <!--
The Central IT golden-image pattern is one every leadership team already recognizes. Central IT curates the Windows image, the Linux image, the macOS image. They own it, they patch it, they ship it, and consumers consume it without thinking about what is inside. That trade — per-application control for uniform operability — is a trade every enterprise has already made at the OS layer. The Central IT golden-image pattern is one every leadership team already recognizes. Central IT curates the Windows image, the Linux image, the macOS image. They own it, they patch it, they ship it, and consumers consume it without thinking about what is inside. That trade — per-application control for uniform operability — is a trade every enterprise has already made at the OS layer.
@@ -102,12 +106,14 @@ And the lane stays narrow. Nova's lane is the infrastructure beneath the applica
> *Two tenets discipline every other decision.* > *Two tenets discipline every other decision.*
**Sovereign boundary** — Nova governs the delivery lifecycle; it does not reach upstream into product or software development [1]. Integration with SDLC and PDLC partners — the IDE, the sprint tool, the author workflow, the agent harness — happens exclusively through the validated, published contract surface. What lives outside the contract is not Nova's domain.
**Lower autonomous · higher attested** — lower environments proceed through agentic, zero-touch automation; promotion to qa, prod, and dr requires deliberate human attestation [1]. Not a rubber stamp — a policy-mandated act of accountability by a named human distinct from the PR author. The compute the platform makes; the choice the human keeps.
> *Everything else in the architecture inherits from these two.*
![diagram](assets/png/leadership-slide-3.png) ![diagram](assets/png/leadership-slide-3.png)
**Sovereign boundary** — Nova governs the delivery lifecycle; it does not reach upstream [1]. Integration with SDLC and PDLC happens exclusively through the contract surface.
**Lower autonomous · higher attested** — lower environments proceed through agentic automation; promotion requires deliberate human attestation [1]. The compute the platform makes; the choice the human keeps.
<!-- <!--
The architecture is principled, not improvised. Two tenets discipline every other decision the platform makes, and both come straight from the vision document [1]. The architecture is principled, not improvised. Two tenets discipline every other decision the platform makes, and both come straight from the vision document [1].
@@ -122,14 +128,14 @@ And the point for this room: these two tenets are not aspirational. They are loa
## Live · Attested · Stays human ## Live · Attested · Stays human
**Live today** — 41 capabilities across 12 domains; pilot confidence 0.800. The contract ingestor, the audit outbox, the state buckets, and the live pilot run have operated in our AWS estate since v1.7. DORA, adoption, and policy-conformance metrics flow to PowerBI from the same audit stream as the lineage — one pane, no second source of truth. Every finding carries one owner, one patch state, one audit entry.
**Attested on promotion** — qa, prod, and dr require a named human approver distinct from the PR author. Rubber stamps cannot be silently issued; the attestation is a policy-mandated act of accountability.
**Stays human — by design** — confidence below the autonomy threshold at qa, prod, or dr triggers human escalation [1]. Some categories of decision are preserved for human judgment, and the platform says so out loud.
![diagram](assets/png/leadership-slide-4.png) ![diagram](assets/png/leadership-slide-4.png)
**Live today** — 41 capabilities across 12 domains; pilot confidence 0.800. One pane, no second source of truth.
**Attested on promotion** — qa, prod, dr require a named human approver distinct from the PR author.
**Stays human — by design** — confidence below the autonomy threshold triggers human escalation [1].
<!-- <!--
Three columns, three claims, one disambiguation. The claims are real, observable, and disciplined — and the distinction matters for this room. Three columns, three claims, one disambiguation. The claims are real, observable, and disciplined — and the distinction matters for this room.
@@ -144,14 +150,25 @@ Disciplined: attested on promotion, stays human by design. qa, prod, and dr requ
## The boundary keeps us honest ## The boundary keeps us honest
![diagram](assets/png/leadership-slide-5.png) > *Nova stays where it belongs.*
**In Nova's lane** — infrastructure primitives, operational guardrails, CVE response at the infra layer. **In Nova's lane**
**Outside Nova's lane** — application business logic, IDE & sprint workflows [1], AppSec, VM/bare-metal/OS lifecycles [1]. - → Infrastructure primitives: S3, RDS, Lambda, ECS, DynamoDB, KMS, CloudFront.
- → Operational guardrails: confidence, policy, attestation, audit lineage.
- → CVE response at the infrastructure layer.
**Outside Nova's lane**
- → Application business logic.
- → IDE, sprint, and author workflows [1].
- → Application-layer security: AppSec, dependency review, runtime threat modeling.
- → VM, bare-metal, and OS lifecycles [1].
> *The line is the contract. Everything below it is Nova. Everything above it stays where it has always been.* > *The line is the contract. Everything below it is Nova. Everything above it stays where it has always been.*
![diagram](assets/png/leadership-slide-5.png)
<!-- <!--
The boundary is not a defensive posture. It is an operating principle — and it is the principle that keeps the architecture honest [1]. The boundary is not a defensive posture. It is an operating principle — and it is the principle that keeps the architecture honest [1].
@@ -168,15 +185,18 @@ The line is the contract. Everything below the contract is Nova. Everything abov
> *Where CDLC meets SDLC + PDLC — through the contract surface, not above it.* > *Where CDLC meets SDLC + PDLC — through the contract surface, not above it.*
![diagram](assets/png/leadership-slide-6.png) **α (now → Q4'26) — Operating model + federated governance.** A named platform-ops body owns the platform; SLAs on every L2 are ratifiable by platform and consumer. The operating model is published; integration surfaces for SDLC and PDLC harnesses are documented at the contract boundary.
**α (now → Q4'26)** Operating model + federated governance. **β (Q1'27) — Auto-published infra observability.** Every consumer stack ships with CloudWatch dashboards, uptime-kuma monitors, and alert routing on apply — infrastructure observability as a property, no per-team authoring required.
**β (Q1'27)** Auto-published infra observability.
**γ (Q2'27)** Runbook generation from telemetry. **γ (Q2'27) Runbook generation from telemetry.** Every L1 primitive ships with an auto-generated incident runbook derived from observed patterns. SREs get a starting runbook, not a blank page.
**δ (Q3'27 → Q4'27)** Audit ledger, tamper-resistant.
**δ (Q3'27 → Q4'27) — Audit ledger, tamper-resistant.** The SQLite hash-evidence stream migrates to S3 Object Lock + JWS signatures. External counsel verifies any production change back to a named human attestation.
> *Nova absorbs no IDE, no editor, no sprint tool, no agent harness.* > *Nova absorbs no IDE, no editor, no sprint tool, no agent harness.*
![diagram](assets/png/leadership-slide-6.png)
<!-- <!--
The 18-month shape is a boundary-respecting integration arc, not an expansion arc. Four milestones, each disciplined by the sovereign-boundary tenet [1]: Nova meets SDLC and PDLC through the contract surface, not above it. The 18-month shape is a boundary-respecting integration arc, not an expansion arc. Four milestones, each disciplined by the sovereign-boundary tenet [1]: Nova meets SDLC and PDLC through the contract surface, not above it.
@@ -195,8 +215,6 @@ Nova absorbs no IDE, no editor, no sprint tool, no agent harness. The contract s
## What we ask · What comes back ## What we ask · What comes back
![diagram](assets/png/leadership-slide-7.png)
**What works now.** Deploying L1 & L2 stacks works today in the sandbox AWS account — 13 L1 primitives and 2 L2 modules, live-applied at confidence 0.800. Next steps: ingest greenfield pilot projects, promote from sandbox to production, integrate with the SPGE constitutional library, and serve as the infrastructure layer. **What works now.** Deploying L1 & L2 stacks works today in the sandbox AWS account — 13 L1 primitives and 2 L2 modules, live-applied at confidence 0.800. Next steps: ingest greenfield pilot projects, promote from sandbox to production, integrate with the SPGE constitutional library, and serve as the infrastructure layer.
**What we ask.** Architecture endorsement. Runway to the next milestone. **What we ask.** Architecture endorsement. Runway to the next milestone.
@@ -207,6 +225,8 @@ Nova absorbs no IDE, no editor, no sprint tool, no agent harness. The contract s
> *What we do not ask for: an IDE, a sprint tool, an author workflow, an upstream pipeline. Nova stays in its lane [1].* > *What we do not ask for: an IDE, a sprint tool, an author workflow, an upstream pipeline. Nova stays in its lane [1].*
![diagram](assets/png/leadership-slide-7.png)
<!-- <!--
This is presented to Infrastructure and Operations leadership in August 2026. What works now: deploying L1 and L2 stacks works today. 13 L1 primitives and 2 L2 modules are live in the registry; the pilot ran a live terraform apply against the dev AWS account at v1.26 and returned confidence 0.800 — a measured number, not a forecast. We refer to the dev account colloquially as the sandbox. Next steps: ingest greenfield pilot projects (greenfield consumers with no legacy to reconcile), promote from sandbox to production (the promotion path with HITL gates exists; the pilot was dev-only, so activating qa, prod, dr is the next step), integrate with the SPGE constitutional library (an external governance system the audience recognizes; the platform meets it at the contract surface), and serve as the infrastructure layer. This is presented to Infrastructure and Operations leadership in August 2026. What works now: deploying L1 and L2 stacks works today. 13 L1 primitives and 2 L2 modules are live in the registry; the pilot ran a live terraform apply against the dev AWS account at v1.26 and returned confidence 0.800 — a measured number, not a forecast. We refer to the dev account colloquially as the sandbox. Next steps: ingest greenfield pilot projects (greenfield consumers with no legacy to reconcile), promote from sandbox to production (the promotion path with HITL gates exists; the pilot was dev-only, so activating qa, prod, dr is the next step), integrate with the SPGE constitutional library (an external governance system the audience recognizes; the platform meets it at the contract surface), and serve as the infrastructure layer.
Binary file not shown.