docs(runbook): absorb durable knowledge from retired plans #528
Inga granskare
Etiketter
Inga etiketter
area/backups
area/ci
area/control-panel
area/identity
area/infra
area/observability
area/payments
area/security
area/storage
area/web
blocked
needs-info
needs-triage
ready-for-implementation
type
bug
type
chore
type
docs
type
epic
type
feature
type
task
wontfix
Ingen milstolpe
Inget projekt
Inga tilldelade
1 deltagare
Notiser
Förfallodatum
Inget förfallodatum satt.
Beroenden
Inga beroenden satta
Referens
bitborg/bitborg-infra!528
Läser in…
Hänvisa till i nytt ärende
Ingen beskrivning angiven.
Ta bort grenen "docs/runbook-absorb-plans"
Borttagning av en gren är permanent. Även om den borttagna grenen kan fortsätta existera en kort tid innan den faktiskt tas bort, kan det INTE ångras i de flesta fall. Vill du fortsätta?
Move durable operational knowledge into the runbook and fix stale statements.
Runbook additions:
ReferentialIntegrityand read-only token (403) signatures (observed on 1.10.4).replace-responseroute and its traps, and why it was rejected.bitborg-webtile on the Kanidm dashboard cannot be hidden. Renaming a client display name is SSO-safe.Fixes:
Renovate section: schedule 00:30, tenant mode, bot
bitborg-renovate(created by the forgejo role),bitborg_renovate_last_run_status.Stale "Render app.ini diff always appears" (gone since ADR 0031).
Backups are encrypted to the verify recipient only when it is set.
Removed the invite-code section and the invite provisioning note (open registration since ADR 0029). Kept the legacy
invite_codesupdate in the user-erasure SQL, since old rows may still name the user.Dropped references to retired plan files, in the runbook and in comments in non-rendered files. No behaviour change, no apply needed.
Switchover status now says every tranche was applied 2026-08-09 to 2026-08-11, with the rest pinned (ADR 0039 Outcome). Tranche sections 3, 9 and 10 are marked historical. Added the never-blanket-replace
gitborg_warning (gitborg_web,gitborg_ephemeral). Conventions now names the real service user (gitborg, nologin shell) and the workingsudo -u gitborg env ...recipe. Operationalgit.gitborg.sereferences changed togit.bitborg.se; the redirect measurements keep the old name.