canon(constraints): infra-config-is-seat-work — deploy is push, dashboard ≠ HUMAN-ONLY - #316
Conversation
…oard is not a HUMAN-ONLY class; seven-recurrence lineage
Canon Quality — Frontmatter Schema ✅All 51 file(s) in Validator: |
Canon Quality — Homepage Surfacing ✅51 essay(s) scanned. Soft report — never blocks; the hard field gate is the Frontmatter Schema job. All published essays resolve to the homepage feed. Report: |
Canon Quality — P0010 Retrieval-Readiness
|
Canon Quality —
|
Captain-ordered 2026-09-02 after the seventh recurrence of the same correction ("you do it for me all the time, then claim it is human-only"). Census of 40 repos pushed since 2026-03 found the ruling written locally in AMS (SPEC v1.1.1, 05-05 incident), appbuilder-mcp, bee-ai-auth (
docs/ci-cd.md), and CDO — never at L1. This is the L1 sentence; the house wire is kitchen#69 §10.Also done tonight, by API: 4 Workers (AMS, appbuilder, ptxprint, tincan) still had
wrangler deployon non-main triggers in violation of the 2026-05-05 ruling; patched toversions upload. All 17 house Workers now conform.Captain reviews exact text before merge.
Note
Low Risk
Documentation-only L1 policy; no application code changes in this diff, though it governs how seats handle deploy and infra handoffs.
Overview
Adds a ratified L1 constraint (
canon/constraints/infra-config-is-seat-work.md) so infra expectations live in canon instead of scattered repo docs.It states that production deploy is merge-to-default / git push (no manual
wrangler deploy), that wiring (domains, bindings, secrets, repo hooks, etc.) is done by the seat via the provider API—not by asking the captain to use a dashboard—and that HUMAN-ONLY is a closed set:secret,voice,irreversible, orapproval; labels like “dashboard,” “manual,” or “connect the repo” count as seat misses.The WHY section documents seven recurring captain corrections and ties enforcement to existing pieces: house health-code for concrete API steps, boarding shims citing this URI, and returning PRs that tag HUMAN-ONLY without a valid class (aligned with
human_only_class_namedinodd/gate/prerequisites.md).Reviewed by Cursor Bugbot for commit 70a8261. Bugbot is set up for automated code reviews on this repo. Configure here.