Setup operating model
Synced from
lytebase-infra/setup/docs/OPERATING_MODEL.md. Runpnpm sync:docsto refresh this snapshot.
Setup operating model
Section titled “Setup operating model”Runtime key
Section titled “Runtime key”Use one runtime key everywhere:
k3sswarm
Automation ownership
Section titled “Automation ownership”lytebase-cliowns plan/apply/reconcile/destroy automation.setup/ops/is for human runbooks and break-glass procedures only.
Runtime-state location
Section titled “Runtime-state location”Generated files belong outside committed setup/ content.
Do not assume one fixed repo-local generated-state path as part of the supported operating model.
Examples include generated kubeconfig material, Terraform state, inventories, plans, and execution artifacts.
Schema policy
Section titled “Schema policy”Use JSON Schema only (*.schema.json) for setup and environment tooling.
Secrets policy
Section titled “Secrets policy”- Encryption standard:
sops+age - Commit only encrypted secret material (
*.enc.yaml) when needed - Keep plaintext secrets out of git