Skip to program ledger

Living Program Ledger

Frauthy/Project Management

v37 · 2026-07-28

Program execution

Workstreams

Stable workstream records replace the former initiative cards: objective, explicit owner, repository lane, dependency kind, evidence gate, state, and next safe action.
01

Wave matrix

02

Workstream ledger

7 workstreams

Workstream 01

Seal the seams

Complete

Real auth, real persistence, real verification, real streams — no stub left on a product path. The admin portal and marketplace currently ship with no authentication at all.

Next safe actionMaintain evidence freshness

Workstream 02

CI mesh

At risk

Every repo's CI runs green without org secrets; token-gated live jobs skip green; devops aggregates all repos; coverage floors everywhere. Today the sandbox CI is a silent no-op and devops' reusable workflows have zero callers.

Next safe actionNo cross-repo dispatch wiring — orchestrate.yml never triggered

Workstream 03

Deploy-ready

At risk

Dockerfiles, dispatch-gated deploy workflows, a Terraform target that provisions real resources, secrets plumbing — one human decision away from hosted. Nothing is deployed anywhere today.

Next safe actionNo cross-repo dispatch wiring — orchestrate.yml never triggered

Workstream 04

Observe everywhere

At risk

OTLP in all four SDKs and all services, the devops portal turned into a live dashboard, per-hop sandbox assertions — with optional mirroring to Cuitty Observe. Today only the TypeScript SDK and the protocol crates emit traces.

Next safe actionNo cross-repo dispatch wiring — orchestrate.yml never triggered

Workstream 05

Frauthy protects Frauthy

Complete

market and admin authenticate their own surfaces through @frauthy/sdk-ts sessions — the product enforcing access to the product.

Next safe actionMaintain evidence freshness

Workstream 06

Cuitty adopts Frauthy

Not started

Cuitty's auth service (BetterAuth-based) adopts Frauthy as its abstraction layer — the flagship external dogfood. Prerequisite landing here: protocol's BetterAuth provider adapter (PROTO-8). The cuitty-side work happens in that workspace.

Next safe action`frauthy tui` live dashboard unbuilt (spec 05 B.4 headline; cui-modeled)

Workstream 07

TUI & status site

In progress

The `frauthy tui` live dashboard plus up/down/logs presets (modeled on ~/Code/cuitty/cui), and this versioned status site with its markdown ingestion pipeline.

Next safe action`frauthy tui` live dashboard unbuilt (spec 05 B.4 headline; cui-modeled)