Workstream 01
Seal the seams
Real auth, real persistence, real verification, real streams — no stub left on a product path. The admin portal and marketplace currently ship with no authentication at all.
Next safe actionMaintain evidence freshness
Living Program Ledger
Program execution
7 workstreams
Workstream 01
Real auth, real persistence, real verification, real streams — no stub left on a product path. The admin portal and marketplace currently ship with no authentication at all.
Next safe actionMaintain evidence freshness
Workstream 02
Every repo's CI runs green without org secrets; token-gated live jobs skip green; devops aggregates all repos; coverage floors everywhere. Today the sandbox CI is a silent no-op and devops' reusable workflows have zero callers.
Next safe actionNo cross-repo dispatch wiring — orchestrate.yml never triggered
Workstream 03
Dockerfiles, dispatch-gated deploy workflows, a Terraform target that provisions real resources, secrets plumbing — one human decision away from hosted. Nothing is deployed anywhere today.
Next safe actionNo cross-repo dispatch wiring — orchestrate.yml never triggered
Workstream 04
OTLP in all four SDKs and all services, the devops portal turned into a live dashboard, per-hop sandbox assertions — with optional mirroring to Cuitty Observe. Today only the TypeScript SDK and the protocol crates emit traces.
Next safe actionNo cross-repo dispatch wiring — orchestrate.yml never triggered
Workstream 05
market and admin authenticate their own surfaces through @frauthy/sdk-ts sessions — the product enforcing access to the product.
Next safe actionMaintain evidence freshness
Workstream 06
Cuitty's auth service (BetterAuth-based) adopts Frauthy as its abstraction layer — the flagship external dogfood. Prerequisite landing here: protocol's BetterAuth provider adapter (PROTO-8). The cuitty-side work happens in that workspace.
Next safe action`frauthy tui` live dashboard unbuilt (spec 05 B.4 headline; cui-modeled)
Workstream 07
The `frauthy tui` live dashboard plus up/down/logs presets (modeled on ~/Code/cuitty/cui), and this versioned status site with its markdown ingestion pipeline.
Next safe action`frauthy tui` live dashboard unbuilt (spec 05 B.4 headline; cui-modeled)