Files
net-kingdom/workplans/ADHOC-2026-06-14.md
2026-06-14 19:51:05 +02:00

941 B

id, type, title, domain, repo, status, owner, topic_slug, created, updated
id type title domain repo status owner topic_slug created updated
ADHOC-2026-06-14 workplan Ad hoc NetKingdom operator usability fixes netkingdom net-kingdom finished codex netkingdom 2026-06-14 2026-06-14

Ad hoc NetKingdom operator usability fixes

SOPS Custody Unlock Helper

id: ADHOC-2026-06-14-T01
status: done
priority: medium

Added a custody unlock helper for SOPS/age operations so drills and incident commands can use the password-safe/offline custody age private key without installing it permanently on a workstation.

The helper validates the supplied private key against the expected public age recipient, writes a temporary 0600 SOPS_AGE_KEY_FILE, runs the requested command or opens an incident shell, and removes the temporary key on exit.

Documented the inter-hub recovery-drill path:

make sops-custody-run COMMAND='make -C /home/worsch/inter-hub recovery-drill'