docs(skill): preserve canonical Apsuflow declarations

This commit is contained in:
tmk241
2026-08-14 08:23:14 +02:00
parent 3619cb6336
commit e78a1ec1e9
+13 -5
View File
@@ -71,11 +71,19 @@ declaration diff, passes `fmt --check`, `validate`, and preferably `apply
--dry-run`, then applies that exact reviewed file set. Record its revision, --dry-run`, then applies that exact reviewed file set. Record its revision,
context, dry-run, and post-apply workload/route evidence. context, dry-run, and post-apply workload/route evidence.
Do not create a second source of truth through hand-edited runtime state or an Keep one canonical ordered declaration set in the elected IaC repository; it may
uncommitted mystery file. A manual restart may be an emergency diagnostic action, contain multiple `.apsu` files. A host-side `.apsu` is only an optional
but the durable repair belongs in IaC and must converge after re-apply. If live convenience mirror: keep it at one predictable path, prove it byte-identical to
state cannot be reconstructed from the elected declaration, stop and reconcile the reviewed revision before use, and remove temporary inspection or deployment
that drift before making another change. copies. Do not create a second source of truth through hand-edited runtime state
or an uncommitted mystery file.
If the elected declaration is missing, stop and recover its reviewed repository
revision or ask the owner for it. A control-plane backup may restore the server's
canonical desired state, but it is not a supported `.apsu` export; never generate
replacement IaC from a backup, SQLite, or inferred live state. A manual restart
may be an emergency diagnostic action, but the durable repair belongs in IaC and
must converge after re-apply.
## Install and update ## Install and update