chore(ops): post-merge #171 operator redeploy, live execute verify, Woodpecker #172
Labels
No labels
agent:implement
agent:ready
backend
bug
cannot-reproduce
confirmed
desktop
docs
documentation
duplicate
enhancement
feature
frontend
good first issue
help wanted
high-risk
in-review
invalid
mobile
needs-triage
P0-critical
P1-high
P2-medium
P3-low
qa
QA
question
ready
report
responsive
security
security-escalate
smart-contract
solana
tablet
test-pass
ux
wallet-issue
wallet:keplr
wallet:metamask
wallet:station
wallet:walletconnect
wontfix
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference
code/cl8y-bridge-monorepo#172
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Summary
After merging #171 / #170, production still needs the operator image that contains INV-OP-W11/W12, a live execute + Hash Verification check, and Woodpecker actually enabled on this repo.
Do not reopen #170 for this. Code is on
main(2906caa).Tasks
execute_queue+with_retryable_rpc_fallbackonwithdrawExecute*.withdrawExecuteMint/Unlockwithout a manualcast send. Then/verify?hash=shows verified + dest Executed./verify?hash=stays Pending and shows cancel remaining and/or the GL-127 EVM rate-limit banner (not a blank Approved card).mainrequiresci/woodpecker/pr/woodpecker. This repo currently has no webhook and no.woodpecker.yaml, so the check never posts and PRs cannot merge withoutforce_merge. Enable the project onci.cl8y.com, add a digest-pinned.woodpecker.yaml(operatorwriters::/rpc_fallback+ frontend hash-verify unit tests at minimum; do not skip scanners without a recorded reason), and confirm a PR pipeline posts success. NeedsWOODPECKER_TOKEN(bao-exec) andwg0to the vault if enabling from the workstation.Out of scope
Acceptance
main@2906caaor later/verify?hash=matches AC2/AC3 on that rowci/woodpecker/pr/woodpeckersuccess withoutforce_mergeOps progress (agent)
Done
.woodpecker.yamlis on PR #173 (issue/172,915d3ec). Steps: gitleaks, operatorwriters::+rpc_fallback, frontend hash-verify unit tests. cargo-audit stays in.github/workflows/test.ymluntil a digest-pinned audit image exists (recorded in the yaml).ci/woodpecker/*statuses yet. The project is not enabled on https://ci.cl8y.com.main@2906caaor later for AC2/AC3. Do not publish live hash ids here.Blocked (need operator)
Workstation site
wg0is down, sobao-execcannot reach OpenBao. That blocks Coolify API redeploy, Woodpecker repo enable via API, and cl8y-pm assigner inbox POST.After
wg0is up, the same agent path can:bao-execCoolify operator (+ frontend) redeploy,POSTWoodpecker activate for this repo, and file remaining inbox cards. Live AC1 still needs a dest-approved EVM execute after the cancel window (or Verify naming the on-chain limiter).Inbox cards were not filed (assigner token is vault-backed).
Operator copy-paste (desktop)
Then on https://ci.cl8y.com: enable
code/cl8y-bridge-monoreposo PR #173 can postci/woodpecker/pr/woodpecker.Redeploy from Coolify (or existing frontend host): operator and frontend from
main@2906caaor later. Confirm the running operator includesexecute_queue/with_retryable_rpc_fallback.Not closing this issue. AC: operator redeploy, live AC1–AC3, Woodpecker success on a PR.
Status
Landed #174 on
main(4586378).ci/woodpecker/pr/woodpeckersucceeded on that PR withoutforce_merge. The follow-up push pipeline onmainalso succeeded. Operator and frontend were redeployed from that commit (2906caaor later).AC3 observed live: Hash Verification on a dest Approved-not-executed row stayed Pending, hash-matched, and showed Awaiting operator execute after the cancel window (not a blank Approved card).
AC1 / AC2 still open. Leftover dest-approved EVM payouts are under TokenRegistry
minPerTransaction(0.1tokena-cb / tdec-cb). After the 0.50% fee, a0.1send becomes0.0995and dest-execute is terminal. Existing Terra-src pending rows on BNB are still unapproved. Need a new Terra Classic → BNB (or other EVM dest) whose dest payout is at least0.1(send0.11or more). No manualwithdrawExecute*/cast send.Assigner could not attach inbox cards to this repo (
code/cl8y-bridge-monorepois not in the cl8y-pm link allowlist). Copy-paste commands are in the agent reply, not on this issue as live hashes.Leaving this issue open until one above-min dest-execute is verified.
Status
Landed #174 on
main(4586378).ci/woodpecker/pr/woodpeckersucceeded on that PR withoutforce_merge. The follow-up push pipeline onmainalso succeeded. Operator and frontend were redeployed from that commit (2906caaor later).AC3 observed live: Hash Verification on a dest Approved-not-executed row stayed Pending, hash-matched, and showed Awaiting operator execute after the cancel window (not a blank Approved card).
AC1 / AC2 still open. Leftover dest-approved EVM payouts are under TokenRegistry
minPerTransaction(0.1tokena-cb / tdec-cb). After the 0.50% fee, a0.1send becomes0.0995and dest-execute is terminal. Existing Terra-src pending rows on BNB are still unapproved. Need a new Terra Classic → BNB (or other EVM dest) whose dest payout is at least0.1(send0.11or more). No manualwithdrawExecute*/cast send.Assigner could not attach inbox cards to this repo (
code/cl8y-bridge-monorepois not in the cl8y-pm link allowlist). Copy-paste commands are in the agent reply, not on this issue as live hashes.Leaving this issue open until one above-min dest-execute is verified.