Skip to content

v0.8 W65 — Bounded data-quality policies and monitoring #214

Description

@ammarheidari

Status

ACTIVE — Slice 1/2, Slice 3 evaluator runtime/corrective, Slice 4A lifecycle contracts, Slice 4B durable SQLite/PostgreSQL store, and Slice 4C bounded monitoring worker are protected-main admitted. API/UI closeout remains.

Scope

  • declarative bounded data-quality policy definitions;
  • authorized topic/schema/record monitoring;
  • safe predicates/checks for completeness/shape/schema/range/null/rate patterns;
  • aggregate violation counters/evidence/trends;
  • policy lifecycle and operator UI/API.

Safety

  • record monitoring is explicit opt-in and separately authorized;
  • bounded sampling/window/rate/byte/concurrency with no hidden unlimited consumer;
  • masking/data policy applies before exposed evidence;
  • no arbitrary JavaScript/Python/user code execution;
  • raw payloads are not durably stored by default.

Authority: scope #208; tracker #209; W61/W62 complete.

Activation boundary

Implementation remains bounded by the closed rule grammar and durable aggregate/progress-only evidence model. No implementation may introduce arbitrary-code predicates, unbounded historical scans, consumer-group offset commits, raw-payload persistence or masking bypass.

Admitted slices

Slice 1 / 2

Slice 3

Slice 4A — COMPLETE / PROTECTED-MAIN

  • lifecycle/persistence contracts: PR feat(data-quality): add W65 lifecycle persistence contracts #252;
  • final exact head: ce6e7060f44d82e9523c1193b2aaf8fb5ca44312;
  • protected-main merge baseline: 9572726f9880e82aaf1b836b0a8c1e330c5ca568;
  • all exact-head CI gates: SUCCESS;
  • final Codex review: CLEAN;
  • fresh CODEOWNER approval: APPROVED;
  • lifecycle create vs revision-guarded replace semantics admitted;
  • policy list cursor/truncation bounded;
  • durable evidence requires validated evidence/progress pairing and a closed server-derived source identity.

Slice 4B — COMPLETE / PROTECTED-MAIN

  • durable lifecycle/evidence store: PR feat(data-quality): add W65 durable lifecycle store #253;
  • final exact head: db3feabe59f8b4139b5dcf4900afe9094ceae952;
  • protected-main merge baseline: 8d066a2dacdbf0c647d5be81dc61eea8c8680e34;
  • SQLite standalone + PostgreSQL HA-compatible persistence admitted;
  • optimistic revision CAS, stable pagination, idempotent aggregate/progress evidence persistence admitted;
  • explicit persistence DTO used instead of loosening domain constructors;
  • shared kafdeck_schema_info migration lock protocol aligned across persistence initializers;
  • all exact-head CI, v05 persistence, CodeQL, Codex and CODEOWNER gates clean.

Slice 4C — COMPLETE / PROTECTED-MAIN

  • bounded monitoring worker: PR feat(data-quality): add W65 bounded monitoring worker #254;
  • final exact head: 40e447c4a503bacde36d1167f14271f5c33ac9f9;
  • protected-main merge baseline: a2685bf54778d113878f1a819bfa65bb4a0cf476;
  • exact-head Quality / v03 / v04 / Dependency / Release / CodeQL: SUCCESS;
  • final Codex review: CLEAN;
  • fresh CODEOWNER approval: APPROVED;
  • authorization-before-read, bounded rolling policy rate ceilings, fair cluster/policy/partition rotation, truthful partial/deadline/cancellation semantics and durable continuation behavior are admitted.

API/UI activation is now the remaining W65 closeout scope.

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions