This document records what has already been implemented for the Platform Operations Console, what remains intentionally simplified, and what should be pushed next.
It complements:
- Platform Identity And Operations Architecture
- Platform Operations Console Detailed Design
- Docker Desktop Run Guide
The repository now includes a working first version of the platform console:
- frontend app:
src/Banking.PlatformOps - Docker image and Nginx proxy for local stack execution
- Gateway control-plane routes under
/api/platform/* - Docker Desktop entry point at
http://localhost:18089
The current frontend includes these tabs:
OverviewServicesCompatibilityRolloutsEnvironmentsWorkflowsDiagnosticsMaintenanceAudit
The Gateway currently exposes:
GET /api/platform/overviewGET /api/platform/servicesGET /api/platform/compatibilityGET /api/platform/rolloutsGET /api/platform/environmentsGET /api/platform/workflows/depositsGET /api/platform/workflows/deposits/pending-reviewGET /api/platform/workflows/deposits/runtimeGET /api/platform/diagnostics/correlations/{correlationId}GET /api/platform/audit
The current demo also includes selected controlled actions for deposit support workflows:
- retry deposit compensation
- resolve deposit pending review
- requeue deposit outbox work
These actions already support the control-plane concept, but they are still demo-scoped rather than production-grade privileged operations.
The implemented version already demonstrates several intended platform-design principles.
Banking.Web remains the business operations surface.
Banking.PlatformOps is now a separate runtime support and diagnostics surface.
The platform console reuses and reshapes existing engineering assets:
- runtime health and readiness checks
- OpenAPI contract availability
- workflow diagnostics support
- audit and support-oriented maintenance hooks
The Compatibility module now fetches runtime openapi/v1.json documents from downstream services and compares them to critical-path baselines.
The current payload includes:
- runtime title and version
- runtime path count
- expected critical path count
- missing critical path count
- missing critical path list
- parse or fetch errors
The platform console is not just a design file.
It now runs inside the same Docker Desktop stack as the rest of the system, which makes local platform workflows demonstrable end to end.
The current version is intentionally incomplete in several areas.
- local API-key based auth is still used for the demo
- no Azure Entra ID or external IAM integration yet
- no first-class support-access workflow yet
- no separate security administration console yet
- rollout status is a modeled summary, not fed by a real deployment controller
- environment comparison is a snapshot shape, not a persisted diff system
- compatibility checks compare current runtime state only, not historical drift over time
- no live links to external logs, traces, dashboards, or incident tools yet
- maintenance actions are controlled, but not yet protected by approval flows or step-up auth
- synthetic verification is still mostly a design direction rather than a dedicated module
- persist compatibility snapshots and show drift history
- enrich
Environmentswith version, config, and feature-flag diffs - add service drill-through links for logs, traces, runbooks, and dashboards
- move rollout summary from health-derived heuristics toward explicit deployment metadata
- implement a dedicated
Support Accessmodule with temporary elevation and audit - separate compatibility by surface type: public service, internal service, Gateway, BFF, and operator APIs
- add governed synthetic checks and run history
- introduce incident context objects and ticket references into platform audit records
- align the IAM model with Azure-hosted multi-bank deployment reality
- add multi-environment aggregation beyond local and Docker
- separate platform operations and security administration more clearly as permissions mature
The current implementation has been validated with:
Gatewayintegration testsPlatformOpsfrontend production build- Docker Desktop stack rebuild and manual smoke checks
At the time of writing, the compatibility view successfully returns runtime OpenAPI comparison details for:
customeraccountdepositaudit