Skip to content

ARCH-001 — Establish secure-commerce architecture and an atomic execution backlog #104

Description

@daliu

Problem

The repository lacked one authoritative system design, Stripe/race/merchandise integrity model, dated security risk register, operations runbook, launch gates, and one-agent issue decomposition. Historical docs also presented stale deployment and waiver assumptions as current.

Outcome

Publish a root documentation set that clearly separates assessment baseline, working-tree remediation, target architecture, residual launch blockers, operator procedures, and atomic issue ownership.

Scope

  • Root README, SYSTEM_DESIGN.md, STRIPE_COMMERCE_DESIGN.md, SECURITY.md, OPERATIONS_RUNBOOK.md, IMPLEMENTATION_PLAN.md
  • GITHUB_ISSUES.md, GITHUB_ISSUE_SLICES.md, and repository AGENTS.md
  • Safe environment-name examples and ignore rules
  • Historical banners/corrections under docs/
  • No cloud/provider configuration, deployment, or legal approval

Acceptance criteria

  • Current and target architecture, trust boundaries, invariants, data/state models, and failure recovery are documented.
  • Live commerce is explicitly blocked until every P0 gate has code, tests, configuration, monitoring, owner, and staging evidence.
  • Parent trackers and one-agent children include dependencies, proof, and stop conditions.
  • Inventory semantics, payment/webhook behavior, privacy/security risks, and operational drills are unambiguous.
  • Historical docs cannot be mistaken for current security or waiver instructions.
  • Relative Markdown links and diagnostic build pass.

Dependencies

None. This issue publishes the coordination source; implementation children remain independently claimable and closable.

Coordination

A verified local working-tree implementation predates publication of this issue. This issue records the exact ownership boundary before any further editing or PR work. The existing diff must be isolated onto the claimed branch before review; unrelated changes and the pre-existing public/sitemap.xml modification are excluded.

Do not edit the listed paths or duplicate this outcome while the issue is assigned and has a valid timestamped CLAIMED marker.

Metadata

Metadata

Assignees

Labels

documentationImprovements or additions to documentationpriority:P1High-priority follow-upsize:LLarge cross-boundary issuetype:architectureArchitecture and contract design

Type

No type

Fields

No fields configured for issues without a type.

Projects

No projects

Relationships

None yet

Development

No branches or pull requests

Issue actions