New crates: stratum-orchestrator (Cedar authz, Vault secrets, Nu/agent executors, saga runner), stratum-graph (petgraph DAG + SurrealDB repo), stratum-state (SurrealDB tracker), platform-nats (NKey auth client), ncl-import-resolver. Updates: stratum-embeddings (SurrealDB store + persistent cache), stratum-llm circuit breaker. Adds Nickel action-nodes, schemas, config, Nushell scripts, docker-compose dev stack, and ADR-003.
7 lines
184 B
Plaintext
7 lines
184 B
Plaintext
// Permit the orchestrator principal to execute any node.
|
|
permit(
|
|
principal == User::"orchestrator",
|
|
action == Action::"execute",
|
|
resource in ResourceGroup::"nodes"
|
|
);
|