-
Notifications
You must be signed in to change notification settings - Fork 0
Evaluate polkit-based privileged operations #35
Copy link
Copy link
Open
Labels
area/securityPermissions, secrets, controller exposure, hardening, and audits.Permissions, secrets, controller exposure, hardening, and audits.area/serviceService backends, systemd units, deployment scope, and migration.Service backends, systemd units, deployment scope, and migration.priority/P2-post-v1Deferred until after the v1.0 stabilization line.Deferred until after the v1.0 stabilization line.type/featureA user-visible capability to add.A user-visible capability to add.
Milestone
Description
Metadata
Metadata
Assignees
Labels
area/securityPermissions, secrets, controller exposure, hardening, and audits.Permissions, secrets, controller exposure, hardening, and audits.area/serviceService backends, systemd units, deployment scope, and migration.Service backends, systemd units, deployment scope, and migration.priority/P2-post-v1Deferred until after the v1.0 stabilization line.Deferred until after the v1.0 stabilization line.type/featureA user-visible capability to add.A user-visible capability to add.
Context
Roadmap item imported from
PLAN_REQUEST.mdandPLAN_RESPONSE.mdfor v1.1+ — Post-v1 Backlog.Upstream references
Upstream decision
Reason: Deferred evaluation; do not add a privileged helper daemon in v1.
Scope
Acceptance criteria
Out of scope
v1.1+ — Post-v1 Backlog.Dependencies
Security and rollback considerations
Apply Mihoto's safety rule for this issue: updates, migrations, service changes, TUN/DNS changes, and credential handling must be explicit, validated, auditable, and recoverable. Secrets and subscription URLs must be redacted from logs and issue artifacts.