Skip to content

Qualify the v1.1 Candidate on physical amd64 and arm64 #105

Description

@BrettKinny

This was generated by AI during triage.

Type: HITL

What to build

Perform the final physical-hardware qualification of one v1.1 Candidate digest on both amd64 and arm64, verify the signed release assets and lifecycle identity, and record the promotion decision. This is the human gate after platform-specific UAT; both machines must pull the same manifest digest and no image rebuild is permitted between qualification and promotion.

Acceptance criteria

  • Record the Candidate version, source SHA, multi-architecture digest, both host/runtime versions, and links to the completed platform UAT issues.
  • Pull the published Candidate by digest on physical amd64 and physical arm64 hardware and confirm each native image starts.
  • On both architectures, release.json, the version file, MOTD, checked-out source ref/SHA, image repository, and digest agree.
  • Verify every release asset against SHA256SUMS, the checksum Sigstore bundle against the exact workflow/tag identity, and the image identity signature.
  • Run fresh and retained-home Compose flows against the digest on both architectures; Workspace and Managed-home state persist through force recreation.
  • Confirm stable installers cannot discover this Release before all required Evidence and assets pass.
  • Confirm the published Evidence report contains every required amd64/arm64 scan, lifecycle, setup, update, Podman, Compose, and PowerShell assertion.
  • Promote the exact tested digest without rebuilding; version aliases and GHCR/GitHub latest identify the greatest stable version.
  • Rerun an older stable workflow or equivalent dry-run check and confirm it cannot rewind either latest pointer.
  • Record an explicit promote/no-promote decision and any follow-up defects in this issue.

Blocked by

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or requestready-for-humanRequires human implementation or judgment

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions