Skip to content

[codex] Add workspace governance guidance for enterprise onboarding#1270

Draft
llewellyn-sl wants to merge 2 commits intomasterfrom
EDU-1118-docs-draft
Draft

[codex] Add workspace governance guidance for enterprise onboarding#1270
llewellyn-sl wants to merge 2 commits intomasterfrom
EDU-1118-docs-draft

Conversation

@llewellyn-sl
Copy link
Copy Markdown
Contributor

Summary

  • add practical workspace-planning guidance for larger organizations
  • recommend narrower workspace-scoped GCP service accounts and credential boundaries
  • clarify how cross-cloud data access depends on the launching workspace, compute environment, and work directory

Source

Doc target

  • platform-cloudplatform-cloud/docs/orgs-and-teams/workspace-management.md
  • platform-cloudplatform-cloud/docs/credentials/data_repositories.md

Rationale

The ticket asked for enterprise onboarding guidance without introducing a large new guide. These edits keep the change on existing pages that users already consult when setting up organization workspaces and GCP data access, while adding the missing governance and credential-scoping advice that had been handled ad hoc.

Validation

  • File-level validation confirming the new workspace-planning and GCP guidance is present
  • Full Docusaurus build not run in this environment because node_modules are not available in the automation clone

Follow-up questions / gaps

  • If the education team wants a fuller SOP-style onboarding guide later, that should likely become a new page once the desired canonical workflow is agreed across CS and education.
  • The cross-cloud note here stays at the planning level and intentionally does not prescribe provider-specific network or IAM topologies beyond what the current docs already support.

@netlify
Copy link
Copy Markdown

netlify bot commented Apr 3, 2026

Deploy Preview for seqera-docs ready!

Name Link
🔨 Latest commit f3fa5da
🔍 Latest deploy log https://app.netlify.com/projects/seqera-docs/deploys/69d7c8c9ff9d3800088621ca
😎 Deploy Preview https://deploy-preview-1270--seqera-docs.netlify.app
📱 Preview on mobile
Toggle QR Code...

QR Code

Use your smartphone camera to open QR code link.

To edit notification comments on pull requests, go to your Netlify project configuration.

- Use shared workspaces when you want to centralize reusable pipelines or compute environments for multiple groups, while still letting each consuming workspace keep its own participants and day-to-day operations.
- Keep workspace credentials aligned to the data and infrastructure that the workspace is expected to operate. Avoid reusing a single broad credential across unrelated groups when separate credentials or narrower scopes are available.

This model makes it easier to onboard new groups consistently, audit who can access a given bucket or compute environment, and limit the blast radius of later credential changes.
Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Suggested change
This model makes it easier to onboard new groups consistently, audit who can access a given bucket or compute environment, and limit the blast radius of later credential changes.
This model makes it easier to onboard new groups consistently, audit who can access a given bucket or compute environment, and limit the impact of later credential changes.

@christopher-hakkaart
Copy link
Copy Markdown
Member

Adding comments rather than editing so others can evaluate the PR as well.

Largely, this is a good draft. The content appears reasonable for addressing the questions raised in the ticket. My GCP knowledge is limited.

Editorially, I think the tense drifts a little in the added text. Also, some very long sentences could be shorter. I'm also not sure if this is the best location for "Workspace planning for larger organizations"; to me, it should be called out before creating a workspace section, as it frames some of the decisions/steps for the rest of the page.

@justinegeffen justinegeffen added 1. Editor review Needs a language review 1. Dev/PM/SME Needs a review by a Dev/PM/SME labels Apr 9, 2026
@justinegeffen justinegeffen requested a review from gavinelder April 9, 2026 15:43
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

1. Dev/PM/SME Needs a review by a Dev/PM/SME 1. Editor review Needs a language review codex codex-automation

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants