Releases: seypherWork/iris-ops-studio
Release list
IRIS Ops Studio v1.3.1 — one-hour guard session and clear judge route
This maintenance release improves the optional HTTPS managed guard and the reviewer path. It does not replace the historical v1.3.0 archive or widen the guard to the entire direct SysAdmin console.
- A managed-guard navigation session now has a fixed maximum one-hour family deadline. Bounded native access can renew read-only while the tab is visible and idle, but renewal never extends that deadline or repeats a write.
- Write approval remains workflow-specific and short-lived (at most 60 seconds); exact-target previews remain at most 30 seconds.
- Guard navigation presents only its supported Wallet, Web apps, Access control and local Session journal views. The broad direct console is a separate URL and installation.
- The README and
docs/JURY-EVALUATION.mdprovide distinct routes for safe demo, full direct-console evaluation and the optional managed guard. The guard ZIP includes its ownJUDGE-GUIDE.mdand independent integrity verification.
Verification: 270/270 JavaScript tests, 12 JavaScript syntax checks, independent extract-and-verify of the attached ZIP, 18 native renewal checks on a disposable IRIS Community 2026.2 instance, and one real browser session observed reaching the one-hour boundary. The elapsed-browser observation used the preceding local bundle; this exact new ZIP was not reinstalled for a fresh live-IRIS pass. The separate scripted long-duration test remains unrun. The optional guard reports productionReady: false; it is a bounded technical review package, not an in-place upgrade or a claim of general production readiness.
Attachment: irisops-guard-enrolled-review-v1.3.1-20260927.zip
SHA-256: 748A1B361198AA6AEA850E6AA32CB538724C9A47C21C25D0364E662571B655DE
Extracted bundle content SHA-256: 6cb115882a4cea63f0d7b74854daeed168e8280585a7434db6728f8fcbe7a6f0
Illustrated jury video guides
These guides use synthetic narration to explain the evaluation path; they are not live test footage. Use the written jury evaluation guide and validation record as the technical evidence.
- Install and Evaluate the Contest Entry — installation choices and the judge route.
- How the Bounded Server Guard Verifies a Change — read-only enforcement, short-lived approval, execution and readback.
The three earlier videos document previous direct-console workflows and remain linked in the README.
IRIS Ops Studio 1.3.0 — Bounded Server Guard & Durable Recovery
IRIS Ops Studio 1.3.0 adds an optional IRIS-native managed endpoint for four
deliberately bounded administrative workflows. Server-owned approvals, fresh
preconditions and native readback make the result inspectable; persistent
receipts let operators investigate an uncertain outcome without resending it.
What's new
- Server-controlled execution: deployment READ_ONLY/SUSPENDED states,
native actor authorization, explicit target enrollment and separate,
short-lived write approval for each guarded workflow. - Four bounded workflows: wallet EditResource/UseResource policy;
availability of one eligible web application; grants on one custom test role;
selected-role membership of one separate, disabled test account. - Recovery without repeat writes: actor/proof-bound operation receipts
preserve the original result across interruptions and restarts. Inspection
and reconciliation observe current state; they do not retry a possible write. - Independent review bundle: digest-checked source package, guided installer,
strict TLS and public-only certificate preflight, and ownership-checked stop
with retained data. No npm dependencies, automatic trust import or login-account
creation. - Final audit corrections: recoverable stop cancellation/retry; accurate
local-key cleanup warnings; startup failure handling even if the startup
module never loads; consistent user-profile installation documentation.
Validation
269 JavaScript tests and 20 Linux native-log tests pass. The exact review ZIP
was extracted and installed in fresh IRIS Community 2026.2; 38 integration
checkpoints include authenticated changes, stale/revoked previews, native
readback, interruption/replay/restart recovery and desktop/mobile workflows.
Additional browser checks verify cleanup failures and missing/late startup
modules. See docs/final-audit-remediation-20260927.md for measurements, artifact
hashes, failed harness attempts and untested boundaries.
Install and scope
The standard console/IPM installation and optional managed guard are separate.
The guard is not automatically installed by the standard IPM module and does
not impose a safe mode on every console workspace or other native IRIS tools.
Use the attached review ZIP and its JUDGE-GUIDE.md for the managed evaluation.
Native operator provisioning, target enrollment and CA trust are explicit
administrator tasks. This is not general active-user management, a validated
production deployment or an in-place upgrade. Existing videos show earlier
console versions, not this new guard.
Managed review artifact: irisops-guard-enrolled-review-20260927-c.zip
SHA-256: 5AC960134DD8C27002BC163784CB76B782E7052B6E7F95C9ED3EA0407D85B36E
IRIS Ops Studio v1.2.1 — Native Logs and Guided Wallet Policy
IRIS Ops Studio 1.2.1 adds two focused workflows to the safety-first management portal for InterSystems IRIS 2026.2.
New in 1.2.1
- Bounded native IRIS logs (read-only). An optional IRIS-hosted extension reads paginated records from
messages.log,SystemMonitor.log, andalerts.loginto Incident Timeline. Missing and partial sources are identified explicitly. It accepts fixed source identifiers, not arbitrary file paths, and requires IRIS authentication plus%Admin_Operate:Uand package-namespace read access. - Guided wallet access policy. For an existing non-system collection, review and change only
EditResourceandUseResource. The workflow shows both fields, re-reads immediately beforePUT, blocks stale or malformed state, requires target-bound confirmation, and verifies both fields with a freshGET. Secret values are never requested. - Clearer evidence. Updated screenshots and documentation separate live-IRIS observations from Safe demo fixtures, and state the exact test boundaries.
Verification
The final source archive passed 103/103 JavaScript tests and 20/20 Linux native-reader tests after extraction. Both workflows were exercised against disposable IRIS Community 2026.2 installations, including restricted-account denial, bounded native-log paging, a real stale wallet preview that sent no PUT, and desktop/mobile visual checks. See the 1.2.1 validation record for the precise scope and fixture cleanup.
Source ZIP SHA-256: 62ADDEB9115C08A0C6FE27E435908B4F40CB88E3DBF108C8FABED5C0BB8532C7.
Scope and limits
The core portal remains a same-instance browser client; the native-log endpoint is optional and GET-only. IRIS privileges are the server-side authorization boundary. This release does not claim a portal-wide server-enforced safe mode, atomic wallet writes, a complete downstream user-impact graph, or journal/interoperability log decoding. The existing three videos demonstrate earlier workflows and remain labeled as such.
IRIS Ops Studio v1.2.0 — Guided Web Apps, REST Discovery, and Verified Operations
IRIS Ops Studio 1.2.0 extends the safety-first IRIS operations portal with guided web-application availability changes and an optional, read-only REST documentation catalog. The release also strengthens the existing process, task, access-control, Explorer, and Incident Timeline workflows.
New and improved
- Guide enable/disable for eligible non-system web applications. A complete-configuration preview, target-bound confirmation, fresh pre-write check, and full readback block stale or ambiguous changes. Management, default, and Ops Studio applications remain inventory-only.
- Browse same-origin Management REST and OpenAPI documentation without invoking catalogued operations or forwarding the SysAdmin token. Missing Management API browser permission is shown explicitly.
- Keep previews and delayed responses bound to the selected IRIS connection. Task Run requires a new successful completion before it is marked verified; uncertain writes remain visible for investigation.
- Resolve asynchronous audit responses in Explorer and improve redaction of credential-shaped fields and free text before display or copying. Responsive tables, dialogs, and disabled controls were checked at desktop and mobile sizes.
- Install as a ZPM package in IRIS, run the Community container build, or review the dependency-free Safe demo locally.
Verification
- 84/84 automated tests and seven JavaScript syntax checks passed. Aggregate line coverage was approximately 79.4%, including browser interaction code; this does not prove defect-free operation.
- Fresh IRIS Community 2026.2 installation passed static-asset identity and unauthorized API rejection checks. On that same disposable image, the portal ran and suspended an on-demand no-op task; an independent IRIS read confirmed its new successful completion and suspended state.
- Guided Access Control and stale-preview behavior were exercised on a separate disposable IRIS instance. The exact test boundaries are recorded in
docs/final-remediation-validation-2026-09-24.md. - Validated source ZIP SHA-256:
C1439AF5F8C87C99A44B48BD0D9635354E64FCB047306D7E71882E5B2A4101FA.
Limits
IRIS authorization is the server-side access boundary. The portal's previews, confirmations, and journal are browser-side operator safeguards, not a server-enforced read-only mode. The REST catalog requires separate Management API browser authorization. An in-place upgrade of an existing IRIS installation was not tested. Earlier 1.1.0 videos demonstrate the prior release's workflows and remain clearly labeled.
See the updated README, changelog, and final validation report for setup, supported workflows, and precise evidence.
IRIS Ops Studio 1.1.0 — Verifiable Operations
IRIS Ops Studio 1.1.0 adds verifiable administration workflows to the original safety-first console for InterSystems IRIS Community 2026.2.
New since 1.0.0
- Preview → confirm → execute → readback: guided process, task, user-role, and role-resource changes show the expected result and report whether a fresh read actually matches it. Pending, mismatched, blocked, and unverified outcomes are distinguished from verified changes.
- Safer access changes: user-role and role-resource plans preserve unrelated settings, send only documented mutable fields, and block a stale preview before
PUT. - Incident Timeline: one filtered view of IRIS audit records, task history, and this browser session's operation journal, with source, severity, entity, actor, text, and correlation filters.
- Broader, more honest exploration: 34 SysAdmin API v2 method/path pairs catalogued (27 in 1.0.0), simulated demo results clearly labelled, unsupported demo requests declined, and sensitive fields and credential-shaped text redacted before display.
- Deployment and usability: durable IRIS container data, Node.js 22/24 CI, and responsive desktop/mobile layout checks.
- Updated product tour: three new Safe demo screenshots show Incident Timeline and the process/access preflight dialogs. The earlier overview video is labelled as such.
Verification
57 automated tests pass. The four testable API, explorer, operation, and sanitization modules reached 98.98% aggregate line coverage in the final local run; this is not whole-application coverage. Selected guided workflows and authenticated reads were checked on disposable IRIS Community 2026.2 instances. See the validation report for exact evidence and limits.
Try it
- Safe public demo — no IRIS account required; changes are simulated.
- Run
npm startfor the local demo, ordocker compose up --buildto install into the provided disposable IRIS stack.
Security boundary: previews, confirmations, and journaling are browser-side operator safeguards. IRIS authorization remains the server-side enforcement point. This release does not implement server-enforced per-tab read-only mode, a complete dependency graph, or an all-source IRIS log stream. The existing video documents the original overview; it does not yet show the new 1.1.0 workflows.