Data Index

A repository document, rendered for the site. View source markdown.

New to cub? Install the cub CLI first. You can pull and render public catalog packages without an account. Commands that save or change ConfigHub data require you to sign in.

Generated at: 2026-07-30T12:38:02.000Z UTC · source: committed helm-expt evidence for this rendered repository document.

This directory contains generated evidence, CSVs, and summary pages for the Helm experiment. The data is meant to answer three questions without requiring readers to inspect every recipe folder:

What outcomes are promised?
Which tests prove those outcomes?
What is the current status for each chart, base, derived variant, and feature?

Quick Routes

Do not start by opening every CSV. Pick the question first, then use the smallest generated surface that answers it.

QuestionStart with
I want the current status of the agreed Top 50.top50-completion/summary.md<br>top50-completion/plan.csv
I want the compact catalog data routing index.catalog-index/summary.md
I want the broad chart/version/base status in one browser sheet.master-catalog-matrix/matrix.html<br>master-catalog-matrix/summary.md<br>master-catalog-matrix/matrix.csv
I want the current headline status.status-dashboard/summary.md
I want to know if I can use a specific chart.chart-use-guide/summary.md<br>chart-use-guide/chart-use-guide.csv
I want the plain-English path from one chart preset into ConfigHub.confighub-example-guides/summary.md<br>confighub-example-guides/guides.csv
I want to know if I can use a chart AND how: support level beside evidence depth, prerequisites, quirks, the applicable skill, and the cub-scout post-apply check.chart-fact-sheets/summary.md<br>chart-fact-sheets/fact-sheets.html<br>chart-fact-sheets/fact-sheets.csv
I know the chart name and need paths to bases, receipts, hook routes, quirk routes, and decisions.chart-evidence-router/summary.md<br>chart-evidence-router/router.csv
I want to know what outcomes are actually promised and proven.outcome-evidence-contract/summary.md<br>outcome-evidence-contract/outcomes.csv
I want the next work queues.status-dashboard/next-work-queues.csv<br>status-dashboard/active-proof-queue.csv
I want to know which catalog base to try first.top20-base-readiness/start-here.md
I want to know whether any top-20 chart/base is easy, partial, blocked, or watch.top20-base-readiness/summary.md
I want one spreadsheet row per chart/base proof lane.outcome-coverage/base-outcomes.csv
I want to check whether a public claim is backed, partial, planned, or refused.claims-register/summary.md<br>claims-register/claims.csv
I want to know whether value-change blast radius is measured or still assumed.blast-radius-accuracy/summary.md<br>blast-radius-accuracy/cases.csv
I want the top-100 coverage contract.top100-coverage/summary.md<br>top100-coverage/coverage.csv
I want the strict top-100 work queue.top100-coverage/work-queue.md<br>top100-coverage/work-queue.csv<br>top100-coverage/decisions-needed.md
I want to know which useful base variants need designing next.useful-base-design-queue/summary.md<br>useful-base-design-queue/queue.csv
I want to know which useful base variants have been made real.useful-base-realization-wave/summary.md<br>useful-base-realization-wave/wave.csv
I want the source-scan quirk work queue.quirk-work-queue/summary.md<br>quirk-work-queue/top100-queue.csv
I want the hardest top-100 proof gaps to assign next.hard-proof-gaps/summary.md<br>hard-proof-gaps/shortlist.csv
I want remote dependency closure status.remote-dependency-closure/summary.md<br>remote-dependency-closure/top100.csv
I want the first strict top-100 promotion wave.top100-promotion-wave/summary.md<br>top100-promotion-wave/wave.csv<br>top100-promotion-wave/fast-track.md<br>top100-promotion-wave/fast-track-reviews/README.md<br>top100-promotion-wave/fast-track-reviews/storage-rollback/README.md<br>top100-promotion-wave/fast-track-reviews/target-scope/README.md<br>top100-promotion-wave/work-orders.md
I want to know how upstream chart updates are handled.refresh-survival/summary.md<br>latest-top20-refresh/action-queue/summary.md<br>latest-top20-refresh/replacement-decisions/summary.md
I want one complete chart-upgrade, promotion, and live-rollout example.redis-upgrade-app-proof/summary.md
I want one public, no-account walkthrough from package pull through a retained Redis base choice and verified OCI output.redis-public-walkthrough-proof/summary.md
I want the ConfigHub, OCI, Argo CD, and Kubara platform-delivery example.kubara-oci-delivery-proof/summary.md
I want the ConfigHub, OCI, Argo CD, and Sveltos fleet-delivery example.sveltos-oci-delivery-proof/summary.md
I want the top-100 or top-500 planning picture.top100-readiness/summary.md<br>top100-readiness/next80-queues.md<br>top500-catalog-analysis/review.csv
I want live parity status.live-kind-parity/summary.md<br>live-helm-confighub-compare/summary.md<br>live-matrix-burndown/summary.md<br>gitops-health-residue/summary.md
I want large ConfigHub upload/apply/GitOps operations split into visible stages.large-config-operations/summary.md<br>large-config-operations/operations.csv
I want to understand local live non-pass rows.local-live-triage/summary.md<br>local-live-triage/triage.csv
I want hook, APIService, CRD, webhook, or lifecycle status.hook-coverage/summary.md<br>apiservice-coverage/summary.md<br>apiservice-coverage/work-orders.md<br>lifecycle-boundary/summary.md<br>webhook-cert-lifecycle/summary.md<br>outcome-coverage/feature-outcomes.csv
I want candidate routes for hook-bearing source charts.hook-route-candidates/summary.md<br>hook-route-candidates/candidates.csv<br>hook-route-candidates/work-orders.md
I want the machine-readable lifecycle route contract: where a hook or hidden behavior goes, who executes it, the default, and the off-ramps.lifecycle-routes/summary.md<br>lifecycle-routes/routes.csv<br>lifecycle-routes/routes.json
I want to know which operating skill/playbook applies to a chart.chart-skills/summary.md<br>chart-skills/skills.csv<br>chart-skills/skills.json
I want the executable action plan for a chart's hooks/lifecycle: phase, action kind, facts, evidence, and whether it runs automatically.lifecycle-route-actions/summary.md<br>lifecycle-route-actions/actions.csv<br>lifecycle-route-actions/actions.json
I want the compact ConfigHub-facing render config for each real Helm base variant, with the full proof chain still attached.helm-render-intents/summary.md<br>helm-render-intents/intents.csv<br>helm-render-intents/intents.json
I want the installer package OCI ref users should pull for each chart/version.installer-oci-packages/summary.md<br>installer-oci-packages/packages.csv<br>installer-oci-packages/packages.json
I want to follow one configuration from its source digest through ConfigHub, output OCI, delivery, and live observation.oci-evidence-chains/summary.md<br>oci-evidence-chains/matrix.csv<br>oci-evidence-chains/chains.json
I want to know why a two-cluster kind-parity row is watch or blocked, who fixes it, and whether I can use the chart today.kind-parity-decisions/summary.md<br>kind-parity-decisions/decisions.csv<br>kind-parity-decisions/decisions.json
I want to know why a GitOps/OCI or live Helm-vs-ConfigHub row is watch or blocked, who fixes it, and whether I can use the chart today.live-parity-decisions/summary.md<br>live-parity-decisions/decisions.csv<br>live-parity-decisions/decisions.json
I want the next live commands grouped into small ordered run blocks, with a predicted residue family per row (derived, never a claim).live-run-blocks/summary.md<br>live-run-blocks/run-blocks.csv<br>live-run-blocks/run-blocks.json
I want every non-green/not-yet-run matrix cell triaged into needs-a-run vs needs-a-fix vs needs-modeling vs already-decided, with a reason and next action.matrix-completion-audit/summary.md<br>matrix-completion-audit/audit.csv<br>matrix-completion-audit/audit.json
I want the variant-promotion column as an actionable queue: which variants can run cub variant promote now, which old watch receipts need rerun on the fixed ConfigHub server, and which are blocked by proof prerequisites.variant-promotion-closeout/summary.md<br>variant-promotion-closeout/closeout.csv<br>variant-promotion-closeout/closeout.json
I want the remote-image watch rows turned into product decisions: the exact missing image, where it fails, and whether to refresh the chart/base, override the image, pin/mirror a digest, route a lifecycle image, or watch/refuse.remote-image-runtime-workdown/summary.md<br>remote-image-runtime-workdown/workdown.csv<br>remote-image-runtime-workdown/workdown.json
I want the ready-to-run variant promotions grouped into safe serial batches of commands to run once ConfigHub auth returns.variant-promotion-proof-batches/summary.md<br>variant-promotion-proof-batches/batches.csv<br>variant-promotion-proof-batches/batches.json
I want the catalog-owned model gaps (rows that need a recipe/base change, not a re-run): the gap kind, the recommended action, and any sibling base that already passes.model-gap-workdown/summary.md<br>model-gap-workdown/workdown.csv<br>model-gap-workdown/workdown.json
I want the target/user prerequisites a base needs before it can pass (a CRD, Namespace, Secret, storage, external API, or target topology), who owns each, and the exact prerequisite name.target-prerequisite-workdown/summary.md<br>target-prerequisite-workdown/workdown.csv<br>target-prerequisite-workdown/workdown.json
I want an action packet per non-green row: what to stage before rerunning (create-namespace / stage-secret / install-crds / provide-external-service / provide-storage-or-topology / operator-review), the required inputs, the evidence to look for, and the rerun command.target-prerequisite-actions/summary.md<br>target-prerequisite-actions/actions.csv<br>target-prerequisite-actions/actions.json
I want every current model gap and target prerequisite routed to a product resolution path: new base variant, existing sibling base, derived target variant, target-scoped policy, or operator review.model-prereq-resolution/summary.md<br>model-prereq-resolution/resolution.csv<br>model-prereq-resolution/resolution.json
I want the ranked plan to reach 100% verified matrix disposition: the non-green cells collapsed into action families by cells-cleared-per-action, owner lane, and linked issues, with variant promotion as a first-class family.coverage-completion-plan/summary.md<br>coverage-completion-plan/actions.csv<br>coverage-completion-plan/actions.json
I want extension-slot or custom-config risk.extension-slots/summary.md<br>nginx-config-checks/summary.md
I want production support status and next actions.status-dashboard/next-work-queues.csv<br>production-support-decisions/summary.md<br>production-support-decisions/work-items.csv<br>production-support-decisions/decisions.csv<br>hard-chart-production-packets/summary.md
I want accepted pre-review production dispositions.production-disposition/summary.md<br>production-disposition/support-decision-contract.md<br>production-disposition/support-decision-queue.csv

Start Here

FileUse it for
top50-completion/summary.mdThe agreed fifty-task programme: current status, evidence, verification command, and completion step for every outcome.
catalog-index/summary.mdCompact question-to-source router for top100/top500 catalog status, prerequisites, base gaps, blockers, and evidence.
master-catalog-matrix/matrix.htmlHuman/product browser view: one row per chart/version/base with user route, strongest evidence, core lanes, production scope, hooks, quirks, hard gaps, and next action.
master-catalog-matrix/matrix.csvMachine/spreadsheet form of the master catalog matrix. Same row set as matrix.html, without relying on color.
master-catalog-matrix/summary.mdCompact GitHub orientation for the master catalog matrix.
status-dashboard/summary.mdStart here for a one-page status dashboard: top100, top500 evidence, proof lanes, hooks, quirks, GitOps, and live parity.
chart-use-guide/summary.mdChart-use guide: one short answer per top-100 chart for whether to use it now, promote it, design a better base, or decide a limitation first.
confighub-example-guides/summary.mdPlain-English guide set for how each public chart preset stores rendered YAML in ConfigHub: what was rendered, why it is the starting point, how to repeat it, and what prerequisites remain.
anonymous-oci-ci-proof/summary.mdAnonymous OCI work in GitHub Actions: public package digest, rendered object set, OCI-layout digest, pull-back comparison, and explicit limits.
oci-evidence-chains/summary.mdSource-neutral OCI evidence chains for Helm, AICR, cub installer, Kubara, Sveltos, and literal Kubernetes configuration, with missing delivery or observation kept explicit.
redis-upgrade-app-proof/summary.mdLive Redis Upgrade App proof: retain a post-render replica change across a chart upgrade, show the two-wave environment impact, promote in sequence, and check one OCI digest on two Argo CD clusters.
redis-public-walkthrough-proof/summary.mdPublic Redis walkthrough: anonymously pull two published chart versions, retain the existing-Secret base across the upgrade, keep Secret objects out of both renders, and verify each local OCI output by pulling it back.
kubara-oci-delivery-proof/summary.mdLive platform proof: approve a Kubara-generated base in ConfigHub, run its CRD, Secret, and Redis setup work, package the prepared objects as portable OCI, reconcile them with Argo CD, and bring up one selected Metrics Server Application.
sveltos-oci-delivery-proof/summary.mdLive fleet-platform proof: approve a Sveltos ClusterProfile in ConfigHub, package the approved object as portable OCI, reconcile it with Argo CD, let Sveltos install Kyverno on the matching workload cluster, and repair drift.
chart-evidence-router/summary.mdPer-chart evidence router: chart-use answer, first base, catalog path, proof lanes, variant revisions, receipts, hooks, quirks, production decisions, and next action.
status-dashboard/next-work-queues.csvMachine-readable next work queues for top100 catalog work, top20 production support, live parity, and hook/lifecycle work.
status-dashboard/active-proof-queue.csvCurrent non-pass live parity rows with the exact support artifact that should be handled before rerun.
status-dashboard/top20-status.csvCompact chart-by-chart status for the top-20 public catalog: recommended base, setup command, base-readiness mix, evidence strength, proof lanes, feature summary, gaps, next action.
top20-base-readiness/start-here.mdShort guide to the clean first catalog paths: chart, base, command, and production-support reminder.
top20-base-readiness/summary.mdOne row per top-20 base variant: which bases are good first paths and which need prerequisites, runtime review, or hook lifecycle work.
outcome-coverage/summary.mdStart here. Outcome promises, tests that prove them, and links to the four front-door CSVs.
outcome-coverage/chart-outcomes.csvOne row per chart: model support, production readiness, lane counts, hard gaps, feature summary.
outcome-coverage/base-outcomes.csvOne row per chart/base variant: render parity, ConfigHub proof, local live, GitOps/OCI live, live Helm parity.
outcome-coverage/derived-variant-outcomes.csvOne row per derived ConfigHub variant: intended-state proof and target-bound live status.
outcome-coverage/feature-outcomes.csvOne row per chart feature: hooks, generated secrets, CRDs, webhooks, required values, schemas, extension slots, gaps.
claims-register/summary.mdClaim-to-evidence register: public claims, status, evidence paths, scoped verifiers, and limits.
claims-register/claims.csvSpreadsheet form of the claim-to-evidence register.
blast-radius-accuracy/summary.mdMeasured blast-radius accuracy seed: predicted affected objects compared with actual committed rerender diffs.
blast-radius-accuracy/cases.csvSpreadsheet form of measured and unmeasured value-source-map blast-radius rows.
extension-slots/extension-slots.csvOne row per chart with NGINX-like extension slots: scope, built variants, surfaces, route, evidence.
nginx-config-checks/checks.csvNGINX supported-base checks for empty config extension slots, sidecars, metrics, raw objects, and ingress shape.
lifecycle-boundary/summary.mdHook and hook-like lifecycle boundary: hook queue rows, lifecycle observations, evidence, and current limits.
webhook-cert-lifecycle/summary.mdWebhook certificate lifecycle evidence: rows where explicit staged certificate material makes a local live workload converge.
hook-coverage/summary.mdTop-100 hook coverage bridge: joins source-scan hook rows to maintained hook lifecycle rows and candidate route plans.
apiservice-coverage/summary.mdTop-100 APIService coverage bridge: separates rendered APIService object evidence from aggregated API availability evidence.
apiservice-coverage/work-orders.mdAssignable APIService proof-wave work orders: KEDA first, source-only import rows next, and Metrics Server keep-fresh pattern.
hook-route-candidates/summary.mdCandidate hook route plans for source top-100 hook charts that are not yet maintained hook lifecycle queue rows.
hook-route-candidates/work-orders.mdGenerated work orders for turning hook route candidates into maintained route receipts, observations, or explicit blockers.
lifecycle-observations/cert-manager-eso/summary.mdConcrete lifecycle observations for cert-manager and External Secrets: CRD policy, post-apply API readiness, webhook CA injection, and controller-populated Secret data.
live-kind-parity/summary.mdTwo-cluster live parity: regular Helm in one vanilla kind cluster and cub installer output in another.
live-matrix-burndown/summary.mdGenerated live burn-down plan: one row per remaining live-parity or two-cluster kind-parity command needed to close the master matrix live cells.
local-live-triage/summary.mdLocal Kubernetes non-pass triage: every local live fail/block row mapped to a route class, next action, and receipt.
live-helm-confighub-compare/summary.mdSelected live Helm-vs-ConfigHub parity: regular Helm compared with ConfigHub delivery for selected top-20 rows.
live-parity-rerun-plan/summary.mdRerun queue for non-pass live parity rows: next action, current diagnosis, and exact rerun command.
gitops-health-residue/summary.mdGitOps controller-health residue: rows where sync/workload evidence can pass while aggregate controller health still needs explanation.
large-config-operations/summary.mdLarge ConfigHub operation funnel: 50+ object live rows split by runtime, GitOps, target facts, workload convergence, controller health, and missing progress evidence.
production-disposition/summary.mdProduction support boundary for top-20 catalog charts: accepted dispositions, open blockers, and next actions.
production-disposition/dispositions.mdDetailed production disposition plan: accepted receipts, open dispositions, owners, required evidence, and unblock rules.
production-disposition/next-actions.csvProduction decision work queue: recommended base, decision focus, image digest gap, and next action per top-20 chart.
production-disposition/support-decision-contract.mdProduction support decision contract: required fields, current decision states, and the rule for moving from production-review-ready to production-supported.
production-disposition/support-decision-queue.csvPre-review queue showing the candidate production base, support boundary work, and required evidence before target-scoped decisions.
production-support-decisions/summary.mdTarget-scoped support decision artifacts: supported, rejected, and superseded decisions, boundaries, evidence state, and next action.
production-support-decisions/work-items.csvOne row per production-support task or keep-fresh item: chart, base, work type, status field, priority, action, and source decision.
production-support-decisions/decisions.csvOne row per target-scoped support decision artifact: chart, base, decision state, target scope, evidence decision, and next action.
external-scan-lane/chart-workdown.csvChart-level scan/gate workdown: grouped scanner findings, priority, and next action before production disposition.
scan-disposition-workdown/workdown.csvScan warning routes: which rows need fixes, hardened bases, explicit security acceptance, runtime endpoint review, or PDB policy decisions.
image-digest-workdown/summary.mdImage digest workdown: rendered image references that need digest resolution, image overrides, or explicit proof receipts before reproducible production OCI support.
pain-point-coverage/summary.mdGeneral Helm pain point coverage: current answers, handoffs, evidence, gaps, and next actions.
top100-readiness/summary.mdTop-100 readiness: one chart-by-chart answer for workability, adoption bucket, strongest evidence, hard gap, next action, and first work queues.
top100-readiness/next80-queues.mdNext80 operating queue: proof-grade non-catalog charts split into promotion review, limitation review, and user-shaped variant work.
top100-coverage/summary.mdTop-100 coverage contract result: covered versus partial rows and item-by-item pass/todo breakdown.
top100-coverage/coverage.csvOne row per top-100 chart: strict coverage contract status, item statuses, evidence paths, and next action.
top100-coverage/work-queue.mdTop-100 strict coverage work queue: promotion review, user-shaped variants, limitation decisions, and first rows.
top100-coverage/work-queue.csvOne row per partial top-100 chart: queue, priority, missing items, first step, done-when rule, evidence, and owner.
top100-coverage/decisions-needed.mdHuman decision memos for top-100 limitation-decision rows.
useful-base-design-queue/summary.mdUseful base design queue for top-100 charts that are proof-grade but too default-shaped to recommend.
useful-base-design-queue/queue.csvOne row per chart needing a useful base proposal: proposed base shape, user job, render choices, target inputs, and proof required.
useful-base-design-queue/families.csvGrouped useful-base design families for assigning batches of related chart work.
useful-base-realization-wave/summary.mdFirst wave of useful base proposals made real as recipe variants and cub installer package bases.
useful-base-realization-wave/wave.csvOne row per realized useful base: strategy, remaining proof work, package base, and recipe variant.
top100-promotion-wave/summary.mdFirst strict top-100 promotion-review wave: proof-grade charts with two-cluster parity that need production disposition and support decisions.
top100-promotion-wave/wave.csvOne row per selected top-100 promotion wave chart: variants, evidence, scan/gate status, first step, and done-when rule.
top100-promotion-wave/wave.yamlMachine-readable strict top-100 promotion wave input.
top100-promotion-wave/fast-track.mdLow-residue top-100 promotion candidates whose remaining work is narrow enough to review quickly.
top100-promotion-wave/fast-track-reviews/README.mdReview packets for the low-residue top-100 promotion candidates.
top100-promotion-wave/fast-track-reviews/storage-rollback/README.mdStorage and rollback review inputs for each fast-track candidate.
top100-promotion-wave/fast-track-reviews/target-scope/README.mdDraft target-scope support decisions for each fast-track candidate.
top100-promotion-wave/work-orders.mdAssignable chart-by-chart review tasks for the first top-100 promotion wave.
top100-promotion-wave/work-orders.csvSpreadsheet work orders for the first top-100 promotion wave: variant selection, scan/gate, lifecycle, live evidence, and support decision tasks.
refresh-survival/summary.mdLatest-version refresh survival: current supported chart versions, upstream update candidates, and promotion gates before replacement.
refresh-survival/refreshes.csvOne row per top-20 chart in the latest refresh review: current version, latest version, candidate proof, promotion state, and next action.
latest-top20-refresh/action-queue/summary.mdAction queue for current top-20 upstream movement: replacement decisions, retained-candidate refreshes, and new-candidate creation.
latest-top20-refresh/action-queue/queue.csvSpreadsheet action queue for latest-refresh work: current version, latest upstream version, retained candidate, priority, command, evidence, and done-when rule.
latest-top20-refresh/action-queue/queue.yamlMachine-readable latest-refresh action queue.
latest-top20-refresh/promotion-work-orders.mdPer-candidate lane closure table for retained proof-complete update candidates.
latest-top20-refresh/promotion-work-orders.csvSpreadsheet work orders for retained candidates: render proof, ConfigHub proof, local live, live parity, production disposition, catalog/site, and top100/top500 refresh.
latest-top20-refresh/replacement-decisions/summary.mdFinal review queue for retained proof-complete update candidates before any supported catalog version is replaced.
latest-top20-refresh/replacement-decisions/decisions.csvSpreadsheet replacement-decision queue: current supported version, retained candidate version, latest upstream version, freshness, proof status, evidence, and next action.
latest-top20-refresh/replacement-decisions/decisions.yamlMachine-readable replacement-decision queue for the retained proof-complete update candidates.
next-ten-waves/summary.mdCompact next work queues: gap review, latest-version promotion, variant build, production disposition, and import prototypes.
attack-plan-workdown/summary.mdBroader execution workdown: import examples, hard gaps, variants, production, runtime/GitOps, latest candidates, and image digests.
top500-catalog-analysis/review.csvTop-500 evidence map: retained source-scan rows joined to current recipe proof, catalog status, version drift, source features, and next action.
variant-path-coverage/summary.mdPer chart/base/path matrix for base variants, diffs, operations, and derived ConfigHub variants.
quirk-coverage/summary.mdCoverage audit for Helm quirks: tracked, partly tracked, source-scanned only, or not scanned.
quirk-work-queue/summary.mdChart-level work queue for converting public top-100 source-scan quirks into modeled, reviewable, and eventually provable catalog facts.
hard-proof-gaps/summary.mdShort assignment surface for the top-100 source-quirk rows most likely to damage trust if overclaimed.
remote-dependency-closure/summary.mdTop-100 remote dependency closure map: source-scan dependency risk joined to maintained recipe dependency locks.
high-fanout-demo/summary.mdPrometheus/kube-prometheus-stack example showing how one base choice changes many objects and prerequisites.
high-fanout-demo/operation-preview.mdPre-ship operation preview for kube-prometheus-stack high-fanout inputs: route, reach, guardrail, and next proof.
kps-public-package-proof/summary.mdAnonymous pull proof for the public kube-prometheus-stack package, including its checked render and chart-specific CRD and webhook setup files.
edge-recovery/summary.mdRecovered graph fragments from catalog-supported recipe artifacts.
csv-index.csvMachine-readable index of every CSV under data/.

The front-door CSVs are intentionally redundant with deeper generated reports. They join the important evidence into a small set of spreadsheet-friendly tables. Use the deeper CSVs when you need drill-down.

CSV Audience Labels

csv-index.csv assigns each CSV one audience label. Use the labels to decide which files are evidence, which files are planning, and which files are supporting drill-down.

AudienceMeaning
user/front-doorStart here. These CSVs join the important proof and status data into reader-facing tables.
verificationEvidence tables for committed proof lanes, live receipts, runtime checks, and parity checks.
corpusMaintained chart facts, feature facts, quirk facts, and graph fragments used by the catalog.
planningWork queues, promotion reviews, refresh candidates, and future catalog expansion inputs.
supportingSecondary generated tables that explain or drill into another summary. Do not cite these as the headline status without following the linked summary.

When in doubt, read in this order:

user/front-door
-> verification
-> corpus
-> planning
-> supporting

Regeneration Order

Use the narrowest generator that matches the change, then run the matching verify command. Do not run live tests just to refresh CSVs.

ChangeRegenerate in this order
Chart facts, quirk facts, or variant metadatanpm run chart-facts, npm run outcomes:generate, npm run top100:readiness, npm run status:dashboard, npm run site:generate
Production support decisions or blockersnpm run production:disposition, npm run production:disposition:details, npm run top100:readiness, npm run status:dashboard, npm run site:generate
Live receipt statusRegenerate the lane summary, then npm run outcomes:generate, npm run status:dashboard, npm run site:generate
Per-chart catalog or artifact map inputsnpm run catalog:maps, then npm run catalog:index if the root catalog view changed
CSV files added, removed, or renamedRun the owner generator first, then npm run data:index

After regenerating, run the same commands with :verify where available. Use npm run verify only as the broad release gate after scoped checks pass.

How To Read Status

TermMeaning
model-supportedThe chart has a complete, honest model for its declared scope. It is not a live-deployment claim by itself.
render paritycub installer setup renders the same Kubernetes object set as regular Helm under recorded inputs.
in-ConfigHubThe rendered objects upload as ConfigHub Units with scan/safe-operation receipts.
local liveThe rendered objects were applied to Kubernetes and observed with workload checks.
GitOps liveConfigHub OCI was reconciled by Argo or Flux and observed.
live parityA live Helm install was compared with ConfigHub delivery paths.
missingNo committed receipt for that exact row yet. This is backlog, not failure.
watchA committed receipt exists and the lane produced useful evidence, but runtime, storage, controller-health, initialization, or operating policy still needs review.
blockedA committed receipt exists, but a target prerequisite, lifecycle route, hook decision, Secret, CRD, storage class, or similar condition must be resolved before the row can pass.
failA committed receipt records a failed check. Read the reason before treating it as a ConfigHub-vs-Helm defect.

Dataset Families

FamilyMain summaryPrimary use
adversarial10adversarial10/summary.mdhard-chart readiness and control-point analysis
apiservice-coverageapiservice-coverage/summary.mdtop-100 APIService coverage joined across source scan, modeled recipe rows, parity evidence, and runtime observations
app-readinessapp-readiness/summary.mdsupporting generated evidence
attack-plan-workdownattack-plan-workdown/summary.mdexecution workdown across gaps and proof lanes
base-variant-recordsbase-variant-records/summary.mdsupporting generated evidence
blast-radius-accuracyblast-radius-accuracy/summary.mdfront-door measured blast-radius accuracy seed and backlog
blast-radius-fleetblast-radius-fleet/summary.mdsupporting generated evidence
capability-profile-witnesses-supporting generated evidence
catalog-promotion-reviewcatalog-promotion-review/summary.mdcatalog promotion worksheet for the 100-chart corpus
catalog-promotion-wave2catalog-promotion-wave2/summary.mdolder user-shaped variant work-order worksheet
chart-claim-integrity-audit-2026-06-22chart-claim-integrity-audit-2026-06-22/summary.mdsupporting generated evidence
chart-evidence-routerchart-evidence-router/summary.mdfront-door per-chart evidence router across bases, receipts, hooks, quirks, and decisions
chart-fact-sheetschart-fact-sheets/summary.mdsupporting generated evidence
chart-factschart-facts/summary.mdper-chart feature, quirk, and hard-gap facts
chart-skillschart-skills/summary.mdadvisory chart-to-skill mapping: which docs/skills/ playbooks apply to each chart and why
chart-use-guidechart-use-guide/summary.mdfront-door can-I-use-this-chart guide
claims-registerclaims-register/summary.mdfront-door public claim-to-evidence register
confighub-example-guidesconfighub-example-guides/summary.mdsupporting generated evidence
coverage-completion-plancoverage-completion-plan/summary.mdranked plan to 100% verified matrix disposition: non-green cells collapsed into action families by cells-cleared-per-action, owner lane, expected status, and linked issues, with variant promotion as a first-class family
cub-adoption-caveatscub-adoption-caveats/summary.mdsupporting generated evidence
cub-scout-diffcub-scout-diff/summary.mdsupporting generated evidence
data-index-CSV index and generated data guide
derived-variant-target-boundderived-variant-target-bound/summary.mdderived ConfigHub variants with target/live evidence
disposition-frontierdisposition-frontier/summary.mdsupporting generated evidence
doc-freshnessdoc-freshness/summary.mdsupporting generated evidence
edge-recoveryedge-recovery/summary.mdrecovered desired-state graph fragments
environment-matrixenvironment-matrix/summary.mdsupporting generated evidence
extension-slotsextension-slots/summary.mdNGINX-like extension-slot coverage and routing
external-scan-laneexternal-scan-lane/summary.mdexternal scanner lane review output
gitops-health-residuegitops-health-residue/summary.mdConfigHub OCI/GitOps controller-health residue classification
gitops-route-emissiongitops-route-emission/summary.mdsupporting generated evidence
hard-chart-production-packetshard-chart-production-packets/summary.mdsupporting generated evidence
hard-proof-gapshard-proof-gaps/summary.mdhard top-100 proof gaps joined across quirk, hook, and dependency queues
helm-catalog-readmeshelm-catalog-readmes/summary.mdsupporting generated evidence
helm-orghelm-org/summary.mdsupporting generated evidence
helm-render-intentshelm-render-intents/summary.mdConfigHub-facing render-intent objects generated only for real base variants, with the proof chain attached
high-fanout-demohigh-fanout-demo/summary.mdPrometheus base-variant fanout and prerequisite example
hook-coveragehook-coverage/summary.mdtop-100 source hook coverage joined across maintained lifecycle rows and candidate route plans
hook-dispositionhook-disposition/summary.mdsupporting generated evidence
hook-lifecyclehook-lifecycle/summary.mdhook-bearing charts and required lifecycle receipt paths
hook-lifecycle-reviewhook-lifecycle-review/summary.mdsupporting generated evidence
hook-route-candidateshook-route-candidates/summary.mdcandidate hook route plans before maintained lifecycle queue admission
image-digest-workdownimage-digest-workdown/summary.mdimage pinning and mutable tag review
installer-oci-packagesinstaller-oci-packages/summary.mdpublic installer package OCI refs and consumer setup commands for chart packages
kind-parity-decisionskind-parity-decisions/summary.mdproduct-readable decisions for non-pass two-cluster kind-parity rows: residue category, who owns the fix, usable-today answer, and next action
large-config-operationslarge-config-operations/summary.mdlarge ConfigHub upload/apply/GitOps operation funnel and progress-evidence gaps
latest-top20-refreshlatest-top20-refresh/summary.mdlatest upstream chart-version refresh candidates
legacy-patch-reviewlegacy-patch-review/summary.mdolder chart-version patch support review
lifecycle-boundarylifecycle-boundary/summary.mdhook queue and hook-like lifecycle observation boundary
lifecycle-observationslifecycle-observations/cert-manager-eso/summary.mdcontroller-owned or hook-like lifecycle observations
lifecycle-route-actionslifecycle-route-actions/summary.mdhook/lifecycle routes projected into machine-readable action packets: phase, action kind, required facts, evidence required, and an explicit automatic flag
lifecycle-routeslifecycle-routes/summary.mdmachine-readable lifecycle route contract: disposition, route, execution mode, default, alternatives, and human/agent off-ramps
lifecycle-routes-by-variantlifecycle-routes-by-variant/summary.mdsupporting generated evidence
live-e2elive-e2e/summary.mdtop-20 local kind runtime status
live-helm-confighub-comparelive-helm-confighub-compare/summary.mdstrict live Helm-vs-ConfigHub parity
live-kind-paritylive-kind-parity/summary.mdtwo-cluster kind parity receipts
live-matrix-burndownlive-matrix-burndown/summary.mdsupporting generated evidence
live-parity-decisionslive-parity-decisions/summary.mdproduct-readable decisions for non-pass ConfigHub OCI + live Helm-vs-ConfigHub (G/P-lane) rows: residue category, who owns the fix, usable-today answer, next action, and support artifact
live-parity-rerun-planlive-parity-rerun-plan/summary.mdrerun queue for non-pass live parity rows
live-run-blockslive-run-blocks/summary.mdread-only run-block plan for the ready-to-run todo rows: small ordered blocks (G/P before K, hard charts first) with a derived (never claimed) predicted residue family and target profile per row
local-live-triagelocal-live-triage/summary.mdfront-door local live non-pass route classes and next actions
master-catalog-matrixmaster-catalog-matrix/summary.mdsupporting generated evidence
matrix-completion-auditmatrix-completion-audit/summary.mdread-only audit of every non-green/not-yet-run matrix cell with lane, state, reason, next action, support artifact, and a completion class separating needs-run from needs-fix from needs-modeling from already-decided
model-completenessmodel-completeness/summary.mdchart-level model support criteria
model-gap-workdownmodel-gap-workdown/summary.mdcatalog-owned model gaps: non-pass rows needing a recipe/base change (not a re-run), classified by gap kind with a recommended action, owner class, and any sibling base that already passes
model-prereq-resolutionmodel-prereq-resolution/summary.mdfront-door resolution bridge for B1/B2 rows: each model gap and target prerequisite mapped to a new base variant, existing sibling base, derived target variant, target-scoped policy, or operator review
next-ten-wavesnext-ten-waves/summary.mdcompact next work queues
next80-full-proofsnext80-full-proofs/summary.md80 additional full proof-grade chart artifacts
nginx-config-checksnginx-config-checks/summary.mdNGINX supported-base config extension checks
oci-evidence-chainsoci-evidence-chains/summary.mdsource-neutral records linking source digest, reviewed configuration, ConfigHub record, output OCI, delivery, and observation
outcome-coverageoutcome-coverage/summary.mdfront-door outcome, test, and status map
outcome-evidence-contractoutcome-evidence-contract/summary.mdsupporting generated evidence
pain-point-coveragepain-point-coverage/summary.mdfront-door Helm pain point coverage map
per-chart-hooksper-chart-hooks/summary.mdsupporting generated evidence
persona-ux-guide-audit-2026-06-22persona-ux-guide-audit-2026-06-22/summary.mdsupporting generated evidence
preview-readinesspreview-readiness/summary.mdsupporting generated evidence
production-dispositionproduction-disposition/summary.mdtop-20 production blockers and next actions
production-support-decisionsproduction-support-decisions/summary.mdtarget-scoped production support decision artifacts
quirk-coveragequirk-coverage/summary.mdHelm quirk-axis coverage audit
quirk-inventory-auditquirk-inventory-audit/summary.mdsupporting generated evidence
quirk-review-queuequirk-review-queue/summary.mdqueue for chart quirks needing human or product review
quirk-work-queuequirk-work-queue/summary.mdsource-scan quirk work queue for top-100 charts
refresh-survivalrefresh-survival/summary.mdlatest-version refresh survival and upgrade seed
remote-dependency-closureremote-dependency-closure/summary.mdremote dependency closure map for top-100 charts
remote-image-runtime-workdownremote-image-runtime-workdown/summary.mdproduct/base decisions for the remote-image watch rows: exact missing image, where it fails, recommended action (refresh / override / pin-mirror / lifecycle-route / watch / refuse), and owner class
runtime-gitopsruntime-gitops/summary.mdArgo/Flux OCI live proof wave
scan-disposition-workdownscan-disposition-workdown/summary.mdscan warning routes to fixes, hardened bases, or explicit dispositions
secret-lifecyclesecret-lifecycle/summary.mdfront-door Secret handling survey for rendered Secrets, target facts, and lifecycle state
serious-chart-reviews-supporting generated evidence
status-dashboardstatus-dashboard/summary.mdone-page front-door status dashboard
target-prerequisite-actionstarget-prerequisite-actions/summary.mdaction packets: per non-green row, what to stage before rerunning (action_kind), the required inputs, the evidence to look for after staging, and the rerun command; automatic=false (preflight plan, not automation)
target-prerequisite-workdowntarget-prerequisite-workdown/summary.mdtarget/user prerequisites: non-pass rows needing a CRD/Namespace/Secret/storage/external-API/topology staged on the target (not a model change), with the exact prerequisite name, owner class, and next action
top100-catalog-analysistop100-catalog-analysis/summary.mdtop-100 proof and promotion surface
top100-coveragetop100-coverage/summary.mdfront-door top-100 coverage contract and work queue
top100-promotion-wavetop100-promotion-wave/summary.mdfirst strict top-100 promotion-review wave
top100-readinesstop100-readiness/summary.mdfront-door top-100 user readiness and evidence summary
top100-user-readinesstop100-user-readiness/summary.mdfront-door top-100 user-language readiness, prerequisites, first base, and next action
top20-base-readinesstop20-base-readiness/summary.mdtop-20 base-variant readiness and first-path guidance
top50-completiontop50-completion/summary.mdfront-door fifty-task programme status, evidence, and completion queue
top500-catalog-analysistop500-catalog-analysis/summary.mdtop-500 catalog planning analysis
torture-suitetorture-suite/summary.mdsupporting generated evidence
useful-base-design-queueuseful-base-design-queue/summary.mdfront-door proposed useful-base queue for default-shaped top-100 charts
useful-base-realization-waveuseful-base-realization-wave/summary.mdfront-door useful-base proposals made real as candidate recipe/package bases
variant-backlogvariant-backlog/summary.mdcandidate base-variant expansion backlog
variant-goldens-golden work orders for derived-variant examples
variant-path-coveragevariant-path-coverage/summary.mdchart/base/path proof status matrix
variant-promotionvariant-promotion/summary.mdserver-side ConfigHub variant promotion status by chart/base
variant-promotion-closeoutvariant-promotion-closeout/summary.mdactionable promotion queue: per variant, whether cub variant promote is ready-to-run, watch-grade pending receipt rerun, or blocked by a proof prerequisite, the owner class, and the exact next command or fix
variant-promotion-proof-batchesvariant-promotion-proof-batches/summary.mdrun plan: the ready-to-run promotions grouped into safe serial batches of 5-10 cub variant promote proof commands to run once ConfigHub auth returns (not completed evidence)
webhook-cert-lifecyclewebhook-cert-lifecycle/summary.mdwebhook serving certificate lifecycle evidence and proof boundaries

Every CSV

The complete CSV list is generated at:

data/csv-index.csv

It includes 171 CSV files. Each row records the path, audience, purpose, summary, and regenerate/verify command where known.

Regeneration

Regenerate and verify this index:

npm run data:index
npm run data:index:verify

The full repository verifier includes the data index:

npm run verify