docs(secrets): interactive-console quickstart + discoverability sweep

- new task-first quickstart (deployment seeding + KEK-lockout walkthroughs)
- runbook: document the sixth ReferenceStatus (PresentUnverified) + quickstart link
- README + shared-contract + umbrella CLAUDE.md secrets row updated for 0.3.0 console
- CLI usage text now mentions the interactive console (was undiscoverable from --help)
This commit is contained in:
Joseph Doherty
2026-07-19 14:55:53 -04:00
parent 0139c90f89
commit baea6cc2e0
6 changed files with 206 additions and 5 deletions
+4 -2
View File
@@ -52,8 +52,10 @@ Once a target is open, the menu offers:
resolve last-writer-wins (with an optional per-row prompt), and the format is versioned.
There is no login — the console runs locally with direct file/DB access, the same trust model
as any other admin CLI. See the operator runbook for the full walkthrough:
[`docs/operations/interactive-console.md`](docs/operations/interactive-console.md).
as any other admin CLI. New to it? Start with the task-first
[quickstart](docs/interactive-console-quickstart.md) (seed a new deployment; recover a KEK
lockout). For the full flow catalogue, exit-code/Ctrl-C semantics, and security model, see the
operator runbook: [`docs/operations/interactive-console.md`](docs/operations/interactive-console.md).
## How it protects secrets