Required fields
14
Sovereign Garifuturist LMS
Public-safe, phone-first checklist for the self-hosted backend decision blocking academy.garifunalearningacademy.com. This page does not collect private values, expose local paths, create infrastructure, create credentials, change DNS, or open classes.
Generated: 2026-08-31T06:33:39Z
public_release=false · school_opening_ready=false · provisioning remains blocked until owner authorization and reviewer authority gates pass.
Required fields
14
Owner-only facts
9
Official form modified
Provisioning authorized
The current launch snapshot still reports 14 missing or invalid backend decision fields. Keep provisioning closed until the official private operations form is filled, reviewed, and explicitly authorized.
A private owner-review worksheet now exists in the external operations library. This public page shows only safe counts and status; it does not publish provider account details, contact paths, backup targets, approval names, or timestamps.
Assistant status
PASS_OWNER_BACKEND_FILL_ASSISTANT_READY_NOT_AUTHORIZED
Owner-only remaining
9
Private leaks
0
official_form_modified=false · safe recommendations=8
This page is intentionally public-safe. The real values must be entered only in the private external operations form, then the validation sequence below must be rerun before any backend provisioning or DNS action.
Private locator policy
private_external_operations_form_not_public_path
Current private audit
BLOCKED_PRIVATE_BACKEND_DECISION_INTAKE_INCOMPLETE_OR_NOT_AUTHORIZED
missing_or_invalid=14
Do not paste secrets or account details into the public webapp. Fill the private TSV on the external drive, then run owner backend private-intake validation.
safe or locked owner confirm
HOST-001
Select the self-hosted staging lane. Shared hosting is not sufficient unless root/container/runtime controls are proven.
Exposure: safe public summary
owner only exact value required
OWNER_REQUIRED_EXACT_PROVIDER_PLAN
Required before any server purchase, connection, or deployment.
Exposure: private owner value
owner only exact value required
OWNER_REQUIRED_REGION_OR_JURISDICTION
Required for sovereignty, latency, support, privacy, and legal review.
Exposure: safe public summary
owner only exact value required
OWNER_REQUIRED_NUMERIC_CEILING
Prevents unbounded spend before staging authorization.
Exposure: safe public summary
safe or locked owner confirm
MARAGAÑ (Shaka) MAGARADA_OR_NAMED_DELEGATE_OWNER_CONFIRM
Self-hosted backend requires accountable patching, monitoring, restore, and incident ownership.
Exposure: private or public owner choice
owner only exact value required
OWNER_REQUIRED_PRIVATE_CONTACT_PATH
Must not be published; needed for downtime, breach, restore, and support escalation.
Exposure: private owner value
owner only exact value required
OWNER_REQUIRED_ENCRYPTED_OFF_SERVER_BACKUP_TARGET
Primary server loss must not destroy LMS records; server snapshots alone are insufficient.
Exposure: private owner value
owner only exact value required
OWNER_REQUIRED_ISO_DATE_BEFORE_PILOT
Backup is not launch evidence until isolated restore succeeds.
Exposure: safe public summary
safe or locked owner confirm
STAGING_HOSTNAME_FIRST_THEN_ACADEMY_CUTOVER_AFTER_QA_ROLLBACK
Protects academy.garifunalearningacademy.com from premature cutover.
Exposure: safe public summary
safe or locked owner confirm
KEYCLOAK_OR_OIDC_MFA_STAFF_ADMIN_NO_OPEN_REGISTRATION
Required for RBAC, revocation, minors safeguards, and auditability.
Exposure: safe public summary
owner only exact value required
OWNER_REQUIRED_PRIVATE_INCIDENT_CONTACT_PATH
Required for breach, downtime, grade tampering, and child-data exposure response.
Exposure: private owner value
safe or locked owner confirm
POSTGRES_DUMP_OBJECT_EXPORT_CONFIG_EXPORT_DNS_ROLLBACK_BEFORE_PILOT
Sovereignty requires exit and restore ability.
Exposure: safe public summary
owner only exact value required
OWNER_REQUIRED_WHEN_AUTHORIZING
Audit authority for staging infrastructure work.
Exposure: private or public owner choice
owner only exact value required
OWNER_REQUIRED_UTC_TIMESTAMP_WHEN_AUTHORIZING
Required audit timestamp. Do not prefill before approval.
Exposure: safe public summary
State change: none
State change: read only validation
State change: writes public safe status snapshot
State change: validation only
State change: validation only
State change: validation only
State change: build artifacts only
State change: read only audit
Mobile intake readiness is a public-safe owner workflow only; it does not store submitted values, expose local paths, modify the official form, authorize provisioning, create credentials, change DNS, import data, open classes, approve public release, or prove school-opening readiness.