Delivery & Operations
Safe delivery, reversible changes and production reliability
หน้านี้แสดงเป็นตัวอย่างเท่านั้น · แผนผังตามต้นแบบ ส่วนสภาพแวดล้อมจริงอยู่ในแผงท้ายหน้า
DEV
Development
- Synthetic data
- Fast feedback
- Postgres ใน Docker
- Verbose tracing
STAGING
Staging / UAT
- De-identified data
- Migration rehearsal
- Visual/E2E tests
- Stakeholder acceptance
PROD
Production
- Strict RLS
- Controlled releases
- Backups and alerts
- Incident response
RESEARCH
Research Sandbox
- Snapshot datasets
- No production write
- Reproducible analysis
- Export approvals
Delivery pipeline
Evidence-based release01Plan & ADR
→Scope, risks, contracts, owners, rollout
02Implement
→Bounded slice, migrations, tests, docs
03Quality gates
→Lint, types, unit, RLS, E2E, evals, security
04Staging
→UAT, performance, migration and rollback rehearsal
05Approval
→Engineering, security, product and data owner
06Release
→Progressive rollout, feature flags, rollback ready
07Observe
SLO, errors, agent quality, data quality, user outcomes
Reliability controls
| Area | Control | Evidence |
|---|---|---|
| Database | Backups, PITR, migration rollback, restore drill | Restore test report |
| Application | Error budgets, health checks, graceful degradation | SLO dashboard |
| Agents | Budgets, model fallback, circuit breaker, eval thresholds | Trace + eval report |
| Security | Secret rotation, audit, incident playbooks | Security review log |
| Research | Versioned snapshots and analysis manifest | Dataset lineage |
Incident flow
Detect
Alert from errors, security, data quality or agent eval regression
Contain
Disable route/tool/model, revoke capability or switch fallback
Recover
Rollback code/migration, restore data, re-run affected jobs
Learn
Post-incident review, new test/eval item and policy update
สภาพแวดล้อมจริงของต้นแบบบนโฮสต์นี้
รันอยู่| ส่วน | สิ่งที่รันอยู่ | เปิด |
|---|---|---|
| เว็บ | Next.js ผ่าน systemd หลัง nginx + TLS | ดู |
| API | Fastify ผ่าน systemd · `GET /health` ตรวจได้ | ดู |
| ฐานข้อมูล | PostgreSQL 16 ใน Docker · migration ครบ · RLS บังคับทุกตาราง PII | ดู |
| ที่เก็บหลักฐาน | MinIO (S3 SigV4) · ด่านยืนยันอัปโหลดห้าขั้น | ดู |
| ประตูโมเดล | LiteLLM · ยังไม่มีคีย์ · ห้ามรัน LIVE จนกว่าผู้วิจัยจะกำหนดเพดานงบ | ดู |
Operational simplicity: เริ่มจาก 6 deployable components—Web/BFF, Application Core, Agent Runtime, Database, Worker และ Observability—โดยยังไม่แยก Microservices จนมีเหตุผลจาก Scale จริง