p24-infra Documentation
Infrastructure repository for the Ecotrans fleet platform — monitoring, automation, bare-metal servers, and AI agents that keep the operational platform running 24/7.
Quick Navigation
| I need to… | Go to |
|---|---|
| See all open priorities | priorities — start here |
| Rotate a credential | README |
| Respond to an alert | README |
| Check what’s running | README |
| Add a new service | README |
| EU AI Act status | eu-ai-act-compliance — deadline 2026-08-02 |
| Find an ops runbook | README |
| Read the latest strategy / capacity plan | strategia-p24-infra-2026 |
| Read the critical process/procedure review | analiza-infrastruktury |
| See past documentation/infra audits | INDEX |
Active Risks
| Risk | Severity | Notes |
|---|---|---|
| bms-1 Ubuntu 20.04 EOL | CRITICAL | Kernel & OS no longer receives security patches; upgrade required |
| MongoDB backup stale 4+ months | CRITICAL | Last verified restore test >4 months ago; see README |
| EU AI Act deadline 2026-08-02 | HIGH | Annex III high-risk obligations; see README |
18 Perspectives
| # | Perspective | What it covers |
|---|---|---|
| 01 | README | System design, element taxonomy, modernisation roadmap |
| 02 | README | Every server, VPS, SaaS, and container currently running |
| 03 | README | Day-to-day operational runbooks for each service |
| 04 | README | Prometheus, Grafana, Alertmanager, custom exporters |
| 05 | README | Backup status, DR plan, Wasabi S3 retention |
| 06 | README | SOPS+age, rotation procedures, secrets inventory |
| 07 | README | SSH keys, OAuth, role assignments, least-privilege |
| 08 | README | Alert runbooks, on-call escalation, incident classification |
| 09 | README | Cloudflare DNS, wildcard records, Traefik/Caddy routing |
| 10 | README | Per-server patch cadence, OS upgrades, hardware notes |
| 11 | README | n8n workflows, audit-engine, Claude agents, cron jobs |
| 12 | README | Monthly spend breakdown, cost dashboard, optimisation |
| 13 | README | Supabase, Cloudflare, Mailgun, Wasabi, Discord, Vercel |
| 14 | README | EU AI Act, infrastructure-standard, documentation audits |
| 15 | README | SSH hardening, CVE scanning, firewall, EOL tracking |
| 16 | README | Session plans, change log, rotation log |
| 17 | README | Naming conventions, element spec, workbook template |
| 18 | README | Audit-engine workbooks — what runs, when, and what it checks |
Navigation hub — do not store secrets or operational data here.