Background
CoreLink is one product across multiple implementation repositories. This work is owned by sdk-python under EPIC-05.
Problem
The repository does not yet provide a supported, reproducible and acceptance-tested way to resolve public license policy and publish signed packages with sandbox conformance.
Goal
Resolve public license policy and publish signed packages with sandbox conformance, aligned with tagged contracts and the shared CoreLink release train.
Parent
- Primary Product Epic: EPIC-05
- Backlog ID:
PY-03
Scope
- Deliver the title outcome inside
sdk-python.
- Reconcile contract version, authentication, tenancy, error, compatibility, packaging and documentation behavior where applicable.
- Retain evidence for the Beta gate.
Out of Scope
- Hand-written divergence from the normative contracts.
- Unsupported production claims before an artifact and conformance evidence exist.
- A separate repository roadmap.
Acceptance Criteria
Technical Notes
Generated artifacts must identify immutable contract provenance. Security-sensitive tools use least privilege, explicit consent, audit and safe token handling. Package channels must distinguish prerelease from stable.
Dependencies
Planning Metadata
- Type: Technical Task
- Priority: P0
- Product milestone: Beta
- Domains: sdk, deployment
- Area: package
- Complexity: M
- Initial status: Triage
- DRI: Unassigned
- Intended labels:
type:technical-task, priority:p0, domain:sdk, domain:deployment, area:package
Definition of Done
Background
CoreLink is one product across multiple implementation repositories. This work is owned by
sdk-pythonunder EPIC-05.Problem
The repository does not yet provide a supported, reproducible and acceptance-tested way to resolve public license policy and publish signed packages with sandbox conformance.
Goal
Resolve public license policy and publish signed packages with sandbox conformance, aligned with tagged contracts and the shared CoreLink release train.
Parent
PY-03Scope
sdk-python.Out of Scope
Acceptance Criteria
Technical Notes
Generated artifacts must identify immutable contract provenance. Security-sensitive tools use least privilege, explicit consent, audit and safe token handling. Package channels must distinguish prerelease from stable.
Dependencies
Planning Metadata
type:technical-task,priority:p0,domain:sdk,domain:deployment,area:packageDefinition of Done