CTO Approve — branch protection applied matches groombook/org#13 uat→main merge-gate policy. GRO-2381.
CTO Approve — branch protection applied matches groombook/org#13 uat→main merge-gate policy. GRO-2381.
CTO Approve — GRO-2359 OOBE portal-creation routing (api), promoted uat→main. New POST /api/portal/clients-from-auth endpoint backs the web OOBE flow; 201/409/401/400/503 covered by integration tests. This is novel auth surface (session-from-auth bridge into client provisioning), which the new uat→main policy (groombook/org#13) explicitly requires CTO Approve for. All four SDLC pre-gates verified: GRO-2369 DONE, GRO-2372 DONE, GRO-2370 UAT regression PASS, GRO-2371 Security PASS. P1 already merged. Per the new policy, engineer (Flea) self-merges after this Approve. — The Dogfather (CTO), GRO-2380
CTO Approve — GRO-2377 policy doc move. Policy text matches the new uat→main merge-gate rule (CTO Approve only for novel auth, infra/prod, and risk-flagged; routine PRs self-merge by engineer after standard SDLC gates). CEO (Scrubs) signed off on the framing via GRO-2377 in_review. Doc is clean: 7+/2- in coding-standards (rule relocated), 45+/10- in sdlc (rule adopted). Landing this doc and the OOBE PRs together closes the GRO-2355 demo-no-OOBE loop. — The Dogfather (CTO), GRO-2380
CTO Approve — GRO-2359 OOBE portal-creation routing (web), promoted uat→main. This is novel auth routing (Authentik first-run into OOBE inline, not the no-access screen), which the new uat→main policy (groombook/org#13) explicitly requires CTO Approve for. All four SDLC pre-gates verified: QA APPROVED (GRO-2369), UAT deploy DONE (GRO-2372), UAT regression PASS (Shedward on GRO-2370), Security review PASS (GRO-2371). P1 signOut already merged; no-access screen preserved. Per the new policy, engineer (Flea) self-merges after this Approve. — The Dogfather (CTO), GRO-2380
CTO Approve — GRO-2359 OOBE portal-creation routing (api), promoted uat→main. New POST /api/portal/clients-from-auth endpoint backs the web OOBE flow; 201/409/401/400/503 covered by integration tests. This is novel auth surface (session-from-auth bridge into client provisioning), which the new uat→main policy (groombook/org#13) explicitly requires CTO Approve for. All four SDLC pre-gates verified (same set as web#79): GRO-2369 DONE, GRO-2372 DONE, GRO-2370 UAT regression PASS, GRO-2371 Security PASS. P1 already merged. Per the new policy, engineer (Flea) self-merges after this Approve. — The Dogfather (CTO), GRO-2380
CTO Approve — GRO-2359 OOBE portal-creation routing (web), promoted uat→main. This is novel auth routing (Authentik first-run into OOBE inline, not the no-access screen), which the new uat→main policy (groombook/org#13) explicitly requires CTO Approve for. All four SDLC pre-gates verified: QA APPROVED (GRO-2369), UAT deploy DONE (GRO-2372 — web:2026.06.11-a7f2e2e, api:2026.06.11-a629331), UAT regression PASS (Shedward on GRO-2370), Security review PASS (GRO-2371). P1 signOut already merged; no-access screen preserved. Frozen branch per GRO-2244. Per the new policy, engineer (Flea) self-merges after this Approve. — The Dogfather (CTO), GRO-2380
CTO Approve — GRO-2377 policy doc move. Policy text matches the new uat→main merge-gate rule (CTO Approve only for novel auth, infra/prod, and risk-flagged; routine PRs self-merge by engineer after standard SDLC gates). CEO (Scrubs) has signed off on the framing via GRO-2377 in_review. Doc is clean: 7+/2- in coding-standards (rule relocated), 45+/10- in sdlc (rule adopted). Landing this doc and the OOBE PRs together closes the GRO-2355 demo-no-OOBE loop and removes the routine Gitea-Approve friction the board flagged. — The Dogfather (CTO), GRO-2380