First real commit of site/. Until now outreach/.git tracked exactly one file
(README.md) and every content pack stamped git_sha=5619a40 regardless of what it
shipped — a signature with no provenance behind it. The site had no witness, which
is why a deploy could erase two sessions of work with nothing to diff against and
nothing to restore from.
Tracked here (authored): site/content, site/config, site/i18n, site/public/images,
justfile, scripts/, .just/, run*.sh, rustelo.manifest.toml.
Ignored (reproducible, or secret):
.k, .env real keys — outreach mirrors to a PUBLIC remote
site/r, site/public/r content indexes, rebuilt by `just content`
provisioning/.content-packs 228 MB of deploy tarballs
cache, data, logs_*.out runtime droppings
Three trees are deliberately NOT ignored despite looking generated, because their
declared source cannot currently reproduce them — ignoring them would delete the
only copy:
site/public/images 196 of 209 images exist nowhere else (assets/site is empty)
site/content/{adr,catalog} projections whose generators are unwired (gen-adr-pages)
site/content/domains or failing (`just graph`)
They become ignorable when an audit proves regeneration is a no-op, not before.
Fixes carried in this import
---------------------------
content: the mirror ran one way and reverted its own work. content_processor writes
site/r, but the recipe ended with `rsync -a site/public/r/ -> site/r/`, so each fresh
index was clobbered by the stale deploy-tree copy: the tool reported "index.json with
69 posts" while the disk kept 58. Meanwhile public/r is the tree the deploy pack ships,
so no new content could ever reach production. The two trees own different files, so
the mirror now runs both ways: content indexes r -> public/r (with --delete, or a
renamed slug survives as a live URL), and the four nu artifacts (about, adr-map,
taglines, content_graph) back public/r -> r, excluded from the outbound leg so stale
copies cannot overwrite the fresh originals.
templates: the assembler has two layers (framework defaults, source-project templates)
but the level chain has three (rustelo -> website-htmx-rustelo -> outreach/site). The
site level had no overlay slot, so its template work had nowhere legitimate to live and
ended up in htmx-templates/ — the one tree `just templates` rm -rf's. That is how the
nav submenus were lost. site/templates-overlay/ is the missing third slot; 214 lines
(nav submenus, subscribe CTA, post engagement block) now live in a declared source and
survive regeneration byte-identical.
adr: projected ADR-059..069 into the content tree. They were written months ago and
never reached the site because gen-adr-pages.nu is wired into no recipe — a generator
outside the dependency chain is a generator that does not run.
Gates added
-----------
templates-check reassembles into a temp tree and asserts an empty diff against the
live one: any drift means htmx-templates/ holds work that exists
live one: any drift means htmx-templates/ holds work that exists
nowhere else and the next run deletes it.
Both gates run before the destructive operation, not after. A check you can only run
afterwards is not a gate, it is an autopsy.
Refs: ADR-062 (projection-not-own-repo: site is a Projection of outreach, not its own
repo — different deploy target is not a different visibility boundary), ADR-048
(materialization), ADR-066 (the check decides, never the reporter — which the content
pipeline, the surface that publishes ontoref, was the last place not to honour).
43 lines
1.6 KiB
Django/Jinja
43 lines
1.6 KiB
Django/Jinja
<form id="login-form"
|
|
hx-post="/api/htmx/auth/otp/verify"
|
|
hx-target="#login-form"
|
|
hx-swap="outerHTML"
|
|
class="flex flex-col gap-4">
|
|
|
|
<h2 class="text-xl font-semibold text-base-content">{{ check_inbox }}</h2>
|
|
<p class="text-sm text-base-content/70">{{ sent_to | safe }}</p>
|
|
|
|
{% if error %}
|
|
<p class="text-error text-sm" role="alert">{{ error }}</p>
|
|
{% endif %}
|
|
|
|
<input type="hidden" name="email" value="{{ email }}">
|
|
<input type="hidden" name="lang" value="{{ lang }}">
|
|
{% if return_url %}<input type="hidden" name="return_url" value="{{ return_url }}">{% endif %}
|
|
|
|
<input type="text"
|
|
name="code"
|
|
id="auth-otp-code"
|
|
inputmode="numeric"
|
|
autocomplete="one-time-code"
|
|
aria-label="Verification code"
|
|
placeholder="{{ placeholder }}"
|
|
maxlength="6"
|
|
required
|
|
class="input input-bordered w-full text-center tracking-widest text-xl">
|
|
|
|
<button type="submit" class="btn btn-primary w-full">{{ verify_btn }}</button>
|
|
|
|
<button type="button"
|
|
class="btn btn-sm w-full border border-base-content/20 text-base-content/60 bg-transparent hover:bg-base-content/5"
|
|
hx-post="/api/htmx/auth/otp/request"
|
|
hx-include="[name=email],[name=lang],[name=return_url]"
|
|
hx-target="#login-form"
|
|
hx-swap="outerHTML">{{ resend_btn }}</button>
|
|
|
|
<button type="button"
|
|
class="btn btn-ghost btn-xs dark:text-gray-400 text-base-content/50 mt-1"
|
|
hx-get="{{ back_btn_url }}"
|
|
hx-target="#modal-slot"
|
|
hx-swap="outerHTML">{{ back_btn }}</button>
|
|
</form>
|