Overview
Deployments
Section titled “Deployments”Signed pack deployments (register, list, get). The single wire surface that lands a signed OCI image + index.json into the platform. Register runs a six-step atomic transaction: Ed25519 signature verify over the canonical {imageDigest, artifactVersion, indexHash, tenantId, publishedAt} envelope, tenant-scoped trust-list check via SigningKeyRegistryBinding, image pullability + /app/index.json sha256 match via ImageRegistryBinding, per-primitive manifest validation, registry upserts (tools + guardrails + agents + flows), append-only deployment ledger row via DeploymentBinding. All-or-nothing rollback on any failure; digest-based idempotency (redeploying the same image returns the existing record). Records are immutable — rollback = re-register the previous digest.