Skip to content

Platform Onboarding Tracker

Tracks all work for the combined identity, token, and repo-onboarding push covering AB#21, AB#22, AB#23, AB#406, AB#15, and AB#16.

Dependency order

AB#21 (MIs + SPNs per tenant) ─────┐
AB#22 (GitHub org PATs)  ───────────┼──► AB#406 (secrets distribution: seed org/group secrets) ──► AB#15 ‖ AB#16
AB#23 (GitLab account PATs) ────────┘                                                               (repo onboarding)

Standing notes

  • AB#14 resolved: GitLab group/project inventory is complete in docs/identity/scope-inventory.md (26 projects enumerated). AB#23 and AB#16 treat this as satisfied.
  • Naming-standard deviation: MI resource names follow the shorter mi-<short>-platform form from AB#21's own acceptance criteria. This deviates from mi-<org>-<env>-<region>-<inst> in docs/standards/variables.md. Following the work item; track a standards-alignment follow-on item separately.
  • Stale AB#21 reference: The work item references tenant 797f4846 and vault kv-tp-vault-01 — neither exists in any inventory. The real TierPoint picture is five separate tenants under the kristopher.turner@azurelocal.cloud account; see Table A rows 4–7.
  • SPN scope: AB#21 only names managed identities in its acceptance criteria. The SPNs in Table A are a user-approved extension of that work item (needed for workloads running outside Azure).
  • Cross-references: docs/identity/scope-inventory.md · docs/identity/secret-inventory.md · docs/identity/managed-identities.md · docs/identity/service-principals.md · docs/identity/github-pats.md

Table A — Tenant identity matrix (AB#21)

All MI client-id secrets are stored centrally in kv-hcs-vault-01 (non-sensitive resource IDs, not credentials).
SPN client-id and secret are stored in that tenant's platform vault.

TenantTenant IDAccountPer-tenant platform KVMI resource nameMI client-id secret (→ kv-hcs-vault-01)SPN display nameSPN client-id secret (→ per-tenant KV)KV Secrets User grantedmanaged-identities.md updatedservice-principals.md updatedStatus
This Is My Demo / hybridsolutions.cloudd6fc73cf-2a7a-4876-b67f-ca48961a6e83kris@hybridsolutions.cloudkv-hcs-vault-01mi-hcs-platformhcs-platform-mi-hcs-platform-client-idhcs-platform-automation-spnhcs-platform-automation-spn-client-id / hcs-platform-automation-spn-secret✅✅✅✅ Done
Turner Legacy Platform / turnerlegacy.org57be591b-af6b-44ea-ac26-19e7f0018353kris@turnerlegacy.orgkv-turnerlegacy-prodmi-turnerlegacy-platformhcs-platform-mi-turnerlegacy-platform-client-idtl-platform-automation-spntl-platform-automation-spn-client-id / tl-platform-automation-spn-secret (→ kv-turnerlegacy-prod)✅✅✅✅ Done
Azure Local Management / azurelocal.cloud604d3138-c7b3-481d-928f-e4a5dfb0f528kristopher.turner@azurelocal.cloudkv-azlmgmt-platform (created 2026-05-12)mi-azlmgmt-platformhcs-platform-mi-azlmgmt-platform-client-idazl-platform-automation-spnazl-platform-automation-spn-client-id / azl-platform-automation-spn-secret (→ kv-azlmgmt-platform)✅✅✅✅ Done
TierPoint Demos / tierpointdemos.cloud28217fed-1ba3-4974-89c0-f1423aafe640kristopher.turner@azurelocal.cloudkv-demos-platformmi-tpdemos-platformhcs-platform-mi-tpdemos-platform-client-idtpdemos-platform-automation-spntpdemos-platform-automation-spn-client-id / -secret (→ kv-demos-platform)✅✅✅✅ Done
TierPoint PoC / tierpointpoc.cloud2e21f99f-230e-4e31-87eb-6fe25d535473kristopher.turner@azurelocal.cloudkv-tppoc-platform (created 2026-05-12)mi-tppoc-platformhcs-platform-mi-tppoc-platform-client-idtppoc-platform-automation-spntppoc-platform-automation-spn-client-id / -secret (→ kv-tppoc-platform)✅✅✅✅ Done
TierPoint Product Labs / tierpointproductlabs.clouda9b67171-3fbb-45bf-8394-eb56d02a86e4kristopher.turner@azurelocal.cloudkv-tplabs-platformmi-tplabs-platformhcs-platform-mi-tplabs-platform-client-idtplabs-platform-automation-spntplabs-platform-automation-spn-client-id / -secret (→ kv-tplabs-platform)✅✅✅✅ Done
Project Phoenix / projectphx.cloudc9257f80-1ad6-40b4-8f53-f3d58b75d58bkristopher.turner@azurelocal.cloudkv-phx-platformmi-phx-platformhcs-platform-mi-phx-platform-client-idphx-platform-automation-spnphx-platform-automation-spn-client-id / -secret (→ kv-phx-platform)✅✅✅✅ Done
TierPoint Lab Management / prodtechlabmgmt.com3321553e-475e-49f0-a10f-d1087c017044kristopher.turner@azurelocal.cloudkv-ptlmgmt-platform (created 2026-05-12)mi-ptlmgmt-platformhcs-platform-mi-ptlmgmt-platform-client-idptlmgmt-platform-automation-spnptlmgmt-platform-automation-spn-client-id / -secret (→ kv-ptlmgmt-platform)✅✅✅✅ Done

Note: The azurelocal.cloud-account tenants (rows 3–8) require interactive/device-code auth (az login --tenant <id>) due to MFA. These steps cannot run unattended.


Table B — GitHub org tokens + org-level secrets (AB#22 + AB#406)

All org PATs stored in kv-hcs-vault-01. The current shared classic PAT hcs-platform-github-org-pat remains active until all per-org PATs are confirmed; then it can be retired.
Per-repo PATs and GitHub Apps are explicitly out of scope for AB#22 — separate future work item.

GitHub orgRoleOrg PAT KV secret (→ kv-hcs-vault-01)PAT scopesOrg Actions secret to seedPAT created in KVsecret-inventory.md rowscope-inventory.md PAT colOrg secret seededStatus
AzureLocaladminhcs-platform-github-azurelocal-patrepo, workflow, read:orgORG_PAT✅✅✅✅✅ Done
thisismydemoadminhcs-platform-github-thisismydemo-patrepo, workflow, read:orgORG_PAT✅✅✅✅✅ Done
holdfast-pressownerhcs-platform-github-holdfast-press-patrepo, workflowORG_PAT✅✅✅✅✅ Done
turnerlegacyownerhcs-platform-github-turnerlegacy-patrepo, workflow, read:orgORG_PAT✅✅✅✅✅ Done
faithfulcraftsmenownerhcs-platform-github-faithfulcraftsmen-patrepo, workflow—✅✅✅—✅ Done
gunnerthelabownerhcs-platform-github-gunnerthelab-patrepo, workflow—✅✅✅—✅ Done
Heritage-Virginiaownerhcs-platform-github-heritage-virginia-patrepo, workflow—✅✅✅—✅ Done
Hybrid-Solutions-Cloudownerhcs-platform-github-hybrid-solutions-cloud-patrepo, workflow—✅✅✅—✅ Done
hybridsolutionscloudownerhcs-platform-github-hybridsolutionscloud-patrepo, workflow—✅✅✅—✅ Done
ifartedcloudownerhcs-platform-github-ifartedcloud-patrepo, workflow—✅✅✅—✅ Done
project42devownerhcs-platform-github-project42dev-patrepo, workflow—✅✅✅—✅ Done
sunpath-devownerhcs-platform-github-sunpath-dev-patrepo, workflow—✅✅✅—✅ Done

PAT generation happens in the GitHub UI. Claude stores the value in KV and updates docs. Org-level secrets seeded via gh secret set ORG_PAT --org <org>.

| cloudsmith-cloud | owner | No per-org PAT — GitHub App (hcs-platform-app, ID 3683613, install ID 132507454) generates installation tokens from hcs-platform-github-app-private-key | App-based | ORG_PAT | N/A | — | — | ✅ seeded 2026-05-15 | ✅ Done |


Table C — GitLab account/group tokens + group CI/CD variables (AB#23 + AB#406)

Both account-level PATs stored in kv-hcs-vault-01. Group-level CI/CD variables are seeded from those PATs plus the SPN read credentials for the relevant tenant vault.

GitLab account PATs

GitLab accountPAT KV secret (→ kv-hcs-vault-01)PAT scopesPAT created in KVsecret-inventory.md rowscope-inventory.md GitLab token colStatus
KristopherjTurner (gitlab.com personal)hcs-platform-gitlab-kjt-godmode-patapi, read_repository, write_repository✅✅✅✅ Done
kristopher.turner@tierpoint.com (= kristopherjturner)hcs-platform-gitlab-tp-godmode-patapi, read_repository, write_repository✅✅✅✅ Done

GitLab group CI/CD variables (AB#406)

Baseline variables seeded at group level so all projects in the group inherit them. Subgroup-level variables override where a different tenant KV applies.

Seeded by Invoke-GitLabVariableDistribution.ps1 (AB#406, commit a98bb46, 2026-05-12). Variables: KV_SP_CLIENT_ID, KV_SP_SECRET, KV_TENANT_ID, KV_NAME per scope. Cross-tenant vault reads use az account set --subscription switching.

ScopeTypeTenant KVTenant IDVars seededStatus
tierpoint/prodtech/azurelocal/lab-environments (group)groupkv-demos-platform (sub 5e04c7f2)28217fed (tpdemos)KV_SP_CLIENT_ID, KV_SP_SECRET, KV_TENANT_ID, KV_NAME✅ Done
tierpoint/prodtech/azurelocal/poc-services/azl-conference-demos (group)groupkv-demos-platform (sub 5e04c7f2)28217fed (tpdemos)KV_SP_CLIENT_ID, KV_SP_SECRET, KV_TENANT_ID, KV_NAME✅ Done
tierpoint/prodtech/azurelocal/infrastructure/azure-management-utilities (group)groupkv-azlmgmt-platform (sub a4c22cfa)604d3138 (azlmgmt)KV_SP_CLIENT_ID, KV_SP_SECRET, KV_TENANT_ID, KV_NAME✅ Done
tierpoint/prodtech/docs (group)group——No vars (no Azure mapping)✅ Done
tierpoint/prodtech/haas (group)groupkv-ptlmgmt-platform (sub 27f3ae38)3321553e (ptlmgmt)KV_SP_CLIENT_ID, KV_SP_SECRET (unmasked — special chars), KV_TENANT_ID, KV_NAME✅ Done
cbb-automation-poc project (in tierpoint/prodtech/azurelocal)projectkv-demos-platform (sub 5e04c7f2)28217fed (tpdemos)KV_SP_CLIENT_ID, KV_SP_SECRET, KV_TENANT_ID, KV_NAME✅ Done
tierpointproductlabs project (in lab-environments)projectkv-tplabs-platform (sub 2caa0b8a)a9b67171 (tplabs)KV_SP_CLIENT_ID, KV_SP_SECRET (unmasked — special chars), KV_TENANT_ID, KV_NAME✅ Done
projectphx project (in lab-environments)projectkv-phx-platform (sub 2f075d7e)c9257f80 (phx)KV_SP_CLIENT_ID, KV_SP_SECRET, KV_TENANT_ID, KV_NAME✅ Done
tierpointpoc project (in lab-environments)projectkv-tppoc-platform (sub 79e39927)2e21f99f (tppoc)KV_SP_CLIENT_ID, KV_SP_SECRET, KV_TENANT_ID, KV_NAME✅ Done

PAT generation happens in the GitLab UI. Claude stores the value in KV and updates docs. Group/project variables set via GitLab API (/api/v4/groups/:id/variables and /api/v4/projects/:id/variables).


Table D — Per-repo onboarding matrix (AB#15 + AB#16)

Legend: ✅ confirmed · ☐ not done · — not applicable · ⚠ needs decision · ? unknown

Columns:

  • CLAUDE.md — file present and correct per templates/CLAUDE.md.template
  • .gitignore — file present (from templates/repo-scaffold/.gitignore.template)
  • README.md — file present with at minimum project description
  • .claude/settings.json — file present
  • No secrets — no .env, .pfx, or other secret files committed anywhere in history
  • Conformance — scripts/onboarding/Test-RepoConformance.ps1 passes
  • ADO project — corresponding ADO project exists in hybridcloudsolutions org
  • Repo secret — if a repo-level KV secret is needed (name shown); — means repo inherits org/group-level secret from Table B/C
  • Secret seeded — repo-level GitHub/GitLab secret populated; — inherits from org/group
  • Status — Not started / In progress / Done / N/A (fork/archived)

ADO — hybridcloudsolutions

ADO ProjectRepoOrg / GroupSourceCLAUDE.md.gitignoreREADME.md.claude/settings.jsonNo secretsConformanceADO projectRepo secretSecret seededStatus
Platform EngineeringplatformhybridcloudsolutionsADO✅✅✅✅✅✅✅hcs-platform-swa-docs-deploy-token ✅✅ ADO var group✅ Done

GitHub — AzureLocal org

ADO ProjectRepoOrgSourceCLAUDE.md.gitignoreREADME.md.claude/settings.jsonNo secretsConformanceADO projectRepo secretSecret seededStatus
—.githubAzureLocalGitHub✅✅✅✅✅✅———✅ Done
Azure Local AKSazurelocal-aksAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
—azurelocal-app-servicesAzureLocalGitHub✅✅✅✅✅✅☐——✅ Done
Azure Local AVDazurelocal-avdAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
Azure Local AzLo Flowsazurelocal-azloflowsAzureLocalGitHub——————✅——N/A (fork)
Azure Local BCDRazurelocal-bcdrAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
Azure Local Copilotazurelocal-copilotAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
Azure Local Costazurelocal-costAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
Azure Local Custom Imagesazurelocal-custom-imagesAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
Azure Local Disconnectedazurelocal-disconnectedAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
Azure Local Governanceazurelocal-governanceAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
Azure Local IoTazurelocal-iotAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
Azure Local Load Toolsazurelocal-loadtoolsAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
Azure Local ML AIazurelocal-ml-aiAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
Azure Local Monitoringazurelocal-monitoringAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
Azure Local Nutanix Migrationazurelocal-nutanix-migrationAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
Azure Local Outpostazurelocal-outpostAzureLocalGitHub☐☐☐☐☐☐✅——⚠ Planned — not yet created
Azure Local Rangerazurelocal-rangerAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
S2D Cartographerazurelocal-s2d-cartographerAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
Azure Local SCOM MPazurelocal-scom-mpAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
Azure Local SOFS FSLogixazurelocal-sofs-fslogixAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
Azure Local SQL HAazurelocal-sql-haAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
Azure Local SQL MIazurelocal-sql-miAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
Azure Local Surveyorazurelocal-surveyorAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
Azure Local Toolkitazurelocal-toolkitAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
Azure Local Trainingazurelocal-trainingAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
Azure Local Troubleshooting Hunterazurelocal-troubleshooting-hunterAzureLocalGitHub☐☐☐☐☐☐✅——⚠ Planned — not yet created
Azure Local Deployment Monitoringazurelocal-deployment-monitoringAzureLocalGitHub☐☐☐☐☐☐✅——⚠ Planned — not yet created
Azure Local Update Monitoringazurelocal-update-monitoringAzureLocalGitHub☐☐☐☐☐☐✅——⚠ Planned — not yet created
Azure Local Key Vault Managerazurelocal-keyvault-managerAzureLocalGitHub☐☐☐☐☐☐✅——⚠ Planned — not yet created
Azure Local VM Conversion Toolkitazurelocal-vm-conversion-toolkitAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
Azure Local VM Hydrationazurelocal-vm-hydrationAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
Azure Local VMsazurelocal-vmsAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
Azure Local VMware Migrationazurelocal-vmware-migrationAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
Azure Local ZTPazurelocal-ztpAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
AzureLocal Community Siteazurelocal.github.ioAzureLocalGitHub✅✅✅✅✅✅✅——✅ Done
—demo-repositoryAzureLocalGitHub✅✅✅✅✅✅☐——✅ Done
—documentationAzureLocalGitHub—————————N/A (archived)
—platform (AzureLocal org)AzureLocalGitHub✅✅✅✅✅✅———✅ Done

GitHub — thisismydemo org

ADO ProjectRepoOrgSourceCLAUDE.md.gitignoreREADME.md.claude/settings.jsonNo secretsConformanceADO projectRepo secretSecret seededStatus
This Is My Demo — Azure Monitor ITSMazure-monitor-itsmthisismydemoGitHub✅✅✅✅✅✅✅——✅ Done
This Is My Demo — Azure Scoutazure-scoutthisismydemoGitHub✅✅✅✅✅✅✅——✅ Done
—giscusthisismydemoGitHub✅✅✅✅✅✅———✅ Done
This Is My Demo — Hybrid Infra Toolkithybrid-infra-toolkitthisismydemoGitHub✅✅✅✅✅✅✅——✅ Done
—hyper-v-renaissancethisismydemoGitHub✅✅✅✅✅✅☐——✅ Done
—mms_2026_avd_demothisismydemoGitHub✅✅✅✅✅✅☐——✅ Done
—mms_2026_hybrid_demothisismydemoGitHub✅✅✅✅✅✅☐——✅ Done
This Is My Demo — Blogthisismydemo.github.iothisismydemoGitHub✅✅✅✅✅✅✅——✅ Done
—WhatTheHackthisismydemoGitHub—————————N/A (fork)

GitHub — kristopherjturner personal

ADO ProjectRepoOrgSourceCLAUDE.md.gitignoreREADME.md.claude/settings.jsonNo secretsConformanceADO projectRepo secretSecret seededStatus
—ASDK-POC-AzurekristopherjturnerGitHub✅✅✅✅✅✅———✅ Done
—Azure-Stack-HCI-WorkshopkristopherjturnerGitHub✅✅✅✅✅✅———✅ Done
—AzureStackHCIkristopherjturnerGitHub✅✅✅✅✅✅———✅ Done
—bigbangkristopherjturnerGitHub✅✅✅✅✅✅———✅ Done
—gab2019_k8skristopherjturnerGitHub✅✅✅✅✅✅———✅ Done
—guestconfigurationkristopherjturnerGitHub✅✅✅✅✅✅———✅ Done
—kristopherjturner.github.iokristopherjturnerGitHub✅✅✅✅✅✅———✅ Done
—livingontheedge.github.iokristopherjturnerGitHub✅✅✅✅✅✅———✅ Done
—pipelineskristopherjturnerGitHub✅✅✅✅✅✅———✅ Done
—ProactiveRemediationskristopherjturnerGitHub✅✅✅✅✅✅———✅ Done
—Update-Management-AutomationkristopherjturnerGitHub—————————N/A (archived — push rejected)
—aksworkshop · arc-k8s-demo · ARI · awesome-copilot · azure-docs · azure-docs-powershell-samples · azure-intelligent-edge-patterns · azure-stack-docs · Azure-Stack-Hub-Foundation-Core · AzureNamingTool · azurestack-admin-tools · AzureStack-VM-PoC · azure_arc · cloud-adoption-framework · CloudFamily · concourse-chart · cw-azure-stack · demoguestbook · HybridJumpstart · jumpstart-agora-apps · MCW-Azure-Stack · rating-api · term.everything · WhatTheHack (24 forks)kristopherjturnerGitHub—————————N/A (community/Microsoft forks)

GitHub — holdfast-press org

ADO ProjectRepoOrgSourceCLAUDE.md.gitignoreREADME.md.claude/settings.jsonNo secretsConformanceADO projectRepo secretSecret seededStatus
The Keepersthe-keepersholdfast-pressGitHub✅✅✅✅✅✅✅——✅ Done

GitHub — personal/community orgs

ADO ProjectRepoOrgSourceCLAUDE.md.gitignoreREADME.md.claude/settings.jsonNo secretsConformanceADO projectRepo secretSecret seededStatus
Faithful Craftsmenfaithfulcraftsmen.github.iofaithfulcraftsmenGitHub✅✅✅✅✅✅✅——✅ Done
Gunner The Labgunnerthelab.github.iogunnerthelabGitHub✅✅✅✅✅✅✅——✅ Done
Heritage Community Hubheritage-community-hubHeritage-VirginiaGitHub✅✅✅✅✅✅✅——✅ Done
—buildserver (private)Hybrid-Solutions-CloudGitHub✅✅✅✅✅✅☐——✅ Done
Hybrid Cloud Solutions Websitehybridsolutionscloud.github.iohybridsolutionscloudGitHub✅✅✅✅✅✅✅——✅ Done
iFarted Cloudifartedcloud.github.ioifartedcloudGitHub✅✅✅✅✅✅✅——✅ Done
Project 42project42dev.github.ioproject42devGitHub✅✅✅✅✅✅✅——✅ Done
Sunpath Devsunpath-dev.github.iosunpath-devGitHub✅✅✅✅✅✅✅——✅ Done

GitHub — cloudsmith-cloud org

ADO ProjectRepoOrgSourceCLAUDE.md.gitignoreREADME.md.claude/settings.jsonNo secretsConformanceADO projectRepo secretSecret seededStatus
CloudSmithcloudsmith-internalcloudsmith-cloudGitHub✅✅✅✅✅✅✅——✅ Done
CloudSmithcloudsmith-cloud.github.iocloudsmith-cloudGitHub✅✅✅✅✅✅✅——✅ Done
CloudSmithcloudsmith-app.github.iocloudsmith-cloudGitHub✅✅✅✅✅✅✅——✅ Done

GitHub App auth (hcs-platform-app, install ID 132507454) used in place of per-org PAT. ORG_PAT seeded 2026-05-15. ADO project "CloudSmith" created 2026-05-15 (ID 749f4020, Boards + Overview only). All 3 repos fully conformant as of 2026-05-15.


GitHub — turnerlegacy org

ADO ProjectRepoOrgSourceCLAUDE.md.gitignoreREADME.md.claude/settings.jsonNo secretsConformanceADO projectRepo secretSecret seededStatus
—.githubturnerlegacyGitHub—————————N/A (org health)
Turner Legacy Platformturner-platformturnerlegacyGitHub✅✅✅✅✅✅✅——✅ Done
Turner Legacy Platformturner-databaseturnerlegacyGitHub✅✅✅✅✅✅✅——✅ Done
Turner Legacy Platformturner-infrastructureturnerlegacyGitHub✅✅✅✅✅✅✅——✅ Done
Turner Legacy Platformturner-platform-coreturnerlegacyGitHub✅✅✅✅✅✅✅——✅ Done
Turner Legacy Platformturner-platform-uiturnerlegacyGitHub✅✅✅✅✅✅✅——✅ Done
Turner Legacy Platformturner-platform-apiturnerlegacyGitHub✅✅✅✅✅✅✅——✅ Done
Turner Legacy Platformturner-module-adminturnerlegacyGitHub✅✅✅✅✅✅✅——✅ Done
Turner Legacy Platformturner-module-boardturnerlegacyGitHub✅✅✅✅✅✅✅——✅ Done
Turner Legacy Platformturner-module-budgetturnerlegacyGitHub✅✅✅✅✅✅✅——✅ Done
Turner Legacy Platformturner-module-calendarturnerlegacyGitHub✅✅✅✅✅✅✅——✅ Done
Turner Legacy Platformturner-module-financeturnerlegacyGitHub✅✅✅✅✅✅✅——✅ Done
Turner Legacy Platformturner-module-travelturnerlegacyGitHub✅✅✅✅✅✅✅——✅ Done

GitLab — tierpoint/prodtech

ADO ProjectRepoGroup pathSourceCLAUDE.md.gitignoreREADME.md.claude/settings.jsonNo secretsConformanceADO projectRepo secretSecret seededStatus
TierPoint — ProdTech Docsdocstierpoint/prodtech/docsGitLab✅✅—✅✅✅✅— (grp PLATFORM_PAT)—✅ Done
—gitlab-profiletierpoint/prodtech/docsGitLab—————————N/A (group health)
TierPoint — ProdTech Docstierpoint-prodtech-azl-toolkittierpoint/prodtech/docsGitLab✅✅—✅✅✅✅— (grp)—✅ Done
TierPoint — Hyper-V as a Servicehyperv-as-a-servicetierpoint/prodtech/haasGitLab✅✅—✅✅✅✅— (grp)—✅ Done
— (no ADO project)cbb-automation-poctierpoint/prodtech/azurelocalGitLab☐☐☐☐☐☐✅— (grp+kv-demos-platform creds)☐Not started
—gitlab-profiletierpoint/prodtech/azurelocalGitLab—————————N/A (group health)
—azl-automationtierpoint/prodtech/azurelocal/automation/azl-automationGitLab☐☐☐☐☐☐☐— (grp)☐Not started
—azure-infrastructure-azltierpoint/prodtech/azurelocal/automation/azl-automationGitLab☐☐☐☐☐☐☐— (grp)☐Not started
—azl-dell-ax-automationtierpoint/prodtech/azurelocal/automation/azl-dell-ax-automationGitLab☐☐☐☐☐☐☐— (grp+kv-tplabs-platform creds)☐Not started
TierPoint — Customer — Cornerstone Building Brandscornerstone-building-brandstierpoint/prodtech/azurelocal/customer-deploymentsGitLab✅✅—✅✅✅✅— (grp+kv-demos-platform creds)—✅ Done
TierPoint — Customer — Keller Constructionkeller-constructiontierpoint/prodtech/azurelocal/customer-deploymentsGitLab✅✅—✅✅✅✅— (grp+kv-demos-platform creds)—✅ Done
—azure-local-anywhere-pdptierpoint/prodtech/azurelocal/documentationGitLab——————☐— (grp)—N/A (archived)
—azure-infrastructure-azl-oldtierpoint/prodtech/azurelocal/infrastructure/azure-infrastructure-azlGitLab—————————N/A (archived)
—tf-module-azr-gitlab-runnertierpoint/prodtech/azurelocal/infrastructure/azure-infrastructure-azlGitLab——————☐— (grp)—N/A (archived)
TierPoint — Azure Management Utilitiesazure-management-utilitiestierpoint/prodtech/azurelocal/infrastructure/azure-management-utilitiesGitLab☐☐☐☐☐☐✅— (grp)☐⚠ Protected branch — requires MR
TierPoint — LABMGMT — AzureLocalCloudazurelocalcloudtierpoint/prodtech/azurelocal/lab-environmentsGitLab✅✅—✅✅✅✅— (grp)—✅ Done
—gitlab-profiletierpoint/prodtech/azurelocal/lab-environmentsGitLab—————————N/A (group health)
TierPoint — LABMGMT — ProdTechLabMgmtprodtechlabmgmttierpoint/prodtech/azurelocal/lab-environmentsGitLab✅✅—✅✅✅✅— (grp)—✅ Done
TierPoint — LABMGMT — ProjectPhxprojectphxtierpoint/prodtech/azurelocal/lab-environmentsGitLab✅✅—✅✅✅✅— (grp+kv-phx-platform creds)—✅ Done
TierPoint — LABMGMT — TierPointDemostierpointdemostierpoint/prodtech/azurelocal/lab-environmentsGitLab✅✅—✅✅✅✅— (grp+kv-demos-platform creds)—✅ Done
TierPoint — LABMGMT — TierPointPoctierpointpoctierpoint/prodtech/azurelocal/lab-environmentsGitLab✅✅—✅✅✅✅— (grp+kv-tppoc-platform creds)—✅ Done
TierPoint — LABMGMT — TierPointProductLabstierpointproductlabstierpoint/prodtech/azurelocal/lab-environmentsGitLab✅✅—✅✅✅✅— (grp+kv-tplabs-platform creds)—✅ Done
—ms-ignite-2025tierpoint/prodtech/azurelocal/poc-services/azl-conference-demosGitLab✅✅—✅✅✅☐— (grp+kv-demos-platform creds)—✅ Done
TierPoint — POC — Azure Local SAN Attachazure-local-san-attachtierpoint/prodtech/azurelocal/poc-services/current-poc-projectsGitLab✅✅—✅✅✅✅— (grp+kv-demos-platform creds)—✅ Done
TierPoint — POC — Nutanix Azure Local Migrationnutanix-azure-local-migrationtierpoint/prodtech/azurelocal/poc-services/current-poc-projectsGitLab✅✅—✅✅✅✅— (grp+kv-demos-platform creds)—✅ Done
TierPoint — POC — PoC as a Servicepoc-as-a-servicetierpoint/prodtech/azurelocal/poc-services/poc-as-a-serviceGitLab☐☐☐☐☐☐✅— (grp+kv-demos-platform creds)☐⚠ Protected branch — requires MR

Table E — Canonical multi-model AI-layout conversion (Phase 4)

Tracks conversion of each repo from the legacy Claude-only layout to the canonical multi-model layout (AGENTS.md + CLAUDE.md shim + .ai/ workspace + per-tool configs), per the agents and AI-workspace standards.

Driven by the MCP check_drift → Invoke-RepoAiLayout.ps1 loop documented in repo-ai-onboarding.md. This is a one-repo-at-a-time governance process — there is no bulk conversion wave.

Status legend: not-started · dry-run-reviewed (dry run inspected, not yet applied) · converted (applied, check_drift PASS, committed).

Default: every repo in master-registry.db not listed below is not-started. Rows are added here as each repo moves through the loop — no status is asserted for a repo that has not actually been checked.

RepoScopeConversion statusNotes
platformhcsconvertedDogfood reference implementation, converted in Phase 2.
azurelocal-rangerhcsdry-run-reviewedPhase 4 pilot. Dry run reviewed; identity paragraph falls back to type-based default (old CLAUDE.md had an image-only description) — write a real paragraph in AGENTS.md after applying.

Copyright © Hybrid Cloud Solutions LLC — Kristopher Turner