Operational Unknowns
This page records missing, ambiguous, or conflicting operational signals observable from repository files. It does not prescribe changes.
Missing Docs
- No single generated OpenAPI document covers Ash JSON:API,
/api/v1controller endpoints, and/e2eendpoints. The current contract split is explained in API & Runtime Contracts.
Ambiguities
- Production AuthCrunch role and claim mapping is future work tracked in Planned Features, not an unresolved operational unknown.
Conflicting Signals Between Code and Specs
- Ash JSON:API OpenAPI output covers
/api/jsonresources, while the Go client uses/api/v1controller endpoints. Future API unification is tracked in Planned Features.
Areas Where Intent Is Unclear
- Whether the separate production authentication contract for Phoenix-internal APIs should be a docs page, a design spec, or generated API documentation.
Traceable references:
README.md:341-350deploy/compose/caddy/Caddyfile:32-38