Overview
This directory contains the official Rossoctl project documentation.
rossoctl: Access Control Architecture
1 item
agentic-runtime
9 items
agents
1 item
API Authentication
This guide covers how to authenticate with the Rossoctl API using OAuth2 bearer tokens.
architecture
1 item
AuthBridge
6 items
Authentication Guide
Rossoctl supports two modes for how the operator and agent/tool workloads authenticate to Keycloak:
Automation Health Dashboard
Last updated01 ET | Programs: 3 active
Rossoctl Blog Posts
We regularly publish articles at the intersection of cloud-native architecture, AI agents, and platform security.
Rossoctl Components
This document provides detailed information about each component of the Rossoctl platform.
Rossoctl Demos and Tutorials
8 items
design-proposals
3 items
Developer's Guide
Developer Personas in Rossoctl
Developer Guides
6 items
Developing a Rossoctl Application
This guide explains how to build applications that integrate with the Rossoctl platform, using the app-demo example as a reference implementation.
Rossoctl Identity & Authentication Flow Diagrams
This directory contains Mermaid sequence diagrams that illustrate the authentication and authorization flows in Rossoctl's zero-trust identity architecture.
Enabling the Trace Analysis Feature
The trace_analysis feature adds a Trace Analysis card to the Observability
Environment Variables Import Feature Design
Overview
MCP Gateway instructions
MCP Gateway components are installed as part of the Rossoctl installation process
HyperShift Cluster Auto-Cleanup
Automated cleanup of stale HyperShift clusters based on time-to-live (TTL) labels.
Rossoctl Identity, Authentication, & Authorization Guide
This comprehensive guide covers all aspects of identity, authentication, and authorization in the Rossoctl platform. Rossoctl implements a Zero-Trust Architecture that combines SPIFFE/SPIRE workload identity, OAuth2 token exchange, and Keycloak identity management to provide secure, scalable, and dynamic authentication for cloud-native AI agents.
Rossoctl Installation Guide
This guide covers installation on both local Kind clusters and OpenShift environments.
Kiali Service Mesh Observability
Kiali provides real-time visualization and validation of the Istio service mesh in Rossoctl. It is used both as a developer dashboard and as an automated E2E validation tool in CI.
Link Health Report
Last scan11 ET | Scan ID: 2026-07-20-001
Using Local Models with Rossoctl
Rossoctl supports any OpenAI-compatible model backend. This guide covers using Ollama to run LLM models locally, eliminating the need for an external API key.
maintainers
1 item
MLflow Integration for LLM Observability
This document describes deploying MLflow alongside Phoenix for LLM trace
Importing a New Agent into the Platform from a Code Base
Pre-requisites
Importing a Simulated Tool
Overview
Importing a New MCP Tool into the Platform
Overview
ocp
1 item
plans
12 items
Release Management SOP
Standard Operating Procedure for releasing Rossoctl, aligned with CNCF project
Releasing Rossoctl
Practical guide for release managers. Covers the full lifecycle from alpha
research
6 items
retrospectives
1 item
Rossoctl Sandbox Guide (OpenShell)
This guide covers installing and using the Rossoctl sandboxing feature powered by
Skills
Overview
superpowers
2 items
Cloud Native Agent Platform
The Rossoctl Cloud Native Agent Platform architecture is organized into multiple components that support the integration of services and systems within a Kubernetes-based cloud native environment.
Troubleshooting
Issues during Rossoctl installation
Rossoctl Use Cases
Rossoctl supports deploying and orchestrating multiple categories of AIβdriven use cases. Each category reflects a distinct operational model and security posture, and Rossoctlβs system design aims to support all of them.
Use Cases
Scenarios that define the Rossoctl vision across verticals. Each maps to a