Skip to content

feat: add weave and slack records to patchworklabs.org - #3

Open
jaspermayone wants to merge 1 commit into
feature-zone-checksfrom
feat/weave-slack-records
Open

jaspermayone wants to merge 1 commit into
feature-zone-checksfrom
feat/weave-slack-records

Conversation

@jaspermayone

Copy link
Copy Markdown
Member

What does this change?

This change puts the Weave records that are live in Cloudflare into patchworklabs.org.yaml. It also adds the new slack.patchworklabs.org record.

Name Type Value Proxied
slack A 129.213.163.213 yes
weave A 129.213.163.213 yes
send.weave MX 10 feedback-smtp.us-east-1.amazonses.com. no
send.weave TXT v=spf1 include:amazonses.com ~all no
resend._domainkey.weave TXT Resend DKIM key no
  • I created slack by hand in Cloudflare on 2026-09-28. Weave redirects it to https://weave.patchworklabs.org/slack (feat(slack): require full slack membership and expose it via oidc weave#121). Traefik on alastor routes it (jaspermayone/infra#20).
  • The four weave records were already live but missing from git. Without them, the first working deploy would delete them, and Weave would lose its host and its email.
  • Every value matches what Cloudflare serves now, so the plan must show no change for these five records.

This PR is stacked on #2. It uses the owner comments and TTLs from #2.

Who owns the records?

@patchworklabsorg/infra, the same as the other records in #2.

Checklist

  • The record is for a Patchwork project, event, or service.
  • Every record I added or changed has an owner in a comment: an email or a
    GitHub handle.
  • ./bin/validate passes, so the records are in the order octoDNS wants.
  • CNAME values end with a dot. A and AAAA values do not.
  • I have read the octoDNS plan comment on this pull request and it
    changes only what I expected. The plan cannot run until the token covers patchworklabs.org (see feat: check zone files for owners, ttl and cloudflare rules #2).

Anything else a reviewer should know?

Some other live records are also not in git. This PR does not add them, because I do not know their owners:

  • weave-kyc-proposal (CNAME to Vercel)
  • cio160924.cio (MX and TXT for Mailgun)
  • cio._domainkey.cio160924.cio (TXT)
  • _dmarc.cio (TXT)

A deploy would delete them. The MAX_DELETES guard stops that deploy, but somebody must add these records or remove them on purpose.

@jaspermayone
jaspermayone requested review from a team as code owners September 28, 2026 21:26
@jaspermayone
jaspermayone requested review from youngchief-btw and removed request for a team September 28, 2026 21:26
@github-actions

Copy link
Copy Markdown

octoDNS plan

patchworklabs.org.

cloudflare

Operation Name Type TTL Value Source
Create Zone<patchworklabs.org.>
Create A 120 216.198.79.1 config
Create MX 120 '1 aspmx.l.google.com.'; '5 alt1.aspmx.l.google.com.'; '5 alt2.aspmx.l.google.com.'; '10 alt3.aspmx.l.google.com.'; '10 alt4.aspmx.l.google.com.' config
Create TXT 120 Owned by Patchwork Labs Inc (patchworklabs.org) a registered 501(c)(3) nonprofit organization.; google-site-verification=OjTBuEBXcUdIOVzjidh1sCMfvAYvabpQWnkGfFFQQA4; slack-domain-verification=ST5I2hJgX8CutN19stoedtub8ODxC2KwlHcbpKtb; stripe-verification=2EACE39B000887BB0491EB25506F91621A1E1097C9DE7C5C7C9E4E9F8701137E; v=spf1 include:_spf.google.com ~all config
Create _atproto TXT 120 did=did:plc:bpd7j2a34mmnyu7t64gzptg7 config
Create _dmarc TXT 120 v=DMARC1; p=quarantine; np=reject; rua=mailto:dmarc_reports@patchworklabs.org; ruf=mailto:dmarc_reports@patchworklabs.org; adkim=s; aspf=s config
Create _gh-patchworklabsorg-o TXT 600 cee2c56f89 config
Create admin.forms A 120 65.19.76.238 config
Create forms A 120 65.19.76.238 config
Create google._domainkey TXT 600 v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzEuGHXgOxIj0qk83hV4ajl/OIpXbhE/MTKhXU1VZDBISO/+yBCQsVyq1j4F13tWxUpYLlw78OJl+7TlAyZ4llYY5z2Oj+EiAIQZCRBLmKN7zDpnbwbiM4hfam5vnhCvFwdgg0aKUY221T/Pe5Mjz11e0VtyOJ3D3enPId010bi99p93Dimf+rFo9YFwps7U/V4O5rWaRyG9snFcl9tshvKTgQ6OoHEvLbvQIU1QTiXR6oHAI5KP/8BzA26djgIKqNuHaU9S70KSVUH/9CBSAjHP50j4i4rGGEr6PopNjxQxN5owwu2jUDEIOrv13RLpNPISu1NaPCgMnGVyfsQ77yQIDAQAB config
Create idp A 120 129.213.163.213 config
Create octodns-meta TXT 60 octodns-version=1.22.0; provider=cloudflare; time=2026-09-28T21:26:24.115127+00:00
Create openpgpkey CNAME 300 wkd.keys.openpgp.org. config
Create resend._domainkey.weave TXT 3600 p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCw686PBvLW3WwbVohPhkkxGXnkfIj4Qe+1h0t64WPqZcu70jF0SrbdfGU7yKgpnAA7/JvtkngYPfc85EGGHxrD83MG5DQ60vK9EPn5PExt4iYWwfMRSJ0solhKeu/8//YLvn7Lq7O+1HaFp566qH4RZ8xa5hENZy5rqEkmIpoHFQIDAQAB config
Create send.weave MX 3600 '10 feedback-smtp.us-east-1.amazonses.com.' config
Create send.weave TXT 3600 v=spf1 include:amazonses.com ~all config
Create slack A 120 129.213.163.213 config
Create weave A 120 129.213.163.213 config
Create www CNAME 120 52fd2b2210caa11f.vercel-dns-017.com. config

Meta: {'cloudflare_plan': {'current': None, 'desired': 'free'}}

Summary: Creates=18, Updates=0, Deletes=0, Existing=0, Meta=True

hackathon.help.

cloudflare

Operation Name Type TTL Value Source
Create octodns-meta TXT 60 octodns-version=1.22.0; provider=cloudflare; time=2026-09-28T21:26:24.115127+00:00

Summary: Creates=1, Updates=0, Deletes=0, Existing=4, Meta=False


Planned against feature-zone-checks with a read-only Cloudflare token. Only the zone files at the repository root are included. Changes to config/, bin/ or .github/ are not in this plan, so review those by hand.

@jaspermayone
jaspermayone added this pull request to stack #4 September 28, 2026 21:34

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant