Canonical Webservice Catalog

This page is the source-of-truth inventory of StellaOps *.WebService runtime services: their canonical hostnames, purpose, persistence, source paths, and deployment status. Use it to look up which service serves a hostname, which module owns it, and whether it ships in the default stack. It is written for operators, integrators, and reviewers.

Scope and contract

Runtime hostname convention and exceptions

Active webservices

DomainWebserviceLocal hostnamePurposePersistenceSource pathOwner module
AdvisoryAIAdvisoryAIadvisoryai.stella-ops.localAdvisory assistant APIs (chat, evidence-pack, knowledge search).postgressrc/AdvisoryAI/StellaOps.AdvisoryAI.WebServicesrc/AdvisoryAI
AdvisoryAIOpsMemory(retired 2026-09-07 — served by advisoryai.stella-ops.local)Operational memory/query APIs for advisory workflows, now an in-process module of advisoryai-web.postgressrc/AdvisoryAI/__Libraries/StellaOps.OpsMemory.Applicationsrc/AdvisoryAI
AttestorAttestorattestor.stella-ops.localAttestation, witness, and proof-chain APIs.postgressrc/Attestor/StellaOps.Attestor/StellaOps.Attestor.WebServicesrc/Attestor
AttestorSignersigner.stella-ops.localSigning and key-ceremony APIs.postgressrc/Attestor/StellaOps.Signer/StellaOps.Signer.WebServicesrc/Attestor
AuthorityIssuerDirectory RETIRED 2026-09-11— (alias issuerdirectory.stella-ops.local removed)Issuer metadata and trust directory APIs, folded into authority by SPRINT_20260722_016 AUTH-9/AUTH-10. The endpoints live in src/Authority/__Libraries/StellaOps.IssuerDirectory.Api and the Authority host maps them; the gateway routes /issuer-directory to authority by a static rule.stellaops_authority (issuer schema)src/__Obsoleted/Authority/StellaOps.IssuerDirectory.WebService (frozen)src/Authority
BinaryIndexBinaryIndexbinaryindex.stella-ops.localBinary index, patch coverage, and resolution APIs.postgressrc/BinaryIndex/StellaOps.BinaryIndex.WebServicesrc/BinaryIndex
ConcelierExcititorexcititor.stella-ops.localVEX ingest, linkset, and evidence APIs.postgressrc/Concelier/StellaOps.Excititor.WebServicesrc/Concelier
DoctorDoctordoctor.stella-ops.localHealth diagnostics and setup-check APIs.in-memory (no service DB)src/Doctor/StellaOps.Doctor.WebServicesrc/Doctor
EvidenceLockerEvidenceLockerevidencelocker.stella-ops.localEvidence ingest, bundle, legal hold, and verification APIs.postgressrc/EvidenceLocker/StellaOps.EvidenceLocker/StellaOps.EvidenceLocker.WebServicesrc/EvidenceLocker
ExportCenterExportCenterexportcenter.stella-ops.localExport/audit bundle/report APIs.postgressrc/ExportCenter/StellaOps.ExportCenter/StellaOps.ExportCenter.WebServicesrc/ExportCenter
FindingsFindings.Ledgerfindings.stella-ops.localFindings ledger, summary, and evidence graph APIs.postgressrc/Findings/StellaOps.Findings.Ledger.WebServicesrc/Findings
FindingsRiskEngine RETIRED 2026-08-27— (alias riskengine.stella-ops.local resolves to nothing)Exploit-maturity and risk-score APIs were deleted with the host (owner ruling Q-2). The scoring capability folds into the consolidated Findings family; see docs/modules/findings/architecture.md.stellaops_findings (riskengine schema)— (deleted; StellaOps.RiskEngine.Core/.Infrastructure remain as libraries)src/Findings
IntegrationsIntegrationsintegrations.stella-ops.localIntegration adapters and endpoint management APIs.postgressrc/Integrations/StellaOps.Integrations.WebServicesrc/Integrations
JobEnginePacksRegistry (retired 2026-09-12, 012 JOB-9)jobengine.stella-ops.localFolded into jobengine-web, which serves this surface unchanged in path.stellaops_jobenginesrc/JobEngine/StellaOps.JobEngine.WebService (predecessor frozen at src/__Obsoleted/JobEngine/)
JobEngineScheduler (retired 2026-09-12, 012 JOB-9)jobengine.stella-ops.localFolded into jobengine-web, which serves this surface unchanged in path.stellaops_jobenginesrc/JobEngine/StellaOps.JobEngine.WebService (predecessor frozen at src/__Obsoleted/JobEngine/)
WorkflowWorkflowworkflow.stella-ops.localWorkflow engine/orchestration, definitions, and render APIs (absorbed the orchestration role formerly attributed to JobEngine).postgres (workflow schema; pluggable Mongo/Oracle datastores)src/Workflow/StellaOps.Workflow.WebServicesrc/Workflow
NotifyNotifynotify.stella-ops.localNotification rule/channel/template, delivery, escalation, incident, and simulation APIs (absorbed the Notifier web surface).postgressrc/Notify/StellaOps.Notify.WebServicesrc/Notify
PlatformPlatformplatform.stella-ops.localConsole aggregation, setup, admin, and read-model APIs.postgressrc/Platform/StellaOps.Platform.WebServicesrc/Platform
ReachGraphGraphreachgraph.stella-ops.local (alias on graph-api)Reachability graph and CVE mapping APIs, served by graph-api since 023 GRA-9; the standalone host was deleted at GRA-10 (2026-09-08).postgressrc/Graph/StellaOps.Graph.Apisrc/Graph
RemediationRemediationremediation.stella-ops.localRemediation source, registry, and match APIs.postgressrc/Remediation/StellaOps.Remediation.WebServicesrc/Remediation
ReplayReplayreplay.stella-ops.localPoint-in-time query and verdict replay APIs.postgres + seed-fs snapshot blobssrc/Replay/StellaOps.Replay.WebServicesrc/Replay
RouterGatewayrouter.stella-ops.localGateway dispatch, auth, and reverse-proxy APIs.no-persistencesrc/Router/StellaOps.Gateway.WebServicesrc/Router
ScannerScannerscanner.stella-ops.localScan submission, triage, drift, and scan data APIs.postgressrc/Scanner/StellaOps.Scanner.WebServicesrc/Scanner
TimelineTimelinetimeline.stella-ops.localTimeline query/export/replay APIs.postgressrc/Timeline/StellaOps.Timeline.WebServicesrc/Timeline
TimelineTimelineIndexertimelineindexer.stella-ops.localTimeline indexer control/status APIs.postgresserved by src/Timeline/StellaOps.Timeline.WebServicesrc/Timeline
UnknownsUnknownsunknowns.stella-ops.localUnknowns queue and triage APIs.postgressrc/Unknowns/StellaOps.Unknowns.WebServicesrc/Unknowns
VexHubVexHubvexhub.stella-ops.localVEX ingest and distribution APIs.postgressrc/VexHub/StellaOps.VexHub.WebServicesrc/VexHub
VexLensVexLensvexlens.stella-ops.localVEX lens, delta, and gate-view APIs.postgressrc/VexLens/StellaOps.VexLens.WebServicesrc/VexLens

Note: TimelineIndexer and Notify reflect in-place consolidations, and both are now complete. timelineindexer.stella-ops.local is served by the merged timeline-web container (Slot 23 → Slot 24) and StellaOps.TimelineIndexer.WebService was archived to src/__Obsoleted/Timeline/ on 2026-08-10. The Notifier web surface runs inside notify-web, and StellaOps.Notifier.WebService was archived to src/__Obsoleted/Notifier/ on 2026-09-08 (SPRINT_20260722_015 NTF-10) together with the rest of that tree. Neither builds.

Non-default and not-yet-deployed webservices

These *.WebService projects exist in src/ but are not part of the default docker-compose.stella-services.yml runtime. They are listed for inventory completeness.

WebserviceLocal hostnameStatusPurposePersistenceSource path
Testertester.stella-ops.localOpt-in only — started via docker-compose.tester.yml; never in the production stack (test/QA harness, see src/Tester/AGENTS.md).Golden-chain QA forwarders and fixture/scenario actions; calls other modules over their public HTTP surface.stateless (in-memory only; no PostgreSQL ownership)src/Tester/StellaOps.Tester.WebService
Notifiernotifier.stella-ops.local (legacy alias on notify-web)Retired — web surface merged into notify-web; the notifier-worker deployable retired 2026-09-04 and the sources are frozen at src/__Obsoleted/Notifier/.Notification rule/channel/template, escalation, incident, and simulation APIs (now served by Notify).postgressrc/__Obsoleted/Notifier/StellaOps.Notifier/StellaOps.Notifier.WebService
Concelier—Retired 2026-09-11 under VULN-G6; source frozen at src/__Obsoleted/Concelier/.Advisory APIs and federation are owned by Vulnerabilities and OfflineKit.—src/__Obsoleted/Concelier/StellaOps.Concelier.WebService
Verdict(not bound)Not deployed — shared Verdict API composition-root host; not referenced by any Dockerfile/compose. FLAG: confirm whether this is intended to be hosted standalone or only embedded by consumers.Shared Verdict API endpoints (StellaOps.Verdict.Api.VerdictEndpoints).postgres (CGS replay store via AddPostgresCgsReplayStore)src/__Libraries/StellaOps.Verdict.WebService