Skip to content

Latest commit

 

History

History
74 lines (58 loc) · 4.09 KB

File metadata and controls

74 lines (58 loc) · 4.09 KB
title pg hardstorage dsa
description CLI reference for the pg hardstorage dsa command.
tags
cli
reference

pg_hardstorage dsa

GDPR Data Subject Access helper: locate which backups contain a subject's data

Synopsis

Locate which backups contain a given subject's data so the operator can fulfil a GDPR Article 15 (right of access) or Article 17 (right to erasure) request.

The command walks the manifests filtered by tenant — the GDPR-compliance boundary defined by the per-tenant KEK. It produces a signed report enumerating every affected backup, with a tenant-scoped action plan that pairs with kms shred for Article 17 erasure or with partial restore for Article 15 extraction.

Privacy: the raw subject_id is hashed (SHA-256) before being recorded in the report. An auditor verifies the report by re-hashing the same raw ID; pg_hardstorage doesn't archive real subject identifiers.

Exit codes: 0 report generated + signed + persisted 6 notfound (report id absent for show/verify) 9 verify failure (signature does not validate)

pg_hardstorage dsa [flags]

Options

  -h, --help   help for dsa

Options inherited from parent commands

      --airgapped airgapped: strict                                                       refuse outbound endpoints (LLM providers, sinks, OTLP collectors) outside loopback / RFC1918 / explicit airgap.allowlist. Also enabled by PG_HARDSTORAGE_AIRGAPPED=1 or airgapped: strict in the config file.
  -c, --config string                                                                     path to config file (default: XDG/FHS lookup)
      --cpu-profile go tool pprof <path>                                                  write a pprof CPU profile to this path for the duration of the command (go tool pprof <path> to analyse). Off when empty.
      --mem-profile string                                                                write a pprof heap profile to this path at command exit. Off when empty.
      --no-color                                                                          disable ANSI color in text output
      --on-error-llm                                                                      on a structured-error failure, drop into the matching LLM helper skill (auto_on_error trigger). Also enabled by PG_HARDSTORAGE_ON_ERROR_LLM=1.
      --otel-endpoint string                                                              OpenTelemetry OTLP/HTTP endpoint (e.g. http://otel-collector:4318); empty disables tracing
      --otel-stdout                                                                       also export OpenTelemetry traces to stderr (useful for dev)
  -o, --output string                                                                     output format: text|json|ndjson|yaml|template|csv|markdown|html|tap|junit|pdf (default: text on TTY, json off-TTY)
      --profile-port go tool pprof http://127.0.0.1:6060/debug/pprof/profile?seconds=30   if non-zero, expose net/http/pprof on 127.0.0.1:<port> for live profiling of long-running commands (e.g. go tool pprof http://127.0.0.1:6060/debug/pprof/profile?seconds=30). Off when zero.
  -q, --quiet                                                                             suppress non-essential output
      --template string                                                                   Go text/template applied when --output template (or implied if --template is set without --output)

SEE ALSO