{"docs":[{"slug":"quickstart","title":"Local setup","description":"Get a registry running and point your toolchains at it."},{"slug":"api","title":"API reference","description":"A guided tour of the API. The exhaustive list is /openapi.json."},{"slug":"auth","title":"Auth and authorization","description":"Sessions, JWTs, the internal secret, the super-admin token, and the ownership model."},{"slug":"tokens","title":"Token permissions","description":"Permissions, roles, and per-ecosystem scope restrictions."},{"slug":"oauth","title":"OAuth and providers","description":"Device flow, provider setup, and custom OIDC."},{"slug":"cli","title":"CLI","description":"packr-cli: login, config, doctor, publish, yank, deprecate."},{"slug":"supply-chain","title":"Supply chain","description":"Signatures, provenance and SBOMs: what each answers, and what the registry does not claim."},{"slug":"yank-and-deprecate","title":"Yank and deprecate","description":"Two lifecycle operations, and how each ecosystem represents them."},{"slug":"generic-artifacts","title":"Generic artifacts","description":"Firmware, datasets and build outputs, governed like packages."},{"slug":"migrating","title":"Migrating to Packr","description":"Moving off Verdaccio, Nexus or Artifactory: what moves, what does not, and how to verify."},{"slug":"operations","title":"Operations","description":"Running the registry: health, metrics, limits, maintenance."},{"slug":"backups","title":"Backups","description":"Nightly database dumps, restore, and the recovery objectives they meet."},{"slug":"deployment","title":"Deployment","description":"Container, fleet and environment configuration."},{"slug":"security","title":"Security","description":"Authentication, rate limiting, input validation and CORS."}]}
