---
title: "Platform infrastructure — N1 IT Landscape"
---

N1 IT Landscape — The Blueprint · CF-Access internal

# Platform infrastructure

N1 IT Landscape · Owner: Arun Venkataraman · source of truth: markdown SSOT

# N1 IT Landscape — Platform & infrastructure

> **CURRENT-STATE** as of **2026-06-09** · part of the **N1 IT Landscape** (start at **[Overview](/landscape/overview/)**). Owner: **Arun Venkataraman** (Principal Engineer).

* * *

_The machinery the platform runs on: Helm charts, Terraform, the model gateway, observability, security tooling, and the CI building blocks._

> Per-repository dependency manifest (Python / Go / Node / Terraform / Docker / Helm / GitHub-Actions), captured from fresh `develop` clones. Back to the [BoM hub](/landscape/dependencies/00-bom/).

* * *

#### `bastion` — [develop@92ffdc3b]

**GitHub Actions pinned** (10)

  * `n1healthcare/bastion/.github/actions/aws-credentials@develop`
  * `n1healthcare/bastion/.github/actions/checkout@develop`
  * `n1healthcare/bastion/.github/actions/deployment-approval@develop`
  * `n1healthcare/bastion/.github/actions/docker-build-push@develop`
  * `n1healthcare/bastion/.github/actions/docker-buildx@develop`
  * `n1healthcare/bastion/.github/actions/docker-login@develop`
  * `n1healthcare/bastion/.github/actions/grype-scan@develop`
  * `n1healthcare/bastion/.github/actions/release-scribe@develop`
  * `n1healthcare/bastion/.github/actions/setup-node@develop`
  * `n1healthcare/bastion/.github/actions/setup-uv@develop`

#### `github-action-deployment-approval` — [develop@8d4a1086]

**Python — requirements** (1)

Package | Version  
---|---  
slack-bolt | >=1.14.0  
**GitHub Actions pinned** (1)

  * `actions/checkout@v4`

#### `n1-ai-toolkit` — [develop@8e9f9f50]

**Python — requirements** (2)

Package | Version  
---|---  
httpx | >=0.28.1  
n1-api-client | —  
  
#### `n1-helm-charts` — [develop@cf3659be]

**Docker base images** (2): `python:3.12-slim`, `vllm/vllm-openai:v0.10.2`

**Helm charts** (48) Chart | version | appVersion | dependencies  
---|---|---|---  
admin-dashboard | 1.0.0 | 1.0.0 | —  
api-backend | 1.0.0 | 1.0.0 | —  
api-proxy | 1.0.0 | 1.0.0 | —  
api-websocket-proxy | 1.0.0 | 1.0.0 | —  
argocd-resources | 1.0.0 | — | —  
auth-proxy | 1.0.0 | 1.0.0 | —  
authentication-service | 2.0.0 | 2.0.0 | —  
automated-testing | 1.0.0 | 1.0.0 | —  
billing-proxy | 1.0.0 | 1.0.0 | —  
billing-service | 1.0.0 | 1.0.0 | —  
celery-flower | 1.0.0 | 1.0.0 | —  
chr-template-service | 1.0.0 | 1.0.0 | —  
data-validation-service | 1.0.0 | 1.0.0 | —  
embeddinggemma | 1.0.0 | 300m | —  
example-service | 1.0.0 | 1.0.0 | —  
ext-provider-sync | 1.0.0 | 1.0.0 | —  
forge-agents-api | 1.0.0 | 1.0.0 | —  
forge-sentinel | 1.0.0 | 1.0.0 | —  
grouper-evals-service | 1.0.0 | 1.0.0 | —  
grouping-poller-service | 1.0.0 | 1.0.0 | —  
grouping-service | 1.0.0 | 1.0.0 | —  
helix-parser | 1.0.0 | 0.1.0 | —  
hydra | 0.1.0 | v26.2.0 | hydra@0.61.2  
keda | 1.0.0 | 2.18.1 | keda@2.18.1  
keda-event-notifier | 1.0.0 | 3.3.2 | kubernetes-event-exporter@3.3.2  
kratos | 2.1.0 | v26.2.0 | —  
litellm | 1.0.0 | 1.0.0 | —  
litellm-slackbot | 1.0.0 | 1.0.0 | —  
memgraph | 1.0.0 | 3.8 | —  
mineru | 1.0.0 | 2.5 | —  
n1-api-slack-bot | 1.0.0 | 1.0.0 | —  
oathkeeper | 0.1.0 | v26.2.0 | oathkeeper@0.61.2  
otel-collector | 1.0.0 | 0.142.0 | —  
parser-evals-service | 1.1.0 | 1.0.0 | —  
parser-service | 1.0.0 | 1.0.0 | —  
pdf-converter | 1.0.0 | 1.0.0 | —  
pgbouncer | 1.0.0 | 1.0.0 | —  
phoenix-grouper | 1.0.0 | 2.0.0 | —  
phoenix-parser | 1.0.0 | 2.0.0 | —  
phoenix-router | 1.0.0 | 2.0.0 | —  
qdrant | 1.0.0 | 1.17 | —  
react-frontend | 1.0.0 | 1.0.0 | —  
redis | 1.0.0 | 8.2 | —  
redis-consumer-cleanup | 0.1.0 | 1.0 | —  
release-notes-publisher | 1.0.0 | 1.0.0 | —  
rosetta-grouper | 1.0.0 | 0.1.0 | —  
router-evals-service | 1.0.0 | 1.0.0 | —  
router-service | 1.0.0 | 1.0.0 | —  
  
#### `n1-infrastructure` — [develop@2441b91a]

**Terraform** — required_version `>= 1.3`

Provider | Source | Version  
---|---|---  
aws | hashicorp/aws | >= 6.30.0  
google | hashicorp/google | ~> 5.0  
**Helm charts** (6) Chart | version | appVersion | dependencies  
---|---|---|---  
cloudflare-tunnel | 0.1.0 | latest | —  
cloudflare-tunnel | 0.1.0 | latest | —  
external-secrets-config | 0.1.0 | 0.1.0 | —  
external-secrets-config | 0.1.0 | 0.1.0 | —  
karpenter-nodepools | 1.0.0 | 1.8.1 | —  
karpenter-nodepools | 1.0.0 | 1.8.1 | —  
  
#### `n1-litellm` — [develop@f6ff64d9]

**Docker base images** (3): `ghcr.io/berriai/litellm:main-v1.83.14-stable@sha256:1bdc7fd7d6634bbf693d837b14ae41a49d7970cacecb5a0d89db401a825d05e1`, `python:3.14-slim`

**GitHub Actions pinned** (5)

  * `actions/checkout@v4`
  * `aws-actions/configure-aws-credentials@v4`
  * `docker/build-push-action@v5`
  * `docker/setup-buildx-action@v3`
  * `docker/setup-qemu-action@v3`

#### `n1-security` — [develop@cc6e7c7d]

**Terraform** — required_version `>= 1.5`

Provider | Source | Version  
---|---|---  
cloudflare | cloudflare/cloudflare | 5.19.1  
  
_locked providers (`.terraform.lock.hcl`):_ registry.terraform.io/cloudflare/cloudflare 5.19.1

#### `n1-signoz` — [develop@9214cee6]

_(no dependency manifests found in this repo)_

#### `n1-standards` — [main@23824f67]

_(no dependency manifests found in this repo)_

#### `release-scribe` — [develop@13742e5c]

**Python — requirements** (10)

Package | Version  
---|---  
boto3 | ==1.42.81  
fastapi | ==0.135.3  
httpx | ==0.28.1  
langchain-openai | ==1.1.14  
openai | ==2.30.0  
python-dotenv | —  
pyyaml | ==6.0.3  
requests | —  
slack-sdk | ==3.36.0  
uvicorn | ==0.42.0  
  
**Docker base images** (1): `python:3.13-slim`

**GitHub Actions pinned** (1)

  * `actions/checkout@v4`
