AI Engineering Platform
Infrastructure and tooling for AI Engineering bootcamps, providing secure, isolated development environments and automated participant onboarding.
Overview
This platform consists of the following components:
- Coder Deployment - Containerized development environments supported by Coder
- Participant Onboarding System - Secure, automated participant onboarding
1. Coder Deployment for GCP
The coder folder contains all resources needed to deploy a Coder instance on Google Cloud Platform (GCP), along with reusable workspace templates and Docker images for the workspace environment.
Structure
- deploy/ - Terraform scripts and startup automation for provisioning the Coder server on a GCP VM
- docker/ - Dockerfiles and guides for building custom images used by Coder workspace templates
- templates/ - Coder workspace templates for reproducible, containerized development environments on GCP
Usage
- Provision Coder on GCP - Follow the steps in
coder/deploy/README.md - Build and Push Docker Images - See
coder/docker/README.md - Push Workspace Templates - See
coder/templates/README.md
2. Participant Onboarding System
Automated API key distribution for bootcamp participants using GCP Secret Manager and workload identity.
- Secrets never written to disk — exported into the shell via
eval "$(onboard ...)" - Workspace VMs authenticate directly to Secret Manager via workload identity (no Firebase, no token service)
- Per-participant JSON secrets named
{bootcamp-name}-env-{github-handle} - Firestore tracks participant records and onboarded status
Architecture
Admin Phase
1. Setup participants/teams in Firestore
2. Generate API keys (Gemini, Langfuse, etc.)
3. onboard admin setup-secrets → creates per-participant Secret Manager secrets
4. Grant workspace SA roles/secretmanager.secretAccessor
5. Add users to GitHub org
Participant Phase
1. eval "$(onboard --bootcamp-name <name>)" in Coder workspace
2. Fetches env vars from Secret Manager via workload identity
3. Runs integration tests (env vars injected, nothing written to disk)
4. Marks participant as onboarded in Firestore
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
Built Distribution
Filter files by name, interpreter, ABI, and platform.
If you're not sure about the file name format, learn more about wheel file names.
Copy a direct link to the current filters
File details
Details for the file aieng_platform_onboard-0.7.1.tar.gz.
File metadata
- Download URL: aieng_platform_onboard-0.7.1.tar.gz
- Upload date:
- Size: 36.0 kB
- Tags: Source
- Uploaded using Trusted Publishing? Yes
- Uploaded via:
twine/6.1.0 CPython/3.13.12
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
4fb343f1561d5898d15ac431a8fac96d118cbc438c8b7f00607924c49c49b97c
|
|
| MD5 |
84a9daebdb8b79cac3cca11eb5a85f75
|
|
| BLAKE2b-256 |
c5cf05396f7a9a8ca807f2f2cf46435cd2b72b8f7bda0e0e158e2517e9f04728
|
Provenance
The following attestation bundles were made for aieng_platform_onboard-0.7.1.tar.gz:
Publisher:
publish.yml on VectorInstitute/aieng-platform
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
aieng_platform_onboard-0.7.1.tar.gz -
Subject digest:
4fb343f1561d5898d15ac431a8fac96d118cbc438c8b7f00607924c49c49b97c - Sigstore transparency entry: 1933065162
- Sigstore integration time:
-
Permalink:
VectorInstitute/aieng-platform@1314e422195fa5559ad6459f241a6cacd9b7a855 -
Branch / Tag:
refs/tags/v0.7.1 - Owner: https://github.com/VectorInstitute
-
Access:
private
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
publish.yml@1314e422195fa5559ad6459f241a6cacd9b7a855 -
Trigger Event:
push
-
Statement type:
File details
Details for the file aieng_platform_onboard-0.7.1-py3-none-any.whl.
File metadata
- Download URL: aieng_platform_onboard-0.7.1-py3-none-any.whl
- Upload date:
- Size: 46.0 kB
- Tags: Python 3
- Uploaded using Trusted Publishing? Yes
- Uploaded via:
twine/6.1.0 CPython/3.13.12
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
7d46f117ad2b4415da58b98d7730802c18a5c5f8fbb289e5cdf52a2576aae872
|
|
| MD5 |
20dc81ac9ea8e13a841ed8b35152a71c
|
|
| BLAKE2b-256 |
ee8fd4e7d10b8420fe6a161aa782bd036e9922f86955498a961692ef7e86636e
|
Provenance
The following attestation bundles were made for aieng_platform_onboard-0.7.1-py3-none-any.whl:
Publisher:
publish.yml on VectorInstitute/aieng-platform
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
aieng_platform_onboard-0.7.1-py3-none-any.whl -
Subject digest:
7d46f117ad2b4415da58b98d7730802c18a5c5f8fbb289e5cdf52a2576aae872 - Sigstore transparency entry: 1933065352
- Sigstore integration time:
-
Permalink:
VectorInstitute/aieng-platform@1314e422195fa5559ad6459f241a6cacd9b7a855 -
Branch / Tag:
refs/tags/v0.7.1 - Owner: https://github.com/VectorInstitute
-
Access:
private
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
publish.yml@1314e422195fa5559ad6459f241a6cacd9b7a855 -
Trigger Event:
push
-
Statement type: