Azure sandbox → dev → production. Default-deny access with explicit allow-listing. OAuth for non-PHI/marketing work; API key for production PHI work.
Controlled warehouse on Azure (lakehouse pattern, Databricks). No PHI — exposes only rolled-up KPIs into production. Power BI remains the executive source of truth.
Cloudflare retained for application/dashboard hosting. Azure scoped to the data platform and AI compute, not app delivery.
What is settled. Owner is the accountable party, not the sole contributor.
Azure environment is the sandbox for data integrations — dev environment first, then production with PHI protections.
Build a controlled data warehouse on Azure with no PHI, exposing rolled-up KPIs that are accessible in production.
Retain Cloudflare for app hosting instead of Azure/Microsoft app tooling.
Establish the Azure sandbox as a priority, in order to migrate off third-party services.
AI usage policy executive sponsor is Ron.
All production code goes through human code review before deployment.
De-identification work continues as ongoing engineering, handled directly rather than in formal review.
Unresolved — required inputs before the warehouse spec can lock.