Editorial review pendingon version support under review
Action boundary
Before you act
- Expected result
- A dated runbook records inbound stop, credential revocation, permission removal, queue handling, and a failed post-disable test.
- Failure mode
- Local configuration is removed while provider credentials or permissions still permit delivery.
- Rollback
- Keep the integration disabled; restore only after a fresh least-privilege review and new test evidence.
Orient
Deleting configuration is not offboarding. The provider may retain credentials, webhooks, permissions, queued events, or data.
Perform
Write the disable sequence: stop inbound acceptance; halt outbound delivery; drain or quarantine retries; revoke or rotate credentials; remove provider permissions and endpoints; record approved retention; then test the dead path with a synthetic event.
Check
The owner signs off only when the test event is neither accepted nor delivered and the evidence names where any residual record remains.
Capstone handoff
Package the inventory, routing matrix, identity sheet, duplicate test, unauthorised-recipient test, approval record, disable proof, and one unresolved limitation. Score scope/least privilege 30%, failure handling 25%, human control 25%, and auditability/offboarding 20%.
Next action
Do not present this draft as production instruction until a reviewer has captured current OpenClaw and provider-specific receipts for the exact adapter and test path.
Check your understanding
Lesson checkpoint
Ready to move on?
Mark this lesson complete when you can apply its outcome without relying on the examples above.