63 lines
3.0 KiB
Markdown
63 lines
3.0 KiB
Markdown
# PC_EXECUTOR Handoff
|
|
|
|
## Role
|
|
|
|
Operate only on the Windows 11 PC side: `D:\openclaw`, Tailscale, local OpenClaw CLI/node, and Windows service or scheduled task setup.
|
|
|
|
## Allowed Work
|
|
|
|
- Read local PC state.
|
|
- Run harmless diagnostic commands.
|
|
- Capture evidence under `evidence/pc-*`.
|
|
- Prepare rollback notes under `rollback/pc-*` before local system changes.
|
|
|
|
## Not Allowed
|
|
|
|
- Do not access VPS secrets.
|
|
- Do not approve Gateway pairings.
|
|
- Do not expose local PC ports publicly.
|
|
- Do not mark PC work as accepted without verifier review.
|
|
|
|
## Current State
|
|
|
|
From `OPENCLAW_EXEC_NODE_PLAN.md`:
|
|
|
|
- OpenClaw CLI was previously detected as `OpenClaw 2026.5.7 (eeef486)`.
|
|
- Gateway 443 connectivity was previously successful.
|
|
- Tailscale service exists and was later logged in with PC Tailnet IP `100.125.185.1`.
|
|
- Next planned OpenClaw work is C1 token injection, C2 `node run`, then C3 VPS approval.
|
|
|
|
## Next Read-Only Task
|
|
|
|
After the Gitea control plane is synchronized, collect current PC baseline evidence:
|
|
|
|
- `openclaw --version`
|
|
- `openclaw node --help`
|
|
- Tailscale CLI path and login status
|
|
- `Test-NetConnection openclaw.smartmotor.cloud -Port 443`
|
|
|
|
## Last Update
|
|
|
|
2026-05-19 T9 attempted pre-run setup but stopped before `openclaw node run`.
|
|
|
|
- Target role/workspace confirmed: PC_EXECUTOR in `D:\openclaw-control-plane`.
|
|
- `git pull --ff-only` reported already up to date.
|
|
- G2 authorization was present, T13 pre-flight guard recorded PASS, T9 was `ready`, and T10 remained `blocked`.
|
|
- Rollback note updated: `rollback/pc-g2-node-run-20260519.md`.
|
|
- User confirmed token setup in a local PC shell, but the Agent execution shell reported only `OPENCLAW_GATEWAY_TOKEN_PRESENT=false`.
|
|
- No token value was read, printed, recorded, committed, or chat-sent.
|
|
- `openclaw node run --host openclaw.smartmotor.cloud --port 443 --tls --display-name "desktop-vuor0gs"` was not executed.
|
|
- No node install/start/restart/stop/uninstall, service, scheduled task, firewall, network, environment persistence, or public-port exposure change was performed.
|
|
- Evidence written: `evidence/pc-g2-node-run-20260519.md`.
|
|
- Blocker: token is not available in the same non-persistent Agent execution shell that would run the foreground node.
|
|
|
|
2026-05-19 fresh second G2 authorization recorded for T9.
|
|
|
|
- T9 is ready for PC_EXECUTOR under `docs/G2_RUNBOOK.md`.
|
|
- Before token or node-run action, write `rollback/pc-g2-node-run-YYYYMMDD.md`.
|
|
- Set `OPENCLAW_GATEWAY_TOKEN` only in the local shell/session and never record, print, commit, or paste the token value.
|
|
- Run only the foreground node flow from the runbook.
|
|
- Do not run `openclaw node install`, `openclaw node start`, service persistence, scheduled task, firewall, network, or public-port exposure changes.
|
|
- Evidence should go to `evidence/pc-g2-node-run-YYYYMMDD.md` and must include no secrets.
|
|
- Stop immediately if a command prints or asks to store a secret, asks for persistence, changes firewall/network state, produces multiple/ambiguous pairing requests, or drifts from `docs/G2_RUNBOOK.md`.
|