3.0 KiB
3.0 KiB
VPS_EXECUTOR Handoff
Role
Operate only on the VPS side: /opt/service, OpenClaw Gateway, Docker stack, Nginx, Gitea, Confluence, Postgres, and Gateway-side approval workflows.
Allowed Work
- Read VPS service state.
- Run harmless diagnostic commands.
- Capture evidence under
evidence/vps-*. - Prepare rollback notes under
rollback/vps-*before service or config changes.
Not Allowed
- Do not request or store plaintext VPS passwords.
- Do not rotate or print secrets unless explicitly authorized by the user.
- Do not change the
smartmotor.cloudwebsite during filing review: homepage content, linked content reachable from the homepage, static assets, routes, bind mounts, container images, Nginx rules, or/opt/services/docker-composite.ymlentries that affect public website output are frozen. - Do not restart production-facing services without an approved rollback note.
- Do not mark VPS work as accepted without verifier review.
Current State
- VPS public IP:
114.132.222.127. - OpenClaw Gateway is already deployed and coexists with the existing Docker stack.
- The VPS service workspace path is
/opt/service. - The VPS control-plane path is
/home/ubuntu/openclaw-control-plane. - Gitea control-plane repository:
https://git.smartmotor.cloud/wangzhendong/openclaw-control-plane.git.
Next Read-Only Task
After the Gitea control plane is synchronized, collect current VPS baseline evidence:
- Git/Gitea repository availability for the control plane.
- OpenClaw Gateway process or container status.
- Nginx route for
openclaw.smartmotor.cloud. - Whether
openclaw devices approve,openclaw nodes pending, andopenclaw nodes approveare available.
Last Update
2026-05-15 VPS baseline discovery completed for T4.
- Evidence written to
evidence/vps-baseline-20260515.md. - Discovery was read-only: no restart, reload, approval, token rotation, config edit, route edit, image change, bind mount change, or website content change was performed.
/opt/servicewas not present;/opt/servicesis the active service workspace./opt/services/docker-composite.ymlwas not present;/opt/services/docker-compose.openclaw.ymlexists for OpenClaw Gateway.openclaw-gatewaycontainer is running and healthy; local/healthzreturned200with live status.- Docker stack high-level status:
nginx-proxy,gitea,confluence,postgres_conf, andopenclaw-gatewayare running;postgres_confandopenclaw-gatewayreport healthy. - Host PATH does not include
openclaw; the Gateway container CLI is available vianode openclaw.mjs. devices approve,nodes pending, andnodes approvehelp commands are available in the Gateway container. No approval command was executed beyond--help.- Baseline note for VPS_VERIFIER: HTTPS endpoints respond, but
/opt/services/nginx/conf.dis empty andnginx -Tdid not showserver_nameorproxy_passroute lines. Please verify whether this reflects expected Nginx state or route/config drift.
Waiting for VPS_VERIFIER review. VPS_EXECUTOR did not self-accept the work.