DEC-2026-004 approved: Qonto provisioning scheduled for next office hour

- DecisionQueue: DEC-2026-004 → resolved (approved, Bernd, 2026-07-19);
  hub decision a2a9de69 resolved
- OH-2026-003 enriched with the Red-lane provisioning steps (API key +
  bao kv put per integrations/qonto-mcp.md) for the dashboard visit
- qonto-mcp.md checklist: approval done, provisioning next

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
This commit is contained in:
tegwick 2026-07-19 14:31:02 +02:00
parent a95dc29a73
commit ff579be1aa
3 changed files with 29 additions and 24 deletions

View file

@ -44,34 +44,31 @@ fallback_if_no_response: "cron bridge keeps running; no degradation, but
workstation-independence milestone stalls"
```
## Resolved decisions
### DEC-2026-004 — Qonto MCP: create API key, provision OpenBao lane (read-only use)
```yaml
id: DEC-2026-004
title: "Provision Qonto API credentials for the self-hosted Qonto MCP server (read-only harness lane)"
lane: red
status: prepared
status: resolved
outcome: approved
resolved_at: "2026-07-19"
resolved_by: Bernd
state_hub_decision_id: "a2a9de69-5bc1-434a-9a61-508ff3c12edf"
created_at: "2026-07-19"
needed_by: "soft — pairs naturally with OH-2026-003 (next Qonto dashboard visit)"
attention_cost: "~10 min: approve design, create API key in Qonto /settings/integrations, one bao kv put"
agent_recommendation: "approve — self-hosted qonto/qonto-mcp-server via
ops-warden/OpenBao (tenants/binky/qonto/api), NOT the hosted mcp.qonto.com
OAuth connector (violates no-native-integrations policy). Qonto API keys
are full-scope, so read-only is enforced by harness tool allow-list;
payments stay founder-only forever. While in the dashboard: note plan tier
+ monthly cost and API prerequisites (OH-2026-003). Main accounting stays
DUO — this complements, does not replace, the StB lane."
consequence: "Founder executes the Red-lane provisioning at the next office
hour, bundled with OH-2026-003's Qonto dashboard review: API key under
/settings/integrations + bao kv put tenants/binky/qonto/api (procedure in
integrations/qonto-mcp.md), plus plan tier/fee note for CostRunRate row 4.
Design as approved: self-hosted qonto/qonto-mcp-server, read-only via
harness tool allow-list, payments founder-only forever. BINKY-WP-0005-T05
(first read-only pull) unblocks after provision."
evidence:
- integrations/qonto-mcp.md
- workplans/BINKY-WP-0005-qonto-mcp-integration.md
options: [approve, reject, revise, defer]
fallback_if_no_response: "no degradation — CostRunRate TBC rows stay manual;
cost-vs-usage answer for OH-2026-003 stays unquantified"
```
## Resolved decisions
### DEC-2026-002 — Agent harness: one shared runtime repo
```yaml

View file

@ -43,10 +43,16 @@ title: "Qonto account review: cost vs. usage, access verification"
counterparty: bank
status: prepared
prepared_material: ["2026-07-18: Qonto announced MCP integration (mailing) —
connecting the account to our agent infrastructure is planned (AWQ-010)
and is a substantive argument FOR keeping Qonto despite plan cost.
While in the dashboard: check API/MCP access prerequisites and plan tier
requirements."]
connecting the account to our agent infrastructure is planned (AWQ-010
→ BINKY-WP-0005) and is a substantive argument FOR keeping Qonto despite
plan cost. While in the dashboard: check API/MCP access prerequisites and
plan tier requirements.",
"2026-07-19: DEC-2026-004 APPROVED — execute the Red-lane provisioning
while in the dashboard: create API key under /settings/integrations, note
organization ID, then bao kv put per the founder-provision block in
integrations/qonto-mcp.md. Also note plan tier + monthly fee for
finance/CostRunRate.md row 4. Unblocks BINKY-WP-0005-T05 (first
read-only pull)."]
deadline_pressure: none
```

View file

@ -99,10 +99,12 @@ Rules:
1. [x] Variant + read-only enforcement decided (this doc)
2. [x] OpenBao lane designed (`tenants/binky/qonto/api`)
3. [x] DecisionQueue package prepared (DEC-2026-004)
4. [ ] **Red lane — founder:** approve DEC-2026-004; create API key; `bao kv put` via `@file`
5. [ ] Warden catalog `binky-qonto-api` draft → active after provision
6. [ ] First read-only pull; update CostRunRate TBC rows (BINKY-WP-0005-T05)
7. [ ] Wire Finance Steward recurring session (post-cutover, harness lane)
4. [x] DEC-2026-004 **approved** (founder, 2026-07-19)
5. [ ] **Red lane — founder (next office hour, with OH-2026-003):** create
API key; `bao kv put` via `@file`
6. [ ] Warden catalog `binky-qonto-api` draft → active after provision
7. [ ] First read-only pull; update CostRunRate TBC rows (BINKY-WP-0005-T05)
8. [ ] Wire Finance Steward recurring session (post-cutover, harness lane)
## See also