System guardLive:OFFPrivate relay:OFFSubmit:OFFBroadcast:OFFPaper:ON· DEFAULT_SAFEDEGRADEDCapital:$0Readiness:0/4LIVE lock:LOCKEDGO live:NO-GOA.4 fork:…A.5 paper-shadow:…Loading runtime…
KILL SWITCH —PAPER MODE —socketDISCONNECTEDroutesCONNECTINGruntime_ackCONNECTINGpairsCONNECTINGquote_anchorCONNECTING
Phase 5 — Production operation
Flip paper-mode off, wire PagerDuty, wire off-site backups, record incident contacts, confirm a capital cap. This is the final gate before live execution.
No admin session
Open /killswitch and unlock an admin session first.
PagerDuty integration
The integration key is stored as a Vault path reference. The plaintext key must already exist at that path.
Only the Vault path is recorded — never the key itself.
Off-site backup destination
Daily encrypted PostgreSQL dumps are pushed here. Format:
b2://bucket-name/prefix or an S3-compatible URI.Capital cap & incident contacts
The capital cap is the absolute ceiling on USD at-risk for any single trade. It is recorded as a signed-off value — the system never enforces it automatically; that is the risk engine's responsibility.
Must be > 0. R8: no default invented.
Minimum 1. Actual contact data lives in a separate DB table.
Record completion & paper-mode flip
Writes to
onboarding_progress and audit_log. Flipping paper-mode causes the executor to begin signing and submitting bundles.admin session required