For the complete documentation index, see llms.txt. This page is also available as Markdown.

Safe Rollout

What this is

This page describes how to launch or change a Protege with lower risk.

When to use it

Use it before enabling a new Protege, widening its scope, or changing its connected integrations.

What you need first

  • A working Protege

  • Verified Event Feed and Audit behavior in at least one controlled test

Steps

1. Start narrow

  • Use one project, repo, team, channel, or equivalent boundary

  • Avoid company-wide destinations for a first rollout

2. Test with real but safe traffic

  • Use one event path you understand

  • Confirm Event Feed first

  • Confirm Audit second

3. Prepare the stop path

Know how to:

  • Disable the Protege

  • Pause the workflow if needed

  • Repair or disconnect a broken integration

  • Confirm whether removing integration permissions affects any live Proteges

4. Expand only after verification

Expand scope only when:

  • The Protege behaves consistently

  • The owner understands the failure modes

  • The verification path is clear to the wider team

  • Billing and usage expectations are understood for the larger rollout

Safe rollout is mostly about scope control, observability, and reliable rollback. Keep those three things simple before you broaden coverage.

How to verify

You’re done when...

  • The Protege works inside a narrow boundary

  • Event Feed and Audit both confirm the intended behavior

  • The owner knows how to pause or disable the workflow

Common failures

  • Turning on a broad workflow first

  • Using several integrations before validating one simple path

  • Expanding scope before a clean controlled test

  • Disconnecting or changing an integration without checking which Proteges depend on it

Next step

Last updated

Was this helpful?