Skip to content

Fix MailSec beta onboarding and enforcement guidance - #442

Merged
maximelb merged 1 commit into
masterfrom
fix/mailsec-onboarding
Sep 21, 2026
Merged

maximelb merged 1 commit into
masterfrom
fix/mailsec-onboarding

Conversation

@maximelb

Copy link
Copy Markdown
Contributor

Fix the onboarding gaps found during the first Google Workspace beta setup: explicit pilot scope in all three examples, Python CLI installation from master, analyst force overrides in alert-only mode, Gmail banner limits, reciprocal credential-envelope warnings, DRS remediation and verification, and backfill recovery/retention cleanup guidance.

Replace credential-bearing command arguments across Email and Cloud Security with jq/stdin envelopes and remove temporary files after successful storage. Correct the enforcement claims in policy, messages, and CLI setup. Explain that retention deletion is asynchronous, requires an enabled sweeper, and first reports a changed horizon before deleting.

The zero-update asymmetry remains unreproduced; troubleshooting asks for submitted data and readbacks rather than treating an etag as proof of a particular server branch. No Python release is required for this beta workflow.

Validation: MkDocs build passes; credential stdin round-trip preserves escaped private-key bytes. Existing unrelated release-note anchor notice remains.

@maximelb
maximelb merged commit d364b27 into master Sep 21, 2026
7 checks passed
@maximelb
maximelb deleted the fix/mailsec-onboarding branch September 21, 2026 16:04
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants