# Flow Integration Depth Closure

Decision: 84% ready, live provider credentials and webhook proof pending.

## Proof lanes

### Provider setup and diagnostics
- Status: green
- [x] setup state
- [x] credential gate
- [x] health status
- [x] owner

### Webhook replay and retry
- Status: green-with-live-provider-proof-pending
- [x] webhook received
- [x] retry queue
- [x] manual replay
- [x] idempotency

### Reconciliation
- Status: green
- [x] external ID
- [x] internal ID
- [x] drift reason
- [x] repair action

### SLA and degradation
- Status: green
- [x] degraded provider
- [x] throttling
- [x] recovery ETA
- [x] customer-safe status

## Acceptance
- [ ] No connector is called production-proof without tenant-owned credentials.
- [ ] Every first-class connector has setup, health, retry and reconciliation visibility.
- [ ] Webhook replay proof is archived for at least one success and one recovery path.
- [ ] Provider degradation has owner, customer-safe copy and recovery ETA.
- [ ] External IDs and internal Flow IDs can be reconciled without leaking secrets.
- [ ] Connector proof separates framework readiness from certified provider evidence.

## Remaining external proof
- [ ] Archive provider-owned credentials proof for HubSpot, Zendesk/Freshdesk and first PMS lane.
- [ ] Run webhook replay proof per first-class connector.
- [ ] Capture throttling/degraded-provider evidence from a real or approved sandbox provider.
- [ ] Run reconciliation proof against live tenant records.