Ancillary operations and opt-in test controls
| Capability | Environment variables |
|---|---|
| Operator-local DNSimple CLI | See the operator-shell list below; never store it in a deployment config |
| GitHub release authentication | GITHUB_TOKEN |
| Xero sandbox OAuth | XERO_SANDBOX_CLIENT_ID, XERO_SANDBOX_CLIENT_SECRET |
| Engineering Slack routing | SLACK_OPS_MENTION |
| Browser-driver override | WEBDRIVER_URL, WEBDRIVER_HEADED |
| Deterministic GCP test token | DEVX_GCP_FAKE_TOKEN, ARCHIVES_FAKE_TOKEN |
| Browser gate | NAV_REQUIRE_HARNESS, NAV_REASK_SHOTS |
| Server-mode store lane | NAV_REQUIRE_SURREAL |
The DNSimple CLI transaction uses operator-shell variables DNS_SIMPLE (or legacy DNSIMPLE_API_TOKEN),
DNSIMPLE_TOKEN, DNS_ACCT, and DNS_ZONE. None belongs in a deployment config.