The out-of-band half, and the only part of this epic no pull request can carry. Every other story ends merged and deployed with nothing a visitor can see having changed. This story is where the change becomes real: the apex records, the certificate, the deployed origin values, and the external registrations that break a live journey if they lag.
A container is completed by merging the pull request that carries its children's work, and completing a container closes its children. So every card whose acceptance criteria read a deployed environment — dig, fly certs show, curl -sI https://motir.co/, a console — has no legal position inside a container whose own merge produces that deployment: its pull request will not open while such a child is un-landed, and the child cannot be done until it merges. That is what went wrong in the first version of this epic, and it is why the post-deploy work is a container of its own that the code stories blocks.
motir.co at whichever origin the ADR chose, read from the platform at the time. Change only the address records — the zone also carries the mail exchangers, a single v=spf1, the DKIM key, the shared DMARC policy and Search Console's verification token, all published by other cards for other reasons. Two v=spf1 at one name is a permanent permerror that fails CLOSED and takes human and transactional mail down together; deleting the verification record un-verifies the Domain property for every subdomain.MOTIR_BASE_URL as they are actually set on the running application, read back after setting.trustedOrigins as deployed, any baked-in origin in the CLI or MCP defaults, and the Search Console sitemap submission.These cards act on systems no agent can read. Each step re-reads before it writes, and where a reading differs from what the card records, it STOPS and the deviation is written up before anything changes. A DNS zone is exactly the shape where a stale premise is destructive.
motir-marketing is NOT retired. The first version of this epic ended by emptying and archiving that repository, because it assumed the landing was moving into motir-core. That direction is reversed: motir-marketing keeps the landing and gains /legal, so it is a live repository with a live deployment. Nothing here retires anything.manual / human; there is no pull request and no repository to pin.https://motir.co — the landing renders, with its doors.motir.co, under one chrome.https://motir.co/robots.txt and /sitemap.xml — one of each, listing the surfaces this host serves.https://app.motir.co/explore — a permanent redirect to https://motir.co/explore, query preserved.app.motir.co, and the session cookie is still host-only.done; the story ships no pull request in any repository.MX and TXT records are byte-identical before and after; the diff is the address records only.blocked_by itreference → 8.10 (severity advisory): not consumed; the dependency runs the other way. The launch story's smoke reads the addresses this story publishes, so if either edge is owed it is 8.10 blocked_by this story — a story-level edge between two siblings under this epic, which is 8.10's to carry when it is next planned. This story consumes nothing 8.10 produces.