Update recovery
Recover safely after a fail-closed update failure.
Where to find it
Admin → Update Recovery or bin/recovery-verify.php on the server.
How to use it
- Keep the tenant in maintenance/recovery state while the restored application/database pair is being checked.
- Restore the recorded pre-update application/database pair using your approved backup procedure.
- Run recovery verification.
- Run fresh commissioning after recovery clearance.
- Wait for the required Central fleet admission before consuming production updates again.
Important notes
Recovery deliberately does not immediately remove rollout quarantine; fresh commissioning and Central acknowledgement are required.