{"generated":"2026-09-29T11:31:39.124Z","docs":[{"name":"Global Payouts — Dependency Map","summary":"Status: Living reference · Globalized Commerce settlement layer Scope: How an agentic purchase gets from authorized to money-in-a-bank, per market, and what each market depends on.","category":"Global","updated":"2026-06-21","order":1,"hero":"https://cdn.prod.website-files.com/6a4db086c210277324d0026b/6a4e28da01898686e28f8505_6a4e25b3638c47a60d6bdfa6_hero-global.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DGLOBAL-PAYOUTS.md&title=Global%20Payouts%20%E2%80%94%20Dependency%20Map&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FGLOBAL-PAYOUTS.md&v=2026-06-21","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/GLOBAL-PAYOUTS.md","slug":"global-payouts","md_url":"https://persephonepunch.github.io/crm-sync-setup/GLOBAL-PAYOUTS.md"},{"name":"The Trust Framework","summary":"You don't have to trust it. You have to be able to check it. Eight practices that make AI-assisted work defensible — free to adopt, no purchase required.","category":"Global","updated":"2026-07-27","order":1,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DTRUST-FRAMEWORK.md&title=The%20Trust%20Framework&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FTRUST-FRAMEWORK.md&v=2026-07-27","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/TRUST-FRAMEWORK.md","slug":"trust-framework","md_url":"https://persephonepunch.github.io/crm-sync-setup/TRUST-FRAMEWORK.md"},{"name":"Globalization — Goal Checklist (Pending / Review State)","summary":"Status board for the globalization parameters of the chat-commerce platform (chatbot, Knowledge Base, market storefronts). Each entry is a goal with its current state. States:","category":"Global","updated":"2026-06-12","order":2,"hero":"https://cdn.prod.website-files.com/6a4db086c210277324d0026b/6a4e28da01898686e28f8505_6a4e25b3638c47a60d6bdfa6_hero-global.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DGLOBALIZATION-GOALS.md&title=Globalization%20%E2%80%94%20Goal%20Checklist%20(Pending%20%2F%20Review%20State)&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FGLOBALIZATION-GOALS.md&v=2026-06-12","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/GLOBALIZATION-GOALS.md","slug":"globalization-goals","md_url":"https://persephonepunch.github.io/crm-sync-setup/GLOBALIZATION-GOALS.md"},{"name":"Your Software Investment Is the Barrier to AI Enablement","summary":"Tech debt, redefined: legacy tech that can't convert to the JSON shape AI, Google, and Shopify now run on — verified against Feedonomics, Rithum, and JDA/Blue Yonder documentation.","category":"Global","updated":"2026-07-13","order":5,"hero":"https://cdn.prod.website-files.com/6a4db086c210277324d0026b/6a54b2182df965deb54036ef_wrong-shape-visual.jpeg","url":"https://crm-sync.dev/wrong-shape?v=2026-07-13","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/docs/WRONG-SHAPE.md","slug":"wrong-shape","md_url":"https://persephonepunch.github.io/crm-sync-setup/docs/WRONG-SHAPE.md"},{"name":"From Wayfair to AI Agents — The Road to Machine-Readable Commerce","summary":"How South Dakota v. Wayfair (2018), a decade of EU enforcement against Google, and Shopify's Markets architecture (Horizon, GraphQL, Catalogs) converge on one rule: commerce compliance follows the buyer's context — and AI agents now read that context literally. Why i18n, accessibility, and machine-readability are the same plumbing; why semantic components beat compiled utility CSS as LLM context; and how design and content privacy work when the machine plane is an egress channel.","category":"Global","updated":"2026-07-24","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DWAYFAIR-TO-AI-COMMERCE.md&title=From%20Wayfair%20to%20AI%20Agents%20%E2%80%94%20The%20Road%20to%20Machine-Readable%20Commerce&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FWAYFAIR-TO-AI-COMMERCE.md&v=2026-07-24","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/WAYFAIR-TO-AI-COMMERCE.md","slug":"wayfair-to-ai-commerce","md_url":"https://persephonepunch.github.io/crm-sync-setup/WAYFAIR-TO-AI-COMMERCE.md"},{"name":"Served, stored, subpoenaed — sovereign edge serving for Korea","summary":"Sovereignty is three questions, not one: where a page is served, where the record lives, and whose law can compel it. PIPA's entrustment / provision / cross-border split, what Webflow, Cloudflare and Naver each actually offer, and the crossing inventory that makes a suspension order survivable.","category":"Global","updated":"2026-09-21","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DSOVEREIGN-EDGE-SERVING.md&title=Served%2C%20stored%2C%20subpoenaed%20%E2%80%94%20sovereign%20edge%20serving%20for%20Korea&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FSOVEREIGN-EDGE-SERVING.md&v=2026-09-21","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/SOVEREIGN-EDGE-SERVING.md","slug":"sovereign-edge-serving","md_url":"https://persephonepunch.github.io/crm-sync-setup/SOVEREIGN-EDGE-SERVING.md"},{"name":"The AI Dialog — Terms for Designers and BAs","summary":"The context nobody hands you: silent failure, event bus, hydration, judgment and its six parameters, mandates, privacy streaming — defined plainly, for the people who ship the work.","category":"Global","updated":"2026-08-03","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DAI-DIALOG-TERMS.md&title=The%20AI%20Dialog%20%E2%80%94%20Terms%20for%20Designers%20and%20BAs&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FAI-DIALOG-TERMS.md&v=2026-08-03","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/AI-DIALOG-TERMS.md","slug":"ai-dialog-terms","md_url":"https://persephonepunch.github.io/crm-sync-setup/AI-DIALOG-TERMS.md"},{"name":"The Compliance Calendar — 2018 to 2027","summary":"Every dated obligation shaping commerce data — all public record — and what it obliges of builders: dependency registers, signed non-destructive releases, test loops that keep their verdicts, and proportional review for security that takes no custody.","category":"Global","updated":"2026-08-06","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DCOMPLIANCE-CALENDAR.md&title=The%20Compliance%20Calendar%20%E2%80%94%202018%20to%202027&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FCOMPLIANCE-CALENDAR.md&v=2026-08-06","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/COMPLIANCE-CALENDAR.md","slug":"compliance-calendar","md_url":"https://persephonepunch.github.io/crm-sync-setup/COMPLIANCE-CALENDAR.md"},{"name":"CRM Sync — Security & Compliance Posture","summary":"Encrypted per-tenant credentials, scoped revocable tokens, fail-closed consent, offline-verifiable agent mandates, and a public, dated list of open findings.","category":"Security","updated":"2026-08-16","order":1,"hero":"https://cdn.prod.website-files.com/6a4db086c210277324d0026b/6a4e2fdd4a5ca535c3d460ca_6a4e25b1cb73041c1579c267_hero-security.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DSECURITY-POSTURE.md&title=CRM%20Sync%20%E2%80%94%20Security%20%26%20Compliance%20Posture&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FSECURITY-POSTURE.md&v=2026-08-16","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/SECURITY-POSTURE.md","slug":"security-posture","md_url":"https://persephonepunch.github.io/crm-sync-setup/SECURITY-POSTURE.md"},{"name":"CRM Sync — Security Audit & Paired Data Requirements","summary":"Date: 2026-05-18 Version: 1.1 Worker Version: dac8f178-f6ed-4a11-96be-f640a67c64ae","category":"Security","updated":"2026-05-26","order":2,"hero":"https://cdn.prod.website-files.com/6a4db086c210277324d0026b/6a4e2fdd4a5ca535c3d460ca_6a4e25b1cb73041c1579c267_hero-security.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DSECURITY-AUDIT.md&title=CRM%20Sync%20%E2%80%94%20Security%20Audit%20%26%20Paired%20Data%20Requirements&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FSECURITY-AUDIT.md&v=2026-05-26","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/SECURITY-AUDIT.md","slug":"security-audit","md_url":"https://persephonepunch.github.io/crm-sync-setup/SECURITY-AUDIT.md"},{"name":"Shopify Expiring Token Management","summary":"As of April 2026, Shopify mandates that all OAuth apps use expiring offline access tokens with rotation. Non-expiring tokens return 403: Non-expiring access tokens are no longer…","category":"Security","updated":"2026-05-26","order":3,"hero":"https://cdn.prod.website-files.com/6a4db086c210277324d0026b/6a4e2fdd4a5ca535c3d460ca_6a4e25b1cb73041c1579c267_hero-security.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DSHOPIFY-TOKEN-MANAGEMENT.md&title=Shopify%20Expiring%20Token%20Management&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FSHOPIFY-TOKEN-MANAGEMENT.md&v=2026-05-26","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/SHOPIFY-TOKEN-MANAGEMENT.md","slug":"shopify-token-management","md_url":"https://persephonepunch.github.io/crm-sync-setup/SHOPIFY-TOKEN-MANAGEMENT.md"},{"name":"Key Ceremony — Loop Review Checklist (Automation)","summary":"Version: 1.0 Date: 2026-06-22 Companion to: KEY-MANAGEMENT-LIFECYCLE.md (§8 rotation, §9 ceremony, §10 glossary, §12 ownership) Run mode: recurring automated review (e.g. Claude…","category":"Security","updated":"2026-06-22","order":5,"hero":"https://cdn.prod.website-files.com/6a4db086c210277324d0026b/6a4e2fdd4a5ca535c3d460ca_6a4e25b1cb73041c1579c267_hero-security.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DKEY-CEREMONY-LOOP-REVIEW.md&title=Key%20Ceremony%20%E2%80%94%20Loop%20Review%20Checklist%20(Automation)&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2Fdocs%2FKEY-CEREMONY-LOOP-REVIEW.md&v=2026-06-22","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/docs/KEY-CEREMONY-LOOP-REVIEW.md","slug":"key-ceremony-loop-review","md_url":"https://persephonepunch.github.io/crm-sync-setup/docs/KEY-CEREMONY-LOOP-REVIEW.md"},{"name":"Dark Factory Entitlement Security","summary":"Where the vulnerability lives — IoT firmware, game bundles, 3D/BIM assets — with the Unity and Trimble Cityworks receipts and the entitlement architecture that survives AI-speed extraction.","category":"Security","updated":"2026-07-19","order":8,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DDARK-FACTORY-ENTITLEMENT-SECURITY.md&title=Dark%20Factory%20Entitlement%20Security&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FDARK-FACTORY-ENTITLEMENT-SECURITY.md&v=2026-07-19","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/DARK-FACTORY-ENTITLEMENT-SECURITY.md","slug":"dark-factory-entitlement-security","md_url":"https://persephonepunch.github.io/crm-sync-setup/DARK-FACTORY-ENTITLEMENT-SECURITY.md"},{"name":"BIM Fortress vs Event-Socket","summary":"Two diagrams: the fortress wound map and the event-socket heal — envelope encryption, healing encryption, evidence ledger, AI robots on mandates. A+-respectful for Trimble estates: you need more, not different.","category":"Security","updated":"2026-07-18","order":9,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DBIM-FORTRESS-EVENT-SOCKET.md&title=BIM%20Fortress%20vs%20Event-Socket&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FBIM-FORTRESS-EVENT-SOCKET.md&v=2026-07-18","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/BIM-FORTRESS-EVENT-SOCKET.md","slug":"bim-fortress-event-socket","md_url":"https://persephonepunch.github.io/crm-sync-setup/BIM-FORTRESS-EVENT-SOCKET.md"},{"name":"Paired permissions and grant impact on machine endpoints","summary":"What read actually grants on a SaaS API, an IPFS CID, an attested device and an edge cache — and what you can still take back from each.","category":"Security","updated":"2026-09-10","order":12,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DMACHINE-ENDPOINT-GRANT-IMPACT.md&title=Paired%20permissions%20and%20grant%20impact%20on%20machine%20endpoints&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FMACHINE-ENDPOINT-GRANT-IMPACT.md&v=2026-09-10","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/MACHINE-ENDPOINT-GRANT-IMPACT.md","slug":"machine-endpoint-grant-impact","md_url":"https://persephonepunch.github.io/crm-sync-setup/MACHINE-ENDPOINT-GRANT-IMPACT.md"},{"name":"Consent gate attestation — crm-sync.dev, 2026-09-08","summary":"What the storefront sent before the visitor decided, measured before and after a fix, with the release ids and signed ledger records needed to check the claim independently. A self-attestation with verifiable evidence, not a third-party certification","category":"Security","updated":"2026-09-08","order":50,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DCONSENT-GATE-ATTESTATION.md&title=Consent%20gate%20attestation%20%E2%80%94%20crm-sync.dev%2C%202026-09-08&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FCONSENT-GATE-ATTESTATION.md&v=2026-09-08","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/CONSENT-GATE-ATTESTATION.md","slug":"consent-gate-attestation","md_url":"https://persephonepunch.github.io/crm-sync-setup/CONSENT-GATE-ATTESTATION.md"},{"name":"HAR permissions audit — a portable prompt for testing an e-commerce storefront","summary":"Hand this file and a HAR capture to any AI assistant and get a permissions audit of your own storefront: what the server actually returned versus what the page displayed, whether the consent gate resolved before the tags fired, credentials reaching t","category":"Security","updated":"2026-09-07","order":50,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DHAR-PERMISSIONS-AUDIT.md&title=HAR%20permissions%20audit%20%E2%80%94%20a%20portable%20prompt%20for%20testing%20an%20e-commerce%20storefront&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FHAR-PERMISSIONS-AUDIT.md&v=2026-09-07","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/HAR-PERMISSIONS-AUDIT.md","slug":"har-permissions-audit","md_url":"https://persephonepunch.github.io/crm-sync-setup/HAR-PERMISSIONS-AUDIT.md"},{"name":"Security & Privacy — Questions from CISOs and DPOs","summary":"The questions a security or privacy office would ask if we weren't in the room — including the ones we'd rather they didn't. Open findings, with dates, at the bottom.","category":"Security","updated":"2026-07-14","order":50,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DCISO-DPO-FAQ.md&title=Security%20%26%20Privacy%20%E2%80%94%20Questions%20from%20CISOs%20and%20DPOs&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FCISO-DPO-FAQ.md&v=2026-07-14","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/CISO-DPO-FAQ.md","slug":"ciso-dpo-faq","md_url":"https://persephonepunch.github.io/crm-sync-setup/CISO-DPO-FAQ.md"},{"name":"CRM Sync — Key Management Lifecycle","summary":"Version: 1.5 Date: 2026-07-03 (v1.4: 2026-06-22; v1.2: 2026-06-15; v1.1: 2026-06-11; v1.0: 2026-05-26) Scope: Dev → Stage → Prod key management, consulting team workflow, stakeh…","category":"Security","updated":"2026-07-03","order":401,"hero":"https://cdn.prod.website-files.com/6a4db086c210277324d0026b/6a4e2fdd4a5ca535c3d460ca_6a4e25b1cb73041c1579c267_hero-security.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DKEY-MANAGEMENT-LIFECYCLE.md&title=CRM%20Sync%20%E2%80%94%20Key%20Management%20Lifecycle&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2Fdocs%2FKEY-MANAGEMENT-LIFECYCLE.md&v=2026-07-03","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/docs/KEY-MANAGEMENT-LIFECYCLE.md","slug":"key-management-lifecycle","md_url":"https://persephonepunch.github.io/crm-sync-setup/docs/KEY-MANAGEMENT-LIFECYCLE.md"},{"name":"CRM Sync — Auth Pipelines","summary":"For: Engineering, security auditors, and compliance teams reviewing authentication architecture Date: 2026-05-19","category":"Security","updated":"2026-05-29","order":601,"hero":"https://cdn.prod.website-files.com/6a4db086c210277324d0026b/6a4e2fdd4a5ca535c3d460ca_6a4e25b1cb73041c1579c267_hero-security.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DAUTH-PIPELINES.md&title=CRM%20Sync%20%E2%80%94%20Auth%20Pipelines&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2Fdocs%2FAUTH-PIPELINES.md&v=2026-05-29","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/docs/AUTH-PIPELINES.md","slug":"auth-pipelines","md_url":"https://persephonepunch.github.io/crm-sync-setup/docs/AUTH-PIPELINES.md"},{"name":"Keys to the Castle with Design Ops Tools","summary":"Distributed entitlement built with Design Ops tools - Webflow, Xano and Cloudflare - mapped feature by feature against Vault and Consul. Same utility, same security, same scaling. Plus minting: an artifact a customer can be granted, which a secrets engine was never built to hold.","category":"Security","updated":"2026-08-16","order":603,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DKEYS-TO-THE-CASTLE.md&title=Keys%20to%20the%20Castle%20with%20Design%20Ops%20Tools&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2Fdocs%2FKEYS-TO-THE-CASTLE.md&v=2026-08-16","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/docs/KEYS-TO-THE-CASTLE.md","slug":"keys-to-the-castle-design-ops","md_url":"https://persephonepunch.github.io/crm-sync-setup/docs/KEYS-TO-THE-CASTLE.md"},{"name":"Agent Authority — Technical Brief","summary":"For teams already running agent workflows: per-agent mandates with scope, cap and expiry; authority resolved per call rather than at the boundary; MCP with scoped tokens; and offline verification against a published Ed25519 key.","category":"Security","updated":"2026-07-27","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DAGENT-AUTHORITY-BRIEF.md&title=Agent%20Authority%20%E2%80%94%20Technical%20Brief&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FAGENT-AUTHORITY-BRIEF.md&v=2026-07-27","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/AGENT-AUTHORITY-BRIEF.md","slug":"agent-authority-brief","md_url":"https://persephonepunch.github.io/crm-sync-setup/AGENT-AUTHORITY-BRIEF.md"},{"name":"AI cross-border requirements: a scannable checklist","summary":"What an AI service that moves personal data across borders must guarantee — data governance, transport, horizontal scaling, AI-specific controls — mapped to the SOC 2 Trust Services Criteria, with the evidence a reviewer asks for; plus US middleware fees and the retention, consent and retargeting gaps that turn into penalties.","category":"Security","updated":"2026-09-25","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DAI-CROSS-BORDER-REQUIREMENTS-CHECKLIST.md&title=AI%20cross-border%20requirements%3A%20a%20scannable%20checklist&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FAI-CROSS-BORDER-REQUIREMENTS-CHECKLIST.md&v=2026-09-25","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/AI-CROSS-BORDER-REQUIREMENTS-CHECKLIST.md","slug":"ai-cross-border-requirements-checklist","md_url":"https://persephonepunch.github.io/crm-sync-setup/AI-CROSS-BORDER-REQUIREMENTS-CHECKLIST.md"},{"name":"CRM Sync — Firmware, SBOM & the Cyber Resilience Act","summary":"What an SBOM is, what firmware vaulting does, and how the EU Cyber Resilience Act maps onto both — plus a glossary of the security terms (envelope encryption, hash-chained ledger, grant-gated download, CORS, nosniff).","category":"Security","updated":"2026-07-20","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DFIRMWARE-SBOM-CRA.md&title=CRM%20Sync%20%E2%80%94%20Firmware%2C%20SBOM%20%26%20the%20Cyber%20Resilience%20Act&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FFIRMWARE-SBOM-CRA.md&v=2026-07-20","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/FIRMWARE-SBOM-CRA.md","slug":"firmware-sbom-cra","md_url":"https://persephonepunch.github.io/crm-sync-setup/FIRMWARE-SBOM-CRA.md"},{"name":"Cybersecurity for AI — CISO · CTO · DPO","summary":"What the EU Cyber Resilience Act requires, what firmware and SBOMs are, why CISOs, CTOs, and DPOs are personally exposed when a system only looks like it works, the billion-dollar GDPR precedent behind the server-side migration, and two pathways to compliance: bundled-AI SaaS vs. AI-as-middleware.","category":"Security","updated":"2026-07-25","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DCYBERSECURITY-FOR-AI.md&title=Cybersecurity%20for%20AI%20%E2%80%94%20CISO%20%C2%B7%20CTO%20%C2%B7%20DPO&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FCYBERSECURITY-FOR-AI.md&v=2026-07-25","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/CYBERSECURITY-FOR-AI.md","slug":"cybersecurity-for-ai","md_url":"https://persephonepunch.github.io/crm-sync-setup/CYBERSECURITY-FOR-AI.md"},{"name":"Entitlement Strategy — RBAC, ABAC, RuBAC & Permissions for AI Agents","summary":"How RBAC, ABAC, and RuBAC actually relate; why WordPress roles, AWS IAM, and Azure RBAC stop at the door; and how an entitlement plane with purchase-granted capability caps, envelope encryption, and AP2 mandates gates AI agents.","category":"Security","updated":"2026-07-20","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DENTITLEMENT-STRATEGY.md&title=Entitlement%20Strategy%20%E2%80%94%20RBAC%2C%20ABAC%2C%20RuBAC%20%26%20Permissions%20for%20AI%20Agents&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FENTITLEMENT-STRATEGY.md&v=2026-07-20","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/ENTITLEMENT-STRATEGY.md","slug":"entitlement-strategy","md_url":"https://persephonepunch.github.io/crm-sync-setup/ENTITLEMENT-STRATEGY.md"},{"name":"Permissions for AI, in plain terms — capability, not perimeter","summary":"Permissions for AI agents in plain 1-2-3: RBAC/ABAC/RuBAC/OIDC/OAuth defined, why RBAC breaks for AI, and five real-world proofs (household streaming, HIPAA 3D printing, private mortgage, dark-warehouse robots on GS1 QR Sunrise 2027, geo-verified BIM inspection). Money- and privacy-gated.","category":"Security","updated":"2026-08-09","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DCAPABILITY-NOT-PERIMETER.md&title=Permissions%20for%20AI%2C%20in%20plain%20terms%20%E2%80%94%20capability%2C%20not%20perimeter&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FCAPABILITY-NOT-PERIMETER.md&v=2026-08-09","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/CAPABILITY-NOT-PERIMETER.md","slug":"capability-not-perimeter","md_url":"https://persephonepunch.github.io/crm-sync-setup/CAPABILITY-NOT-PERIMETER.md"},{"name":"QA and Release Gating for Agents, Mandates and Robots","summary":"What changes in a test suite when the caller is an agent or a machine with an actuator — adversarial refusal tests, a gate that fails closed, and what SRI actually protects.","category":"Security","updated":"2026-09-20","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DQA-RELEASE-GATING.md&title=QA%20and%20Release%20Gating%20for%20Agents%2C%20Mandates%20and%20Robots&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FQA-RELEASE-GATING.md&v=2026-09-20","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/QA-RELEASE-GATING.md","slug":"qa-release-gating","md_url":"https://persephonepunch.github.io/crm-sync-setup/QA-RELEASE-GATING.md"},{"name":"Rotate a Key in Three Steps — the AI-Safe Ceremony for Webflow Teams","summary":"Webflow and Shopify have no native key rotation — a token is one static secret. Demote platform tokens to plumbing; put people, agents, and permissions on paired entitlement that rotates with named generations.","category":"Security","updated":"2026-07-29","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DKEY-ROTATION-123.md&title=Rotate%20a%20Key%20in%20Three%20Steps%20%E2%80%94%20the%20AI-Safe%20Ceremony%20for%20Webflow%20Teams&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FKEY-ROTATION-123.md&v=2026-07-29","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/KEY-ROTATION-123.md","slug":"key-rotation-123","md_url":"https://persephonepunch.github.io/crm-sync-setup/KEY-ROTATION-123.md"},{"name":"Security Reinforcement: Firmware Asset Publishing","summary":"Tooling, a UAT plan whose cases are meant to fail the install, and what a shipped secret is worth — because TLS proves the connection, not the bytes.","category":"Security","updated":"2026-09-20","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DFIRMWARE-ASSET-PUBLISHING.md&title=Security%20Reinforcement%3A%20Firmware%20Asset%20Publishing&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FFIRMWARE-ASSET-PUBLISHING.md&v=2026-09-20","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/FIRMWARE-ASSET-PUBLISHING.md","slug":"firmware-asset-publishing","md_url":"https://persephonepunch.github.io/crm-sync-setup/FIRMWARE-ASSET-PUBLISHING.md"},{"name":"Server-Side or It Didn't Happen — Developer Due Diligence","summary":"A theme that looks right is not a system that is right: shape-gated server functions, the consent register, the three-surface demonstration — and who carries what you didn't write down.","category":"Security","updated":"2026-08-05","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DSERVER-SIDE-OR-IT-DIDNT-HAPPEN.md&title=Server-Side%20or%20It%20Didn't%20Happen%20%E2%80%94%20Developer%20Due%20Diligence&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FSERVER-SIDE-OR-IT-DIDNT-HAPPEN.md&v=2026-08-05","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/SERVER-SIDE-OR-IT-DIDNT-HAPPEN.md","slug":"server-side-or-it-didnt-happen","md_url":"https://persephonepunch.github.io/crm-sync-setup/SERVER-SIDE-OR-IT-DIDNT-HAPPEN.md"},{"name":"SOC / SOX Application Review — AI Middleware, Reinforced Security, Data Scaling","summary":"The application-review checklist across the four IT General Control domains plus AI requirements and dependency/failover — and why the foundation holds: AI as free-to-use middleware, security reinforcement that fails closed, and data scaling on one session-keyed ledger, with SOC-aligned controls built in rather than bolted on.","category":"Security","updated":"2026-07-25","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DSOC-SOX-APP-REVIEW.md&title=SOC%20%2F%20SOX%20Application%20Review%20%E2%80%94%20AI%20Middleware%2C%20Reinforced%20Security%2C%20Data%20Scaling&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FSOC-SOX-APP-REVIEW.md&v=2026-07-25","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/SOC-SOX-APP-REVIEW.md","slug":"soc-sox-app-review","md_url":"https://persephonepunch.github.io/crm-sync-setup/SOC-SOX-APP-REVIEW.md"},{"name":"The BYO data plane fallback ladder: whose warehouse, and what erasure does to it","summary":"When a tenant brings its own Xano and BigQuery, every write has to land in the tenant's warehouse, and every erasure has to respect the tenant's choice. The five-rung ladder that resolves a tenant's BigQuery project, the operator-approved exceptions and the page that manages them, the tombstone-then-purge erasure and the per-tenant policy for the tenant's own planes, and what Shopify, Google and Klaviyo each do with a deletion","category":"Security","updated":"2026-09-16","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DBYO-DATA-PLANE-FALLBACK-LADDER.md&title=The%20BYO%20data%20plane%20fallback%20ladder%3A%20whose%20warehouse%2C%20and%20what%20erasure%20does%20to%20it&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FBYO-DATA-PLANE-FALLBACK-LADDER.md&v=2026-09-16","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/BYO-DATA-PLANE-FALLBACK-LADDER.md","slug":"byo-data-plane-fallback-ladder","md_url":"https://persephonepunch.github.io/crm-sync-setup/BYO-DATA-PLANE-FALLBACK-LADDER.md"},{"name":"The Trust Vocabulary — Every Term on One Page","summary":"Permission, privacy, license vs grant, receipt, record of consumption, fingerprint, vault, token vs bookmark, key pair, mandate — one breath each, with who acts on it.","category":"Security","updated":"2026-07-29","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DTRUST-VOCABULARY.md&title=The%20Trust%20Vocabulary%20%E2%80%94%20Every%20Term%20on%20One%20Page&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FTRUST-VOCABULARY.md&v=2026-07-29","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/TRUST-VOCABULARY.md","slug":"trust-vocabulary","md_url":"https://persephonepunch.github.io/crm-sync-setup/TRUST-VOCABULARY.md"},{"name":"The Wrong-Size Tool — Why Consent Never Lands on a Server","summary":"Enterprise IT was built to guard the perimeter; regulators now ask what the servers did. Into that gap walk consulting firms selling platform programs — Salesforce, MuleSoft, ESB rebuilds, WMS replacements — that still never put consent on a server. The ladder runs from scoping failure to material weakness to securities litigation, and the fix that would have protected the organization was nearly free. Why the right-size tool gets dismissed, what a station is versus a destination, and why every high-order function — consent, entitlement, evidence, even the design system — must arch both.","category":"Security","updated":"2026-07-25","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DWRONG-SIZE-TOOL.md&title=The%20Wrong-Size%20Tool%20%E2%80%94%20Why%20Consent%20Never%20Lands%20on%20a%20Server&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FWRONG-SIZE-TOOL.md&v=2026-07-25","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/WRONG-SIZE-TOOL.md","slug":"wrong-size-tool","md_url":"https://persephonepunch.github.io/crm-sync-setup/WRONG-SIZE-TOOL.md"},{"name":"Trust Roots Across Clouds","summary":"What TLS actually buys and where it stops — and why a permission is intent, mandate and policy together, never a token anybody carries.","category":"Security","updated":"2026-09-09","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DTRUST-ROOTS-ACROSS-CLOUDS.md&title=Trust%20Roots%20Across%20Clouds&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FTRUST-ROOTS-ACROSS-CLOUDS.md&v=2026-09-09","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/TRUST-ROOTS-ACROSS-CLOUDS.md","slug":"trust-roots-across-clouds","md_url":"https://persephonepunch.github.io/crm-sync-setup/TRUST-ROOTS-ACROSS-CLOUDS.md"},{"name":"Trust With Login — The Bind Is the Product","summary":"The login binds accounts you already own; permissions come from the register, not an installed app; eight frontends, one gate; every sign-in is a ledger event.","category":"Security","updated":"2026-08-06","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DTRUST-WITH-LOGIN.md&title=Trust%20With%20Login%20%E2%80%94%20The%20Bind%20Is%20the%20Product&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FTRUST-WITH-LOGIN.md&v=2026-08-06","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/TRUST-WITH-LOGIN.md","slug":"trust-with-login","md_url":"https://persephonepunch.github.io/crm-sync-setup/TRUST-WITH-LOGIN.md"},{"name":"Two Ways to Give an Agent a Key","summary":"Participant-held (Nostr) vs edge-held Ed25519 key custody for AI agents: identity vs authority, rotation after compromise, decentralized egress under enterprise controls, three-leg resilience, and a 20-term glossary.","category":"Security","updated":"2026-07-27","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DAGENT-KEY-CUSTODY-MODELS.md&title=Two%20Ways%20to%20Give%20an%20Agent%20a%20Key&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FAGENT-KEY-CUSTODY-MODELS.md&v=2026-07-27","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/AGENT-KEY-CUSTODY-MODELS.md","slug":"agent-key-custody-models","md_url":"https://persephonepunch.github.io/crm-sync-setup/AGENT-KEY-CUSTODY-MODELS.md"},{"name":"Verify It Yourself — the IT Sheet","summary":"One page, both registers: the four-click demo for the business stakeholder; independent-verification claims, endpoints, and tests for IT.","category":"Security","updated":"2026-07-29","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DVERIFY-IT-SHEET.md&title=Verify%20It%20Yourself%20%E2%80%94%20the%20IT%20Sheet&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FVERIFY-IT-SHEET.md&v=2026-07-29","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/VERIFY-IT-SHEET.md","slug":"verify-it-sheet","md_url":"https://persephonepunch.github.io/crm-sync-setup/VERIFY-IT-SHEET.md"},{"name":"What Is an SBOM? Who Uses This? Everyone.","summary":"The LinkedIn edition — question-first: what an SBOM is, who uses it (everyone), and how a regulatory threat became a composable publishing system.","category":"Security","updated":"2026-07-29","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DSBOM-EVERYONE.md&title=What%20Is%20an%20SBOM%3F%20Who%20Uses%20This%3F%20Everyone.&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FSBOM-EVERYONE.md&v=2026-07-29","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/SBOM-EVERYONE.md","slug":"sbom-everyone","md_url":"https://persephonepunch.github.io/crm-sync-setup/SBOM-EVERYONE.md"},{"name":"Your Firmware Is a URL — the CRA Assumes an Evidence Chain","summary":"The CRA clock as a records problem — SBOMs, vaulting, and the SaaS answer: ledger sessions, not artifacts. With the relay-vs-entitlement contrast.","category":"Security","updated":"2026-07-29","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DCRA-EVIDENCE-CHAIN.md&title=Your%20Firmware%20Is%20a%20URL%20%E2%80%94%20the%20CRA%20Assumes%20an%20Evidence%20Chain&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FCRA-EVIDENCE-CHAIN.md&v=2026-07-29","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/CRA-EVIDENCE-CHAIN.md","slug":"cra-evidence-chain","md_url":"https://persephonepunch.github.io/crm-sync-setup/CRA-EVIDENCE-CHAIN.md"},{"name":"Consent, Cookies & Preferences — User Guide","summary":"The consent banner, cookie preferences, reset, Do Not Sell vs consent, and the audit trail.","category":"Setup","updated":"2026-07-09","order":0,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DCONSENT-COOKIES-PREFERENCES.md&title=Consent%2C%20Cookies%20%26%20Preferences%20%E2%80%94%20User%20Guide&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FCONSENT-COOKIES-PREFERENCES.md&v=2026-07-09","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/CONSENT-COOKIES-PREFERENCES.md","slug":"consent-cookies-preferences","md_url":"https://persephonepunch.github.io/crm-sync-setup/CONSENT-COOKIES-PREFERENCES.md"},{"name":"CRM Sync — Migration Guide: CSV & Legacy Tools → Connected Streams","summary":"For: Marketing ops, analytics teams, and CRM administrators planning the transition Date: 2026-05-18","category":"Setup","updated":"2026-05-26","order":3,"hero":"https://cdn.prod.website-files.com/6a4db086c210277324d0026b/6a4e2fc88e1a0540083076ab_6a4e25b0dc7a52da47e1bef1_hero-setup.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DMIGRATION-GUIDE.md&title=CRM%20Sync%20%E2%80%94%20Migration%20Guide%3A%20CSV%20%26%20Legacy%20Tools%20%E2%86%92%20Connected%20Streams&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FMIGRATION-GUIDE.md&v=2026-05-26","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/MIGRATION-GUIDE.md","slug":"migration-guide","md_url":"https://persephonepunch.github.io/crm-sync-setup/MIGRATION-GUIDE.md"},{"name":"Agency → Client Deploy Handoff","summary":"Checklist + Interactive Key Rotation ceremony. This document is the normative handoff procedure for transferring a deployed CRM Sync / headless commerce stack from the implement…","category":"Setup","updated":"2026-06-12","order":4,"hero":"https://cdn.prod.website-files.com/6a4db086c210277324d0026b/6a4e2fc88e1a0540083076ab_6a4e25b0dc7a52da47e1bef1_hero-setup.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DAGENCY-HANDOFF.md&title=Agency%20%E2%86%92%20Client%20Deploy%20Handoff&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FAGENCY-HANDOFF.md&v=2026-06-12","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/AGENCY-HANDOFF.md","slug":"agency-handoff","md_url":"https://persephonepunch.github.io/crm-sync-setup/AGENCY-HANDOFF.md"},{"name":"File System Agnostic Publishing","summary":"Ship the Webflow design as a WordPress theme (Udesly or Pinegrow) or on EmDash/Astro — the Shopify Web Components block and CRM Sync embeds carry across verbatim.","category":"Setup","updated":"2026-09-10","order":7,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DWORDPRESS-WEB-COMPONENTS.md&title=File%20System%20Agnostic%20Publishing&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FWORDPRESS-WEB-COMPONENTS.md&v=2026-09-10","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/WORDPRESS-WEB-COMPONENTS.md","slug":"universal","md_url":"https://persephonepunch.github.io/crm-sync-setup/WORDPRESS-WEB-COMPONENTS.md"},{"name":"How to capture a HAR file — a plain-language guide","summary":"A HAR file is a recording of every conversation your browser had with a website. This explains what one is, how to capture a useful one in Chrome, Edge, Firefox or Safari, the single setting most people miss, how to check what is inside before you sh","category":"Setup","updated":"2026-09-07","order":50,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DHOW-TO-CAPTURE-A-HAR.md&title=How%20to%20capture%20a%20HAR%20file%20%E2%80%94%20a%20plain-language%20guide&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FHOW-TO-CAPTURE-A-HAR.md&v=2026-09-07","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/HOW-TO-CAPTURE-A-HAR.md","slug":"how-to-capture-a-har","md_url":"https://persephonepunch.github.io/crm-sync-setup/HOW-TO-CAPTURE-A-HAR.md"},{"name":"CRM Sync — PWA & Native App Commerce Setup Reference","summary":"Ship your CRM as an installable PWA and native app (iOS · Android · desktop) on Shopify + Webflow + Xano — with auth, real-time consent, GA4, and agent permissions. Everything you need to get it running, in order.","category":"Setup","updated":"2026-07-06","order":101,"hero":"https://cdn.prod.website-files.com/6a4db086c210277324d0026b/6a4e2fc88e1a0540083076ab_6a4e25b0dc7a52da47e1bef1_hero-setup.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DREADME.md&title=CRM%20Sync%20%E2%80%94%20PWA%20%26%20Native%20App%20Commerce%20Setup%20Reference&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FREADME.md&v=2026-07-06","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/README.md","slug":"readme","md_url":"https://persephonepunch.github.io/crm-sync-setup/README.md"},{"name":"CRM Sync Setup Reference","summary":"The full technical reference for the CRM Sync stack. New users: start with the short numbered guide at crm-sync.dev/start — this page is for depth.","category":"Setup","updated":"2026-07-07","order":201,"hero":"https://cdn.prod.website-files.com/6a4db086c210277324d0026b/6a4e2fc88e1a0540083076ab_6a4e25b0dc7a52da47e1bef1_hero-setup.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DSETUP-GUIDE.md&title=CRM%20Sync%20Setup%20Reference&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FSETUP-GUIDE.md&v=2026-07-07","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/SETUP-GUIDE.md","slug":"setup-guide","md_url":"https://persephonepunch.github.io/crm-sync-setup/SETUP-GUIDE.md"},{"name":"Logging and trace fees: what monitoring costs by volume","summary":"Log entries and trace spans are the two monitoring lines that grow with traffic rather than with tenants. What Google Cloud Logging, Cloud Trace and Cloud Monitoring charge, what Cloudflare Workers Logs and Traces charge from 1 October 2026, what a fixed-fee Xano plan leaves out, and the four settings that decide the bill before the first invoice does","category":"Setup","updated":"2026-09-16","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DLOGGING-AND-TRACE-FEES.md&title=Logging%20and%20trace%20fees%3A%20what%20monitoring%20costs%20by%20volume&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FLOGGING-AND-TRACE-FEES.md&v=2026-09-16","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/LOGGING-AND-TRACE-FEES.md","slug":"logging-and-trace-fees","md_url":"https://persephonepunch.github.io/crm-sync-setup/LOGGING-AND-TRACE-FEES.md"},{"name":"Marketing was built on the page view. The funnel now pays for the consented login.","summary":"For: Marketing ops, performance media, and analytics engineering Status: Built (GA4 push + audiences) · Direct Google Ads push pending Ads API credentials Date: 2026-07-07 Depen…","category":"Shopify","updated":"2026-07-22","order":1,"hero":"https://cdn.prod.website-files.com/6a4db086c210277324d0026b/6a4e846c7e975f13a3b97446_6a4e8446e29551b7e227d4fd_hero-funnel-repriced.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DSEGMENTS-GA4-BIDDING.md&title=Marketing%20was%20built%20on%20the%20page%20view.%20The%20funnel%20now%20pays%20for%20the%20consented%20login.&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FSEGMENTS-GA4-BIDDING.md&v=2026-07-22","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/SEGMENTS-GA4-BIDDING.md","slug":"segments-ga4-bidding","md_url":"https://persephonepunch.github.io/crm-sync-setup/SEGMENTS-GA4-BIDDING.md"},{"name":"Google turned off the list upload. We were never uploading lists.","summary":"For: Marketing ops, analytics engineering, and the business analyst who owns segments Status: Plan of record · GA4 pipe built · Live Google push routes via the Data Manager API","category":"Shopify","updated":"2026-07-10","order":2,"hero":"https://cdn.prod.website-files.com/6a4db086c210277324d0026b/6a4e846c7e975f13a3b97446_6a4e8446e29551b7e227d4fd_hero-funnel-repriced.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DSEGMENTS-GOOGLE-CONNECT.md&title=Google%20turned%20off%20the%20list%20upload.%20We%20were%20never%20uploading%20lists.&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FSEGMENTS-GOOGLE-CONNECT.md&v=2026-07-10","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/SEGMENTS-GOOGLE-CONNECT.md","slug":"segments-google-connect","md_url":"https://persephonepunch.github.io/crm-sync-setup/SEGMENTS-GOOGLE-CONNECT.md"},{"name":"Shopify App Requirements Checklist (2026)","summary":"A comprehensive, downloadable checklist for building, submitting, and maintaining a Shopify App Store app. Based on Shopify's official App Store requirements and the latest plat…","category":"Shopify","updated":"2026-05-29","order":2,"hero":"https://cdn.prod.website-files.com/6a4db086c210277324d0026b/6a4e30353435a54d2252adbc_6a4e25b2cb73041c1579c377_hero-shopify.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DSHOPIFY-APP-CHECKLIST.md&title=Shopify%20App%20Requirements%20Checklist%20(2026)&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FSHOPIFY-APP-CHECKLIST.md&v=2026-05-29","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/SHOPIFY-APP-CHECKLIST.md","slug":"shopify-app-checklist","md_url":"https://persephonepunch.github.io/crm-sync-setup/SHOPIFY-APP-CHECKLIST.md"},{"name":"CRM Sync — Shopify App Platform Changes","summary":"For: Product managers, operations teams, and business stakeholders tracking Shopify app compliance Date: 2026-05-18","category":"Shopify","updated":"2026-05-26","order":3,"hero":"https://cdn.prod.website-files.com/6a4db086c210277324d0026b/6a4e30353435a54d2252adbc_6a4e25b2cb73041c1579c377_hero-shopify.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DSHOPIFY-APP-PIVOT.md&title=CRM%20Sync%20%E2%80%94%20Shopify%20App%20Platform%20Changes&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FSHOPIFY-APP-PIVOT.md&v=2026-05-26","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/SHOPIFY-APP-PIVOT.md","slug":"shopify-app-pivot","md_url":"https://persephonepunch.github.io/crm-sync-setup/SHOPIFY-APP-PIVOT.md"},{"name":"Risk & Liability Brief — The 2026 Client-Side Cliff","summary":"Audience: owners, finance, legal, and engineering leads who carry the downside. As of: 2026-06-21 · Companion to: FORWARD-DEPLOY-AGENTIC-GRAPHQL.md (the fix).","category":"Shopify","updated":"2026-06-21","order":4,"hero":"https://cdn.prod.website-files.com/6a4db086c210277324d0026b/6a4e30353435a54d2252adbc_6a4e25b2cb73041c1579c377_hero-shopify.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DSHOPIFY-2026-RISK-BRIEF.md&title=Risk%20%26%20Liability%20Brief%20%E2%80%94%20The%202026%20Client-Side%20Cliff&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FSHOPIFY-2026-RISK-BRIEF.md&v=2026-06-21","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/SHOPIFY-2026-RISK-BRIEF.md","slug":"shopify-2026-risk-brief","md_url":"https://persephonepunch.github.io/crm-sync-setup/SHOPIFY-2026-RISK-BRIEF.md"},{"name":"Dawn → Horizon: Agentic Cart Functions","summary":"Move client-side Dawn logic to server-side Functions and the Tool Runner — agent-driveable under an AP2 mandate. Includes the Scripts→Functions map and the dated migration checklist.","category":"Shopify","updated":"2026-08-06","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DDAWN-HORIZON-GA4.md&title=Dawn%20%E2%86%92%20Horizon%3A%20Agentic%20Cart%20Functions&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FDAWN-HORIZON-GA4.md&v=2026-08-06","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/DAWN-HORIZON-GA4.md","slug":"dawn-horizon-ga4","md_url":"https://persephonepunch.github.io/crm-sync-setup/DAWN-HORIZON-GA4.md"},{"name":"REST Is Not GraphQL","summary":"What actually breaks when a Shopify integration moves from REST to GraphQL: the inverted error model, cost-based rate limiting, GID identifiers, cursor pagination, and unequal surface coverage - with the failure mode each produces and an audit checklist.","category":"Shopify","updated":"2026-07-27","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DREST-IS-NOT-GRAPHQL.md&title=REST%20Is%20Not%20GraphQL&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FREST-IS-NOT-GRAPHQL.md&v=2026-07-27","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/REST-IS-NOT-GRAPHQL.md","slug":"rest-is-not-graphql","md_url":"https://persephonepunch.github.io/crm-sync-setup/REST-IS-NOT-GRAPHQL.md"},{"name":"Shopify and Google sunsets: what is due before 11 November 2026","summary":"Every Shopify, Google Analytics and Google Ads deprecation dated between 16 September and 11 November 2026, the five topics merchants ask about — native mobile, short-lived tokens, the REST sunset, GraphQL data layers, and GA4 consent and conversions — and whether CRM Sync is exposed to each, with every source linked.","category":"Shopify","updated":"2026-09-16","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DSHOPIFY-AND-GOOGLE-SUNSETS.md&title=Shopify%20and%20Google%20sunsets%3A%20what%20is%20due%20before%2011%20November%202026&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FSHOPIFY-AND-GOOGLE-SUNSETS.md&v=2026-09-16","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/SHOPIFY-AND-GOOGLE-SUNSETS.md","slug":"shopify-and-google-sunsets","md_url":"https://persephonepunch.github.io/crm-sync-setup/SHOPIFY-AND-GOOGLE-SUNSETS.md"},{"name":"JS Execution Order — Challenge & Solution","summary":"Consent fires first: the client-JS execution-order contract and the tests that enforce it.","category":"Specs","updated":"2026-07-09","order":0,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DJS-EXECUTION-ORDER.md&title=JS%20Execution%20Order%20%E2%80%94%20Challenge%20%26%20Solution&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FJS-EXECUTION-ORDER.md&v=2026-07-09","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/JS-EXECUTION-ORDER.md","slug":"js-execution-order","md_url":"https://persephonepunch.github.io/crm-sync-setup/JS-EXECUTION-ORDER.md"},{"name":"AI Trust Framework Requirements","summary":"Ten requirements an AI trust framework must satisfy, why REST integration cannot meet them by default, and nine additive changes that close the gap without rewriting an endpoint.","category":"Specs","updated":"2026-07-27","order":2,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DAI-TRUST-FRAMEWORK-REQUIREMENTS.md&title=AI%20Trust%20Framework%20Requirements&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FAI-TRUST-FRAMEWORK-REQUIREMENTS.md&v=2026-07-27","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/AI-TRUST-FRAMEWORK-REQUIREMENTS.md","slug":"ai-trust-framework-requirements","md_url":"https://persephonepunch.github.io/crm-sync-setup/AI-TRUST-FRAMEWORK-REQUIREMENTS.md"},{"name":"CRM Sync — Why This Architecture Is Safer","summary":"For: Business leaders, compliance officers, and operations teams evaluating CRM Sync Date: 2026-05-18","category":"Specs","updated":"2026-05-26","order":2,"hero":"https://crm-sync.dev/kb/media/docs/hero-specs.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DARCHITECTURE.md&title=CRM%20Sync%20%E2%80%94%20Why%20This%20Architecture%20Is%20Safer&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FARCHITECTURE.md&v=2026-05-26","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/ARCHITECTURE.md","slug":"architecture","md_url":"https://persephonepunch.github.io/crm-sync-setup/ARCHITECTURE.md"},{"name":"Process Management Guide — Webflow · Xano · Cloudflare · Shopify","summary":"Four-platform resilience: layer split, event-driven automation, outage runbook and RACI - now extended with verification evidence, SBOM/CRA obligations and AEO surfaces.","category":"Specs","updated":"2026-07-27","order":3,"hero":"https://crm-sync.dev/kb/media/docs/hero-specs.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DPROCESS-MANAGEMENT-DATA-LAYER.md&title=Process%20Management%20Guide%20%E2%80%94%20Webflow%20%C2%B7%20Xano%20%C2%B7%20Cloudflare%20%C2%B7%20Shopify&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FPROCESS-MANAGEMENT-DATA-LAYER.md&v=2026-07-27","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/PROCESS-MANAGEMENT-DATA-LAYER.md","slug":"process-management-data-layer","md_url":"https://persephonepunch.github.io/crm-sync-setup/PROCESS-MANAGEMENT-DATA-LAYER.md"},{"name":"Server-Side Function Tools with AI Runners","summary":"The additive way into an enterprise stack: bounded functions that resolve authority per call, record themselves, and give an AI runner capability without a migration to own.","category":"Specs","updated":"2026-07-27","order":3,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DSERVER-SIDE-FUNCTION-TOOLS.md&title=Server-Side%20Function%20Tools%20with%20AI%20Runners&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FSERVER-SIDE-FUNCTION-TOOLS.md&v=2026-07-27","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/SERVER-SIDE-FUNCTION-TOOLS.md","slug":"server-side-function-tools","md_url":"https://persephonepunch.github.io/crm-sync-setup/SERVER-SIDE-FUNCTION-TOOLS.md"},{"name":"CRM Sync — UI Component & ID Registry","summary":"Canonical naming + delivery model for the storefront UI system (nav, footer, cart, login, search) across design-sync.myshopify.com → crm-sync.dev. One addressable crm- namespace…","category":"Specs","updated":"2026-07-07","order":4,"hero":"https://crm-sync.dev/kb/media/docs/hero-specs.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DUI-COMPONENT-REGISTRY.md&title=CRM%20Sync%20%E2%80%94%20UI%20Component%20%26%20ID%20Registry&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FUI-COMPONENT-REGISTRY.md&v=2026-07-07","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/UI-COMPONENT-REGISTRY.md","slug":"ui-component-registry","md_url":"https://persephonepunch.github.io/crm-sync-setup/UI-COMPONENT-REGISTRY.md"},{"name":"Product Taxonomy, GraphQL and the GID Rename","summary":"CPG planning toward Sunrise 2027: what changes when product identity moves into a typed graph with GID identifiers - the parent/child collision, the silent join breakage, and the five identifiers an item master has to carry.","category":"Specs","updated":"2026-07-28","order":4,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DSUNRISE-2027-IDENTIFIER-THREAD.md&title=Product%20Taxonomy%2C%20GraphQL%20and%20the%20GID%20Rename&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FSUNRISE-2027-IDENTIFIER-THREAD.md&v=2026-07-28","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/SUNRISE-2027-IDENTIFIER-THREAD.md","slug":"sunrise-2027-identifier-thread","md_url":"https://persephonepunch.github.io/crm-sync-setup/SUNRISE-2027-IDENTIFIER-THREAD.md"},{"name":"CRM Sync — Feature Specification","summary":"Document ID: CRM-FEAT-003 Version: 1.0 Date: 2026-07-06 Status: Published Classification: Public Parent: CRM-FUNC-SPEC-001","category":"Specs","updated":"2026-07-06","order":5,"hero":"https://crm-sync.dev/kb/media/docs/hero-specs.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DFEATURE-SPEC-ACCESSIBILITY-INDEX.md&title=CRM%20Sync%20%E2%80%94%20Feature%20Specification&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FFEATURE-SPEC-ACCESSIBILITY-INDEX.md&v=2026-07-06","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/FEATURE-SPEC-ACCESSIBILITY-INDEX.md","slug":"feature-spec-accessibility-index","md_url":"https://persephonepunch.github.io/crm-sync-setup/FEATURE-SPEC-ACCESSIBILITY-INDEX.md"},{"name":"Forward-Deploy Guideline — Server-Side GraphQL + Agentic Workflows + Tool Runner","summary":"Audience: merchants, app developers, and platform teams planning their Shopify roadmap. Thesis: Shopify's 2025–2026 deprecation cliff retires the client-side / REST / Script-Edi…","category":"Specs","updated":"2026-06-21","order":7,"hero":"https://crm-sync.dev/kb/media/docs/hero-specs.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DFORWARD-DEPLOY-AGENTIC-GRAPHQL.md&title=Forward-Deploy%20Guideline%20%E2%80%94%20Server-Side%20GraphQL%20%2B%20Agentic%20Workflows%20%2B%20Tool%20Runner&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FFORWARD-DEPLOY-AGENTIC-GRAPHQL.md&v=2026-06-21","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/FORWARD-DEPLOY-AGENTIC-GRAPHQL.md","slug":"forward-deploy-agentic-graphql","md_url":"https://persephonepunch.github.io/crm-sync-setup/FORWARD-DEPLOY-AGENTIC-GRAPHQL.md"},{"name":"CRM Sync — What Traditional CRMs Miss","summary":"For: Business leaders, investors, and operations teams evaluating CRM Sync against Salesforce, HubSpot, and Klaviyo Date: 2026-05-19","category":"Specs","updated":"2026-07-19","order":8,"hero":"https://crm-sync.dev/kb/media/docs/hero-specs.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DAI-NATIVE-CRM-COMPARISON.md&title=CRM%20Sync%20%E2%80%94%20What%20Traditional%20CRMs%20Miss&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2Fdocs%2FAI-NATIVE-CRM-COMPARISON.md&v=2026-07-19","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/docs/AI-NATIVE-CRM-COMPARISON.md","slug":"ai-native-crm-comparison","md_url":"https://persephonepunch.github.io/crm-sync-setup/docs/AI-NATIVE-CRM-COMPARISON.md"},{"name":"Analytics Export via Xano Polling + Worker Cron","summary":"Version: 1.0 Date: 2026-05-27 Status: Specification","category":"Specs","updated":"2026-05-27","order":9,"hero":"https://crm-sync.dev/kb/media/docs/hero-specs.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DANALYTICS-EXPORT-SPEC.md&title=Analytics%20Export%20via%20Xano%20Polling%20%2B%20Worker%20Cron&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2Fdocs%2FANALYTICS-EXPORT-SPEC.md&v=2026-05-27","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/docs/ANALYTICS-EXPORT-SPEC.md","slug":"analytics-export-spec","md_url":"https://persephonepunch.github.io/crm-sync-setup/docs/ANALYTICS-EXPORT-SPEC.md"},{"name":"Consent-first tracking and the demotion of page and client data","summary":"Four dated platform moves demoted the page view from record to hint. Requirements and risk for the theme, what agentic conversion needs instead, and where the page view is still right — AEO vs SEO.","category":"Specs","updated":"2026-09-10","order":12,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DGOOGLE-SIGNALS-DATA-LAYER.md&title=Consent-first%20tracking%20and%20the%20demotion%20of%20page%20and%20client%20data&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FGOOGLE-SIGNALS-DATA-LAYER.md&v=2026-09-10","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/GOOGLE-SIGNALS-DATA-LAYER.md","slug":"google-signals-data-layer","md_url":"https://persephonepunch.github.io/crm-sync-setup/GOOGLE-SIGNALS-DATA-LAYER.md"},{"name":"CRM Sync — Functional Specification","summary":"Document ID: CRM-SYNC-FUNC-SPEC-001 Version: 1.0 Date: 2026-07-12 Status: Active Classification: Public","category":"Specs","updated":"2026-07-12","order":100,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DCRM-SYNC-FUNCTIONAL-SPEC.md&title=CRM%20Sync%20%E2%80%94%20Functional%20Specification&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FCRM-SYNC-FUNCTIONAL-SPEC.md&v=2026-07-12","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/CRM-SYNC-FUNCTIONAL-SPEC.md","slug":"crm-sync-functional-spec","md_url":"https://persephonepunch.github.io/crm-sync-setup/CRM-SYNC-FUNCTIONAL-SPEC.md"},{"name":"CRM Sync — Feature Specification Addendum","summary":"Document ID: CRM-FEAT-002 Version: 1.0 Date: 2026-05-17 Status: Draft — Architecture Review Parent: CRM-FUNC-SPEC-001 v1.2","category":"Specs","updated":"2026-06-25","order":601,"hero":"https://crm-sync.dev/kb/media/docs/hero-specs.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DFEATURE-SPEC-UA-MIGRATION.md&title=CRM%20Sync%20%E2%80%94%20Feature%20Specification%20Addendum&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FFEATURE-SPEC-UA-MIGRATION.md&v=2026-06-25","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/FEATURE-SPEC-UA-MIGRATION.md","slug":"feature-spec-ua-migration","md_url":"https://persephonepunch.github.io/crm-sync-setup/FEATURE-SPEC-UA-MIGRATION.md"},{"name":"AI enabled forms with LLM weighting — one form, many outcomes","summary":"One form, many outcomes: the business case against CRM latency, per-contact fees and vendor lock-in, with sprint directives and why a claim's shape decides what an AI can be asked.","category":"Specs","updated":"2026-09-08","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DAI-ENABLED-FORMS.md&title=AI%20enabled%20forms%20with%20LLM%20weighting%20%E2%80%94%20one%20form%2C%20many%20outcomes&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FAI-ENABLED-FORMS.md&v=2026-09-08","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/AI-ENABLED-FORMS.md","slug":"ai-enabled-forms","md_url":"https://persephonepunch.github.io/crm-sync-setup/AI-ENABLED-FORMS.md"},{"name":"Asset Management, Security and AI","summary":"A media manager's pipeline — metadata and provenance, raster and mesh compression, programmatic resize, and the four places media can live compared on egress.","category":"Specs","updated":"2026-09-20","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DWHAT-SURVIVES-THE-TRANSFORM.md&title=Asset%20Management%2C%20Security%20and%20AI&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FWHAT-SURVIVES-THE-TRANSFORM.md&v=2026-09-20","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/WHAT-SURVIVES-THE-TRANSFORM.md","slug":"what-survives-the-transform","md_url":"https://persephonepunch.github.io/crm-sync-setup/WHAT-SURVIVES-THE-TRANSFORM.md"},{"name":"BYO Shape Pipeline","summary":"Bring your own Xano, Kubernetes and LLM to the shape pipeline — the merge contract, the write path, the entitlement gate, and a dependency table where every row is self-serve.","category":"Specs","updated":"2026-09-09","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DBYO-SHAPE-PIPELINE.md&title=BYO%20Shape%20Pipeline&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FBYO-SHAPE-PIPELINE.md&v=2026-09-09","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/BYO-SHAPE-PIPELINE.md","slug":"byo-shape-pipeline","md_url":"https://persephonepunch.github.io/crm-sync-setup/BYO-SHAPE-PIPELINE.md"},{"name":"BYO Xano and BigQuery against Google's agent platform: what AI automation costs per call","summary":"Google's agent platform is the faster way to build an AI automation, and its managed layers bill every request. What Conversational Agents, Agent Search, grounding and Agent Runtime charge per call, what the same jobs cost on a bring-your-own Xano and BigQuery stack with Cloudflare Workers AI, where Google is cheaper, and the price changes dated between now and January 2027","category":"Specs","updated":"2026-09-16","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DBYO-XANO-BIGQUERY-VS-GOOGLE-AGENT-COSTS.md&title=BYO%20Xano%20and%20BigQuery%20against%20Google's%20agent%20platform%3A%20what%20AI%20automation%20costs%20per%20call&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FBYO-XANO-BIGQUERY-VS-GOOGLE-AGENT-COSTS.md&v=2026-09-16","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/BYO-XANO-BIGQUERY-VS-GOOGLE-AGENT-COSTS.md","slug":"byo-xano-bigquery-vs-google-agent-costs","md_url":"https://persephonepunch.github.io/crm-sync-setup/BYO-XANO-BIGQUERY-VS-GOOGLE-AGENT-COSTS.md"},{"name":"Claim Provenance — the metadata schema","summary":"Every document here is CC BY 4.0. This defines the metadata that travels with it — what was checked, how it was checked, when, and when it should be checked again.","category":"Specs","updated":"2026-09-04","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DCLAIM-PROVENANCE.md&title=Claim%20Provenance%20%E2%80%94%20the%20metadata%20schema&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FCLAIM-PROVENANCE.md&v=2026-09-04","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/CLAIM-PROVENANCE.md","slug":"claim-provenance","md_url":"https://persephonepunch.github.io/crm-sync-setup/CLAIM-PROVENANCE.md"},{"name":"Compile to update — the estate by seven lifecycle stages","summary":"Every application against the same seven stages: compile, permissions, render, bundle, deploy, version, update. The empty cells are the informative ones.","category":"Specs","updated":"2026-09-07","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DCOMPILE-TO-UPDATE.md&title=Compile%20to%20update%20%E2%80%94%20the%20estate%20by%20seven%20lifecycle%20stages&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FCOMPILE-TO-UPDATE.md&v=2026-09-07","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/COMPILE-TO-UPDATE.md","slug":"compile-to-update","md_url":"https://persephonepunch.github.io/crm-sync-setup/COMPILE-TO-UPDATE.md"},{"name":"Consent Resolution on Higher-Order Load","summary":"The five-phase load contract that resolves consent from durable state before any tag loads — portable to any client-side template, device- and browser-agnostic.","category":"Specs","updated":"2026-09-04","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DCONSENT-RESOLUTION-PATTERN.md&title=Consent%20Resolution%20on%20Higher-Order%20Load&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FCONSENT-RESOLUTION-PATTERN.md&v=2026-09-04","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/CONSENT-RESOLUTION-PATTERN.md","slug":"consent-resolution-pattern","md_url":"https://persephonepunch.github.io/crm-sync-setup/CONSENT-RESOLUTION-PATTERN.md"},{"name":"Fragments on Any Frontend — One Webflow Source, Every Platform","summary":"Sections authored once in Webflow mount verbatim on AEM, WordPress, Astro, Next, 11ty, or a Shopify theme — markup travels, behavior never does.","category":"Specs","updated":"2026-08-03","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DFRAGMENTS-ANY-FRONTEND.md&title=Fragments%20on%20Any%20Frontend%20%E2%80%94%20One%20Webflow%20Source%2C%20Every%20Platform&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FFRAGMENTS-ANY-FRONTEND.md&v=2026-08-03","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/FRAGMENTS-ANY-FRONTEND.md","slug":"fragments-any-frontend","md_url":"https://persephonepunch.github.io/crm-sync-setup/FRAGMENTS-ANY-FRONTEND.md"},{"name":"From Plugins to Mandates","summary":"Why per-seat pricing taxes the automation you bought it for, what each external DAM, PIM and CRM adds to supply chain risk, and why vendor JSON is the wrong shape for an agent.","category":"Specs","updated":"2026-09-20","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DFROM-PLUGINS-TO-MANDATES.md&title=From%20Plugins%20to%20Mandates&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FFROM-PLUGINS-TO-MANDATES.md&v=2026-09-20","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/FROM-PLUGINS-TO-MANDATES.md","slug":"from-plugins-to-mandates","md_url":"https://persephonepunch.github.io/crm-sync-setup/FROM-PLUGINS-TO-MANDATES.md"},{"name":"Git to Every Surface — the Article Pipeline","summary":"One markdown commit becomes a Webflow article, a Shopify metaobject, and an AEM Content Fragment — with hashtags as the filter dimension and ALT text carried from the source.","category":"Specs","updated":"2026-08-11","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3Dgit-to-every-surface.md&title=Git%20to%20Every%20Surface%20%E2%80%94%20the%20Article%20Pipeline&source=https%3A%2F%2Fraw.githubusercontent.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fmaster%2Fposts%2Fgit-to-every-surface.md&v=2026-08-11","kind":"html","source":"https://raw.githubusercontent.com/persephonepunch/crm-sync-setup/master/posts/git-to-every-surface.md","slug":"git-to-every-surface","md_url":"https://persephonepunch.github.io/crm-sync-setup/https://raw.githubusercontent.com/persephonepunch/crm-sync-setup/master/posts/git-to-every-surface.md"},{"name":"PIM Anywhere — One Catalog Record, Any Frontend","summary":"One live catalog record projected onto any frontend — AEM, Webflow, WordPress, Next — via a two-tag embed; the same record ships to Google through the Merchant API.","category":"Specs","updated":"2026-08-05","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DPIM-ANYWHERE.md&title=PIM%20Anywhere%20%E2%80%94%20One%20Catalog%20Record%2C%20Any%20Frontend&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FPIM-ANYWHERE.md&v=2026-08-05","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/PIM-ANYWHERE.md","slug":"pim-anywhere","md_url":"https://persephonepunch.github.io/crm-sync-setup/PIM-ANYWHERE.md"},{"name":"Render and Runtime: A Working Dictionary","summary":"ISR, islands, HTMX against Next.js, Liquid, PHP passthrough, Deno against Node, keys against cookies, UAT, adversarial testing and SRI — each defined by the decision it changes.","category":"Specs","updated":"2026-09-20","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DRENDER-RUNTIME-DICTIONARY.md&title=Render%20and%20Runtime%3A%20A%20Working%20Dictionary&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FRENDER-RUNTIME-DICTIONARY.md&v=2026-09-20","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/RENDER-RUNTIME-DICTIONARY.md","slug":"render-runtime-dictionary","md_url":"https://persephonepunch.github.io/crm-sync-setup/RENDER-RUNTIME-DICTIONARY.md"},{"name":"Shopify / Google Integration on an AEM Scaffold — via Webflow Export","summary":"The Webflow export as the AEM page scaffold, worker embeds as the behavior layer, and the either/or substrate election — beside AEM, never inside it.","category":"Specs","updated":"2026-08-02","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DAEM-SCAFFOLD-WEBFLOW-EXPORT.md&title=Shopify%20%2F%20Google%20Integration%20on%20an%20AEM%20Scaffold%20%E2%80%94%20via%20Webflow%20Export&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FAEM-SCAFFOLD-WEBFLOW-EXPORT.md&v=2026-08-02","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/AEM-SCAFFOLD-WEBFLOW-EXPORT.md","slug":"aem-scaffold-webflow-export","md_url":"https://persephonepunch.github.io/crm-sync-setup/AEM-SCAFFOLD-WEBFLOW-EXPORT.md"},{"name":"The AI ladder: retrieval, adapters, humans, and who holds the keys","summary":"Challenge and solution for putting AI into commerce without letting it decide what it may not. Definitions of RAG, CRAG, LoRA and human-in-the-loop escalation; when data justifies each rung; and why ADK, Kubernetes/Helm and a Cloudflare higher-order 'helmet' are three different layers — with the mandate as the only way an agent is allowed to act; and what a SOC 2 review — a procedural assessment of how an organisation operates, not a certification — asks of AI transport.","category":"Specs","updated":"2026-09-25","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DAI-LADDER-ESCALATION-AND-MANDATES.md&title=The%20AI%20ladder%3A%20retrieval%2C%20adapters%2C%20humans%2C%20and%20who%20holds%20the%20keys&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FAI-LADDER-ESCALATION-AND-MANDATES.md&v=2026-09-25","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/AI-LADDER-ESCALATION-AND-MANDATES.md","slug":"ai-ladder-escalation-and-mandates","md_url":"https://persephonepunch.github.io/crm-sync-setup/AI-LADDER-ESCALATION-AND-MANDATES.md"},{"name":"The spec is the source — a writing layer for designers and analysts","summary":"Configuration files are the specification. Write the intent in plain language, generate the config, and get the developer and compliance documentation from the same file.","category":"Specs","updated":"2026-09-07","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DSPEC-IS-THE-SOURCE.md&title=The%20spec%20is%20the%20source%20%E2%80%94%20a%20writing%20layer%20for%20designers%20and%20analysts&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FSPEC-IS-THE-SOURCE.md&v=2026-09-07","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/SPEC-IS-THE-SOURCE.md","slug":"spec-is-the-source","md_url":"https://persephonepunch.github.io/crm-sync-setup/SPEC-IS-THE-SOURCE.md"},{"name":"Why Xano + AI + e-commerce is the right runtime as a service","summary":"A runtime is judged by what it holds when nothing is being rendered. The identity path across Shopify OIDC, a worker and Xano; a consent gate that is metered rather than loaded; and why Supabase and Firebase lost on the enforcement point.","category":"Specs","updated":"2026-09-06","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DWHY-XANO-RUNTIME-AS-A-SERVICE.md&title=Why%20Xano%20%2B%20AI%20%2B%20e-commerce%20is%20the%20right%20runtime%20as%20a%20service&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FWHY-XANO-RUNTIME-AS-A-SERVICE.md&v=2026-09-06","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/WHY-XANO-RUNTIME-AS-A-SERVICE.md","slug":"why-xano-runtime-as-a-service","md_url":"https://persephonepunch.github.io/crm-sync-setup/WHY-XANO-RUNTIME-AS-A-SERVICE.md"},{"name":"CRM Sync — Clean Room Utility & Security Rules","summary":"Version: 1.1 — Cloudflare-Native Architecture Date: 2026-05-27 Classification: Internal — Confidential Compliance: GDPR Art. 6/9, CCPA §1798.140, CPRA, UK DPA 2018 Infrastructur…","category":"Specs","updated":"2026-05-27","order":1001,"hero":"https://crm-sync.dev/kb/media/docs/hero-specs.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DCLEAN-ROOM-SPEC.md&title=CRM%20Sync%20%E2%80%94%20Clean%20Room%20Utility%20%26%20Security%20Rules&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2Fdocs%2FCLEAN-ROOM-SPEC.md&v=2026-05-27","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/docs/CLEAN-ROOM-SPEC.md","slug":"clean-room-spec","md_url":"https://persephonepunch.github.io/crm-sync-setup/docs/CLEAN-ROOM-SPEC.md"},{"name":"CRM Sync — Event-Driven Integration Spec","summary":"Version: 1.0 Date: 2026-05-27 Status: Specification Replaces: Cron-only polling for external integrations","category":"Specs","updated":"2026-07-22","order":1101,"hero":"https://crm-sync.dev/kb/media/docs/hero-specs.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DEVENT-DRIVEN-INTEGRATION-SPEC.md&title=CRM%20Sync%20%E2%80%94%20Event-Driven%20Integration%20Spec&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2Fdocs%2FEVENT-DRIVEN-INTEGRATION-SPEC.md&v=2026-07-22","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/docs/EVENT-DRIVEN-INTEGRATION-SPEC.md","slug":"event-driven-integration-spec","md_url":"https://persephonepunch.github.io/crm-sync-setup/docs/EVENT-DRIVEN-INTEGRATION-SPEC.md"},{"name":"Webflow App Requirements Checklist (2026)","summary":"A comprehensive, downloadable checklist for building, submitting, and maintaining a Webflow Marketplace app. Based on Webflow's official Marketplace guidelines and the latest pl…","category":"Webflow","updated":"2026-05-29","order":101,"hero":"https://cdn.prod.website-files.com/6a4db086c210277324d0026b/6a4e30436ed52229fc1e962c_6a4e25b3638c47a60d6bdf8f_hero-webflow.svg","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DWEBFLOW-APP-CHECKLIST.md&title=Webflow%20App%20Requirements%20Checklist%20(2026)&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FWEBFLOW-APP-CHECKLIST.md&v=2026-05-29","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/WEBFLOW-APP-CHECKLIST.md","slug":"webflow-app-checklist","md_url":"https://persephonepunch.github.io/crm-sync-setup/WEBFLOW-APP-CHECKLIST.md"},{"name":"Design Helmet","summary":"The Helmet is our way of drawing the logo once so that every site colours it automatically to match the brand — you never re-export it, and you never touch code.","category":"Webflow","updated":"","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3D&title=Design%20Helmet&v=1","kind":"html","source":"","slug":"design-helmet","md_url":"https://persephonepunch.github.io/crm-sync-setup/"},{"name":"Safe SVG for Webflow and UIkit","summary":"An img is sandboxed; inlining spends that sandbox for stylability. An allow-list sanitiser buys it back — tested against twelve vectors, with GSAP and Lottie separated by who supplies the program.","category":"Webflow","updated":"2026-09-20","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DSAFE-SVG.md&title=Safe%20SVG%20for%20Webflow%20and%20UIkit&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FSAFE-SVG.md&v=2026-09-20","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/SAFE-SVG.md","slug":"safe-svg","md_url":"https://persephonepunch.github.io/crm-sync-setup/SAFE-SVG.md"},{"name":"The Webflow App Stack — Vite + TypeScript Monorepo, with 11ty/Vue/Svelte Islands","summary":"The modern hybrid-app scaffold: pnpm monorepo, Vite + TS extension, CF Worker, shared types end-to-end — plus 11ty/Astro islands for the site and the Turbopack risk, defined.","category":"Webflow","updated":"2026-07-29","order":999,"hero":"","url":"https://crm-sync.dev/docs/view?src=%2Fdocs%2Fraw%3Ff%3DWEBFLOW-VITE-STACK.md&title=The%20Webflow%20App%20Stack%20%E2%80%94%20Vite%20%2B%20TypeScript%20Monorepo%2C%20with%2011ty%2FVue%2FSvelte%20Islands&source=https%3A%2F%2Fgithub.com%2Fpersephonepunch%2Fcrm-sync-setup%2Fblob%2Fmaster%2FWEBFLOW-VITE-STACK.md&v=2026-07-29","kind":"html","source":"https://github.com/persephonepunch/crm-sync-setup/blob/master/WEBFLOW-VITE-STACK.md","slug":"webflow-vite-stack","md_url":"https://persephonepunch.github.io/crm-sync-setup/WEBFLOW-VITE-STACK.md"}]}