Auth & config notes
-
Outlook/Office365 OAuth token: ~/.openclaw/secrets/outlook-oauth.json
- JSON: {"client_id": "...", "refresh_token": "...", "tenant": "consumers"}
- Scripts use the token refresh flow; update tenant if you see tenant/endpoint mismatch errors.
-
Gmail OAuth: ~/.openclaw/secrets/google-oauth.json
- Used by skills/gmail-reader scripts. Re-auth via skills/gmail-reader/reauth-gmail.cjs
-
Himalaya config: ~/.config/himalaya/config.toml
- For IMAP-based accounts. If BASIC auth blocked, switch to OAuth or app-passwords where supported.
Notes
- Wrapper scripts call existing gmail-reader and himalaya scripts to avoid duplication.
- Many operations (forwarding, marking read) need extra API permissions; wrappers currently surface the helpers and stop on auth errors.