GoClaw Universal Inbox claim loop
Canonical boundary
Inbound work should enter GoClaw through the Universal Inbox. The Build Master explicitly calls for retiring legacy direct inbound helpers that could bypass the Inbox and suggestion-batch approval path.
Claim behavior
The worker claim loop is designed around sp_Inbox_ClaimForGoClaw, lease/heartbeat behavior, and assigned-role checks. If an Inbox item carries an assigned DataRole, the GoClaw owning user must belong to that role before claim.
Safety invariant
Claiming an Inbox item grants work ownership, not unrestricted data access. Every downstream record, relation, file, message, or AI retrieval still uses the normal authorization envelope.