Publish a draft configuration as the live config. Requires editor access (the configuration:write permission for API keys, or an admin or member workspace role for signed-in callers); viewers are denied. The draft is validated with the same publish-time checks used by the CloudX app before it becomes live.