Compare commits

..

2 Commits

Author SHA1 Message Date
b547296fb3 feat(cargo): add pkgs metadata alias
All checks were successful
Flake checker / Build Nix targets (push) Successful in 9m27s
2026-02-19 21:06:38 +05:30
9d1ca43913 fix(apps): make playerctl conditional to ryu device only
All checks were successful
Flake checker / Build Nix targets (push) Successful in 9m27s
2026-02-19 14:02:39 +05:30
84 changed files with 2159 additions and 1834 deletions

View File

@@ -4,8 +4,28 @@ This repository contains NixOS, nix-darwin, and Home Manager configurations in N
## Build, Test, and Deployment Commands
### Build and Apply Configurations & Deploy to Remote Machines
Can use deploy for both local and remote hosts
### Build and Apply Configurations
**Linux (NixOS):**
```bash
just build # Build configuration
just install cores='32' # Apply with 32 cores
sudo nixos-rebuild test --fast --flake . # Test without activation
sudo nixos-rebuild switch --rollback --flake . # Rollback
```
**macOS (nix-darwin):**
```bash
just build # Build configuration
just install # Apply configuration
```
**Home Manager:**
```bash
just home
```
### Deploy to Remote Machines (deploy-rs)
```bash
deploy -s .#ryu # Desktop (x86_64-linux)
@@ -15,23 +35,6 @@ deploy -s .#kuro # MacBook M4 Pro (aarch64-darwin)
deploy -s .#shiro # Mac Mini M4 (aarch64-darwin)
```
**Linux (NixOS):**
```bash
deploy -s .#ryu
deploy -s .#tako
deploy -s .#tako --builders '' --cores 32 # with no other builders and 32 cores
deploy -s .#ryu --max-jobs 4 --cores 32 # use 32 cores and 4 parallel derivations
sudo nixos-rebuild test --fast --flake . # Test without activation
sudo nixos-rebuild switch --rollback --flake . # Rollback
```
**macOS (nix-darwin):**
```bash
deploy -s .#kuro
deploy -s .#shiro
sudo nix-darwin test --fast --flake .
```
### Validation and Formatting
```bash
@@ -161,7 +164,7 @@ just add program myprogram # Creates home/programs/myprogram.nix and adds impor
### Adding a new dns entry
```bash
cfcli add --type A foobar.bazbar.biz 100.102.64.19
cfcli add --type A foobar.bazbar.biz 192.168.0.1
```
### Creating a Module

View File

@@ -22,7 +22,6 @@
"nix-community.cachix.org-1:mB9FSh9qf2dCimDSUo8Zy7bkq5CX+/rkCWyvRCYg3Fs="
# "mirai:bcVPoFGBZ0i7JAKMXIqLj2GY3CulLC4kP7rQyqes1RM="
];
download-buffer-size = 524288000;
};
extraOptions = ''
build-users-group = nixbld

View File

@@ -6,7 +6,10 @@
casks = [
"1password"
"lunar"
"orcaslicer"
"raycast"
"zed"
"zen"
];
};
}

View File

@@ -2,12 +2,15 @@
homebrew = {
enable = true;
brews = [
"docker-compose"
];
casks = [
"1password"
"docker"
"raycast"
"lunar"
"orcaslicer"
"zed"
"zen"
];
};

View File

@@ -1,18 +1,15 @@
{...}: {
imports = [
# ../../../modules/darwin/caddy
# ./aerospace.nix
# ./caddy.nix
# ./colima.nix
# ./lmstudio.nix
# ./zerotier.nix
./autossh.nix
./skhd.nix
./sops.nix
./sunshine.nix
./tailscale.nix
./yabai.nix
./skhd.nix
./tailscale.nix
./autossh.nix
# ./caddy.nix
./sops.nix
# ./lmstudio.nix
# ./colima.nix
# ./zerotier.nix
# ./aerospace.nix
];
}

View File

@@ -1,10 +0,0 @@
{...}: {
homebrew = {
taps = [
"lizardbyte/homebrew"
];
brews = [
"lizardbyte/homebrew/sunshine-beta"
];
};
}

View File

@@ -5,6 +5,14 @@
...
}: {
nodes = {
mirai = {
hostname = "mirai.darksailor.dev";
profiles.system = {
sshUser = "fs0c131y";
path = deploy-rs.lib.x86_64-linux.activate.nixos self.nixosConfigurations.mirai;
user = "root";
};
};
tsuba = {
hostname = "tsuba.darksailor.dev";
profiles.system = {

2323
flake.lock generated

File diff suppressed because it is too large Load Diff

126
flake.nix
View File

@@ -17,6 +17,10 @@
url = "github:nix-community/stylix";
inputs.nixpkgs.follows = "nixpkgs";
};
stylix-stable = {
url = "github:nix-community/stylix/release-25.11";
inputs.nixpkgs.follows = "nixpkgs-stable";
};
home-manager-stable = {
url = "github:nix-community/home-manager/release-25.11";
inputs.nixpkgs.follows = "nixpkgs-stable";
@@ -47,10 +51,26 @@
inputs.nixpkgs.follows = "nixpkgs";
};
nur.url = "github:nix-community/nur";
hyprland = {
url = "github:hyprwm/Hyprland";
inputs.nixpkgs.follows = "nixpkgs";
};
hyprlock = {
url = "github:hyprwm/hyprlock";
inputs.nixpkgs.follows = "nixpkgs";
};
zjstatus = {
url = "github:dj95/zjstatus";
inputs.nixpkgs.follows = "nixpkgs";
};
rust-overlay = {
url = "github:oxalica/rust-overlay";
inputs.nixpkgs.follows = "nixpkgs";
};
openapi-tui = {
url = "github:zaghaghi/openapi-tui";
flake = false;
};
musnix = {
url = "github:musnix/musnix";
inputs.nixpkgs.follows = "nixpkgs";
@@ -63,10 +83,26 @@
url = "github:Mic92/sops-nix";
inputs.nixpkgs.follows = "nixpkgs";
};
csshacks = {
url = "github:MrOtherGuy/firefox-csshacks";
flake = false;
};
nno = {
url = "github:nvim-neorg/nixpkgs-neorg-overlay";
inputs.nixpkgs.follows = "nixpkgs";
};
pets = {
url = "github:giusgad/pets.nvim";
flake = false;
};
rest-nvim = {
url = "github:rest-nvim/rest.nvim";
flake = false;
};
neogit = {
url = "github:NeogitOrg/neogit/nightly";
flake = false;
};
d2 = {
url = "github:terrastruct/d2-vim";
flake = false;
@@ -91,6 +127,25 @@
url = "github:pest-parser/tree-sitter-pest";
flake = false;
};
navigator = {
url = "github:ray-x/navigator.lua";
flake = false;
};
guihua = {
url = "github:ray-x/guihua.lua";
flake = false;
};
ghostty = {
url = "github:ghostty-org/ghostty";
};
typr = {
url = "github:nvzone/typr";
flake = false;
};
volt = {
url = "github:nvzone/volt";
flake = false;
};
arion = {
url = "github:hercules-ci/arion";
inputs.nixpkgs.follows = "nixpkgs";
@@ -100,9 +155,9 @@
};
zen-browser = {
url = "github:0xc000022070/zen-browser-flake";
# IMPORTANT: To ensure compatibility with the latest Firefox version, use nixpkgs-unstable.
# IMPORTANT: we're using "libgbm" and is only available in unstable so ensure
# to have it up-to-date or simply don't specify the nixpkgs input
inputs.nixpkgs.follows = "nixpkgs";
inputs.home-manager.follows = "home-manager";
};
anyrun = {
@@ -114,10 +169,18 @@
url = "github:uttarayan21/anyrun-hyprwin";
inputs.nixpkgs.follows = "nixpkgs";
};
anyrun-rink = {
url = "github:uttarayan21/anyrun-rink";
inputs.nixpkgs.follows = "nixpkgs";
};
onepassword-shell-plugins = {
url = "github:1Password/shell-plugins";
inputs.nixpkgs.follows = "nixpkgs";
};
zeronsd = {
url = "github:uttarayan21/zeronsd";
inputs.nixpkgs.follows = "nixpkgs";
};
tmux-float = {
url = "github:uttarayan21/tmux-float";
inputs.nixpkgs.follows = "nixpkgs";
@@ -136,6 +199,24 @@
# url = "path:/home/servius/Projects/ALVR";
# inputs.nixpkgs.follows = "nixpkgs";
# };
ik_llama = {
url = "github:ikawrakow/ik_llama.cpp?submodules=1";
# submodules = true;
inputs.nixpkgs.follows = "nixpkgs";
};
llama-cpp = {
# url = "https://github.com/ggml-org/llama.cpp";
url = "github:ggml-org/llama.cpp/b6178?submodules=1";
inputs.nixpkgs.follows = "nixpkgs";
};
yabai = {
url = "github:koekeishiya/yabai";
flake = false;
};
nix-auth = {
url = "github:numtide/nix-auth";
inputs.nixpkgs.follows = "nixpkgs";
};
nixpkgs-xr = {
url = "github:nix-community/nixpkgs-xr";
inputs.nixpkgs.follows = "nixpkgs";
@@ -160,33 +241,16 @@
url = "github:vicinaehq/vicinae";
# inputs.nixpkgs.follows = "nixpkgs";
};
wivrn = {
url = "github:uttarayan21/wivrn?submodules=1";
inputs.nixpkgs.follows = "nixpkgs";
};
eilmeldung = {
url = "github:christo-auer/eilmeldung";
inputs.nixpkgs.follows = "nixpkgs";
};
servius-website = {
url = "git+https://git.darksailor.dev/servius/servius.neocities.org";
inputs.nixpkgs.follows = "nixpkgs";
};
nixify = {
url = "github:uttarayan21/nixify";
inputs.nixpkgs.follows = "nixpkgs";
};
tangled-core = {
url = "git+https://tangled.org/tangled.org/core";
inputs.nixpkgs.follows = "nixpkgs";
};
hyprland = {
url = "github:hyprwm/Hyprland";
inputs.nixpkgs.follows = "nixpkgs";
};
iamb = {
url = "github:ulyssa/iamb/latest";
inputs.nixpkgs.follows = "nixpkgs";
};
cinny = {
url = "github:cinnyapp/cinny/dev";
flake = false;
hytale-launcher = {
url = "github:JPyke3/hytale-launcher-nix";
};
};
@@ -365,20 +429,16 @@
};
config.allowUnfree = true;
};
cratesNix = inputs.crates-nix.mkLib {inherit pkgs;};
in {
# packages = rec {
# default = neovim;
# neovim = pkgs.nixvim.makeNixvim (pkgs.callPackage ./neovim);
# };
devShells = {
default = pkgs.mkShell {
packages = with pkgs; [sops just openssl ast-grep];
};
};
packages = {
default = cratesNix.buildCrate "ironclaw" {
nativeBuildInputs = [pkgs.pkg-config];
buildInputs = [pkgs.openssl];
doCheck = false;
};
};
}
);
}

View File

@@ -5,10 +5,8 @@
}: {
sops = {
secrets."accounts/mail/fastmail" = {};
secrets."accounts/calendar/fastmail" = {};
};
accounts = {
email = {
accounts.email = {
maildirBasePath = "Mail";
accounts = {
fastmail = rec {
@@ -31,6 +29,9 @@
port = 465;
tls.enable = true;
};
imapnotify = {
enable = true;
};
passwordCommand = ["cat" "${config.sops.secrets."accounts/mail/fastmail".path}"];
mbsync = {
enable = true;
@@ -39,31 +40,8 @@
};
};
};
calendar = {
basePath = "Calendar";
accounts = {
fastmail = {
remote = {
url = "https://caldav.fastmail.com/dav/calendars/user/email@uttarayan.me";
userName = "email@uttarayan.me";
passwordCommand = ["cat" "${config.sops.secrets."accounts/calendar/fastmail".path}"];
type = "caldav";
};
khal = {
enable = true;
addresses = ["email@uttarayan.me"];
type = "discover";
};
vdirsyncer = {
enable = true;
conflictResolution = "remote wins";
collections = ["from a"];
metadata = ["color" "displayname"];
};
};
};
};
};
programs.mbsync.enable = true;
services.mbsync.enable = pkgs.stdenv.isLinux;
# accounts.email.accounts.<name>.mbsync.create
# services.mbsync.enable = true;
}

View File

@@ -1 +0,0 @@
{pkgs, ...}: {home.packages = [pkgs.cinny-desktop];}

View File

@@ -3,51 +3,47 @@
device,
...
}:
lib.optionalAttrs device.hasGui {
lib.optionalAttrs device.hasGui {
imports = [
# ./audacity.nix
./audacity.nix
# ./bottles.nix
# ./cinny.nix
# ./cursor.nix
# ./gimp.nix
# ./guitarix.nix
# ./ida.nix
# ./jellyflix.nix
# ./kicad.nix
# ./lmstudio.nix
# ./neovide.nix
# ./openscad.nix
# ./orcaslicer.nix
# ./pcsx2.nix
# ./prismlauncher.nix
# ./rpcs3.nix
# ./shadps4.nix
# ./thunderbird.nix
# ./tsukimi.nix
# ./vial.nix
# ./vlc.nix
# ./vscode.nix
# ./zen.nix
./moonlight.nix
# ./zed.nix
./affine.nix
./blueman.nix
./chromium.nix
# ./discord.nix
./discord.nix
./firefox.nix
./ghostty.nix
./hyprpicker.nix
./kitty.nix
./matrix.nix
./lmstudio.nix
./mpv.nix
./nextcloud.nix
./matrix.nix
./obs-studio.nix
./orcaslicer.nix
./prismlauncher.nix
./shadps4.nix
./slack.nix
./vicinae.nix
./vlc.nix
./wezterm.nix
./zathura.nix
./zed.nix
./zen.nix
];
}

View File

@@ -3,13 +3,13 @@
lib,
...
}: {
# home.packages = lib.optionals pkgs.stdenv.isLinux [
# (pkgs.discord.override {
# withOpenASAR = true;
# withVencord = true;
# })
# # pkgs.vesktop
# # pkgs.discord-canary
# # pkgs.discord-ptb
# ];
home.packages = lib.optionals pkgs.stdenv.isLinux [
(pkgs.discord.override {
withOpenASAR = true;
withVencord = true;
})
# pkgs.vesktop
# pkgs.discord-canary
# pkgs.discord-ptb
];
}

View File

@@ -8,8 +8,11 @@
stylix.targets.kitty.enable = false;
programs.kitty = {
enable = true;
# enable = false;
font = {
# name = "FiraCode Nerd Font Mono";
name = "Hasklug Nerd Font Mono";
# name = "Monaspace Krypton Var Light";
size = lib.mkForce 13;
};
settings = {

View File

@@ -6,7 +6,7 @@
}: {
home.packages = lib.optionals (device.is "ryu") [
pkgs.fluffychat
pkgs.element-desktop
pkgs.fractal
# pkgs.quaternion
];
}

View File

@@ -1,8 +0,0 @@
{
lib,
pkgs,
device,
...
}: {
home.packages = lib.optionals (device.name == "ryu") [pkgs.moonlight-qt];
}

View File

@@ -2,151 +2,26 @@
pkgs,
inputs,
device,
config,
...
}: {
imports = [
inputs.zen-browser.homeModules.beta
];
programs.zen-browser.darwinDefaultsId = "org.mozilla.firefox.plist";
programs.zen-browser = {
enable = true;
profiles.default = rec {
containersForce = true;
containers = {
Personal = {
color = "purple";
icon = "fingerprint";
id = 1;
};
Work = {
color = "blue";
icon = "briefcase";
id = 2;
};
Shopping = {
color = "yellow";
icon = "dollar";
id = 3;
};
};
spacesForce = true;
spaces = let
containers = config.programs.zen-browser.profiles."default".containers;
in {
"Personal" = {
id = "0b4dab19-9b39-4f2c-8ad1-0268d9fa2e49";
icon = "👤";
container = containers."Personal".id;
position = 1000;
};
"Work" = {
id = "8f687163-6b15-4c3c-885f-8ffe465b386f";
icon = "💼";
container = containers."Work".id;
position = 2000;
};
"Shopping" = {
id = "74f46a1b-cdd7-408c-98d7-382a2b11bd51";
icon = "💸";
container = containers."Shopping".id;
position = 3000;
};
};
enable = device.isLinux;
profiles.default = {
extensions.packages = with pkgs.nur.repos.rycee.firefox-addons; [
privacy-badger
violentmonkey
tridactyl
clearurls
floccus
onepassword-password-manager
ublock-origin
i-dont-care-about-cookies
keepa
onepassword-password-manager
privacy-badger
sponsorblock
tridactyl
ublock-origin
violentmonkey
floccus
];
search = {
force = true;
default = "ddg";
engines = {
mynixos = {
name = "My NixOS";
urls = [
{
template = "https://mynixos.com/search?q={searchTerms}";
}
];
icon = "${pkgs.nixos-icons}/share/icons/hicolor/scalable/apps/nix-snowflake.svg";
definedAliases = ["@nx"]; # Keep in mind that aliases defined here only work if they start with "@"
};
hm = {
name = "Home Manager Options";
urls = [
{
template = "https://home-manager-options.extranix.com/?query={searchTerms}&release=master";
}
];
definedAliases = ["@hm"];
};
nv = {
name = "NixVim";
urls = [
{
template = "https://nix-community.github.io/nixvim/search";
params = [
{
name = "query";
value = "{searchTerms}";
}
];
}
];
definedAliases = ["@nv"];
};
lib = {
name = "Lib.rs";
urls = [
{
template = "https://lib.rs/search";
params = [
{
name = "q";
value = "{searchTerms}";
}
];
}
];
definedAliases = ["@lib"];
};
searchix = {
name = "Searchix";
urls = [
{
template = "https://searchix.ovh/?query={searchTerms}";
}
];
definedAliases = ["sx"];
};
};
};
pins = {
dashboard = {
id = "d163f090-67b7-47d2-8f76-7d638b9f742b";
workspace = spaces.Personal.id;
url = "https://dashboard.darksailor.dev";
isEssential = true;
position = 101;
};
github = {
id = "db2f3e36-9279-4b8d-8b5d-52a90f34ea0d";
workspace = spaces.Personal.id;
url = "https://github.com";
isEssential = true;
position = 102;
};
};
pinsForce = true;
};
nativeMessagingHosts = [pkgs.tridactyl-native];
policies = {

View File

@@ -27,7 +27,6 @@
home-manager = {
enable = true;
};
man.generateCaches = true;
};
fonts.fontconfig.enable = true;

View File

@@ -1,17 +0,0 @@
{pkgs, ...}: {
programs.khal = {
enable = true;
settings = {
default = {
# default_calendar = "fastmail";
};
view = {
agenda_event_format = "{calendar-color}{cancelled}{start-end-time-style} {title}{repeat-symbol}{reset}";
};
};
};
programs.qcal.enable = true;
programs.vdirsyncer.enable = true;
services.vdirsyncer.enable = true;
accounts.calendar.accounts.fastmail.qcal.enable = true;
}

View File

@@ -1,8 +1,13 @@
{...}: {
{
pkgs,
lib,
device,
...
}: {
programs.
carapace = {
enable = false;
enableFishIntegration = false;
enableFishIntegration = true;
enableNushellIntegration = true;
};
}

View File

@@ -4,9 +4,7 @@
cratesNix,
...
}: let
cargo-credential-1password = cratesNix.buildCrate "cargo-credential-1password" {
meta.mainProgram = "cargo-credential-1password";
};
cargo-credential-1password = cratesNix.buildCrate "cargo-credential-1password" {};
in
lib.mkIf (!device.isServer) {
home.file.".cargo/config.toml".text =

View File

@@ -1 +0,0 @@
{pkgs, ...}: {home.packages = [pkgs.codex];}

View File

@@ -7,7 +7,6 @@
# ./bluetui.nix
# ./goread.nix
# ./helix.nix
# ./iamb.nix
# ./magika.nix
# ./mpd.nix
# ./mpris-scrobbler.nix
@@ -20,7 +19,6 @@
# ./template.nix
# ./tuifeed.nix
# ./xh.nix
# ./yt-dlp.nix
# ./zellij.nix
../../modules
@@ -30,7 +28,6 @@
./alejandra.nix
./aria2.nix
./ast-grep.nix
./attic.nix
./atuin.nix
./bat.nix
./binwalk.nix
@@ -38,11 +35,8 @@
./bottom.nix
./btop.nix
./cachix.nix
./calendar.nix
./carapace.nix
./cargo.nix
./cfcli.nix
./codex.nix
./ddcbacklight.nix
./deploy-rs.nix
./direnv.nix
@@ -61,13 +55,11 @@
./himalaya.nix
./hyprshade.nix
./jq.nix
./jujutsu.nix
./just.nix
./ncpamixer.nix
./neomutt.nix
./neovim.nix
./nix-index.nix
./nixify.nix
./nushell.nix
./omnix.nix
./opencode.nix
@@ -84,7 +76,10 @@
./tmux.nix
./uv.nix
./yazi.nix
./yq.nix
./yt-dlp.nix
./zoxide.nix
./attic.nix
./cfcli.nix
./jujutsu.nix
];
}

View File

@@ -1,8 +1 @@
{
pkgs,
lib,
device,
...
}: {
home.packages = lib.optionals (device.is "ryu") [pkgs.deploy-rs.deploy-rs];
}
{pkgs, ...}: {home.packages = [pkgs.deploy-rs.deploy-rs];}

View File

@@ -23,7 +23,6 @@
j = "just --choose";
# t = "zellij a -c --index 0";
t = "tmux";
neorg = "nvim -c ':Neorg index'";
};
shellAliases = {
g = "git";
@@ -34,7 +33,7 @@
'';
# ${pkgs.spotify-player}/bin/spotify_player generate fish | source
interactiveShellInit = ''
if test -n "$TMUX"; ${lib.getExe pkgs.fastfetch} --logo-type kitty-icat; else ${lib.getExe pkgs.fastfetch}; end
if test -n "$TMUX"; ${lib.getExe pkgs.fastfetch} --logo-type sixel; else ${lib.getExe pkgs.fastfetch}; end
# ${pkgs.nb}/bin/nb todo undone
${lib.optionalString (device.isLinux && !device.isNix) "source /etc/profile.d/nix-daemon.fish"}
${lib.optionalString (device.is "ryu") ''
@@ -44,16 +43,6 @@
''}
'';
};
home.shell.enableFishIntegration = true;
# programs.bash = {
# enable = true;
# initExtra = ''
# if [[ $- == *i* && -z "$FISH_VERSION" ]]; then
# ${lib.getExe pkgs.fish}
# fi
# '';
# };
}
// lib.optionalAttrs (!(device.is "tsuba")) {
stylix.targets.fish.enable = false;

View File

@@ -1,3 +0,0 @@
{pkgs, ...}: {
home.packages = [pkgs.iamb];
}

View File

@@ -1,9 +1,4 @@
{pkgs, ...}: let
theme = builtins.fetchurl {
url = "https://raw.githubusercontent.com/catppuccin/neomutt/refs/heads/main/neomuttrc";
sha256 = "sha256:1q086p5maqwxa4gh6z8g7h3nfavdmkbql025ibdhglpz46hsq0hs";
};
in {
{pkgs, ...}: {
programs.neomutt = {
enable = true;
vimKeys = true;
@@ -11,9 +6,6 @@ in {
sidebar = {
enable = true;
};
extraConfig = ''
source ${theme}
'';
};
programs.notmuch = {
enable = true;
@@ -25,38 +17,4 @@ in {
enable = true;
neomutt.enable = true;
};
services.imapnotify = {
enable = true;
path = [pkgs.coreutils pkgs.isync pkgs.libnotify];
};
accounts.email.accounts.fastmail.imapnotify = {
enable = true;
boxes = ["Inbox"];
onNotify = "${pkgs.writeShellScript "mbsync-notify" ''
${pkgs.isync}/bin/mbsync $1
${pkgs.libnotify}/bin/notify-send "New Mail" "New email in $1"
''} %s";
};
programs.mbsync.enable = true;
services.mbsync.enable = pkgs.stdenv.isLinux;
# launchd.agents.mbsync = {
# enable = true;
# config = {
# # A label for the service
# Label = "dev.darksailor.atuin-daemon";
# # The command to run
# ProgramArguments = [
# "${pkgs.atuin}/bin/atuin"
# "daemon"
# ];
# # Run the service when you log in
# RunAtLoad = true;
# # Keep the process alive, or restart if it dies
# KeepAlive = true;
# # Log files
# StandardOutPath = "${device.home}/Library/Logs/atuin-daemon.log";
# StandardErrorPath = "${device.home}/Library/Logs/atuin-daemon.error.log";
# };
# };
}

View File

@@ -1,9 +0,0 @@
{
pkgs,
inputs,
...
}: {
home.packages = [
inputs.nixify.packages.${pkgs.system}.default
];
}

View File

@@ -26,5 +26,4 @@
}
'';
};
home.shell.enableNushellIntegration = true;
}

View File

@@ -16,6 +16,11 @@
user = "git";
host = "github.com";
};
# mirai = {
# user = "fs0c131y";
# hostname = "mirai.darksailor.dev";
# forwardAgent = true;
# };
tako = {
user = "servius";
hostname = "tako.darksailor.dev";

View File

@@ -17,6 +17,5 @@
cache_dir = config.home.homeDirectory + "/.cache/yazi/previews";
};
};
shellWrapperName = "yy";
};
}

View File

@@ -1 +0,0 @@
{pkgs, ...}: {home.packages = [pkgs.yq];}

View File

@@ -36,11 +36,11 @@ in {
pkgs.writeShellApplication {
name = "git-install-prepare-commit-msg";
text = ''
ln -sf ${../scripts/prepare-commit-msg} .git/hooks/prepare-commit-msg
cp ${../scripts/prepare-commit-msg} .git/hooks/prepare-commit-msg
'';
}
)
# (mkScript ../scripts/yt-dlp.sh (with pkgs; [yt-dlp]))
# (mkScript ../scripts/autossh.sh (with pkgs; [autossh openssh]))
(mkScript ../scripts/yt-dlp.sh (with pkgs; [yt-dlp]))
(mkScript ../scripts/autossh.sh (with pkgs; [autossh openssh]))
];
}

View File

@@ -1,20 +1,18 @@
{...}: {
imports = [
./gtk.nix
./gui.nix
./hyprland.nix
./hyprmon.nix
./hyprpaper.nix
./ironbar
./kdeconnect.nix
./remmina.nix
# ./ollama.nix
./swaync.nix
./swayosd.nix
./xdg.nix
./ironclaw.nix
./kdeconnect.nix
./gtk.nix
# ./anyrun.nix
./ironbar
./gui.nix
# ./eww.nix
./xdg.nix
./hyprmon.nix
./hyprland.nix
./hyprpaper.nix
./remmina.nix
# ./wallpaperengine.nix
];
}

View File

@@ -2,7 +2,6 @@
pkgs,
device,
lib,
inputs,
...
}:
# lib.optionalAttrs device.isNix
@@ -32,8 +31,6 @@
wayland.windowManager.hyprland = {
enable = device.is "ryu";
systemd.enable = true;
package = pkgs.hyprland;
portalPackage = pkgs.xdph;
settings = {
# source = "${pkgs.catppuccinThemes.hyprland}/themes/mocha.conf";
@@ -175,7 +172,7 @@
exec-once = [
# "${pkgs.polkit-kde-agent}/libexec/polkit-kde-authentication-agent-1"
"${pkgs.mate-polkit}/libexec/polkit-mate-authentication-agent-1"
"${pkgs.mate.mate-polkit}/libexec/polkit-mate-authentication-agent-1"
# "${pkgs.polkit_gnome}/libexec/polkit-gnome-authentication-agent-1"
# "${pkgs.swww}/bin/swww init; swww img ~/.local/share/dotfiles/images/wallpaper.jpg"
# "${pkgs.ironbar}/bin/ironbar"
@@ -206,7 +203,7 @@
"$mainMod, d, exec, ${lib.getExe pkgs.vicinae} toggle"
"$mainMod, Space, exec, ${lib.getExe pkgs.vicinae} toggle"
"$mainMod, p, pseudo, # dwindle"
"$mainMod, v, layoutmsg, togglesplit"
"$mainMod, v, togglesplit,"
"$mainMod, a, exec, ${pkgs.swaynotificationcenter}/bin/swaync-client -t"
"$mainMod, Tab, cyclenext"
# Audio

View File

@@ -8,10 +8,8 @@
wallpapers = import ../../utils/wallhaven.nix {inherit pkgs;};
nextcloudWallpapers = name: config.home.homeDirectory + "/Nextcloud/Wallpapers/" + name;
# silksongFleas = nextcloudWallpapers "silksong-fleas.jpg";
# The artist https://www.bilibili.com/video/BV1s44y1S7MM/
bocchiVertical = nextcloudWallpapers "bocchi-guitar.jpg";
frieren = nextcloudWallpapers "frieren.png";
bocchiVertical = nextcloudWallpapers "bocchi-vertical.jpg";
silksongShadeLord = nextcloudWallpapers "silksong-shadelord.jpg";
in {
enable = device.is "ryu";
settings = {
@@ -19,12 +17,12 @@
wallpaper = [
{
monitor = device.monitors.primary;
path = wallpapers.moon;
path = silksongShadeLord;
fit_mode = "cover";
}
{
monitor = device.monitors.secondary;
path = frieren;
path = wallpapers.frieren_3;
fit_mode = "cover";
}
{

View File

@@ -1,12 +0,0 @@
{
pkgs,
lib,
device,
...
}: {
home.packages =
lib.optionals (device.is "ryu")
[
pkgs.ironclaw
];
}

View File

@@ -1,7 +0,0 @@
{
pkgs,
device,
...
}: {
services.ollama.enable = device.is "shiro";
}

View File

@@ -2,7 +2,6 @@
pkgs,
lib,
device,
inputs,
...
}: {
xdg.portal = {
@@ -11,9 +10,10 @@
hyprland.default = ["hyprland"];
common.default = ["*" "hyprland"];
};
extraPortals = with pkgs; [
kdePackages.xdg-desktop-portal-kde
xdg-desktop-portal-hyprland
xdg-desktop-portal-gtk
];
};
}
# // lib.optionalAttrs (device.is "ryu") {
# environment.pathsToLink = ["/share/xdg-desktop-portal" "/share/applications"];
# }

View File

@@ -67,12 +67,12 @@ in {
};
environmentFiles = cfg.environmentFiles;
extraOptions = [
"--network=affine-net"
"--health-cmd=pg_isready -U ${dbUser} -d ${dbName}"
"--health-interval=10s"
"--health-timeout=5s"
"--health-retries=5"
];
networks = ["affine-net"];
};
affine-redis = {
@@ -80,8 +80,8 @@ in {
volumes = [
"${cfg.dataDir}/redis:/data"
];
networks = ["affine-net"];
extraOptions = [
"--network=affine-net"
"--health-cmd=redis-cli --raw incr ping"
"--health-interval=10s"
"--health-timeout=5s"
@@ -111,7 +111,9 @@ in {
AFFINE_INDEXER_ENABLED = "false";
};
environmentFiles = cfg.environmentFiles;
networks = ["affine-net"];
extraOptions = [
"--network=affine-net"
];
};
affine-migration = {
@@ -131,32 +133,34 @@ in {
AFFINE_INDEXER_ENABLED = "false";
};
environmentFiles = cfg.environmentFiles;
networks = ["affine-net"];
extraOptions = [
"--network=affine-net"
];
};
};
};
# Create the Docker network
# systemd.services.affine-network = {
# description = "Create AFFiNE Docker network";
# after = ["docker.service"];
# wantedBy = ["multi-user.target"];
# serviceConfig = {
# Type = "oneshot";
# RemainAfterExit = true;
# # ExecStart = "${config.virtualisation.docker.package}/bin/docker network create affine-net";
# # ExecStop = "${config.virtualisation.docker.package}/bin/docker network remove affine-net";
# };
# };
#
systemd.services.affine-network = {
description = "Create AFFiNE Docker network";
after = ["docker.service"];
wantedBy = ["multi-user.target"];
serviceConfig = {
Type = "oneshot";
RemainAfterExit = true;
ExecStart = "${config.virtualisation.docker.package}/bin/docker network create affine-net";
ExecStop = "${config.virtualisation.docker.package}/bin/docker network remove affine-net";
};
};
# Ensure containers start after the network is created
# systemd.services.docker-affine.after = ["affine-network.service"];
# systemd.services.docker-affine.requires = ["affine-network.service"];
# systemd.services.docker-affine-postgres.after = ["affine-network.service"];
# systemd.services.docker-affine-postgres.requires = ["affine-network.service"];
# systemd.services.docker-affine-redis.after = ["affine-network.service"];
# systemd.services.docker-affine-redis.requires = ["affine-network.service"];
# systemd.services.docker-affine-migration.after = ["affine-network.service"];
# systemd.services.docker-affine-migration.requires = ["affine-network.service"];
systemd.services.docker-affine.after = ["affine-network.service"];
systemd.services.docker-affine.requires = ["affine-network.service"];
systemd.services.docker-affine-postgres.after = ["affine-network.service"];
systemd.services.docker-affine-postgres.requires = ["affine-network.service"];
systemd.services.docker-affine-redis.after = ["affine-network.service"];
systemd.services.docker-affine-redis.requires = ["affine-network.service"];
systemd.services.docker-affine-migration.after = ["affine-network.service"];
systemd.services.docker-affine-migration.requires = ["affine-network.service"];
};
}

View File

@@ -1,17 +1,48 @@
{...}: {
{
config,
lib,
...
}:
with lib; let
cfg = config.nix.substituters;
in {
options.nix.substituters = {
enableCuda = mkOption {
type = types.bool;
default = false;
description = "Enable NixOS CUDA cache";
};
enableLlamaCpp = mkOption {
type = types.bool;
default = false;
description = "Enable llama-cpp cache";
};
};
config = {
nix.settings = {
trusted-substituters = [
trusted-substituters =
[
"https://nix-community.cachix.org"
"https://nixos-raspberrypi.cachix.org"
]
++ optionals cfg.enableLlamaCpp [
"https://llama-cpp.cachix.org"
]
++ optionals cfg.enableCuda [
"https://cache.nixos-cuda.org"
];
trusted-public-keys = [
trusted-public-keys =
[
"nix-community.cachix.org-1:mB9FSh9qf2dCimDSUo8Zy7bkq5CX+/rkCWyvRCYg3Fs="
"nixos-raspberrypi.cachix.org-1:4iMO9LXa8BqhU+Rpg6LQKiGa2lsNh/j2oiYLNOQ5sPI="
]
++ optionals cfg.enableLlamaCpp [
"llama-cpp.cachix.org-1:H75X+w83wUKTIPSO1KWy9ADUrzThyGs8P5tmAbkWhQc="
]
++ optionals cfg.enableCuda [
"cache.nixos-cuda.org:74DUi4Ye579gUqzH4ziL9IyiJBlDpMRn9MBN8oNan9M="
];
};

View File

@@ -289,7 +289,7 @@ in {
"core.keybinds" = {
config = {
default_keybinds = true;
neorg_leader = "<C-i>";
neorg_leader = "<C-m>";
};
};
"core.integrations.treesitter" = {
@@ -620,21 +620,6 @@ in {
};
sources = {
cmdline = [];
# default =
# rawLua
# /*
# lua
# */
# ''
# function(ctx)
# local success, node = pcall(vim.treesitter.get_node)
# if success and node and vim.tbl_contains({ 'comment', 'line_comment', 'block_comment' }, node:type()) then
# return { 'buffer' }
# else
# return { 'git', 'lsp', 'path', 'snippets', 'buffer', 'dictionary', 'ripgrep', 'tmux' }
# end
# end
# '';
default = [
"git"
"lsp"
@@ -643,7 +628,6 @@ in {
"path"
"buffer"
"ripgrep"
# "tmux"
];
providers = {
buffer = {
@@ -655,30 +639,23 @@ in {
path = {};
dictionary = {
module = "blink-cmp-dictionary";
name = "dict";
name = "Dict";
min_keyword_length = 3;
opts = {
};
};
git = {
module = "blink-cmp-git";
name = "git";
name = "Git";
opts = {
# -- options for the blink-cmp-git
};
};
ripgrep = {
module = "blink-ripgrep";
name = "ripgrep";
name = "Ripgrep";
opts = {};
};
# tmux = {
# module = "blink-cmp-tmux";
# name = "tmux";
# opts = {
# triggered_only = false;
# };
# };
};
};
};
@@ -686,9 +663,8 @@ in {
blink-ripgrep.enable = true;
blink-cmp-git.enable = true;
blink-cmp-dictionary.enable = true;
# blink-cmp-copilot.enable = true;
blink-cmp-copilot.enable = true;
blink-cmp-spell.enable = true;
blink-cmp-tmux.enable = true;
blink-compat = {
enable = true;
settings.impersonate_nvim_cmp = true;

View File

@@ -42,8 +42,8 @@
};
};
in [
inputs.nixvim.overlays.default
inputs.nno.overlays.default
tree-sitter-grammars
inputs.nixvim.overlays.default
vimPlugins
tree-sitter-grammars
]

View File

@@ -28,7 +28,6 @@
inputs.sops-nix.nixosModules.sops
inputs.stylix.nixosModules.stylix
inputs.headplane.nixosModules.headplane
inputs.tangled-core.nixosModules.knot
./${device.name}/configuration.nix
../home/module.nix

View File

@@ -4,5 +4,4 @@
documentation.dev.enable = true;
documentation.doc.enable = true;
documentation.nixos.enable = true;
documentation.man.cache.enable = true;
}

View File

@@ -1,3 +0,0 @@
{pkgs, ...}: {
environment.systemPackages = with pkgs; [crosspipe];
}

View File

@@ -7,11 +7,6 @@
# ./alvr.nix
./easyeffects.nix
./vr.nix
./crosspipe.nix
# ./wine.nix
# ./virt.nix
./gparted.nix
./nvtop.nix
# ./qpwgraph.nix
./helvum.nix
];
}

View File

@@ -1,3 +0,0 @@
{pkgs, ...}: {
environment.systemPackages = with pkgs; [gparted];
}

View File

@@ -0,0 +1,3 @@
{pkgs, ...}: {
environment.systemPackages = with pkgs; [helvum];
}

View File

@@ -1,3 +0,0 @@
{pkgs, ...}: {
environment.systemPackages = with pkgs; [nvtopPackages.nvidia];
}

View File

@@ -1,3 +0,0 @@
{pkgs, ...}: {
environment.systemPackages = with pkgs; [qpwgraph];
}

View File

@@ -1,6 +0,0 @@
{pkgs, ...}: {
environment.systemPackages = with pkgs; [
virt-manager
quickemu
];
}

View File

@@ -1,7 +0,0 @@
{pkgs, ...}: {
environment.systemPackages = with pkgs; [
wine-wayland
winetricks
wineWowPackages.waylandFull
];
}

View File

@@ -3,7 +3,6 @@
lib,
device,
config,
inputs,
...
}: {
imports = [
@@ -23,6 +22,15 @@
tctiEnvironment.enable = true;
};
programs = {
hyprland = {
enable = true;
withUWSM = true;
xwayland.enable = true;
};
uwsm.enable = true;
};
systemd.services.NetworkManager-wait-online.enable = lib.mkForce false;
# systemd.tmpfiles.rules = [
# "L+ /etc/gdm/.config/monitors.xml - - - - ${./monitors.xml}"
@@ -41,7 +49,6 @@
extra-experimental-features = "nix-command flakes auto-allocate-uids";
trusted-users = [device.user];
extra-sandbox-paths = [config.programs.ccache.cacheDir];
download-buffer-size = 524288000;
};
extraOptions = ''
build-users-group = nixbld
@@ -60,6 +67,11 @@
# ../../builders/tsuba.nix
];
distributedBuilds = true;
# Enable CUDA and llama-cpp caches
substituters = {
enableCuda = true;
enableLlamaCpp = true;
};
};
users.users.${device.user} = {
@@ -281,6 +293,42 @@
fonts.fontconfig.enable = true;
fonts.fontDir.enable = true;
environment = {
# List packages installed in system profile. To search, run:
# $ nix search wget
systemPackages = with pkgs; [
v4l-utils
polychromatic
openrazer-daemon
cudatoolkit
# Wine
wine-wayland
winetricks
wineWowPackages.waylandFull
virt-manager
gparted
nvtopPackages.nvidia
quickemu
# (nixvim.makeNixvim (import ../../neovim))
qpwgraph
hyprland
xorg.xhost
foot
git
fish
nushell
# (pkgs.wrapFirefox
# (pkgs.firefox-unwrapped.override {pipewireSupport = true;})
# {})
gnumake
python3
nerd-fonts.fira-code
nerd-fonts.hasklug
nerd-fonts.symbols-only
monaspace
ddcutil
libnotify
];
sessionVariables = {
WLR_NO_HARDWARE_CURSORS = "1";
NIXOS_OZONE_WL = "1";

View File

@@ -1,5 +1,5 @@
{...}: {
imports = [
# ./hytale.nix
./hytale.nix
];
}

View File

@@ -1,3 +0,0 @@
{pkgs, ...}: {
environment.systemPackages = with pkgs; [cudatoolkit];
}

View File

@@ -1,3 +0,0 @@
{pkgs, ...}: {
environment.systemPackages = with pkgs; [ddcutil];
}

View File

@@ -4,7 +4,7 @@
./steam.nix
./1password.nix
./localsend.nix
# ./appimage.nix
./appimage.nix
./obs-studio.nix
./gnome-disks.nix
./nix-ld.nix
@@ -12,16 +12,5 @@
./droidcam.nix
./wireshark.nix
./flatpak.nix
./v4l-utils.nix
./razer.nix
./cuda.nix
./fonts.nix
./dev.nix
./shells.nix
./hyprland.nix
./foot.nix
./ddcutil.nix
./libnotify.nix
./fish.nix
];
}

View File

@@ -1,7 +0,0 @@
{pkgs, ...}: {
environment.systemPackages = with pkgs; [
git
gnumake
python3
];
}

View File

@@ -1,7 +0,0 @@
{...}: {
programs.fish = {
enable = true;
generateCompletions = true;
};
stylix.targets.fish.enable = false;
}

View File

@@ -1,8 +0,0 @@
{pkgs, ...}: {
environment.systemPackages = with pkgs; [
nerd-fonts.fira-code
nerd-fonts.hasklug
nerd-fonts.symbols-only
monaspace
];
}

View File

@@ -1,3 +0,0 @@
{pkgs, ...}: {
environment.systemPackages = with pkgs; [foot];
}

View File

@@ -1,7 +1,6 @@
{
pkgs,
device,
lib,
...
}: {
programs.gamemode = {
@@ -13,7 +12,7 @@
custom = {
start = let
out = pkgs.writeScriptBin "gamemode-start" ''
${lib.getExe pkgs.ollama} ps | tail +2 | cut -d' ' -f1 | xargs ${lib.getExe pkgs.ollama} stop
${pkgs.lmstudio}/bin/lms unload
${pkgs.libnotify}/bin/notify-send 'GameMode started'
'';
in "${out}/bin/gamemode-start";

View File

@@ -1,19 +0,0 @@
{
pkgs,
inputs,
...
}: {
environment.systemPackages = with pkgs; [
xhost
];
programs = {
hyprland = {
enable = true;
withUWSM = true;
xwayland.enable = true;
package = pkgs.hyprland;
portalPackage = pkgs.xdph;
};
uwsm.enable = true;
};
}

View File

@@ -1,3 +0,0 @@
{pkgs, ...}: {
environment.systemPackages = with pkgs; [libnotify];
}

View File

@@ -1,6 +0,0 @@
{pkgs, ...}: {
environment.systemPackages = with pkgs; [
polychromatic
openrazer-daemon
];
}

View File

@@ -1,6 +0,0 @@
{pkgs, ...}: {
environment.systemPackages = with pkgs; [
fish
nushell
];
}

View File

@@ -1,3 +0,0 @@
{pkgs, ...}: {
environment.systemPackages = with pkgs; [v4l-utils];
}

View File

@@ -7,5 +7,8 @@
enable = true;
dumpcap.enable = true;
};
environment.systemPackages = with pkgs; [
wireshark-qt
];
users.users.${device.user}.extraGroups = ["wireshark"];
}

View File

@@ -130,10 +130,11 @@
options = ["nofail"];
};
fileSystems."/var" = {
device = "/dev/disk/by-uuid/ff874913-dc21-43f3-82f8-cdf45dd888f7";
fsType = "ext4";
};
# fileSystems."/volumes/windows-games" = {
# device = "/dev/disk/by-partuuid/56359fb7-7d33-44d2-bebd-b0c53daeeb73";
# fsType = "ntfs3";
# options = ["nofail"];
# };
swapDevices = [
{

View File

@@ -57,6 +57,9 @@
};
package = pkgs.nixVersions.nix_2_32; # deploy-rs doesn't work with nix >= 2.32
distributedBuilds = true;
substituters = {
enableCuda = true;
};
};
users.users.${device.user} = {

View File

@@ -12,7 +12,6 @@
./resolved.nix
./tailscale.nix
./gitea.nix
./knot.nix
./affine.nix
./attic.nix
@@ -22,14 +21,13 @@
# ./headscale.nix
./immich.nix
./kellnr.nix
./llms.nix
# ./llms.nix
./matrix
./monitoring.nix
# ./servius-website.nix
# ./monitoring.nix
# ./paperless.nix
./prowlarr.nix
# ./searxng.nix
./shitpost.nix
# ./shitpost.nix
];
services = {
nix-serve = {

View File

@@ -59,14 +59,6 @@
siteMonitor = "https://deluge.tsuba.darksailor.dev";
};
}
{
"Aria2" = {
icon = "aria2.png";
description = "Aria2: Download Manager";
href = "https://aria2.tsuba.darksailor.dev";
siteMonitor = "https://aria2.tsuba.darksailor.dev";
};
}
{
"Home Assistant" = {
icon = "home-assistant.png";
@@ -206,19 +198,19 @@
reverse_proxy localhost:${builtins.toString config.services.homepage-dashboard.listenPort}
'';
};
authelia = {
instances.darksailor = {
settings = {
access_control = {
rules = [
{
domain = "dashboard.darksailor.dev";
policy = "one_factor";
}
];
};
};
};
};
# authelia = {
# instances.darksailor = {
# settings = {
# access_control = {
# rules = [
# {
# domain = "dashboard.darksailor.dev";
# policy = "one_factor";
# }
# ];
# };
# };
# };
# };
};
}

View File

@@ -1,31 +0,0 @@
{
config,
inputs,
pkgs,
...
}: {
services.tangled.knot = {
enable = true;
package = inputs.tangled-core.packages.${pkgs.system}.knot;
server = {
hostname = "tangled.darksailor.dev";
owner = "did:plc:tllyvpa5oxw6fwwhkj3kv6dr";
listenAddr = "127.0.0.1:5969";
};
};
services.caddy.virtualHosts."tangled.darksailor.dev".extraConfig = ''
reverse_proxy ${config.services.tangled.knot.server.listenAddr} {
header_up Host {host}
header_up X-Real-IP {remote}
header_up X-Forwarded-For {remote}
header_up X-Forwarded-Proto {scheme}
}
handle /events/* {
reverse_proxy ${config.services.tangled.knot.server.listenAddr} {
header_up X-Forwarded-For {remote}
header_up Host {host}
}
}
'';
}

View File

@@ -1,66 +0,0 @@
{
pkgs,
config,
inputs,
...
}: let
base_domain = "darksailor.dev";
cinnyConfig = builtins.toJSON {
defaultHomeserver = 0;
homeserverList = ["darksailor.dev" "matrix.org"];
allowCustomHomeservers = false;
hashRouter = {
enabled = true;
basename = "/";
};
};
cinnyConfigFile = pkgs.writeText "cinny-config.json" cinnyConfig;
cinny = with pkgs;
buildNpmPackage rec {
pname = "cinny-unwrapped";
version = "4.11.1";
src = inputs.cinny;
nodejs = nodejs_22;
npmDepsHash = "sha256-27WFjb08p09aJRi0S2PvYq3bivEuG5+z2QhFahTSj4Q=";
nativeBuildInputs = [
python3
pkg-config
];
buildInputs =
[
pixman
cairo
pango
]
++ lib.optionals stdenv.hostPlatform.isDarwin [giflib];
installPhase = ''
runHook preInstall
cp -r dist $out
runHook postInstall
'';
};
in {
services.caddy.virtualHosts = {
"matrix.${base_domain}".extraConfig = ''
handle /_matrix/* {
reverse_proxy /_matrix/* localhost:${toString (builtins.elemAt config.services.matrix-tuwunel.settings.global.port 0)}
}
handle_path /config.json {
file_server
root ${cinnyConfigFile}
}
handle {
root * ${cinny}
try_files {path} /index.html
file_server
}
'';
};
}

View File

@@ -1,8 +1,7 @@
{...}: {
imports = [
./tuwunel.nix
./cinny.nix
# ./signal.nix
# ./signal.nix // libolm deprecated
# ./discord.nix
];
}

View File

@@ -6,8 +6,19 @@
port = 6167;
base_domain = "darksailor.dev";
client_id = "tuwunel";
rtc_domain = "matrix-rtc.${base_domain}";
jwt_port = 8081;
elementConfig = builtins.toJSON {
default_server_config = {
"m.homeserver" = {
base_url = "https://matrix.${base_domain}";
};
};
sso_redirect_options = {
immediate = false;
on_welcome_page = true;
on_login_page = true;
};
};
elementConfigFile = pkgs.writeText "element-config.json" elementConfig;
in {
sops = {
secrets."tuwunel/client_id" = {
@@ -21,11 +32,6 @@ in {
mode = "0440";
};
secrets."tuwunel/registration_token".owner = config.services.matrix-tuwunel.user;
secrets."livekit/key_name" = {};
secrets."livekit/key_secret" = {};
templates."livekit-keys".content = ''
${config.sops.placeholder."livekit/key_name"}: ${config.sops.placeholder."livekit/key_secret"}
'';
};
services.matrix-tuwunel = {
enable = true;
@@ -50,91 +56,31 @@ in {
well_known = {
client = "https://matrix.${base_domain}";
server = "matrix.${base_domain}:443";
rtc_transports = [
{
type = "livekit";
livekit_service_url = "https://${rtc_domain}";
}
];
};
};
package = pkgs.matrix-tuwunel;
};
services.caddy.virtualHosts = {
# "matrix.${base_domain}".extraConfig = ''
# handle /_matrix/* {
# reverse_proxy /_matrix/* localhost:${toString port}
# }
# handle_path /config.json {
# file_server
# root ${cinnyConfigFile}
# }
# handle {
# root * ${cinny}
# try_files {path} /index.html
# file_server
# }
# '';
"matrix.${base_domain}".extraConfig = ''
reverse_proxy /_matrix/* localhost:${toString port}
handle_path /config.json {
file_server
root ${elementConfigFile}
}
root * ${pkgs.element-web}
file_server
'';
"${base_domain}".extraConfig = ''
reverse_proxy /.well-known/* localhost:${toString port}
'';
"${rtc_domain}".extraConfig = ''
@jwt_service {
path /sfu/get* /healthz*
}
handle @jwt_service {
reverse_proxy localhost:${toString jwt_port}
}
handle {
reverse_proxy localhost:${toString config.services.livekit.settings.port} {
header_up Connection "upgrade"
header_up Upgrade {http.request.header.Upgrade}
}
}
'';
};
networking.firewall = {
allowedTCPPorts = [8448 7881];
allowedUDPPorts = [3478];
allowedUDPPortRanges = [
{
from = 50300;
to = 65535;
}
];
# "matrix.${base_domain}:8448".extraConfig = ''
# reverse_proxy /_matrix/* localhost:${toString port}
# '';
};
networking.firewall.allowedTCPPorts = [8448];
users.users.${config.services.caddy.user}.extraGroups = [config.services.matrix-tuwunel.group];
services.livekit = {
enable = true;
keyFile = config.sops.templates."livekit-keys".path;
openFirewall = true;
settings = {
rtc = {
tcp_port = 7881;
port_range_start = 50100;
port_range_end = 50200;
use_external_ip = true;
enable_loopback_candidate = false;
};
turn = {
enabled = true;
udp_port = 3478;
relay_range_start = 50300;
relay_range_end = 65535;
domain = rtc_domain;
};
};
};
services.lk-jwt-service = {
enable = true;
port = jwt_port;
livekitUrl = "wss://${rtc_domain}";
keyFile = config.sops.templates."livekit-keys".path;
};
services = {
authelia = {
instances.darksailor = {

View File

@@ -23,9 +23,6 @@
caddy = 2019;
};
in {
sops.secrets."grafana/secret_key" = {
owner = "grafana";
};
# Grafana configuration with Authelia integration
services.grafana = {
enable = true;
@@ -57,7 +54,6 @@ in {
security = {
disable_gravatar = true;
cookie_secure = true;
secret_key = ''$__file{${config.sops.secrets."grafana/secret_key".path}}'';
};
analytics = {
@@ -285,7 +281,7 @@ in {
{
targets = [
"tsuba:8096" # jellyfin (built-in /metrics endpoint)
# "tsuba:8123" # homeassistant (configure prometheus integration)
"tsuba:8123" # homeassistant (configure prometheus integration)
"tsuba:9617" # pihole-exporter
];
labels = {
@@ -302,12 +298,12 @@ in {
target_label = "__metrics_path__";
replacement = "/metrics";
}
# {
# source_labels = ["__address__"];
# regex = "tsuba:8123";
# target_label = "__metrics_path__";
# replacement = "/api/prometheus";
# }
{
source_labels = ["__address__"];
regex = "tsuba:8123";
target_label = "__metrics_path__";
replacement = "/api/prometheus";
}
];
}

View File

@@ -17,7 +17,7 @@
services = {
nextcloud = {
enable = true;
package = pkgs.nextcloud33;
package = pkgs.nextcloud32;
extraApps = {
inherit (config.services.nextcloud.package.packages.apps) contacts calendar bookmarks user_oidc;
};

View File

@@ -1,12 +0,0 @@
{
inputs,
pkgs,
...
}: let
website = inputs.servius-website.packages.${pkgs.system}.default;
in {
services.caddy.virtualHosts."servius.darksailor.dev".extraConfig = ''
root * ${website}
file_server
'';
}

View File

@@ -1,33 +0,0 @@
{
pkgs,
config,
...
}: {
sops.secrets."aria2/rpc-secret" = {};
services.aria2 = {
enable = true;
rpcSecretFile = config.sops.secrets."aria2/rpc-secret".path;
settings = {
continue = true;
dir = "/media/downloads";
enable-rpc = true;
file-allocation = "none";
max-concurrent-downloads = 5;
max-connection-per-server = 16;
rpc-listen-all = true;
rpc-listen-port = 6809;
split = 16;
};
};
services.caddy.virtualHosts."aria2.tsuba.darksailor.dev".extraConfig = ''
import cloudflare
root * ${pkgs.ariang}/share/ariang
file_server
'';
services.caddy.virtualHosts."aria2.tsuba.darksailor.dev:6800".extraConfig = ''
import cloudflare
reverse_proxy localhost:${toString config.services.aria2.settings.rpc-listen-port}
'';
}

View File

@@ -6,7 +6,6 @@
./caddy.nix
./servarr.nix
./deluge.nix
./aria2.nix
./homeassistant.nix
./flaresolverr.nix
./caddy.nix

View File

@@ -1,7 +1,5 @@
{inputs, ...} @ self: let
cratesNix = pkgs: inputs.crates-nix.mkLib {inherit pkgs;};
# --- Shell / CLI utilities ---
shell-scripts = final: prev: {
shell-scipts = final: prev: {
handlr-xdg = final.pkgs.writeShellApplication {
name = "xdg-open";
runtimeInputs = [final.pkgs.handlr-regex];
@@ -10,9 +8,184 @@
'';
};
};
misc-applications = final: prev: {
command-runner = inputs.command-runner.packages.${prev.system}.command-runner;
goread = final.pkgs.buildGoModule {
pname = "goread";
version = "v1.6.4";
vendorHash = "sha256-/kxEnw8l9S7WNMcPh1x7xqiQ3L61DSn6DCIvJlyrip0";
src = final.pkgs.fetchFromGitHub {
owner = "TypicalAM";
repo = "goread";
rev = "v1.6.4";
sha256 = "sha256-m6reRaJNeFhJBUatfPNm66LwTXPdD/gioT8HTv52QOw";
};
patches = [patches/goread.patch];
checkPhase = null;
};
music-player-git = inputs.music-player.packages.${prev.system}.default;
davis = let
davis-src = final.pkgs.fetchFromGitHub {
owner = "SimonPersson";
repo = "davis";
rev = "main";
sha256 = "sha256-p4l1nF6M28OyIaPorgsyR7NJtmVwpmuws67KvVnJa8s";
};
cargoToml =
builtins.fromTOML (builtins.readFile "${davis-src}/Cargo.toml");
in
final.rustPlatform.buildRustPackage {
pname = cargoToml.package.name;
version = cargoToml.package.version;
src = davis-src;
cargoLock = {lockFile = "${davis-src}/Cargo.lock";};
buildPhase = ''
runHook cargoBuildHook
runHook cargoInstallPostBuildHook
'';
runtimeInputs = [final.pkgs.picat];
buildInputs = [final.pkgs.picat];
installPhase = ''
mkdir -p $out/bin
cp $bins $out/bin
cp $src/subcommands/cur/davis-cur-vertical $out/bin
cp $src/subcommands/cur/davis-cur-horizontal $out/bin
cp $src/subcommands/cover/davis-cover $out/bin
'';
};
# --- Terminal multiplexers ---
terminal = final: prev: {
openapi-tui = let
cargoToml = builtins.fromTOML (builtins.readFile "${inputs.openapi-tui}/Cargo.toml");
in
final.rustPlatform.buildRustPackage {
pname = cargoToml.package.name;
version = cargoToml.package.version;
src = inputs.openapi-tui;
cargoLock = {lockFile = "${inputs.openapi-tui}/Cargo.lock";};
buildInputs = with final;
pkgs.lib.optionals pkgs.stdenv.isDarwin [
pkgs.apple-sdk_13
]
++ pkgs.lib.optionals pkgs.stdenv.isLinux [
pkgs.openssl
];
PKG_CONFIG_PATH = with final; pkgs.lib.makeSearchPath "lib/pkgconfig" [pkgs.openssl.dev];
nativeBuildInputs = with final; [pkgs.pkg-config];
};
picat = let
picat-src = final.pkgs.fetchFromGitHub {
owner = "SimonPersson";
repo = "picat";
rev = "main";
sha256 = "sha256-HheBinHW4RLjRtiE8Xe5BoEuSCdtZTA9XkRJgtDkXaM";
};
cargoToml =
builtins.fromTOML (builtins.readFile "${picat-src}/Cargo.toml");
in
final.rustPlatform.buildRustPackage {
pname = cargoToml.package.name;
version = cargoToml.package.version;
src = picat-src;
cargoLock = {lockFile = "${picat-src}/Cargo.lock";};
};
psst =
if final.pkgs.stdenv.isLinux
then
(prev.psst.overrideAttrs (finalAttrs: prevAttrs: {
postInstall =
(prevAttrs.postInstall or "")
+ ''
patch $out/share/applications/Psst.desktop < ${./patches/psst.patch}
'';
}))
else
final.rustPlatform.buildRustPackage rec {
pname = "psst";
version = "1";
src = final.pkgs.fetchFromGitHub {
owner = "jpochyla";
repo = "psst";
rev = "master";
sha256 = "sha256-W+MFToyvYDQuC/8DqigvENxzJ6QGQOAeAdmdWG6+qZk";
};
buildInputs = with final; [
pkgs.apple-sdk_13
];
cargoLock = {
lockFile = "${src}/Cargo.lock";
outputHashes = {
"cubeb-0.10.3" = "sha256-gV1KHOhq678E/Rj+u8jX9Fw+TepPwuZdV5y/D+Iby+o";
"druid-0.8.3" = "sha256-hTB9PQf2TAhcLr64VjjQIr18mczwcNogDSRSN5dQULA";
"druid-enums-0.1.0" = "sha256-KJvAgKxicx/g+4QRZq3iHt6MGVQbfOpyN+EhS6CyDZk";
};
};
};
ddcbacklight = inputs.ddcbacklight.packages.${prev.system}.ddcbacklight;
# ik_llama = prev.llama-cpp.overrideAttrs (oldAttrs: {
# src = inputs.ik_llama;
# version = "5995";
# });
# llama-cpp = prev.llama-cpp.overrideAttrs (oldAttrs: {
# src = inputs.llama-cpp;
# version = "6178";
# cmakeFlags = oldAttrs.cmakeFlags;
# });
python312 = prev.python312.override {
packageOverrides = final: prev: {
pysaml2 = prev.pysaml2.overridePythonAttrs (orig: {
doCheck = false;
# disabledTests =
# orig.disabledTests
# ++ [
# "test_encrypted_response_6"
# "test_validate_cert_chains"
# "test_validate_with_root_cert"
# ];
});
};
};
zeronsd = let
src = inputs.zeronsd;
in
final.rustPlatform.buildRustPackage {
inherit src;
pname = "zeronsd";
version = "0.6";
strictDeps = true;
buildInputs = [final.pkgs.openssl];
nativeBuildInputs = [final.pkgs.pkg-config];
doCheck = false;
RUSTFMT = "${final.pkgs.rustfmt}/bin/rustfmt";
cargoLock = {lockFile = "${src}/Cargo.lock";};
};
# alvr-master = inputs.alvr.packages.${prev.system}.default;
caddyWithCloudflare = inputs.nixpkgs.legacyPackages.${final.system}.caddy.withPlugins {
plugins = ["github.com/caddy-dns/cloudflare@v0.2.2"];
hash = "sha256-dnhEjopeA0UiI+XVYHYpsjcEI6Y1Hacbi28hVKYQURg=";
};
nix-auth = inputs.nix-auth.packages.${prev.system}.nix-auth;
kitty = inputs.nixpkgs-stable.legacyPackages.${prev.system}.kitty;
yabai = prev.yabai.overrideAttrs (oldAttrs: rec {
version = "7.1.16";
src = final.fetchzip {
url = "https://github.com/koekeishiya/yabai/releases/download/v${version}/yabai-v${version}.tar.gz";
hash = "sha256-rEO+qcat6heF3qrypJ02Ivd2n0cEmiC/cNUN53oia4w=";
};
});
};
anyrun-overlay = final: prev: {
anyrun =
inputs.anyrun.packages.${prev.system}.anyrun.overrideAttrs
(finalAttrs: prevAttrs: {patches = [./patches/ctrl-np.patch];});
hyprwin = inputs.anyrun-hyprwin.packages.${prev.system}.hyprwin;
nixos-options = inputs.anyrun-nixos-options.packages.${prev.system}.default;
anyrun-rink = inputs.anyrun-rink.packages.${prev.system}.default;
};
tmuxPlugins = final: prev: {
tmuxPlugins =
prev.tmuxPlugins
// {
@@ -27,18 +200,28 @@
};
};
};
tmux-float = inputs.tmux-float.packages.${prev.stdenv.hostPlatform.system}.default;
tmux-float = inputs.tmux-float.packages.${prev.system}.default;
};
catppuccinThemes = final: prev: {
catppuccinThemes = import ./themes/catppuccin.nix {pkgs = final.pkgs;};
};
nix-index-db = final: prev: {
nix-index-database = final.runCommandLocal "nix-index-database" {} ''
mkdir -p $out
ln -s ${
inputs.nix-index-database.legacyPackages.${prev.system}.database
} $out/files
'';
};
zellij = final: prev: {
zellijPlugins = {
zjstatus = inputs.zjstatus.packages.${prev.stdenv.hostPlatform.system}.default;
zjstatus = inputs.zjstatus.packages.${prev.system}.default;
};
};
# --- System libraries ---
system-libs = final: prev: {
# Custom libfprint with CS9711 fingerprint reader support
# https://github.com/archeYR/libfprint-CS9711/commits/cs9711-rebase/
libfprint = final: prev: {
libfprint = prev.libfprint.overrideAttrs (oldAttrs: {
version = "git";
# https://github.com/archeYR/libfprint-CS9711/commits/cs9711-rebase/
src = final.fetchFromGitHub {
owner = "archeYR";
repo = "libfprint-CS9711";
@@ -54,73 +237,66 @@
final.doctest
];
});
# fprintd = inputs.nixpkgs-stable.legacyPackages.${prev.system}.fprintd;
# fprintd = prev.fprintd.overrideAttrs (oldAttrs: {
# src = inputs.nixpkgs-stable.legacyPackages.${prev.system}.fprintd.src;
# });
};
csshacks = final: prev: {
csshacks = inputs.csshacks;
};
jellyfin = final: prev: {
jellyfin-web = prev.jellyfin-web.overrideAttrs (finalAttrs: previousAttrs: {
installPhase = ''
runHook preInstall
# --- Networking ---
networking = final: prev: {
caddyWithCloudflare = inputs.nixpkgs.legacyPackages.${prev.stdenv.hostPlatform.system}.caddy.withPlugins {
plugins = ["github.com/caddy-dns/cloudflare@v0.2.2"];
hash = "sha256-Gb1nC5fZfj7IodQmKmEPGygIHNYhKWV1L0JJiqnVtbs=";
};
};
# this is the important line
sed -i "s#</head>#<script src=\"configurationpage?name=skip-intro-button.js\"></script></head>#" dist/index.html
# --- Media ---
media = final: prev: {
ddcbacklight = inputs.ddcbacklight.packages.${prev.stdenv.hostPlatform.system}.ddcbacklight;
music-player-git = inputs.music-player.packages.${prev.stdenv.hostPlatform.system}.default;
};
mkdir -p $out/share
cp -a dist $out/share/jellyfin-web
# --- macOS-specific ---
darwin = final: prev: {
kitty = inputs.nixpkgs-stable.legacyPackages.${prev.stdenv.hostPlatform.system}.kitty;
yabai = prev.yabai.overrideAttrs (oldAttrs: rec {
version = "7.1.16";
src = final.fetchzip {
url = "https://github.com/koekeishiya/yabai/releases/download/v${version}/yabai-v${version}.tar.gz";
hash = "sha256-rEO+qcat6heF3qrypJ02Ivd2n0cEmiC/cNUN53oia4w=";
};
runHook postInstall
'';
});
};
applications = final: prev: {
iamb = inputs.iamb.packages.${prev.stdenv.hostPlatform.system}.default;
hyprland = inputs.hyprland.packages.${prev.stdenv.hostPlatform.system}.hyprland;
xdg-desktop-portal-hyprland = prev.enableDebugging inputs.hyprland.packages.${prev.stdenv.hostPlatform.system}.xdg-desktop-portal-hyprland;
xdph = inputs.nixpkgs-master.legacyPackages.${prev.stdenv.hostPlatform.system}.xdg-desktop-portal-hyprland;
ironclaw = (cratesNix prev).buildCrate "ironclaw" {
nativeBuildInputs = [prev.pkg-config];
buildInputs = [prev.openssl];
doCheck = false;
# immich = final: prev: {
# immich-latest = prev.immich.overrideAttrs (oldAttrs: {
# version = "v1.142.0";
# src = inputs.immich;
# });
# };
vr = final: prev: {
# wivrn-nightly = prev.wivrn.overrideAttrs (oldAttrs: {
# version = "v25.11.1";
# src = inputs.wivrn;
# });
wivrn-nightly = inputs.wivrn.packages.${prev.system}.default;
};
};
# --- Themes and assets ---
themes = final: prev: {
catppuccinThemes = import ./themes/catppuccin.nix {pkgs = final.pkgs;};
nix-index-database = final.runCommandLocal "nix-index-database" {} ''
mkdir -p $out
ln -s ${inputs.nix-index-database.legacyPackages.${prev.stdenv.hostPlatform.system}.database} $out/files
'';
games = final: prev: {
hytale-launcher = inputs.hytale-launcher.packages.${prev.system}.default;
};
in
[
# Local overlays
shell-scripts
terminal
system-libs
networking
media
darwin
themes
applications
# External input overlays
games
vr
anyrun-overlay
catppuccinThemes
csshacks
inputs.deploy-rs.overlays.default
inputs.eilmeldung.overlays.default
inputs.handoff.overlays.default
inputs.headplane.overlays.default
inputs.nix-minecraft.overlay
inputs.nur.overlays.default
inputs.rust-overlay.overlays.default
inputs.handoff.overlays.default
inputs.headplane.overlays.default
inputs.vicinae.overlays.default
inputs.eilmeldung.overlays.default
jellyfin
libfprint
misc-applications
nix-index-db
shell-scipts
tmuxPlugins
zellij
]
++ (import ./neovim/overlays.nix {inherit inputs;})

View File

@@ -6,8 +6,6 @@ paperless:
accounts:
mail:
fastmail: ENC[AES256_GCM,data:WCqmJqUjJz/mUdVB9xDvYQ==,iv:uU3X7/doSz6v0c8eHfB6riOkxWoWqYhbsoexaZwdb4Q=,tag:0oSRXo93siNQDlOgPA3Hsw==,type:str]
calendar:
fastmail: ENC[AES256_GCM,data:pjTLouC7hVSdjb14UmCM7g==,iv:YdznLQUxf5YFl1AhdZE1sj1MiIOPEBhCbxM8EB4ye8c=,tag:H55Nk8rAsDkSsPJRm+9L5Q==,type:str]
gitea:
registration: ENC[AES256_GCM,data:1FVvZF6e4AQK09Qd/hTqCvAEsnKyNztcQ6gFWHprMSNHkodNoyAyZg==,iv:ftnk06e9XV8+ZFupnV4I4a4he1ne9jAzmihli5Vt6h8=,tag:5+Tqzh/dSSWB221h01ftyQ==,type:str]
llama:
@@ -79,7 +77,7 @@ minecraft:
modded: ENC[AES256_GCM,data:6itrol9NObR3TczEeOa7wkykgqkpDus0VkHBRpU6VdQ=,iv:F56uYdHozJvkJ+m18aviTWzCrLfW2VcxkbOqpnRiniA=,tag:WLKA+uIJJtlDfMMOn0ak7Q==,type:str]
grafana:
adminPassword: ENC[AES256_GCM,data:im6FJVlVUoZg+9W6KmsqtloH4nB6AhXOcia5waRyFKj2DoQlt4jhPH1CFvw=,iv://D6aD/fGl7h4KmtQcQ0TQLWLfKdIs4+EMg2LWjPHvg=,tag:6gHu/V0V0a8GpcgA/hUwXg==,type:str]
secret_key: ENC[AES256_GCM,data:QkNTWQyQGgD/zJ0C0nkqTuxJXCx/hqwFH1XrJEGcIB7U3PUNdMpvTYrazgGRUcfEUjMeCIbUgYcamrPJJgaBsA==,iv:RZa79OtDS74JErBk/j5wg/p02Rd4zCXLi4LQGffHLmU=,tag:sbsovzFXj3xmDIF+ACwPgQ==,type:str]
secretKey: ENC[AES256_GCM,data:LD0x8Fa6SU1+6mwxLkKa/o+ZqeuRIr7o/AKS7EmrDYj0vzrA3/FjViVJNfkOJDch9TbVyjIpk2ZLwxHXOZx7MA==,iv:t6UwZj2JZpMIDsDDeJ4rZah4aBoMIKaoiu9VU2VhViE=,tag:MIz/b8JWYtOpUCcg6gYhJg==,type:str]
discord:
token: ENC[AES256_GCM,data:M6TayHpIa0J1w3zVRKPPU0P/f18UXOpxzU7fjKNCx8YxzSAaQfY52S5XpiqDgjPWfWdSxzG2VVDqu1708Vwofa8IRKwWafam,iv:x0ySoaS68aLRVUcQin096RoeQGRELvNwdFJxezPj/cA=,tag:Omv5uL97y7ZTI8juVJFNug==,type:str]
lastfm:
@@ -108,8 +106,6 @@ coturn:
static_auth_secret: ENC[AES256_GCM,data:osEBYgWGZl+SnqVV1G9IxMys/qDm6WTtj4nILYVw0klDjiB6vd21yA0ik/rLv9E6Y539uMCk3oB0NS7I72U1hQ==,iv:jruS3vfe0fVHY67qNhEgaCEp/9cR57UIu8a/LhdTC1o=,tag:vhxXhh9u4bOSu/lxINjvew==,type:str]
affine:
db_password: ENC[AES256_GCM,data:AbpoEbmeihtVIoRaWxVL8+v3oCk5iiia9qZLKgyy98qTuNZruiaV3kQN6clYvWgHbzJta5/H9e+xocrEtw8C/A==,iv:2vPeDAJuVujPgM+kr6AFAvat2MCJnsblebx23Ey7YNA=,tag:ukuK30aZ//MKabhSRtLNXw==,type:str]
aria2:
rpc-secret: ENC[AES256_GCM,data:peFtDURHjlQOAM1v1AP9BBHmXhpPTE0kKRcL9eBV9rIFnDcKw5+nAP9+8sW4CRcE6l9DoxZFau7+IsnDgrFp5g==,iv:DkHiaZlPcHMnOPLflxlF4fs/bdOe799/SQQZ9WZ1Tq4=,tag:R1aWdUQdtzySOmYitNxD1Q==,type:str]
sops:
age:
- recipient: age1pw7kluxp7872c63ne4jecq75glj060jkmqwzkk6esatuyck9egfswufdpk
@@ -121,7 +117,7 @@ sops:
VGZKdHpVeFRpQUxtSEkyaEhLMlBJcGsKLb0DvPNZosPBUuiX6qz1s5IO5INQh8CK
ZtXTVClwMSmaUYhdSB2gKFrKVZHXTJZ4oAL5t/BpC0pOHyr+o96T3Q==
-----END AGE ENCRYPTED FILE-----
lastmodified: "2026-03-13T17:35:01Z"
mac: ENC[AES256_GCM,data:6VfirvrqmBLDg3XnJzBY5z1Fy/yAOhuLF6YnFH0pJ17beIHfkQQ/BbL0vBI1YfjyGjqQannp/0SpEwqA5uhvaHpQV2F1eFwotjrgFiGBrnhirLSXiHLGcnQtIeu2ue1McwbtJVZNWaOtdcz71+QeKn53+4jcDnb/wu/46+Q/nB0=,iv:eQ61Bpyom1cvTRZMiAMes2lrAGlAtuKTAxR/k2Caxh4=,tag:i+SBR1/V6jb3c3mGT4XykQ==,type:str]
lastmodified: "2026-02-18T10:39:02Z"
mac: ENC[AES256_GCM,data:fz+15A9C6G4x3OUzoKY3yvUt75dx2aql2GEmnuJcPM1YC9KN083PodKQR1axr23w7C9S2/iTXEnYJhx3X+dfoJbTRWKVvraGHWQ9w5jbjVMVfU+97JxrtykdwXKmwlzTbF4lakHd4dWRv5e9aR7vN2JX1NUd9EuazQ0/xPeIVOQ=,iv:l4/r/poWY5IdKrM0IxbdWfg6JB7r+tssh9LIZDSNr8w=,tag:HE3C7LzWrzCKE91VdZnqXg==,type:str]
unencrypted_suffix: _unencrypted
version: 3.11.0