Skip to content

Latest commit

 

History

37 Commits

Folders and files

NameName
Last commit message
Last commit date
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

Containers

Just the containers I use.

Repo layout

apps/          per-service scripts (aerc, crowdin, davmail, goose, imapfilter,
               neovim, opencode, snapclient, tftp) — the `just` recipes call these
bin/           repo-side tooling (code-fortress, ai-secure, build-selinux,
               create-rpm, debian-build-neovim)
build/         build context directories (Containerfiles, SELinux sources)
compose/       Docker Compose stacks (traefik, vaultwarden, syncthing, flexo, …)
gvisor/        gVisor runsc runtime
layouts/       zellij layouts for code-fortress (aider/opencode/goose)
lib/           shared bootstrap library (lib/cli.sh: colors, env policy, helpers)
systemd/       quadlet unit templates

Everything runs through just (just alone prints the grouped command list). Scripts locate the repo themselves (REPO_ROOT) — no env var needed. The only thing installed on the host is ~/.local/bin/code-fortress, symlinked into this repo; it injects bin/ onto PATH so ai-secure resolves inside the fortress.

Fortress DB access

Per-project Postgres credentials, if the agent should reach a database. Create the file before launching the seat:

~/.config/ai-fortress/opencode/<project>/pgpass.env   # chmod 600, dotenv
PGHOST=192.168.52.x
PGPORT=5432
PGUSER=<user>
PGPASSWORD=<password>
PGDATABASE=<db>

It must be set (a launch without it simply skips the DB mount). Inside the seat the file lands at ~/.pgpass.env; source it before psql:

set -a; . ~/.pgpass.env; set +a
psql

About

Nothing special just some containers I use with bin/manage

Resources

Stars

3 stars

Watchers

1 watching

Forks

Contributors

Languages