Context

kuhree.com/platform is the operations repository. It defines the NixOS hosts, services, deploys, and checks. Earlier names were fleet and flake.

Goals

  • Keep all host configs declarative and versioned.
  • Make deployments repeatable across builder, manager, workers, NAS, edge proxy, and personal devices.
  • Centralize infra changes with reviewable git history.

Implementation

Stack

  • Nix flakes / NixOS modules
  • agenix for encrypted secrets
  • platform operator tooling

Architecture / Integrations

  • Multi-host NixOS topology managed from one repo
  • Secrets consumed through age/agenix integration

Repos / URLs

Status

Active.

Next actionable milestone: keep host, service, and deployment documentation aligned with the live inventory.

Lessons

  • Declarative host configs reduce drift fast when every machine lives in one source of truth.
  • Pair infra-level changes with explicit deploy runbooks to avoid “works on one host” surprises.

Notes

  • Prefer feature branches and PRs for infra changes unless explicitly directed otherwise.