Add fleet setup template and a one-shot project bootstrap script
All checks were successful
Docker / build-and-push (push) Successful in 1m58s

SETUP.local.md.example is a fill-in-the-blanks runbook for rolling
keep out across real machines and projects (gitignored once copied to
SETUP.local.md — real vault keys/recipient ids/hostnames are fleet
topology, not something to commit). bootstrap-project.sh wraps push +
grant --read-only for one or more recipients into a single call for
onboarding a new project vault.

Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
This commit is contained in:
Fredrik Johansson
2026-07-12 21:21:55 +02:00
parent 58d5d787dd
commit 442c3b7cf5
3 changed files with 116 additions and 0 deletions

5
.gitignore vendored
View File

@@ -2,3 +2,8 @@ node_modules/
dist/
.env
data/
# Personal rollout notes — real vault keys, recipient ids, VPS hostnames.
# Not secrets themselves, but fleet topology that doesn't belong in a
# public repo. See SETUP.local.md.example for the template.
SETUP.local.md