[water7] feat: Add sops + age secret handling, still wip

I'm kinda lost, but we'll get there lol soon forgejo secrets will be fixed!

Signed-off-by: SindreKjelsrud <sindre@kjelsrud.dev>
This commit is contained in:
SindreKjelsrud 2025-10-12 09:19:44 +02:00
parent 306737d73d
commit a3e8fe8ab8
Signed by: sidski
GPG key ID: D2BBDF3EDE6BA9A6
6 changed files with 69 additions and 3 deletions

7
.sops.yaml Normal file
View file

@ -0,0 +1,7 @@
keys:
- &primary age1ft5dg4lna25ceg40mvvq5sa53zm7rhqdsnsxxe7qyaa34u2gsp8qkgere4
creation_rules:
- path_regex: shared/secrets/secrets.yaml$
key_groups:
- age:
- *primary