Imported from KristopherKubicki/norman (
AGENTS.md). Install upstream withnpx skills add KristopherKubicki/norman. Copyright stays with the author.
Repo Guidelines
- Run
make formatfor Black. - Verify
make lintandmake testsucceed. - Run
npm testif anything infrontend/changes. - Mention all tests in the PR summary.
Personal Bot Secret Handling
- This section is for
personal/homeandshared-infraNorman bots only. Do not treat it as guidance forworkorOpenBrandbots. - Prefer Norman Keys as the secret access path. Use a brokered lookup such as
NORMAN_SECRET_CMDorNORMAN_KEYS_URLplus short-lived approval/lease behavior where available. - Use logical secret names like
networking/firewall,networking/netgear,networking/dot10,networking/camera, andnetworking/synology. - Do not add new direct reads of repo-local plaintext secret dotfiles such as
.firewall,.netgear,.dot10,.camera,.synology,.modem,.sudo_pass, or.prox_root. - If Norman Keys is unavailable during migration, the temporary local fallback is the machine-local encrypted
credvault, not new plaintext files.