Hybrid cloud cluster monorepo with Ansible, K8s, NixOS, and Terraform. cute.haus
ansible terraform nix k8s
1

Configure Feed

Select the types of activity you want to include in your feed.

nix: flatten module hierarchies

Aly Raffauf (Jun 10, 2026, 3:04 PM EDT) 3ce77a53 7dc9758d

-492
nix/modules/hardware/amd/cpu/default.nix nix/modules/hardware/amd/cpu.nix
nix/modules/hardware/amd/gpu/default.nix nix/modules/hardware/amd/gpu.nix
nix/modules/hardware/beelink/mini/s12pro/default.nix nix/modules/hardware/beelink/mini/s12pro.nix
nix/modules/hardware/framework/13/default.nix nix/modules/hardware/framework/13/laptop13.nix
nix/modules/hardware/framework/13/intel-11th/default.nix nix/modules/hardware/framework/13/intel-11th.nix
-319
nix/modules/hardware/framework/13/intel-11th/easyeffects.json
··· 1 - { 2 - "output": { 3 - "bass_enhancer#0": { 4 - "amount": 4.0, 5 - "blend": 0.0, 6 - "bypass": true, 7 - "floor": 10.0, 8 - "floor-active": true, 9 - "harmonics": 10.0, 10 - "input-gain": 0.0, 11 - "output-gain": 0.0, 12 - "scope": 200.0 13 - }, 14 - "blocklist": [], 15 - "convolver#0": { 16 - "autogain": true, 17 - "bypass": false, 18 - "input-gain": 0.0, 19 - "ir-width": 100, 20 - "kernel-path": "%CFG%/irs/IR_22ms_27dB_5t_15s_0c.irs", 21 - "output-gain": 6.0 22 - }, 23 - "filter#0": { 24 - "balance": 0.0, 25 - "bypass": false, 26 - "equal-mode": "IIR", 27 - "frequency": 60.0, 28 - "gain": 0.0, 29 - "input-gain": 0.0, 30 - "mode": "RLC (BT)", 31 - "output-gain": 0.0, 32 - "quality": 16.0, 33 - "slope": "x16", 34 - "type": "High-pass", 35 - "width": 1.0 36 - }, 37 - "limiter#0": { 38 - "alr": false, 39 - "alr-attack": 5.0, 40 - "alr-knee": 0.0, 41 - "alr-release": 50.0, 42 - "attack": 2.0, 43 - "bypass": false, 44 - "dithering": "None", 45 - "external-sidechain": false, 46 - "gain-boost": true, 47 - "input-gain": 0.0, 48 - "lookahead": 4.0, 49 - "mode": "Herm Thin", 50 - "output-gain": 0.0, 51 - "oversampling": "Half x4(2L)", 52 - "release": 8.0, 53 - "sidechain-preamp": 0.0, 54 - "stereo-link": 100.0, 55 - "threshold": 0.0 56 - }, 57 - "multiband_compressor#0": { 58 - "band0": { 59 - "attack-threshold": -16.0, 60 - "attack-time": 150.0, 61 - "boost-amount": 6.0, 62 - "boost-threshold": -72.0, 63 - "compression-mode": "Downward", 64 - "compressor-enable": true, 65 - "external-sidechain": false, 66 - "knee": -12.0, 67 - "makeup": 0.0, 68 - "mute": false, 69 - "ratio": 5.0, 70 - "release-threshold": -100.0, 71 - "release-time": 300.0, 72 - "sidechain-custom-highcut-filter": false, 73 - "sidechain-custom-lowcut-filter": false, 74 - "sidechain-highcut-frequency": 500.0, 75 - "sidechain-lookahead": 0.0, 76 - "sidechain-lowcut-frequency": 10.0, 77 - "sidechain-mode": "RMS", 78 - "sidechain-preamp": 0.0, 79 - "sidechain-reactivity": 10.0, 80 - "sidechain-source": "Middle", 81 - "solo": false, 82 - "stereo-split-source": "Left/Right" 83 - }, 84 - "band1": { 85 - "attack-threshold": -24.0, 86 - "attack-time": 150.0, 87 - "boost-amount": 6.0, 88 - "boost-threshold": -72.0, 89 - "compression-mode": "Downward", 90 - "compressor-enable": true, 91 - "enable-band": true, 92 - "external-sidechain": false, 93 - "knee": -9.0, 94 - "makeup": 5.0, 95 - "mute": false, 96 - "ratio": 3.0, 97 - "release-threshold": -100.0, 98 - "release-time": 200.0, 99 - "sidechain-custom-highcut-filter": false, 100 - "sidechain-custom-lowcut-filter": false, 101 - "sidechain-highcut-frequency": 1000.0, 102 - "sidechain-lookahead": 0.0, 103 - "sidechain-lowcut-frequency": 500.0, 104 - "sidechain-mode": "RMS", 105 - "sidechain-preamp": 0.0, 106 - "sidechain-reactivity": 10.0, 107 - "sidechain-source": "Middle", 108 - "solo": false, 109 - "split-frequency": 250.0, 110 - "stereo-split-source": "Left/Right" 111 - }, 112 - "band2": { 113 - "attack-threshold": -24.0, 114 - "attack-time": 100.0, 115 - "boost-amount": 6.0, 116 - "boost-threshold": -72.0, 117 - "compression-mode": "Downward", 118 - "compressor-enable": true, 119 - "enable-band": true, 120 - "external-sidechain": false, 121 - "knee": -9.0, 122 - "makeup": 5.0, 123 - "mute": false, 124 - "ratio": 3.0, 125 - "release-threshold": -100.0, 126 - "release-time": 150.0, 127 - "sidechain-custom-highcut-filter": false, 128 - "sidechain-custom-lowcut-filter": false, 129 - "sidechain-highcut-frequency": 2000.0, 130 - "sidechain-lookahead": 0.0, 131 - "sidechain-lowcut-frequency": 1000.0, 132 - "sidechain-mode": "RMS", 133 - "sidechain-preamp": 0.0, 134 - "sidechain-reactivity": 10.0, 135 - "sidechain-source": "Middle", 136 - "solo": false, 137 - "split-frequency": 1250.0, 138 - "stereo-split-source": "Left/Right" 139 - }, 140 - "band3": { 141 - "attack-threshold": -24.0, 142 - "attack-time": 80.0, 143 - "boost-amount": 6.0, 144 - "boost-threshold": -72.0, 145 - "compression-mode": "Downward", 146 - "compressor-enable": true, 147 - "enable-band": true, 148 - "external-sidechain": false, 149 - "knee": -9.0, 150 - "makeup": 5.0, 151 - "mute": false, 152 - "ratio": 4.0, 153 - "release-threshold": -100.0, 154 - "release-time": 120.0, 155 - "sidechain-custom-highcut-filter": false, 156 - "sidechain-custom-lowcut-filter": false, 157 - "sidechain-highcut-frequency": 4000.0, 158 - "sidechain-lookahead": 0.0, 159 - "sidechain-lowcut-frequency": 2000.0, 160 - "sidechain-mode": "RMS", 161 - "sidechain-preamp": 0.0, 162 - "sidechain-reactivity": 10.0, 163 - "sidechain-source": "Middle", 164 - "solo": false, 165 - "split-frequency": 5000.0, 166 - "stereo-split-source": "Left/Right" 167 - }, 168 - "band4": { 169 - "attack-threshold": -12.0, 170 - "attack-time": 20.0, 171 - "boost-amount": 6.0, 172 - "boost-threshold": -72.0, 173 - "compression-mode": "Downward", 174 - "compressor-enable": true, 175 - "enable-band": false, 176 - "external-sidechain": false, 177 - "knee": -6.0, 178 - "makeup": 0.0, 179 - "mute": false, 180 - "ratio": 1.0, 181 - "release-threshold": -100.0, 182 - "release-time": 100.0, 183 - "sidechain-custom-highcut-filter": false, 184 - "sidechain-custom-lowcut-filter": false, 185 - "sidechain-highcut-frequency": 8000.0, 186 - "sidechain-lookahead": 0.0, 187 - "sidechain-lowcut-frequency": 4000.0, 188 - "sidechain-mode": "RMS", 189 - "sidechain-preamp": 0.0, 190 - "sidechain-reactivity": 10.0, 191 - "sidechain-source": "Middle", 192 - "solo": false, 193 - "split-frequency": 4000.0, 194 - "stereo-split-source": "Left/Right" 195 - }, 196 - "band5": { 197 - "attack-threshold": -12.0, 198 - "attack-time": 20.0, 199 - "boost-amount": 6.0, 200 - "boost-threshold": -72.0, 201 - "compression-mode": "Downward", 202 - "compressor-enable": true, 203 - "enable-band": false, 204 - "external-sidechain": false, 205 - "knee": -6.0, 206 - "makeup": 0.0, 207 - "mute": false, 208 - "ratio": 1.0, 209 - "release-threshold": -100.0, 210 - "release-time": 100.0, 211 - "sidechain-custom-highcut-filter": false, 212 - "sidechain-custom-lowcut-filter": false, 213 - "sidechain-highcut-frequency": 12000.0, 214 - "sidechain-lookahead": 0.0, 215 - "sidechain-lowcut-frequency": 8000.0, 216 - "sidechain-mode": "RMS", 217 - "sidechain-preamp": 0.0, 218 - "sidechain-reactivity": 10.0, 219 - "sidechain-source": "Middle", 220 - "solo": false, 221 - "split-frequency": 8000.0, 222 - "stereo-split-source": "Left/Right" 223 - }, 224 - "band6": { 225 - "attack-threshold": -12.0, 226 - "attack-time": 20.0, 227 - "boost-amount": 6.0, 228 - "boost-threshold": -72.0, 229 - "compression-mode": "Downward", 230 - "compressor-enable": true, 231 - "enable-band": false, 232 - "external-sidechain": false, 233 - "knee": -6.0, 234 - "makeup": 0.0, 235 - "mute": false, 236 - "ratio": 1.0, 237 - "release-threshold": -100.0, 238 - "release-time": 100.0, 239 - "sidechain-custom-highcut-filter": false, 240 - "sidechain-custom-lowcut-filter": false, 241 - "sidechain-highcut-frequency": 16000.0, 242 - "sidechain-lookahead": 0.0, 243 - "sidechain-lowcut-frequency": 12000.0, 244 - "sidechain-mode": "RMS", 245 - "sidechain-preamp": 0.0, 246 - "sidechain-reactivity": 10.0, 247 - "sidechain-source": "Middle", 248 - "solo": false, 249 - "split-frequency": 12000.0, 250 - "stereo-split-source": "Left/Right" 251 - }, 252 - "band7": { 253 - "attack-threshold": -12.0, 254 - "attack-time": 20.0, 255 - "boost-amount": 6.0, 256 - "boost-threshold": -72.0, 257 - "compression-mode": "Downward", 258 - "compressor-enable": true, 259 - "enable-band": false, 260 - "external-sidechain": false, 261 - "knee": -6.0, 262 - "makeup": 0.0, 263 - "mute": false, 264 - "ratio": 1.0, 265 - "release-threshold": -100.0, 266 - "release-time": 100.0, 267 - "sidechain-custom-highcut-filter": false, 268 - "sidechain-custom-lowcut-filter": false, 269 - "sidechain-highcut-frequency": 20000.0, 270 - "sidechain-lookahead": 0.0, 271 - "sidechain-lowcut-frequency": 16000.0, 272 - "sidechain-mode": "RMS", 273 - "sidechain-preamp": 0.0, 274 - "sidechain-reactivity": 10.0, 275 - "sidechain-source": "Middle", 276 - "solo": false, 277 - "split-frequency": 16000.0, 278 - "stereo-split-source": "Left/Right" 279 - }, 280 - "bypass": false, 281 - "compressor-mode": "Modern", 282 - "dry": -100.0, 283 - "envelope-boost": "None", 284 - "input-gain": 0.0, 285 - "output-gain": 0.0, 286 - "stereo-split": false, 287 - "wet": 0.0 288 - }, 289 - "plugins_order": [ 290 - "filter#0", 291 - "bass_enhancer#0", 292 - "convolver#0", 293 - "multiband_compressor#0", 294 - "stereo_tools#0", 295 - "limiter#0" 296 - ], 297 - "stereo_tools#0": { 298 - "balance-in": 0.0, 299 - "balance-out": 0.0, 300 - "bypass": false, 301 - "delay": 0.0, 302 - "input-gain": 0.0, 303 - "middle-level": 0.0, 304 - "middle-panorama": 0.0, 305 - "mode": "LR > LR (Stereo Default)", 306 - "mutel": false, 307 - "muter": false, 308 - "output-gain": 0.0, 309 - "phasel": false, 310 - "phaser": false, 311 - "sc-level": 1.0, 312 - "side-balance": 0.0, 313 - "side-level": 0.0, 314 - "softclip": false, 315 - "stereo-base": 0.30000000000000004, 316 - "stereo-phase": 0.0 317 - } 318 - } 319 - }
nix/modules/hardware/intel/cpu/default.nix nix/modules/hardware/intel/cpu.nix
nix/modules/hardware/intel/gpu/default.nix nix/modules/hardware/intel/gpu.nix
nix/modules/hardware/lenovo/thinkcentre/m700/default.nix nix/modules/hardware/lenovo/thinkcentre/m700.nix
nix/modules/hardware/nvidia/gpu/default.nix nix/modules/hardware/nvidia/gpu.nix
nix/modules/hardware/profiles/base/default.nix nix/modules/hardware/profiles/base.nix
nix/modules/hardware/profiles/laptop/default.nix nix/modules/hardware/profiles/laptop.nix
-11
nix/modules/nixos/base/README.md
··· 1 - # Base Profile 2 - 3 - Essential NixOS system configuration enabled on most servers. 4 - 5 - ## Usage 6 - 7 - ```nix 8 - { 9 - myNixOS.profiles.base.enable = true; 10 - } 11 - ```
nix/modules/nixos/base/default.nix nix/modules/nixos/base.nix
nix/modules/nixos/base/known-hosts.nix nix/modules/nixos/known-hosts.nix
nix/modules/nixos/default.nix nix/modules/nixos/flake-url.nix
-33
nix/modules/nixos/profiles/arr/README.md
··· 1 - # \*arr Profile 2 - 3 - Complete \*arr stack for automated media management and downloading. 4 - 5 - ## Usage 6 - 7 - ```nix 8 - { 9 - myNixOS.profiles.arr = { 10 - enable = true; 11 - dataDir = "/var/lib"; # optional, default location 12 - }; 13 - } 14 - ``` 15 - 16 - ## What It Enables 17 - 18 - - **Sonarr** (port 8989): TV show management and downloading. 19 - - **Radarr** (port 7878): Movie management and downloading. 20 - - **Lidarr** (port 8686): Music management and downloading. 21 - - **Prowlarr** (port 9696): Indexer management for all \*arr services. 22 - - **Bazarr** (port 6767): Subtitle management and downloading. 23 - 24 - ## Features 25 - 26 - - **Unified data directory**: All services store data under configurable `dataDir`. 27 - - **Firewall integration**: Automatically opens required ports for web interfaces. 28 - - **Proper permissions**: Sets up correct directory ownership for each service. 29 - - **Directory management**: Automatically creates required data directories. 30 - 31 - ## Default Ports 32 - 33 - All services have their standard ports opened in the firewall for web UI access.
nix/modules/nixos/profiles/arr/default.nix nix/modules/nixos/profiles/arr.nix
-27
nix/modules/nixos/profiles/autoUpgrade/README.md
··· 1 - # Auto Upgrade Profile 2 - 3 - Automatic system updates from the flake repository. 4 - 5 - ## Usage 6 - 7 - ```nix 8 - { 9 - myNixOS.profiles.autoUpgrade = { 10 - enable = true; 11 - operation = "boot"; # or "switch" or "test" 12 - }; 13 - } 14 - ``` 15 - 16 - ## What It Does 17 - 18 - - **Scheduled updates**: Daily updates at 2:00 AM with up to 120 minutes random delay. 19 - - **Flake integration**: Updates from `github:alyraffauf/nixcfg` (or configured `FLAKE` variable). 20 - - **Reboot window**: Automatic reboots only between 2:00-6:00 AM. 21 - - **Network check**: Tests connectivity before attempting updates. 22 - - **Retry logic**: Retries failed updates (useful for laptops that wake without network). 23 - - **Persistent timers**: Updates survive system reboots and sleep cycles and begin when possible. 24 - 25 - ## Important Notes 26 - 27 - Enables automatic reboots by default during the 2:00-6:00 AM window.
nix/modules/nixos/profiles/autoUpgrade/default.nix nix/modules/nixos/profiles/autoUpgrade.nix
nix/modules/nixos/profiles/b2-mounts/default.nix nix/modules/nixos/profiles/b2-mounts.nix
-36
nix/modules/nixos/profiles/backups/README.md
··· 1 - # Backups Profile 2 - 3 - Automatic backup configuration for enabled services using Restic and Backblaze B2. 4 - 5 - ## Usage 6 - 7 - ```nix 8 - { 9 - myNixOS.profiles.backups.enable = true; 10 - } 11 - ``` 12 - 13 - ## What It Does 14 - 15 - - **Automatic detection**: Only backs up services that are actually enabled on the system. 16 - - **Service management**: Stops services before backup, restarts them after completion. 17 - - **Backblaze B2 storage**: All backups stored in `aly-backups` bucket with hostname separation. 18 - - **Per-service repositories**: Each service gets its own restic repository for isolation. 19 - - **Smart exclusions**: Excludes problematic paths (e.g., Plex database locks). 20 - 21 - ## Supported Services 22 - 23 - - **Media**: Plex, Jellyfin, Audiobookshelf, Immich 24 - - **\*arr stack**: Sonarr, Radarr, Lidarr, Prowlarr, Readarr, Bazarr 25 - - **Development**: Forgejo (when not using external storage), PostgreSQL 26 - - **Utilities**: qBittorrent, Uptime Kuma, Tautulli, Ombi 27 - - **Smart home**: Homebridge 28 - - **Security**: Vaultwarden 29 - - **Other**: CouchDB, PDS (Bluesky) 30 - 31 - ## How It Works 32 - 33 - 1. **Conditional activation**: Backups only created for services enabled in your configuration. 34 - 2. **Safe stopping**: Services stopped gracefully before backup to ensure data consistency. 35 - 3. **Repository structure**: `rclone:b2:aly-backups/{hostname}/{service}` per service. 36 - 4. **Restic integration**: Uses `mySnippets.restic` configuration for default scheduling and retention settings.
nix/modules/nixos/profiles/backups/default.nix nix/modules/nixos/profiles/backups.nix
-41
nix/modules/nixos/profiles/btrfs/README.md
··· 1 - # Btrfs Profile 2 - 3 - Btrfs filesystem management with snapshots, scrubbing, and optional deduplication. 4 - 5 - ## Usage 6 - 7 - ```nix 8 - { 9 - myNixOS.profiles.btrfs = { 10 - enable = true; 11 - deduplicate = false; # optional, enables beesd 12 - }; 13 - } 14 - ``` 15 - 16 - ## What It Does 17 - 18 - - **Filesystem support**: Enables btrfs kernel support. 19 - - **Auto-scrubbing**: Periodic data integrity checks on all btrfs filesystems. 20 - - **Snapshots**: Automatic timeline snapshots of `/home` with snapper (if btrfs subvolume). 21 - - **Smart filtering**: Excludes cache, config, and temporary files from snapshots. 22 - - **Deduplication**: Optional beesd for block-level deduplication (when enabled). 23 - - **GUI tools**: Includes snapper-gui on desktop systems. 24 - 25 - ## Snapshot Configuration 26 - 27 - - **Timeline snapshots**: Automatic creation and cleanup enabled. 28 - - **User access**: Users group can manage their own snapshots. 29 - - **Filtered paths**: Excludes `.cache`, `.config`, `.local`, browser profiles, etc. 30 - 31 - ## Deduplication (Optional) 32 - 33 - When `deduplicate = true`: 34 - 35 - - **beesd**: Runs with 2GB hash tables and conservative load targets. 36 - - **Performance tuning**: Limited to 50% thread factor and 1.0 load average. 37 - - **Auto-discovery**: Automatically configures all detected btrfs devices. 38 - 39 - ## Important Notes 40 - 41 - Only activates features for detected btrfs filesystems. Snapper only configured if `/home` is a btrfs subvolume.
nix/modules/nixos/profiles/btrfs/default.nix nix/modules/nixos/profiles/btrfs.nix
nix/modules/nixos/profiles/data-share/default.nix nix/modules/nixos/profiles/data-share.nix
nix/modules/nixos/profiles/iso/default.nix nix/modules/nixos/profiles/iso.nix
nix/modules/nixos/profiles/k3s/default.nix nix/modules/nixos/profiles/k3s.nix
nix/modules/nixos/profiles/media-share/default.nix nix/modules/nixos/profiles/media-share.nix
nix/modules/nixos/profiles/performance/default.nix nix/modules/nixos/profiles/performance.nix
nix/modules/nixos/profiles/swap/default.nix nix/modules/nixos/profiles/swap.nix
nix/modules/nixos/profiles/vps/default.nix nix/modules/nixos/profiles/vps.nix
nix/modules/nixos/profiles/zram/default.nix nix/modules/nixos/profiles/zram.nix
nix/modules/nixos/programs/lanzaboote/README.md nix/modules/nixos/programs/lanzaboote.md
nix/modules/nixos/programs/lanzaboote/default.nix nix/modules/nixos/programs/lanzaboote.nix
nix/modules/nixos/programs/nix/default.nix nix/modules/nixos/programs/nix.nix
nix/modules/nixos/programs/njust/default.nix nix/modules/nixos/programs/njust.nix
nix/modules/nixos/programs/podman/default.nix nix/modules/nixos/programs/podman.nix
nix/modules/nixos/programs/systemd-boot/default.nix nix/modules/nixos/programs/systemd-boot.nix
nix/modules/nixos/programs/virt-manager/default.nix nix/modules/nixos/programs/virt-manager.nix
nix/modules/nixos/services/alloy/default.nix nix/modules/nixos/services/alloy.nix
nix/modules/nixos/services/atbbs/default.nix nix/modules/nixos/services/atbbs.nix
nix/modules/nixos/services/cachefilesd/default.nix nix/modules/nixos/services/cachefilesd.nix
nix/modules/nixos/services/caddy/default.nix nix/modules/nixos/services/caddy.nix
nix/modules/nixos/services/fail2ban/default.nix nix/modules/nixos/services/fail2ban.nix
nix/modules/nixos/services/forgejo-runner/default.nix nix/modules/nixos/services/forgejo-runner.nix
nix/modules/nixos/services/plex/default.nix nix/modules/nixos/services/plex.nix
nix/modules/nixos/services/prometheusNode/default.nix nix/modules/nixos/services/prometheusNode.nix
-25
nix/modules/nixos/services/qbittorrent/README.md
··· 1 - # qBittorrent Module 2 - 3 - NixOS module for qBittorrent's headless (nox) version. 4 - 5 - _Adapted graciously from [WiredMic's nix-config](https://github.com/WiredMic/nix-config/commit/d9268ce5190a2041ef66b492900eed278d1508e2)_ 6 - 7 - ## Usage 8 - 9 - ```nix 10 - { 11 - myNixOS.services.qbittorrent = { 12 - enable = true; 13 - port = 8080; 14 - dataDir = "/var/lib/qbittorrent"; 15 - openFirewall = false; 16 - }; 17 - } 18 - ``` 19 - 20 - ## Options 21 - 22 - - `port`: Web UI port (default: 8080) 23 - - `dataDir`: Data storage directory (default: `/var/lib/qbittorrent`) 24 - - `user`/`group`: Service user/group (default: `qbittorrent`) 25 - - `openFirewall`: Open port in firewall (default: false)
nix/modules/nixos/services/qbittorrent/default.nix nix/modules/nixos/services/qbittorrent.nix
nix/modules/nixos/services/syncthing/default.nix nix/modules/nixos/services/syncthing.nix
nix/modules/nixos/services/tailscale/default.nix nix/modules/nixos/services/tailscale.nix