diff --git a/meta/gitea-repository-operations.md b/meta/gitea-repository-operations.md index 47df21f..7a97efe 100644 --- a/meta/gitea-repository-operations.md +++ b/meta/gitea-repository-operations.md @@ -1,6 +1,6 @@ # Gitea Repository Operations -_Last verified: 2026-07-20 18:30 UTC_ +_Last verified: 2026-08-02 18:06 UTC_ ## Status @@ -18,12 +18,12 @@ The existing `gitea-docusaurus-projects` skill remains the specialist extension |---|---|---| | Web UI | `https://gitea.lego-cloud.eu` | ✅ | | REST API | `https://gitea.lego-cloud.eu/api/v1` | ✅ | -| API credential | `/opt/data/.env` → `GITHUB_TOKEN` | ✅ | +| API credential | Bitwarden Secrets Manager → `HL_V1_GITEA_ACCESS_TOKEN` | ✅; gateway restart required after key changes | | SSH endpoint | `ssh://git@gitea.lego-cloud.eu:30009/ORG/REPO.git` | ✅ | | SSH identity | `/opt/data/home/.ssh/id_ed25519` | ✅ | | Git identity | `Jarvis Jr Hermes ` | ✅ | -Never publish the API token, embed it in a Git remote, or commit it to a repository. +Never use `GITHUB_TOKEN` for `gitea.lego-cloud.eu`. Obtain `HL_V1_GITEA_ACCESS_TOKEN` from Bitwarden Secrets Manager; do not copy it into `/opt/data/.env`. Never publish the API token, embed it in a Git remote, or commit it to a repository. Hermes exports Bitwarden keys exactly as named, and a gateway restart is required to import changed keys into the process environment. ## Standard workflow diff --git a/meta/sync-log.md b/meta/sync-log.md index 001e43f..c8c9fc5 100644 --- a/meta/sync-log.md +++ b/meta/sync-log.md @@ -32,7 +32,7 @@ - `#jarvis-jr-v1-hermes-setup` → `1533516194106048725` (2026-08-02 16:45 UTC) **NEW** - `#jarvis-jr-v1-hermes` → `1531933519285063771` (2026-07-29 07:56 UTC) - `#skic-v1-playground` → `1527409474833350687` (2026-07-16 20:19 UTC) -- **Files updated:** `channels/1526844602303123466.md`, `infrastructure/gitea-repository-operations.md`, `MEMORY.md`, and `sync-log.md`. +- **Files updated:** `channels/1526844602303123466.md`, `infrastructure/gitea-repository-operations.md`, `MEMORY.md`, `sync-log.md`, and `/opt/data/scripts/wiki-gitea-sync.sh` (added the Gitea operations runbook to the remote mirror). - **Inventory:** unchanged; the authoritative 26-channel list remains synchronized with `MONITORED_CHANNELS` and `discord/README.md`; all 26 channel wiki files are present. - **Context refresh and Gitea push:** executed after these edits; real results reported in the delivered run summary.