feat(security): implement metadata redaction and sops-nix migration
Some checks are pending
Build / Determining hosts to build (push) Waiting to run
Build / build (Development) (push) Blocked by required conditions
Build / build (Testing) (push) Blocked by required conditions

Migrated authorized SSH keys and personal metadata (emails, tokens) to sops-nix to prevent infrastructure fingerprinting. Introduced centralized secrets module with placeholder fallbacks.
This commit is contained in:
Tibo De Peuter 2026-03-17 18:25:37 +01:00
parent 8fb651fd60
commit 3e37c44157
Signed by: tdpeuter
GPG key ID: 38297DE43F75FFE2
11 changed files with 64 additions and 20 deletions

View file

@ -25,7 +25,7 @@
...
}:
let
system = "x86_64-linux";
system = utils.lib.system.x86_64-linux;
lib = nixpkgs.lib;
in
utils.lib.mkFlake {