Roadmap

Limitations & Development Roadmap


Limitations

  • No CI / Cachix – All builds happen on each host; slow and brittle.
  • No Automated Backups – Snapshots are manual and local; lose the disk, lose the data.
  • Monitoring Absent – No Prometheus, Grafana, or alerting modules in the repo.
  • Secret Management – Nothing like sops-nix; secrets appear to be baked or entered manually.
  • Air-Gap / Fleet Management – Not implemented; every install is snowflake-ish.

Roadmap

P1Wire CI + binary cache (GitHub Actions → Cachix)Need signing key, budget.
P2Automatic hourly Btrfs snapshots + weekly btrfs-send off-siteStorage target & script.
P3Replace manual switch.sh with systemd-timer + health-checkDecide schedule.
P4Integrate sops-nix for secretsYubiKey or HSM rollout.
implement secrets for head/tail scale
P5Basic Prometheus node-exporter + Grafana dashboardsVM or SaaS endpoint.
Scroll to Top