hyperhive/docs
Repository files (latest commit first)
Filename Latest commit message Latest commit date
atlas 5336be7813 hivectl: wireguard mesh setup verbs (#1756)
One-time-setup convenience for the inter-hive WireGuard mesh
(services.hyperhive.swarm) so nobody has to remember the wg dance:

- hivectl wg init [--address X] — generate (if absent) the hive's
  private key at /etc/wireguard/hive.key (0400, never clobbered),
  derive + print the public key, and print the swarm.wireguard nix
  snippet to enable the mesh.
- hivectl wg peer <domain> --pubkey --address [--endpoint] — print the
  swarm.peers.<domain> nix snippet to add a remote hive.
- hivectl wg status — wrap wg show wg-hive.

Hybrid model per the design: the verb owns the imperative state (the
key file), the operator pastes the printed nix into host config (kept
in git) — nothing mutates declarative config behind their back.
hivectl-only (root host ops, like the gateway htpasswd verbs); no
priv/wire/c0re changes.

flake: wrap hivectl with wireguard-tools on PATH so wg resolves even
before the mesh config (which would otherwise pull it in) exists —
wg init is the first setup step. Add clippy.toml doc-valid-idents for
the WireGuard proper noun. Regenerate hivectl-cli.md.
2026-06-19 14:37:50 +02:00
..
tools hivectl: wireguard mesh setup verbs (#1756) 2026-06-19 14:37:50 +02:00
web-ui docs(dashboard): graceful-stop CLI path is live too (#1790) 2026-06-19 12:57:31 +02:00
agent-hierarchy.md refactor: remove hyperhive.role option — there is only one role: agent 2026-06-04 14:31:44 +02:00
approvals.md docs(#1014): update stale root→ruth references in conventions, approvals, agent-hierarchy 2026-06-02 22:48:10 +02:00
boundary.md docs: move privsep socket-activation + child-state rw rationale out of code comments 2026-06-08 21:58:12 +02:00
ci.md docs(ci): document jobTimeout, fix forge.ci option path 2026-06-15 11:37:50 +02:00
conventions.md docs: document the build + local-check workflow in conventions 2026-06-19 12:23:01 +02:00
coordinator.md hive-c0re: graceful agent stop — quiesce harness, flush state, then stop 2026-06-19 11:50:59 +02:00
forge.md fix(#1637): don't label later activity (bodiless reviews) as new PR 2026-06-13 12:20:21 +02:00
gateway.md nix(gateway): self-signed TLS as the implicit default, deprecate the toggle 2026-06-17 21:14:05 +02:00
gotchas.md docs: note that linking workspace binaries locally needs nix develop (libsqlite3) 2026-06-05 21:30:57 +02:00
knowledge.md docs(knowledge): document the hive-forge AGit no-fork contribution flow 2026-06-05 20:54:25 +02:00
matrix.md feat(#551): gate server-side e2ee behind opt-in matrix.allowEncryption (default off) 2026-06-10 19:12:36 +02:00
network.md docs(network): document container-side route + resolver wiring for isolation 2026-06-10 21:49:01 +02:00
persistence.md hive-c0re: back agent state dirs with btrfs subvolumes 2026-06-19 13:46:39 +02:00
security.md fix: update PrivRequest table to match actual hive-sh4re::priv_proto variants 2026-06-05 18:40:44 +02:00
swarm.md docs: clarify certFingerprint does not govern matrix federation tls 2026-06-06 00:21:52 +02:00
terminal-rendering.md docs(web-ui): document turn start/end times + duration on the agent terminal 2026-06-10 15:38:04 +02:00
turn-loop.md docs: drop stale two-loop/two-binary framings (single hive serve loop) 2026-06-10 20:01:52 +02:00
web-ui.md docs(web-ui): sync dashboard docs after the SYST3M → C0R3 page move 2026-06-10 21:49:12 +02:00