Merge nucleic/eager-ancient-heron-p5em into dev
This commit is contained in:
@@ -0,0 +1,26 @@
|
||||
# narOS agent-tier environment (NAROS.md §6.3), sourced by nash -l for every
|
||||
# containerized exec (ContainerEngine ignores OCI image env, so this file — not the
|
||||
# Dockerfile ENV — is what agent shells actually see).
|
||||
#
|
||||
# Warm shared caches at fixed world-readable paths. Pre-seeded at image build; the
|
||||
# per-session copy-on-write rootfs clone makes them private per container.
|
||||
export npm_config_cache=/opt/cache/npm
|
||||
export PIP_CACHE_DIR=/opt/cache/pip
|
||||
export UV_CACHE_DIR=/opt/cache/uv
|
||||
export CARGO_HOME=/opt/cache/cargo
|
||||
export RUSTUP_HOME=/opt/rustup
|
||||
export GOMODCACHE=/opt/cache/gomod
|
||||
export PLAYWRIGHT_BROWSERS_PATH=/opt/playwright-browsers
|
||||
|
||||
# mise (§6.3): shims-on-PATH activation — works for non-interactive `nash -lc` scripts,
|
||||
# where the interactive `mise activate` hook would not run.
|
||||
export MISE_DATA_DIR=/opt/mise
|
||||
|
||||
# Baked toolchains (§6.2): cargo/rustup bins, Go, and the mise shims ahead of them all
|
||||
# so `mise use` versions win per-project. Idempotent (guarded) — profile.d can be
|
||||
# sourced more than once per session.
|
||||
case ":$PATH:" in
|
||||
*:/opt/mise/shims:*) ;;
|
||||
*) PATH="/opt/mise/shims:/opt/cache/cargo/bin:/usr/local/go/bin:$PATH" ;;
|
||||
esac
|
||||
export PATH
|
||||
@@ -0,0 +1,3 @@
|
||||
# narOS agent user (NAROS.md §6.1): frictionless escalation for `apt install` etc.,
|
||||
# mirroring the Linux VM guest's drop-in. The container is the isolation boundary.
|
||||
agent ALL=(ALL) NOPASSWD:ALL
|
||||
Reference in New Issue
Block a user