with one click
nixos-config
nixos-config contains 35 collected skills from greenheadHQ, with repository-level occupation coverage and site-owned skill detail pages.
Skills in this repository
Manage encrypted secrets with agenix (.age) and 1Password (op CLI, Service Account token, SSH/Automation vault). Covers .age re-encryption, decryption failures, github-pat ๋ฌด์ธ gh ์ธ์ฆ, SA token 90์ผ rotation, SSH device key. Trigger: '์ํฌ๋ฆฟ', '์ํธํ', '๋ณตํธํ', 'agenix', 'secrets.nix', 'age key', '.age', 'ํ ํฐ ์ถ๊ฐ', 're-encrypt', '/run/agenix', '1Password', '1password', 'op CLI', 'op_get', 'opnix', 'service account token', 'SA token', 'Automation vault', 'SSH vault', 'github-pat', 'gh ๋ฌด์ธ ์ธ์ฆ', '90์ผ rotation', 'op read', 'biometric unlock', 'SSH device key', 'mobile-ssh', 'Termius'.
Attach explicitly provided file evidence (screenshots, demo videos, logs) to a GitHub issue or PR with the gh-attach CLI โ content-inspection masking gate, irreversible-upload staging, fail-open ATTACH_STATUS reporting. Trigger: standalone attach requests on an existing issue/PR ('์ด ์คํฌ๋ฆฐ์ท ์ด์์ ์ฌ๋ ค์ค', 'gh attach๋ก ์ฒจ๋ถ'), or another GitHub publishing skill reaching for the evidence-attachment procedure. Format/size limits delegated to the GitHub server; Discussions unsupported. NOT for issue/PR creation or body authoring (use create-issue/create-pr).
Create a structured GitHub issue with auto-enriched labels. Trigger: '์ด์ ๋ฑ๋ก', '์ด์ ๋ง๋ค์ด', 'todo ๋ฑ๋ก', '๋ฒ๊ทธ ๋ฑ๋ก', '์ด์ ์ถ๊ฐ'. NOT for PR ๋ณธ๋ฌธ (use create-pr).
Create structured PR. Default: create new PR. Args: update (existing PR body). Trigger: 'PR ๋ง๋ค์ด์ค', 'PR ์์ฑ', 'PR ์ฌ๋ ค', 'create PR', 'PR ์ ๋ฐ์ดํธ', 'Human Test'. NOT for DA (use run-da). NOT for PR ์ฝ๋ฉํธ (use review-pr-feedback). NOT for ๋จธ์ง ํ ์ข ๊ฒฐ ์ ์ฐจ (use finish-pr).
์ฌ์ฉ์๊ฐ `/analyzing-da-sessions` ์ฌ๋์ ๋ช ๋ น์ผ๋ก ๋ช ์ ํธ์ถํ์ ๋๋ง DA ์ธ์ ๋ก๊ทธ ์ ๋ ํต๊ณ๋ฅผ ์ธก์ ํ๋ค. ์์ฐ์ด trigger ๋งค์นญ์ ์ฌ์ฉํ์ง ์๋๋ค โ ์์ฐ์ด๋ก ์ธก์ ์ ์ํ๋๋ผ๋ ์ฌ์ฉ์๊ฐ ๋ช ์ ํธ์ถํด์ผ ํ๋ค.
Run Codex CLI subprocesses for explicit codex exec requests, Claude Code or headless automation, and non-interactive code review. Use when requests mention `codex exec` or `๋น๋ํํ codex`. Use using-claude-p for Claude headless execution.
Run Devil's Advocate review on plans or code. Args: for_plan, for_pr, both, audit. Modifier: MAX, fresh, agent=<profile>, ์ฌ์ฉ์ ์ง์ model/effort/tier (key=value ๋๋ ์์ฐ์ด ์ง์ ). Trigger: 'DA', 'ํผ๋๋ฐฑ ๋ฃจํ', 'YAGNI ๋ฆฌ๋ทฐ', '์ฝ๋ ๋ฆฌ๋ทฐ ๋ฃจํ', 'run-da', 'HALLUCINATION ๊ด์ ์์ ์ฝ๋ ๊ฒ์ฆ', '์ค๊ณ ๊ฒํ ', '์ฝ๋ ํ์ง ๋ฆฌ๋ทฐ', '๊ฐ๋จํ ๋ณ๊ฒฝ DA ํ์ ์ฌ๋ถ', 'DA ํ์', 'DA ์๋ต', '์ฌ์ด๋์ดํํธ ์กฐ์ฌ', 'ํ๊ท ์กฐ์ฌ', 'ํ๊ท ๊ฐ์ฌ', '๋ณ๋ ฌ ๊ฐ์ฌ'. Also trigger when the user asks whether a simple change can skip DA; this skill owns the SKIP/LITE/FULL decision path. NOT for PR/AI review-comment HALLUCINATION classification (use review-pr-feedback). NOT for PR ์ฝ๋ฉํธ (use review-pr-feedback). NOT for ์ผ๋ฐ ์ ์์กฐ์ฌ/์ฝ๋๋ฒ ์ด์ค ์กฐ์ฌ (์คํฌ ์์ด ์ง์ ์ํ). NOT for DA session log/statistics/verdict ๋ถํฌ ์ ๋ ๋ถ์ (use analyzing-da-sessions, ์ฌ์ฉ์ ๋ช ์ ํธ์ถ ์ ์ฉ).
์ฅ๊ธฐ์์ ์ ์ง๋(ํ๋กฌํํธยท๊ณํยท์ปจํ ์คํธ)์ ์ํ (์ฝ๋๋ฒ ์ด์คยทํ์คยท์ ์ฝ) ๊ฐ๊ทน์ธ ๋ฏธ์ง(unknowns)๋ฅผ ๊ตฌํ ์ ยท์คยทํ ๋ฐ๋ณต ๋ฐ๊ฒฌํด ์ขํ๋ ์ค์ผ์คํธ๋ ์ด์ . Trigger: '์ฅ๊ธฐ์์ ์์', '๋ฏธ์ง ์ฐพ๊ธฐ', 'unknowns', 'blindspot pass', 'map-territory', '๋ฐฉ๋ฒ๋ก ์ ์ฉ', ์ ๋ํ ๊ธฐ๋ฅ/ํ๋ก์ ํธ ํฅ์คํ, ๋ฏ์ ๋๋ฉ์ธยทAPI ์ง์ , ๊ฐ์ ๋๋ฌธ์ ์คํจํ ์ฌ์๋. NOT for ์ธํฐ๋ทฐ ๋จ๋ ์คํ (use grilling). NOT for ๊ณํ/์ฝ๋ ๊ฒ์ฆ ๋ฃจํ (use run-da). NOT for PR ์์ฑ/๋จธ์ง ์ ์ฐจ ์์ฒด (use create-pr / finish-pr โ ์ด ์คํฌ์ ๊ทธ ์์ ๊ฒ์ดํธ๋ง ์ ์).
PR ๋จธ์ง ํ ์ข ๊ฒฐ ์ ์ฐจ๋ฅผ ์ํํ๋ค. ๋์ PR ํ์ธ, CI ์ํ ํ์ธ, ํด์ฆ ๊ฒ์ดํธ(finding-unknowns ๋ฐฉ๋ฒ๋ก ์ ์ฉ ์์ ), squash merge, main pull ํ ๋ก์ปฌ ์ค์ธก ๊ฒ์ฆ, PR ํ์ ์ฝ๋ฉํธ, ๊ด๋ จ ์ด์ ๋๊ธฐํ, ์ฐ์ถ๋ฌผ ์์ ์ ๊ฒ, worktree cleanup๊น์ง ๋ค๋ฃฌ๋ค. Trigger: '๋จธ์งํด์ค', 'squash merge', '๋จธ์ง ํ ์ ๋ฆฌ', 'PR ๋ง๋ฌด๋ฆฌ', 'PR ์ข ๊ฒฐ', 'finish-pr'. NOT for PR ์์ฑ (use create-pr). NOT for PR ์ฝ๋ฉํธ ์ฒ๋ฆฌ (use review-pr-feedback).
Triage PR comments (CodeRabbit, AI, human) and apply valid feedback end-to-end. ์์ง(GraphQL reviewThreads) โ ๋ถ๋ฅ(7๊ฐ ๊ธฐ๊ฐ taxonomy, stale review ํฌํจ) โ ๊ฒ์ฆ โ ๋ฐ์ โ ๋ต๊ธ(review thread reply / PR ์ผ๋ฐ ์ฝ๋ฉํธ) โ resolve โ isResolved ์ฌํ์ธ๊น์ง. Trigger: 'PR ์ฝ๋ฉํธ', 'coderabbit', '์ฝ๋๋ฆฌ๋ทฐ ๋ฐ์', '๋ฆฌ๋ทฐ ํผ๋๋ฐฑ', 'PR ํผ๋๋ฐฑ ์ฒ๋ฆฌ', 'stale review', 'review thread resolve', '๋ฆฌ๋ทฐ ์ค๋ ๋ ํด๊ฒฐ', 'multiline reply'. NOT for DA (use run-da). NOT for PR ๋ณธ๋ฌธ (use create-pr).
Configure Codex CLI settings and troubleshoot AGENTS.md/.agents/skills symlink projection. Trigger: 'Codex ์ค์ ', 'codex ์คํฌ ์ธ์', 'AGENTS.md ์ฌ๋งํฌ', '.agents/skills ์ฌ๋งํฌ', 'verify-ai-compat', 'codex ๊ถํ', 'codex ์ ๋ฐ์ดํธ', 'AI ๋๊ตฌ ํธํ', 'codex ๋ฐ์ด๋๋ฆฌ', 'approval_policy', 'sandbox_mode', 'Codex ๊ถํ ํ๋กฌํํธ'. NOT for codex exec ์คํ. Direct Codex๋ native subagent๋ฅผ ์ฐ์ ํ๋ฉฐ, Claude/headless subprocess ๊ณ์ฝ์ ์๋ ๋ฐํ์ SoT๋ฅผ ์ฐธ์กฐ.
codex exec ๊ธฐ๋ฐ ๋ณ๋ ฌ fan-out. Agent tool ๋์ ์ฌ์ฉํ์ฌ fan-in cache miss๋ฅผ ๋ฐฉ์งํ๋ค. Trigger: 'codex fan-out', 'codex ์์ด์ ํธ', 'fan-out ์คํ'. NOT for DA (use run-da). NOT for ์ฌ์ด๋์ดํํธ/ํ๊ท ๊ฐ์ฌ (use run-da audit).
Run Claude Code non-interactively with claude -p for headless automation, JSON parsing, SSH execution, or CLI flag troubleshooting. Use when requests mention `claude -p` or `๋น๋ํํ/headless claude`. Use using-codex-exec for Codex subprocesses.
Manage Claude Code Remote Control bridge (claude-rc): headless multi-instance, instance lifecycle, version drift ensure, tombstone recovery, troubleshooting. Trigger: 'claude-rc', 'remote control', '๋ฆฌ๋ชจํธ ์ปจํธ๋กค', 'bridge ์๋ฒ', '๋ชจ๋ฐ์ผ ์ธ์ ', 'claude-rc-ensure', 'claude-rc-maint', '์ธ์ tombstone', 'bridge ์ฌ์์'. NOT for Codex remote control (use configuring-codex / issuing-codex-pairing-code).
Write LLM migration guide comment on GitHub issue; with `local`, write a cwd kickoff prompt file instead. Trigger: 'LLM ์ดํ', '์ดํ ๊ฐ์ด๋', '์ธ์์ธ๊ณ', '์ธ์ ์ธ์์ธ๊ณ', 'ํฅ์คํ ํ๋กฌํํธ', '๋ณต๋ถ์ฉ ํ๋กฌํํธ', '๋ก์ปฌ ์ธ์์ธ๊ณ', 'write-handoff', 'handoff'. NOT for PR ๋ณธ๋ฌธ (use create-pr). NOT for ์ด์ ์์ฑ (use create-issue).
์ด ๋ ํฌ์ GitHub ์ด์ ๋ฐฑ๋ก๊ทธ๋ฅผ ์ ์ ํ๊ฐํ๊ณ ๋ค์ ์ฐฉ์ ํ๋ณด์ close ํ๋ณด๋ฅผ ์ ๋ณํ๋ค. priority ๋ผ๋ฒจ, YAGNI/NGMI ๋ฌธํ, ๊ด๋ จ ์ฝ๋ ์ค์ธก ๊ทผ๊ฑฐ๋ฅผ ๊ธฐ์ค์ผ๋ก stale/false-positive/over-engineering ์ฌ๋ถ๋ฅผ ํ์ ํ๋ค. Trigger: '์ด์ ์ ๋ฆฌ', '์ด์ ์ถ์ฒ', '๋ค์ ์์ ์ถ์ฒ', 'triage', '๋ฐฑ๋ก๊ทธ ํ๊ฐ', '์ด์ ์ ์ ํ๊ฐ', 'stale ์ด์', 'YAGNI ํ์ ', 'close ํ๋ณด', '์ฐฉ์ ํ๋ณด ์ถ์ฒ'. NOT for ์ด์ ๋ฑ๋ก (use create-issue). NOT for ๋จธ์ง ์งํ ๊ด๋ จ ์ด์ ๋๊ธฐํ (use finish-pr).
Sync Atuin shell history, ์ํธํ ํค ๋ณต๊ตฌ, atuin-clean-kr. Trigger: 'atuin ๋๊ธฐํ ์ค๋ฅ', 'encryption key', 'atuin-clean-kr', 'ํ๊ธ ํ์คํ ๋ฆฌ ์ญ์ ', 'atuin ์ค์ '. NOT for tmux (use managing-tmux). NOT for SSH (use managing-ssh).
Manage Hammerspoon hotkeys, launchd agents, Ghostty on macOS. Trigger: 'Hammerspoon ๋จ์ถํค', 'ํซํค ์ค์ ', 'Ghostty ์ ์ฐฝ', 'launchd agent', 'eventtap', '๋ฐ์คํฌํ ์๋ํ'.
Configure Git via Home Manager: delta, lazygit, rerere. Trigger: 'git ์ค์ ์ถฉ๋', 'delta ์ค์ ', 'lazygit', 'rerere', 'git-cleanup', 'git ๋ธ๋์น ์ ๋ฆฌ'.
Configure Neovim (LazyVim) via Nix: plugins, LSP, formatters, linters, themes, treesitter, im-select. Default editor skill โ generic '์๋ํฐ', 'ํธ์ง๊ธฐ', '์ฝ๋ ํธ์ง๊ธฐ' queries route here unless the request is explicitly about VSCode (use managing-vscode) or another editor-specific path. Trigger: 'neovim', 'LSP', 'lazy.nvim', 'treesitter', 'ํ์ ์ ํ', 'im-select', '์๋ํฐ', '์ฝ๋ ํธ์ง๊ธฐ', 'ํธ์ง๊ธฐ ์ค์ ', 'colorscheme', 'catppuccin', 'formatter', 'linter', 'extraPackages', '์๋์์ฑ', 'syntax highlighting', 'language server', '์ฝ๋ ํธ์ง'. NOT for VSCode-explicit queries (use managing-vscode).
Manage NixOS MiniPC: disko, rollback, config placement, hardware. Trigger: 'MiniPC', '๋ฏธ๋PC', 'nixos-rebuild', '์ค์ ๋ฐฐ์น', 'WoL', 'smartd', '์จ๋ ๋ชจ๋ํฐ๋ง'. NOT for nix-darwin (use managing-macos). NOT for flake (use understanding-nix).
Configure tmux: plugins (resurrect, thumbs, yank), Pane Notepad. Trigger: 'tmux ์ค์ ', 'tmux ํ๋ฌ๊ทธ์ธ', 'pane notepad', 'tmux-resurrect', 'tmux ๋จ์ถํค', 'tmux ์ธ์ ๋ณต์'. NOT for SSH (use managing-ssh). NOT for Atuin (use syncing-atuin).
Manage VSCode via Nix Home Manager: extensions, settings, keybindings, file associations. Use for VSCode-explicit queries: installing/searching extensions (open-vsx, marketplace), editing settings.json or keybindings.json, nixd LSP setup for .nix autocompletion, resolving settings conflicts after nrs, default app associations (duti) for file double-click behavior, and VSCode snippets. Generic '์๋ํฐ' / 'ํธ์ง๊ธฐ' / '์ฝ๋ ํธ์ง๊ธฐ' queries route to configuring-neovim by default (project's primary editor) โ invoke this skill only when the request explicitly references VSCode or one of the VSCode-specific keywords below. Trigger: 'VSCode', 'vscode', 'settings.json' (in VSCode context), 'keybindings.json', 'nix-ide', 'open-vsx', 'vscode-marketplace', 'VSCode ํ์ฅ', 'VSCode ํ์ฅ ํ๋ก๊ทธ๋จ', 'VSCode ์ค๋ํซ', 'VSCode duti', 'VSCode ํค๋ฐ์ธ๋ฉ'. NOT for Neovim/LazyVim (use configuring-neovim โ this is the default editor skill).
Resolve Nix fundamentals: flake, derivation, substituter, direnv. Trigger: 'Nix ๋น๋ ๋๋ฆผ', 'flake ์ธ์ ์ ๋จ', 'substituter', 'direnv', 'pre-commit hook ์คํจ'. NOT for NixOS MiniPC (use managing-minipc). NOT for nix-darwin (use managing-macos).
Configure macOS/nix-darwin: Dock, Finder, Homebrew Cask, Folder Actions. Trigger: 'darwin-rebuild', 'shottr ์ค์ ', 'Folder Actions', 'compress-video', 'upload-immich'.
Configure SSH, Tailscale VPN, mosh, sudo auth. Trigger: 'SSH ์ธ์ฆ ์คํจ', 'Tailscale', 'ssh-agent ๋ฌธ์ ', 'MagicDNS', 'mosh', 'authorized_keys ์ค์ '. NOT for tmux (use managing-tmux). NOT for Atuin (use syncing-atuin).
Share text from terminal to iPhone via Pushover push function. Trigger: 'ํ ์คํธ ๊ณต์ ', 'push ๋ช ๋ น์ด', '์์ดํฐ์ผ๋ก ๋ณด๋ด', 'Pushover๋ก ๋ณด๋ด', 'URL ๊ณต์ '.
Issue a Codex remote-control computer pairing/authentication code only when the latest user message explicitly asks to issue or share a Codex pairing code, computer connection code, authentication code, or remote-control code. Do not use for general remote-control diagnostics, setup explanation, connection troubleshooting, or UI navigation unless code issuance is explicitly requested.
Use for any Podman container operation or NixOS homeserver service infrastructure work. Covers: container commands (list, logs, restart, OOM debugging), homeserver.* mkOption system, service-lib.sh shared library, Caddy reverse proxy (HTTPS, domains), service update timers, DB backup services (immich-db-backup), port mapping, and container resource limits in constants.nix. Trigger: 'podman', '์ปจํ ์ด๋', 'container', 'OOM', 'homeserver ์ต์ ', 'service-lib', 'ํฌํธ ๋งคํ', '์๋น์ค ์ ๋ฐ์ดํธ', '์ ๋ฐ์ดํธ ํ์ด๋จธ', 'DB ๋ฐฑ์ ', 'immich-db-backup', '๋ฆฌ์์ค ์ ํ', 'Caddy', '๋ฆฌ๋ฒ์ค ํ๋ก์', 'HTTPS ์ธ์ฆ์', '๋ฒ์ ์ฒดํฌ', '์๋น์ค ์ํ', '์๋น์ค ํฌํธ'. NOT for service-specific application workflows (use hosting-copyparty, hosting-karakeep).
Manage mise runtime: Node.js, pnpm, shims. Trigger: 'mise ์ค์ ', 'pnpm not found', '.nvmrc', 'mise shims', 'mise activate', '๋ฐํ์ ๋ฒ์ ๋ถ์ผ์น'.
Set session status bar icons (Jira, Slack, Figma, Memo). Trigger: '์ํ๋ฐ ์์ด์ฝ', 'jira ๋งํฌ', 'slack ๋งํฌ', 'figma ๋งํฌ', '์์ด์ฝ ์ค์ ', '๋งํฌ ๋ณ๊ฒฝ'.
Manage Copyparty file server: status, config, troubleshooting, updates, ACL. Trigger: 'copyparty', 'copyparty-update', 'copyparty.greenhead.dev', 'ํ์ผ ์๋ฒ', 'WebDAV', 'Finder์์ ์๋ฒ', '์ ๋ก๋ ์๋น์ค'. NOT for ์ปจํ ์ด๋/Podman ์ผ๋ฐ ๊ด๋ฆฌ (use running-containers). NOT for agenix ์ํฌ๋ฆฟ ์ผ๋ฐ (use managing-secrets).
Automate browser interactions, test web pages and work with Playwright tests.
Manage Karakeep web archiver/bookmarks service on archive.greenhead.dev. Trigger: 'Karakeep', '์น ์์นด์ด๋ธ', '๋ถ๋งํฌ', '์์นด์ด๋น', 'archive.greenhead.dev', 'karakeep-update', 'Meilisearch', '์นํ ์๋ฆผ', 'AI ํ๊น ', '์์นด์ด๋ธ ๋ฐฑ์ ', '๋ถ๋งํฌ ๊ฒ์', 'SingleFile'. NOT for general ์ปจํ ์ด๋/Podman ๊ด๋ฆฌ (use running-containers).
View immich photos: containerโhost path conversion, image display. Trigger: 'immich ์ฌ์ง ๋ณด์ฌ์ค', 'immich ํ์ผ ๋ณด์ฌ์ค', 'immich ์ฌ์ง ๊ฒฝ๋ก', 'upload-cache ํ์ผ ํ์ธ'. NOT for immich ์ปจํ ์ด๋ ๊ด๋ฆฌ (use running-containers).