lmjtfy.git / fnox.toml

:schema https://fnox.jdx.dev/schema.json

The secrets the owner's tasks and the dev server read, DECLARED and nothing else: no value and no provider is written here, so there is nothing to leak and nothing to choose for you. fnox is optional. Without it a command reads these names from its environment. To use it, put your own provider in fnox.local.toml (gitignored) or in ~/.config/fnox/config.toml, for example age or 1Password.

tools/with-secrets.sh (used by the dev daemon and the deploy tasks) runs a command under fnox exec when fnox is installed and resolves these, and runs it plainly otherwise.

A name nobody has provided is left unset (the Worker then says what is missing), not an error here.

12if_missing = "ignore"
14[secrets.CLOUDFLARE_API_TOKEN]
15description = "Cloudflare API token: Workers AI under wrangler dev (no local emulation), and deploys"
16
17[secrets.CLOUDFLARE_ACCOUNT_ID]
18description = "The Cloudflare account that runs the Worker"
19
20[secrets.LMJTFY_TYPESAFE_API_KEY]
21description = "Jev (TypeSafe) key for the dev server; without it the page says Jev is offline"
22
23[secrets.LMJTFY_GITHUB_TOKEN]
24description = "The clone proxy's read-only fine-grained GitHub token (Contents: read); without it a clone is answered with 503"