We are announcing a NixOS / nix-darwin module making it easy to self-host GitHub runners. In effect, this enables you to run CI for your GitHub repos on any machine (personal macbooks/laptops included).
Yeah there’s a lot of ancillary setup that’s pretty necessary no matter what you’re doing, so this is pretty cool. Are there modules with direct agenix support in nixpkgs? If so, I’d be curious about whether you’d consider upstreaming some or all of this.
That would first require to have agenix options be merged into nixpkgs which doesn’t sound great to me tbh.
Tho I agree to have a standardized module API for secrets would be a nice improvement for UX (as it makes a clear statement how secrets might be handled well in the store)