Visible on the web. Toggle which sections appear on the home screen. Drag tiles on the home screen to reorder.
Session and password are managed by the NoCloud SSO (Authelia).
Values from site.env used to resolve paths at runtime — no personal literals in code.
Credentials the intranet is using right now (stored in config/site.env
and Pi files, never in git). Only visible after login and within the LAN/VPN.
Requires the Mac to be on. ✏️ = editable here.
Everything the install wizard asked, editable here. Changes are queued to the
workstation, validated there and written to site.env (the durable copy); the next
replica/deploy brings them back to this server — allow up to a couple of hours, or run a
deploy from the tray to apply now.
The web is never exposed to the internet. Away from home you connect
through your own WireGuard tunnel: forward one UDP port on your router to the server
and nothing else — never 80/443. Add devices on the server:
sudo nocloud-core/scripts/wg_client.sh add phone (prints a QR).

The Photos tile links straight to Immich, and the "on this day" widget reads from it too. Both need Immich's URL and an API key (Immich → Account settings → API keys).
Loading…