Repository navigation
Speed up macOS VM rebuilds and add a --no-secrets opt-out - #47
Merged
Merged
Conversation
…as default-command input - fix(cmd): stop rewriting unrecognized positionals into default-command args — typo'd subcommands like `cell abc` fail loudly instead of running silently - fix(cmd): rootCmd.RunE prints help alongside the "unknown command" error — users see valid subcommands right where the failure occurs - test(cmd): cover unrewritten unknown positionals and rootCmd.RunE's help+error output — locks in the new failure behavior against regressions
- feat(cmd): add --no-secrets/--skip-secrets flags, keep --no-1password as alias — old scripts keep working, new names are clearer - feat(runner): thread NoSecrets through RunSpec to also suppress `op run --` — opting out now skips secrets fully, not just item lookup - refactor(op): reword ShouldResolve docs for the generalized flag/env names — no user-facing impact - test(runner): cover that NoSecrets suppresses the op argv prefix — catches regressions in the opt-out path
Contributor
Deploying with
|
| Status | Name | Latest Commit | Preview URL | Updated (UTC) |
|---|---|---|---|---|
| ✅ Deployment successful! View logs |
devcell | b8ac1a0 | Commit Preview URL Branch Preview URL |
Sep 21 2026, 06:47 AM |
…cleanup no longer kills active builds - feat(build): add --stage=base|full so full builds clone locally from a base template — repeat builds skip the OCI pull - feat(tart): repair pre-fix templates' shadowed /nix mount and re-activate nix-darwin/s6 when missing — session start self-heals broken VMs - feat(tart): share host's /nix store into the VM as a read-only substituter when detected — fewer packages fetched from cache.nixos.org - fix(runner): reclaim only a crashed/orphaned thin-builder container, never one still running — concurrent builds for other apps stay untouched - feat(tart): mount the project at its host-mirrored path instead of ~/basename — paths match between host and VM - build(darwin): add stub OCR module for non-darwin builds and Taskfile targets for tart integration tests and nix diagnostics — no user-facing change - chore(deps): bump go.mod/go.sum and flake.nix vendorHash for the above — no user-facing change
…trim FAQ - feat(web/whatsinside): merge stack table into one 6-stack comparison, dropping the Electronics & DIY (KiCad/ngspice/ESPHome) row — visitors compare fewer, more accurate stacks - refactor(web/featurecards): split "Why" into "gains"/"boundary" sections, merging the stealth-browser and MCP-server rows into two consolidated cards — fewer, denser feature blocks to scan - docs(web/hero): rewrite headline and terminal demo around "agent's own computer" framing — visitors get sharper positioning on first load - docs(web/quickstart): note Claude Max/Pro/API keys all work in step 2 — answers a licensing question before the FAQ - docs(web/faq): drop the Vagrant/native-macOS and cell-login Q&As, folding their content into other answers — fewer redundant entries, same coverage - docs(web/base): rename nav anchor to "What it gains"/"The boundary" and update page title/description to match new copy — nav links resolve to the right sections - chore(web/deps): pin @astrojs/cloudflare to "12" instead of "^12.6.13" in package-lock.json — locks the exact resolved version for reproducible builds
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Summary
macOS (tart) VM rebuilds now finish in a fraction of the time:
cell build --stage=basebakes a reusable base template once, and full builds clone from it locally instead of re-pulling from the OCI registry. Users can also fully opt out of secrets injection with--no-secrets(old--no-1passwordkept as alias), typo'd subcommands now fail loudly with help instead of silently feeding the default agent, and the marketing site copy was reworked around the "agent's own computer" framing.Breaking changes
cell <word>for an unrecognized<word>now errors with help instead of launching the default agent with it as input. Pass positional input by naming the command explicitly (e.g.cell claude <input>).--no-1password(andDEVCELL_NO_1PASSWORD) now also suppress theop run --prefix, not just the document lookup. If a workflow relied onop runenv injection while skipping documents, drop the flag and control documents via[op]config instead.~/<basename>— scripts that hard-coded the old in-VM path need updating.Changes
--stage=base|fulltocell buildfor the tart engine — full builds clone locally from the base template, so repeat builds skip the OCI pull (--updatenow implies--force)/nixmount and re-activate nix-darwin/s6 when missing/nixstore into the VM as a read-only substituter and mount the project at its host-mirrored path — fewer downloads from cache.nixos.org, paths match between host and VM--no-secrets/--skip-secretsflags andDEVCELL_NO_SECRETSenv var, keeping--no-1password/DEVCELL_NO_1PASSWORDas aliases — opting out now skips secrets injection entirely@astrojs/cloudflarein web/package-lock.json