- Added platform.localhost (-> localhost:10080) and packages.localhost
(-> localhost:20080) to stack.md sites table (total now 17)
- Documented onlyoffice.docs.localhost (pre-existing in Caddy config, was undocumented)
- Regenerated mkcert cert with explicit SANs for the 3 new hostnames
(onlyoffice.docs.localhost is multi-label, not covered by *.localhost wildcard)
- Fixed wildcard note: multi-label hosts require explicit SANs
- Updated manual-overrides with cert regeneration row + site delta
- Updated CHANGELOG with cert regen + site additions
Deprecated UseIn key usage (portals.conf preferred)
Low priority, functional
Removed (2026-05-22, ADR 0007): All X11 display managers (lightdm, sddm), X11 video/input drivers (xf86-*), X11 tools (xterm, xorg-xinit, x11vnc, etc.), entire KDE Plasma stack (kwin, plasma-desktop, plasma-workspace, plasma-nm, plasma-pa, powerdevil, etc.), and Dolphin (replaced by yazi). greetd+tuigreet is the active DM. Screenshots use grim+slurp+grimblast.
Browsers
Technology
Version
Notes
Google Chrome
148.0.7778.178 (AUR)
Sole browser — Wayland-native, VA-API on NVIDIA
Chromium
removed
All artifacts cleaned 2026-05-22 (see ADR 0006)
OS Context
OS: Linux (Manjaro/Arch Linux based)
Architecture: x86_64
Package Domain Classification (ADR 0007 Tier 4)
Packages previously listed as "Misc" reclassified to functional domains:
Package
New Domain
Role
uv
Python Toolchain
Fast Python package/env manager
jq
Shell/Terminal
JSON processor
inxi
Hardware
System hardware info
lsof
Core OS
List open files
iproute2
Network
Advanced routing/networking
openresolv
Network
DNS resolver management
perl-image-exiftool
Dev Tools
Metadata read/write
icoutils
Dev Tools
ICO/ANE cursor extraction
innoextract-git
Dev Tools
Inno Setup installer extraction
opencl-headers
GPU Compute
OpenCL C headers
libxnvctrl-580xx
NVIDIA
NVML/XNVCTRL for 580xx
zram-generator
Core OS
Systemd zram swap generator
mkinitcpio-openswap
Core OS
Swap resume hook for mkinitcpio
Maintenance Policies
Updates: System-wide updates via pacman managed through maintenance scripts.
Node.js: Global packages managed via pnpm.
Python: Use uv for environment management.
PHP: Managed via system package manager, focused on CLI execution.
Tool Path Summary
Ansible: /usr/bin/ansible
Python: /usr/bin/python
Docker: /usr/bin/docker
Local Dev Services (Manual - not Ansible-managed)
System-level services running on this workstation that are configured manually
outside this repo's Ansible roles. See docs/tech/manual-overrides.md for the
full override table and docs/learnings/2026-07-06-caddy-onlyoffice-mcp-sse-investigation.md
for the active Caddy/OnlyOffice investigation.
mkcert-generated pair at /etc/caddy/localhost{,-key}.pem; includes explicit SANs for all 19 hostnames (wildcard *.localhost only covers single-label subdomains like mcp.localhost; multi-label hosts like onlyoffice.docs.localhost and demo.satware.com.localhost require explicit SANs)
Wildcard *.localhost only matches single-label subdomains (e.g. mcp.localhost).
Multi-label hosts like onlyoffice.docs.localhost and demo.satware.com.localhost
require explicit SANs in the mkcert cert - they are NOT covered by the wildcard.