hermes helm

No introduction found. Create it?

Install

Install with:

helm repo add hermes oci://ghcr.io/bjw-s-labs/charts/
helm install hermes hermes/hermes -f values.yaml

Examples

See examples from other people.

Top Repositories (2 out of 14)

NameRepoStarsVersionTimestamp
hermesjoryirving/home-ops2235.1.015 hours ago
hermesmirceanton/home-ops1135.1.07 days ago

Values

See the most popular values for this chart:

KeyTypes
string
string
string
string
string, boolean
string
string
controllers.hermes.containers.app.env.PATH (8)
/opt/hermes/.venv/bin:/opt/data/.local/bin:/opt/data/.local/go/bin:/opt/data/.local/homebrew/bin:/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin
string
string
string
string
string
string
controllers.hermes.containers.app.env.SEARXNG_URL (7)
http://searxng.selfhosted.svc.cluster.local:8080
string
string
string
string
string
string
controllers.hermes.containers.app.env.MEMINI_URL (5)
http://memini.ai.svc.cluster.local:8080
string
number
string
string
string, number
string
string
string
string
string
string
string
string
string
string
string
string
string
string
string
string
string
string
controllers.hermes.containers.app.env.AGENTMEMORY_URL (1)
http://agentmemory.ai.svc.cluster.local:3111
string
string
string
string
string
string
string
string
string
string
string
string
string
string
string
string
string
string
boolean
string
string
controllers.hermes.containers.app.env.GIT_AUTHOR_EMAIL (1)
585808+tscibilia@users.noreply.github.com
string
string
controllers.hermes.containers.app.env.GIT_COMMITTER_EMAIL (1)
585808+tscibilia@users.noreply.github.com
string
string
string
string
string
string
string
string
string
string
string
string
string
controllers.hermes.containers.app.env.GIT_SSH_COMMAND (1)
ssh -i /opt/data/.ssh/hermes_signing -o IdentitiesOnly=yes -o StrictHostKeyChecking=accept-new
string
string
string
string
string
string
string
string
string
string
string
controllers.hermes.containers.app.env.MEMINI_BASE_URL (1)
http://memini.ai.svc.cluster.local:8080
string
string
string
controllers.hermes.containers.app.env.PYTHONPATH (1)
/opt/hermes/.venv/lib/python3.13/site-packages/
string
string
controllers.hermes.containers.app.image.tag (11)
v2026.8.27@sha256:e0df6adebddf29b91112aefc999d4aaf6846c9eb544faca5672a16a13590ff79
string
string
number
string
string
string
boolean
boolean
string
controllers.hermes.containers.app.securityContext.capabilities.add[] (5)
- CHOWN
- DAC_OVERRIDE
- FOWNER
- FSETID
- SETGID
- SETUID
string
number
number
boolean
boolean
boolean
number
number
string
number
number
number
number
boolean
boolean
number
number
string
number
number
number
number
boolean
boolean
number
string
number
number
number
number
string
string
string
controllers.hermes.containers.codeserver.args[] (5)
- --auth
- none
- --user-data-dir
- /opt/data/.vscode
- --extensions-dir
- /opt/data/.vscode
- --port
- "12321"
- /opt/data
string
string
controllers.hermes.containers.codeserver.image.tag (5)
4.135.0@sha256:ccd326184d71efc5ebb94155eda7bb30153902342a35dbc8525450d81aa55012
string
string
string
boolean
string
string
string
string
string
string
string
string
number
string
string
string
string
string
string
string
string
controllers.hermes.containers.dashboard.image.tag (3)
v2026.8.27@sha256:e0df6adebddf29b91112aefc999d4aaf6846c9eb544faca5672a16a13590ff79
string
string
string
string
string
number
string
string
string
number
number
string
string
string
string
string
string
string
string
string
string
string
string
string
number
string
string
controllers.hermes.containers.hermes.env.MEMINI_BASE_URL (1)
http://moltbot-egress.network.svc.cluster.local:8081
string
string
string
string
string
string
string
string
boolean
boolean
number
number
number
number
boolean
boolean
number
number
number
number
number
boolean
boolean
number
number
number
number
string
string
string
string
string
boolean
boolean
string
number
string
string
string
string
boolean
string
string
controllers.hermes.containers.gateway.env.CRAWL4AI_API_URL (1)
http://crawl4ai.ai.svc.cluster.local:11235
string
string
string
string
string
string
string
string
string
string
controllers.hermes.containers.gateway.env.OPENAI_BASE_URL (1)
http://bifrost.ai.svc.cluster.local:8080/v1
string
controllers.hermes.containers.gateway.env.PATH (1)
/opt/data/bin:/home/linuxbrew/.linuxbrew/bin:/opt/hermes/.venv/bin:/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin
string
string
string
controllers.hermes.containers.gateway.env.SEARXNG_URL (1)
http://searxng.tools.svc.cluster.local:8080
string
string
string
string
controllers.hermes.containers.gateway.image.tag (1)
v2026.8.27@sha256:090fd615ec2193b7d089cc4fe46b246d52fba8d0e33184ef1feedf98d50f97e9
string
string
string
string
boolean
string
boolean
controllers.hermes.containers.serve.args[] (1)
- serve
- --host
- "0.0.0.0"
- --port
- "9120"
string
string
string
string
string
string
string
string
string
string
controllers.hermes.containers.serve.env.PATH (1)
/opt/data/homebrew/.linuxbrew/bin:/opt/data/homebrew/.linuxbrew/sbin:/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin
string
string
string
string
controllers.hermes.containers.serve.image.tag (1)
v2026.8.18@sha256:22e37bb4ed1b0f50cb6bd991dca7ecacd6c9f29df9b4a20fc989d32bc763ccf6
string
string
string
string
number
number
controllers.hermes.initContainers.init.command[] (9)
- sh
- -c
- set -euo pipefail mkdir -p /opt/data mkdir -p /opt/data/skills/operations/cluster-health/references mkdir -p /opt/data/skills/operations/cluster-health/scripts mkdir -p /opt/data/skills/devops/forgejo-pr-review/references mkdir -p /opt/data/skills/operations/readme-sync cp /run/config/config.yaml /opt/data/config.yaml cp /run/config/env /opt/data/.env chmod 600 /opt/data/.env # Three-way sync so a git update never silently destroys a # self-patch the agent made in place. Compares the incoming git # copy, the live copy, and a marker recording the git content # installed last time: # live == git -> already in sync, refresh marker # live == marker -> untouched since last sync, install git # otherwise -> locally modified, KEEP live, park the # git copy at .git-incoming/ and log drift # Rationale and the reconcile procedure live in # .agents/references/hermes-deployment.md. SYNC=/opt/data/skills/.git-sync SNAP="$SYNC/superseded/$(date -u +%Y%m%dT%H%M%SZ)" mkdir -p "$SYNC" : > "$SYNC/drift.current" sync_skill() { src="$1"; dst="$2"; name="$3" mark="$SYNC/$name.sha" park="$SYNC/incoming/$name.SKILL.md" rm -rf "$(dirname "$dst")/.git-incoming" gsha="$(sha256sum "$src" | cut -d' ' -f1)" if [ ! -f "$dst" ]; then cp "$src" "$dst"; echo "$gsha" > "$mark"; return 0 fi lsha="$(sha256sum "$dst" | cut -d' ' -f1)" if [ "$lsha" = "$gsha" ]; then echo "$gsha" > "$mark" rm -f "$park" return 0 fi psha="$(cat "$mark" 2>/dev/null || true)" if [ -z "$psha" ] || [ "$lsha" = "$psha" ]; then mkdir -p "$SNAP" cp "$dst" "$SNAP/$name.SKILL.md" cp "$src" "$dst" echo "$gsha" > "$mark" rm -f "$park" else mkdir -p "$SYNC/incoming" cp "$src" "$park" echo "$name: local self-patch kept; git version parked at $park" >> "$SYNC/drift.current" echo "$(date -u +%Y-%m-%dT%H:%M:%SZ) $name local=$lsha git=$gsha" >> "$SYNC/drift.log" fi } sync_skill /run/skills/cluster-health/SKILL.md /opt/data/skills/operations/cluster-health/SKILL.md cluster-health sync_skill /run/skills/forgejo-pr-review/SKILL.md /opt/data/skills/devops/forgejo-pr-review/SKILL.md forgejo-pr-review sync_skill /run/skills/readme-sync/SKILL.md /opt/data/skills/operations/readme-sync/SKILL.md readme-sync if [ -d "$SYNC/superseded" ]; then ls -1dt "$SYNC"/superseded/*/ 2>/dev/null | tail -n +11 | xargs -r rm -rf || true fi cp /run/skills/cluster-health/scripts/targetdown-check.sh /opt/data/skills/operations/cluster-health/scripts/targetdown-check.sh cp -n /run/skills/cluster-health/references/targetdown-triage.md /opt/data/skills/operations/cluster-health/references/targetdown-triage.md || true cp -n /run/skills/cluster-health/references/node-baselines.md /opt/data/skills/operations/cluster-health/references/node-baselines.md || true cp -n /run/skills/forgejo-pr-review/references/forgejo-api-quirks.md /opt/data/skills/devops/forgejo-pr-review/references/forgejo-api-quirks.md || true # Recurse ownership over /opt/data so codeserver (UID 1000) # can read JSON files the app previously wrote root:root 600 # (e.g. cron/jobs.json, skills/.usage.json). CHOWN capability # added below; tolerate the rare permission-denied on locked # inodes the way copy-agent-source does. chown -R 1000:1000 /opt/data 2>/tmp/chown.err || true if grep -vE 'Permission denied|Operation not permitted' /tmp/chown.err; then exit 1; fi find /opt/data -user 1000 -type d -exec chmod 2775 {} + find /opt/data -user 1000 -type f -exec chmod 0664 {} + find /opt/data/skills -type f -name '*.sh' -exec chmod 0775 {} + # Pre-create the cron dir/files at permissive perms so the # in-pod cron scheduler (UID 1000 hermes) can read jobs.json # even after the agent recreates it later. Without this, # hermes-agent creates /opt/data/cron as hermes:hermes 700 # and jobs.json as hermes:hermes 600; the scheduler is fine # in that case, but a UID-0 `hermes cron run` from kubectl # exec rewrites jobs.json as root:hermes 600 which the # scheduler then can't read. These pre-creations + 755/644 # defaults survive that scenario at next pod restart. mkdir -p /opt/data/cron /opt/data/cron/output chmod 755 /opt/data/cron /opt/data/cron/output for f in jobs.json .jobs.lock .tick.lock ticker_heartbeat ticker_last_success; do [ -e /opt/data/cron/$f ] && chmod 664 /opt/data/cron/$f || true done
string
string
string
boolean
number
number
string
string
string
string
controllers.hermes.initContainers.install-tools.command[] (6)
- /bin/sh
- -c
- set -e mkdir -p /opt/data/.local/bin /opt/data/.local/go rm -f /opt/data/.local/bin/hermes /opt/data/.local/bin/docker if [ ! -f /opt/data/.local/bin/gh ]; then cd /tmp curl -fsSL https://github.com/cli/cli/releases/download/v2.61.0/gh_2.61.0_linux_amd64.tar.gz -o gh.tar.gz tar xzf gh.tar.gz cp gh_2.61.0_linux_amd64/bin/gh /opt/data/.local/bin/ rm -rf gh.tar.gz gh_2.61.0_linux_amd64 fi if [ ! -f /opt/data/.local/go/bin/go ]; then cd /tmp curl -fsSL https://go.dev/dl/go1.23.5.linux-amd64.tar.gz -o go.tar.gz tar xzf go.tar.gz mv go /opt/data/.local/ rm -rf go.tar.gz fi if [ ! -f /opt/data/.local/homebrew/bin/brew ]; then export HOMEBREW_PREFIX=/opt/data/.local/homebrew mkdir -p $HOMEBREW_PREFIX git clone --depth 1 https://github.com/Homebrew/brew $HOMEBREW_PREFIX fi
string
string
controllers.hermes.initContainers.install-tools.image.tag (6)
v2026.8.16.2@sha256:a39fc11620213e3669a327aff5c6cb1eb2b8a238c6044e33e7ef8885833d89a7
string
boolean
string
number
number
string
string
controllers.hermes.initContainers.copy-agent-source.command[] (3)
- /bin/sh
- -c
- set -e # hermes-agent >= v2026.7.x ships root-only playwright .deps files; # tolerate those but still fail on any other copy error. cp -r /opt/hermes/. /agent-src/ 2>/tmp/cp.err || true if grep -v 'Permission denied' /tmp/cp.err; then exit 1; fi test -e /agent-src/.venv
string
string
controllers.hermes.initContainers.copy-agent-source.image.tag (3)
v2026.8.16.2@sha256:a39fc11620213e3669a327aff5c6cb1eb2b8a238c6044e33e7ef8885833d89a7
string
boolean
string
number
number
controllers.hermes.initContainers.fix-run.command[] (2)
- sh
- -c
- chown 10000:10000 /run && chmod 755 /run
string
string
string
number
boolean
number
boolean
string
string
controllers.hermes.initContainers.01-agent-source.command[] (1)
- /bin/sh
- -c
- set -e cp -r /opt/hermes/. /agent-src/ chown -R 10000:10000 /agent-src/ chmod -R u+rwX /agent-src/plugins/
string
string
controllers.hermes.initContainers.01-agent-source.image.tag (1)
v2026.8.27@sha256:e0df6adebddf29b91112aefc999d4aaf6846c9eb544faca5672a16a13590ff79
string
boolean
number
number
controllers.hermes.initContainers.02-init-config.command[] (1)
- sh
- -c
- set -euo pipefail mkdir -p /opt/data cp /run/config/config.yaml /opt/data/config.yaml sed -i "s|\${LITELLM_API_KEY}|$LITELLM_API_KEY|g" /opt/data/config.yaml sed -i "s|\${SECRET_DOMAIN}|$SECRET_DOMAIN|g" /opt/data/config.yaml chown 10000:10000 /opt/data/config.yaml # Overwrites any agent self-edit — SOUL.md is GitOps-owned. cp /run/config/SOUL.md /opt/data/SOUL.md chown 10000:10000 /opt/data/SOUL.md # SSH commit-signing key. ssh-keygen refuses a key that is group # or world readable, so 0600 is load-bearing, not hygiene. mkdir -p /opt/data/.ssh chmod 700 /opt/data/.ssh printf '%s\n' "$GH_HERMES_SIGNING_KEY" > /opt/data/.ssh/hermes_signing chmod 600 /opt/data/.ssh/hermes_signing
string
string
string
string
boolean
string
number
number
controllers.hermes.initContainers.03-install-tools.command[] (1)
- /bin/sh
- -c
- set -e mkdir -p /opt/data/.local/bin /opt/data/.local/go rm -f /opt/data/.local/bin/hermes /opt/data/.local/bin/docker if [ ! -f /opt/data/.local/bin/gh ]; then cd /tmp curl -fsSL https://github.com/cli/cli/releases/download/v2.61.0/gh_2.61.0_linux_amd64.tar.gz -o gh.tar.gz tar xzf gh.tar.gz cp gh_2.61.0_linux_amd64/bin/gh /opt/data/.local/bin/ rm -rf gh.tar.gz gh_2.61.0_linux_amd64 fi if [ ! -f /opt/data/.local/go/bin/go ]; then cd /tmp curl -fsSL https://go.dev/dl/go1.23.5.linux-amd64.tar.gz -o go.tar.gz tar xzf go.tar.gz mv go /opt/data/.local/ rm -rf go.tar.gz fi if [ ! -f /opt/data/.local/homebrew/bin/brew ]; then export HOMEBREW_PREFIX=/opt/data/.local/homebrew mkdir -p $HOMEBREW_PREFIX git clone --depth 1 https://github.com/Homebrew/brew $HOMEBREW_PREFIX fi if [ -f /opt/hermes/plugins/platforms/photon/sidecar/package.json ]; then cd /opt/hermes/plugins/platforms/photon/sidecar && npm ci 2>/dev/null || npm install fi # The agent's shell never sees GITHUB_TOKEN, so gh needs it on # disk. `env -u` is required — gh refuses --with-token while # GITHUB_TOKEN is set. Re-runs each boot to pick up rotation. if [ -n "$GITHUB_TOKEN" ]; then printf '%s' "$GITHUB_TOKEN" \ | env -u GITHUB_TOKEN -u GH_TOKEN /opt/data/.local/bin/gh auth login --with-token fi
string
string
string
string
controllers.hermes.initContainers.03-install-tools.image.tag (1)
v2026.8.27@sha256:e0df6adebddf29b91112aefc999d4aaf6846c9eb544faca5672a16a13590ff79
string
boolean
string
number
number
controllers.hermes.initContainers.copy-config.command[] (1)
- sh
- -c
- set -euo pipefail mkdir -p /opt/data cp /run/config/config.yaml /opt/data/config.yaml chown 10000:10000 /opt/data/config.yaml
string
string
string
string
string
controllers.hermes.initContainers.daemon.image.tag (1)
29.7.2-dind@sha256:12e683a161823b2a839aeea999b9d960e6e1f9a97b1679ad6b441982e2d9cf07
string
boolean
boolean
string
number
number
number
boolean
boolean
string
number
number
number
boolean
boolean
string
number
number
number
string
boolean
boolean
number
number
controllers.hermes.initContainers.seed-config.command[] (1)
- sh
- -c
- set -eu if [ ! -f /opt/data/config.yaml ]; then echo "seed-config: no persisted config; seeding from git source." cp /config-src/config.yaml /opt/data/config.yaml cp /config-src/config.yaml /opt/data/.config.git-base.yaml exit 0 fi cp /opt/data/config.yaml /tmp/config.work.yaml if [ -f /opt/data/.config.git-base.yaml ]; then yq -o=json -I=0 '[... | path] | .[] | select(length > 0) | select(.[-1] | tag == "!!str")' /opt/data/.config.git-base.yaml | sort -u > /tmp/base.keys yq -o=json -I=0 '[... | path] | .[] | select(length > 0) | select(.[-1] | tag == "!!str")' /config-src/config.yaml | sort -u > /tmp/src.keys if [ -s /tmp/src.keys ]; then grep -Fxv -f /tmp/src.keys /tmp/base.keys > /tmp/removed.keys || true if [ -s /tmp/removed.keys ]; then echo "seed-config: pruning keys removed from git since last reconcile:" cat /tmp/removed.keys yq ea -p=json -o=json -I=0 '[.]' /tmp/removed.keys > /tmp/removed.json yq -i 'del(.. | select( ([path] - load("/tmp/removed.json")) | length == 0 ))' /tmp/config.work.yaml fi fi fi yq eval-all 'select(fileIndex == 0) * select(fileIndex == 1)' /tmp/config.work.yaml /config-src/config.yaml > /tmp/config.final.yaml cp /tmp/config.final.yaml /opt/data/config.yaml cp /config-src/config.yaml /opt/data/.config.git-base.yaml echo "seed-config: merged git over persisted config (git wins; runtime-only keys kept; git deletions pruned)."
string
string
string
boolean
string
boolean
controllers.hermes.initContainers.seed-tools.command[] (1)
- sh
- -c
- set -e if [ -e /homebrew-runtime/.seeded ]; then echo "Homebrew already seeded; skipping." else echo "Resetting incomplete Homebrew seed." chmod -R u+w /homebrew-runtime 2>/dev/null || true find /homebrew-runtime -mindepth 1 -maxdepth 1 -exec rm -rf {} + echo "Seeding Homebrew from image /home/linuxbrew/.linuxbrew into /homebrew-runtime." cp -RP /home/linuxbrew/.linuxbrew/. /homebrew-runtime/ touch /homebrew-runtime/.seeded echo "Homebrew seed complete." fi echo "Linking memini plugin into /opt/data/plugins." mkdir -p /opt/data/plugins ln -sfn /opt/memini /opt/data/plugins/memini echo "Ensuring /opt/data/home and /opt/data/bin exist." mkdir -p /opt/data/home /opt/data/bin echo "Writing /opt/data/home/.profile with PATH." printf '%s\n' 'export PATH="/opt/data/bin:/home/linuxbrew/.linuxbrew/bin:/opt/hermes/.venv/bin:/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin"' > /opt/data/home/.profile echo "Mirroring .profile to /opt/data/home/.bashrc." cp /opt/data/home/.profile /opt/data/home/.bashrc echo "Shell dotfiles ready."
string
string
controllers.hermes.initContainers.seed-tools.image.tag (1)
v2026.8.27@sha256:090fd615ec2193b7d089cc4fe46b246d52fba8d0e33184ef1feedf98d50f97e9
string
boolean
string
boolean
string
number
string
string
number
string
number
boolean
number
string
string
string
controllers.codeserver.containers.codeserver.args[] (1)
- --auth
- none
- --user-data-dir
- /opt/data/.vscode
- --extensions-dir
- /opt/data/.vscode
- --port
- "12321"
- /opt/data
string
string
string
string
string
string
controllers.codeserver.containers.codeserver.env.PATH (1)
/opt/data/.local/bin:/opt/data/.local/go/bin:/opt/data/.local/homebrew/bin:/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin
string
string
string
controllers.codeserver.containers.codeserver.image.tag (1)
4.134.0@sha256:9d6c9b2e89f95c95885f859bbca0af2f648c376e61e9bbdff5c14be5a6e27d40
string
string
string
string
string
string
number
number
string
number
string
string
number
number
boolean
boolean
number
string
string
string
string
string
string
string
string
string
string
string
string
string
string
string
string
string
string
persistence.data.type (1)
persistentVolumeClaim
string
string
string
string
string
string
number
string
string
boolean
string
string
string
string
string
boolean
string
string
string
string
string
string
string
string
string
string
string
string
string
string
string
string
number
string
string
number
string
string
persistence.configmap.name (2)
{{ .Release.Name }}-config
string
string
string
string
string
string
number
string
string
string
string
string
string
string
string
string
persistence.gallery.path (1)
/mnt/daena/comfyui/output
string
string
string
string
string
string
string
string
string
string
string
persistence.homebrew.type (1)
persistentVolumeClaim
string
string
boolean
string
string
string
string
persistence.nfs.path (1)
/mnt/nas/data/shares/hermes
string
string
string
string
string
string
string
string
persistence.runtime-cache.globalMounts[].path (1)
/opt/data/.cache
/opt/data/homebrew/.homebrew-user/.cache
string
string
persistence.skill-cluster-health.advancedMounts.hermes.init[].path (1)
/run/skills/cluster-health/SKILL.md
/run/skills/cluster-health/references/targetdown-triage.md
/run/skills/cluster-health/references/node-baselines.md
/run/skills/cluster-health/scripts/targetdown-check.sh
string
persistence.skill-cluster-health.advancedMounts.hermes.init[].subPath (1)
SKILL.md
targetdown-triage.md
node-baselines.md
targetdown-check.sh
string
number
string
string
string
number
persistence.skill-commit-watcher.name (1)
hermes-skill-homelab-commit-watcher
string
string
persistence.skill-forgejo-pr-review.advancedMounts.hermes.init[].path (1)
/run/skills/forgejo-pr-review/SKILL.md
/run/skills/forgejo-pr-review/references/forgejo-api-quirks.md
string
string
number
persistence.skill-forgejo-pr-review.name (1)
hermes-skill-forgejo-pr-review
string
string
string
string
number
string
string
string
string
string
string
string
string
string
string
number
number
number
number
number
string
string
number
string
number
number
number
boolean
string
number
string
number
string
number
string
number
string
string
string
string
string
string
string
string
string
string
string
string
string
string
string
string
string
string
string
string
string
rbac.roles.hermes-read-all.rules[].apiGroups[] (7)
-
- apps
- batch
- networking.k8s.io
- storage.k8s.io
- helm.toolkit.fluxcd.io
- kustomize.toolkit.fluxcd.io
- source.toolkit.fluxcd.io
- external-secrets.io
string
rbac.roles.hermes-read-all.rules[].resources[] (7)
- pods
- pods/log
- nodes
- services
- namespaces
- configmaps
- persistentvolumes
- persistentvolumeclaims
- endpoints
- resourcequotas
- limitranges
- serviceaccounts
- events
- deployments
- daemonsets
- statefulsets
- replicasets
- controllerrevisions
- jobs
- cronjobs
- ingresses
- ingressclasses
- networkpolicies
- storageclasses
- csinodes
- csidrivers
- volumeattachments
- helmreleases
- kustomizations
- gitrepositories
- helmrepositories
- ocirepositories
- buckets
- helmcharts
- externalsecrets
- secretstores
- clustersecretstores
string
rbac.roles.hermes-read-all.rules[].verbs[] (7)
- get
- list
- watch
- get
- list
- watch
- get
- list
- watch
- get
- list
- watch
- get
- list
- watch
- get
- list
- watch
- get
- list
- watch
- get
- list
- watch
- get
- list
- watch
string
string
string
string
string
string
string
string
string
string
string
string
string
string
string
string
rbac.roles.hermes-write-restricted.rules[].verbs[] (1)
- delete
- delete
- create
- patch
- update
string
string
route.app.hostnames[] (6)
- hermes.dcunha.io
string
string
string
string
number, string
route.codeserver.hostnames[] (6)
- hermes-code.dcunha.io
string
string
string
string
string
number, string
route.dashboard.hostnames[] (3)
- hermes.${SECRET_DOMAIN}
string
string
string
string
string
string
string
route.hermes.hostnames[] (1)
- hermes.mcgrath.nz
string
string
string
string
string
string
string
string
string
boolean
route.internal.hostnames[] (1)
- hermes.${SECRET_DOMAIN}
string
string
string
string
string
number
string
boolean