The chezmoi source directory for my machines.
dot_config/,dot_local/,dot_bashrc,dot_gitconfig.tmpl- the managed$HOMEtree, in chezmoi source naming.zed/settings.jsonandjoplin/- files that live in the repository itself; chezmoi links to them from$HOME(see thesymlink_*.tmplfiles) so the application writes straight into the repo. They are listed in.chezmoiignoreso chezmoi does not also create them under$HOME.ansible/- provisioning (packages, keyd, 1Password, rust, zen-browser), run once byrun_once_before_ansible-setup.shand on change byrun_onchange_ansible-playbook.sh.tmpl..chezmoiexternal.toml- Omarchy plugin repositories, cloned by chezmoi.
.config/omarchy, .config/hypr, .config/hyprmoncfg, .config/waybar,
.config/walker and .config/swayosd, and the plugin repositories in
.chezmoiexternal.toml, are applied only on Omarchy. Detection is automatic:
.chezmoiignore and .chezmoiexternal.toml test .chezmoi.osRelease.id
against omarchy, so a non-Omarchy machine skips all of it with no setup step.
Runtime state is deliberately out of the repository: log files, Herdr session
and release-notes state, nested .git directories, and plugin payloads that
Herdr installs itself under .config/herdr/plugins/github/.
- install chezmoi
chezmoi init --apply marijn070
That is all - the Omarchy gating and the ansible provisioning run themselves.
On omarchy i setup the fingerprint to be disabled when the lid was closed.
create the script /usr/local/bin/pam-lid-check
#!/usr/bin/env bash
# detect lid state
LID_STATE=$(cat /proc/acpi/button/lid/*/state 2>/dev/null | awk '{print $2}')
# if closed → fail → skip fingerprint
if [ "$LID_STATE" = "closed" ]; then
exit 0
fi
# lid open → allow fingerprint
exit 1In the /etc/pam.d/ folder, create a file named fprint-conditional with the following content:
auth [success=1 default=ignore] pam_exec.so quiet /usr/local/bin/pam-lid-check
auth sufficient pam_fprintd.so
wherever the fprint is referenced in the pam folder (rg fprint /etc/pam.d), replace the line
auth sufficient pam_fprintd.so
with
auth include fprint-conditional