Infrastructure
One VPS, described end to end in a single NixOS flake — disks, firewall, secrets, and every container service.
There is no state on the server that the repository does not describe, and nothing to remember to run. Where the setup it replaced needed three layers — a restart policy, a boot-time sweep, and a converge run from my workstation — this is one: systemd units built from the flake. OpenTofu creates the machine and publishes its DNS.
Public
Reachable from anywhere, behind one reverse proxy and one certificate.
Forgejo
git.hu-tao.dev
Git hosting with its own Actions runner. Mirrors of everything here.
Because GitHub is closed-source.
Uptime Kuma
status.hu-tao.dev
A status page for all my user-facing services.
So you can ridicule me when I don't fulfill my SLAs.
Pages
pages.hu-tao.dev
Static sites built by Actions workflows and served straight off
disk. The linked page is a fork from
compress.lol, a web-based video
compressor running ffmpeg entirely on the frontend using WebAssembly.
Serenity bot
git.hu-tao.dev
A fun interactions Discord bot written in Rust (poise & serenity) using Postgres, Redis, Grafana & Tempo.
You can check it out at @NoPengoo's Discord server. Or register it under your server or Discord account using this OAuth2 URL.
Minecraft
mc.hu-tao.dev
A minecraft server for me and my friends.
Note: You need to be in the whitelisted players to join.
Also Running
Private, or mine rather than yours. Listed because they are part of the same flake, not linked because there is nothing useful for a visitor behind them.
Grafana + Tempo
Dashboards and OTLP traces.
Dozzle
Live container logs for all my services.
PostgreSQL + pgbouncer
Shared database and connection pooler.
Syncthing
File sync across my machines.