OUTREACH.md: a personal message, a Facebook group post with a shorter variant, a forum post, and a table of 15 places with the rules quoted where they are published. Nothing was posted and no group was joined; the group data was read from each group's public About page on 2026-10-10. The rules that matter, measured rather than assumed: Magyar Linux Felhasznalok (11970, public) has no advertising ban and Felhom is on topic; DIY Smart Home forbids ads and names an e-mail route; HUP forbids unlicensed advertising; the prohardver family forbids "tagok, vasarlok gyujtese ... felhivas" without the operator's permission, which is literally what recruiting testers is. R-929 (P4): the website's prose says 58 apps, the apps page renders 59 cards, the catalog holds 60 template directories. Gate 15 cannot catch it because it compares the two language sets to each other, never to the catalog. Not fixed here - it needs the catalog skill's exclusion rules. The campaign posts say 58, matching every prose claim on the site.
Felhom — Documentation
Felhom is a managed home-server service for Hungarian households, built on a three-component model over Proxmox:
- Hub — operator backend on k3s (
hub.felhom.eu). Repo:felhom.eu/hub/. - Host agent — one per Proxmox host; operator-tier; owns all Proxmox interaction. Repo:
felhom-agent/. - In-guest controller — one per customer LXC; Docker-only; manages the customer's apps. Repo:
felhom-controller/.
This directory is the central, code-verified documentation home for all three components plus the platform and the security-audit record.
Sections
Controller (in-guest) — controller/
The Docker-only app-domain controller. Full per-area docs grounded in current source (v0.59.0).
→ controller/README.md: module map, deploy & stack lifecycle, backup
architecture, storage/monitoring/metrics, auth/hub/sync/integrations.
Where we stand — architecture/where-felhom-stands.*
The operator's one-page picture of what is proven, built, partial and missing.
architecture/where-felhom-stands.html— generated; do not hand-editarchitecture/where-felhom-stands.yaml— the data behind it; every claim cites its source. Gate:scripts/check_stands.py; regenerate withscripts/render_stands.pyarchitecture/where-felhom-stands-2026-08-09-snapshot.html— a dated snapshot, NOT maintained. The original React bundle, kept for the record; its statuses are those of 2026-08-09 before the verification pass
The whole system on one page — architecture/felhom-system-poster.*
A poster for the operator: every machine, path, backup tier, time and key on a single sheet.
architecture/felhom-system-poster.html— the drawing. Made in Claude Design, NOT generated by anything in this repo, so do not expect a renderer; it is self-contained (fonts and scripts are inlined — it opens with no network)architecture/felhom-system-poster.facts.md— the source of every fact on it. Change the facts here first. Rule:.claude/rules/unprompted-work.md§6. Gate:scripts/poster_facts_gate.pyWARNS (never fails) when this file has a newer commit than the drawing
Host agent & platform — architecture/, proxmox-platform.md
The operator-tier agent and the Proxmox platform.
architecture/01-topology-and-trust.md— topology & trust modelarchitecture/03-host-agent.md— the host agent (Go; v0.29.1)architecture/04-control-plane-authorization.md— signing, escrow, authzarchitecture/02-controller-module-map.md— historical v0.33 planning map; the live map iscontroller/module-map.mdproxmox-platform.md— Proxmox platform referencearchitecture/11-os-updates.md— operating-system updates: host, guest, Docker engine (NOT RATIFIED, 2026-10-04)
Hub (operator backend) — architecture/05
architecture/05-hub-architecture.md— hub architecture (v0.11.0)
Security audits & remediation — audits/
audits/deep-sweep-2026-06-13.md— cross-repo deep audit (controller + agent) with remediation statusaudits/bughunt-reconcile-2026-06-13.md— reconciliation of the v0.30.3 BUGHUNT against current code + merged fix list
Spike & test findings — tests/
Per-slice spike/validation findings (phases 0–5, slices 7–10). See tests/.
Conventions
- Code-verified, not memory-derived. Architectural claims here are checked against the actual current source; if a claim can't be verified it is omitted and flagged, not guessed.
- Per-repo operational working files (
CLAUDE.md,CONTEXT.md,CHANGELOG.md,BUGHUNT.md,REPORT.md,TASK.md) live in their own repos — they are operational, not published docs. - Authoritative versions at last refresh: controller v0.59.0, agent v0.29.1, hub v0.11.0.