David F GliddenandClaude Opus 5 9d152f1d48 [FIX] The closure rule reads three header forms the register writes, and declines a fourth
ruled_pendings() intended to detect "the PENDING ids that rulings actually DISPOSE
OF" and matched exactly one header form. The register writes four. Censused over 132
placed rulings: 80 em-dash single, 3 parenthetical, 1 plus-joined, 1 slash-joined,
47 naming no PENDING at all. Eight items were counted open while ruled — four of
them by the three most recent rulings — which is how the queue reported 64 when 56
was defensible. [FIX] against existing specification: the code failed its own stated
intent, and no ruling widens it.

Also read: closure declared on an item's own **Awaiting:** line. Two items were
counted open with their own bodies saying otherwise (PENDING-82 "CLOSED 2026-08-08",
the STATE-CLAIM marker "DISCHARGED 2026-08-26"), because the rule read headers only.

THE SLASH-JOINED FORM IS DECLINED, AND THAT IS THE LOAD-BEARING PART. Its sole
instance is REVIEWED-116 — PENDING-131/132/133/134, a design gate on a package
rather than a disposition of four items, and PENDING-133's body still reads
"Awaiting: Steward authorization". Reading it would have falsely closed a live item.
Closure detection HIDES items, so an unrecognised form never yields the permissive
answer (REVIEWED-132 condition 1). unreadable_ruling_headers() reports the decline so
the gap is visible rather than looking like a clean pass.

The same reasoning set the body-closure anchor. A bare \bCLOSED\b search of item
bodies matches 20 items, including PENDING-95, -108 and -109 — all live, all merely
discussing closure. Anchored to the Awaiting line it matches exactly the two closed.

Controls are paired throughout: every form that is read has a negative twin holding
the form that must not be. 99 controls pass. Verified end-to-end against the live
register, not by selftest alone: 64 -> 56, and PENDING-133 still visible.

PENDING.md is NOT touched. Widening the instrument to the record is authorized;
normalising the record to fit the instrument is not (REVIEWED-132 §6).

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01X3L79vgAnt1x2kxvf23Qt7
2026-09-05 11:10:43 +02:00
2025-07-27 13:40:44 +02:00

🖖 David's Dotfiles - "Engage!"

"Make it so!" - A complete macOS setup system inspired by Star Trek's efficiency and elegance.

From zero to fully configured macOS in minutes. This dotfiles repository provides a comprehensive, automated setup for developers, writers, and knowledge workers.

🚀 Quick Start

One command to rule them all:

# From GitHub
git clone https://github.com/davidglidden/dotfiles.git ~/dotfiles && ~/dotfiles/engage

# From Gitea (alternative mirror)
git clone git@git.davidglidden.eu:davidglidden/dotfiles.git ~/dotfiles && ~/dotfiles/engage

That's it! The engage script will guide you through a complete system setup.

✨ What This System Provides

📦 Software Management

  • 120+ CLI tools via Homebrew (development, media, security)
  • 40+ Applications via casks (productivity, creativity, utilities)
  • 20+ Mac App Store apps via mas (native macOS apps)

🔧 Configuration Management

  • Shell setup: Zsh with Antidote, Powerlevel10k, history sync
  • Development tools: Git hooks, SSH templates, NPM config
  • Application configs: LaunchBar, Hazel, Bartender, Karabiner
  • Obsidian vault: Complete knowledge management system

🖥️ macOS System Configuration

  • System preferences: Dock, Finder, keyboard, security
  • Security hardening: Firewall, privacy, authentication
  • Keyboard shortcuts: Mission Control, app shortcuts
  • Developer settings: Safari dev tools, Terminal enhancements

🛡️ Backup & Security Strategy

  • Encrypted backups for sensitive files (SSH keys, credentials)
  • History management with daily snapshots and retention
  • Git hooks for security and code quality
  • Application data backup and restore scripts

📁 Repository Structure

dotfiles/
├── engage                     # 🖖 Master installation script
├── Brewfile                   # Package management (brew/cask/mas)
├── README.md                  # This file
├── .gitconfig                 # Git configuration
├── .npmrc                     # NPM defaults
├── .zshrc                     # Shell configuration
├── .vimrc                     # Vim configuration
├── bin/                       # Custom scripts
│   ├── backup-dotfiles        # Quick dotfiles backup
│   └── check-app-configs      # Configuration status checker
├── git/                       # Git configuration
│   └── hooks/                 # Global git hooks
├── macos/                     # macOS system configuration
│   ├── setup-macos.sh         # Master macOS setup
│   ├── defaults.sh            # System preferences
│   ├── security.sh            # Security hardening
│   └── keyboard-shortcuts.sh  # Custom shortcuts
├── macos-apps/                # macOS app configurations
│   └── backup-app-configs.sh  # App settings backup
├── obsidian/                  # Obsidian knowledge vault
│   ├── setup-obsidian.sh      # Vault configuration
│   └── community-plugins.json # Essential plugins
├── scripts/                   # Installation scripts
│   └── symlinks.sh            # Dotfile linking
├── shell/                     # Shell enhancements
│   └── history-sync.zsh       # History management
└── ssh/                       # SSH configuration
    ├── config.example         # SSH config template
    └── README.md              # SSH setup guide

🎯 Core Philosophy

This system balances automation with choice:

  • Smart defaults that work out of the box
  • Interactive modes for customization
  • Modular design - use what you need
  • Security first - encrypted backups, secure defaults
  • Documentation - clear guides and examples

Inspired by the best dotfiles repositories but designed for real-world complexity.

📱 Essential Applications Included

Development

  • iTerm2 + Kitty - Terminal emulators
  • BBEdit - Text editor with deep macOS integration
  • GitHub Desktop - Git GUI
  • Docker - Containerization

Productivity

  • Obsidian - Knowledge management powerhouse
  • 1Password - Password management
  • LaunchBar - Application launcher
  • Hazel - Automated file organization
  • Drafts - Quick capture and text processing

Utilities

  • Karabiner-Elements - Keyboard customization
  • Bartender - Menu bar organization
  • Keka - Archive utility
  • Oversight - Privacy monitoring
  • Signal - Secure messaging

Creative & Media

  • VLC - Media player
  • HandBrake - Video transcoding
  • Transmit - File transfer
  • Calibre - E-book management

🛠️ Advanced Usage

Manual Installation Steps

If you prefer granular control:

# 1. Install packages only
brew bundle install --file=~/dotfiles/Brewfile

# 2. Set up dotfiles
~/dotfiles/scripts/symlinks.sh

# 3. Configure macOS
~/dotfiles/macos/setup-macos.sh

# 4. Set up applications
~/dotfiles/macos-apps/backup-app-configs.sh

Customization

Modify the Brewfile to add/remove applications:

# Add new CLI tool
brew "your-tool"

# Add new application
cask "your-app"

# Add Mac App Store app
mas "App Name", id: 123456789

Customize macOS defaults in macos/defaults.sh:

# Change dock position
defaults write com.apple.dock orientation -string "left"

# Adjust key repeat speed
defaults write NSGlobalDomain KeyRepeat -int 1

Backup Strategy

Before making changes:

# Backup current dotfiles
~/dotfiles/bin/backup-dotfiles

# Backup macOS settings  
~/dotfiles/macos/backup-defaults.sh

# Backup sensitive files (encrypted)
~/dotfiles/backup-scripts/backup-sensitive.sh

🔐 Security Features

  • SSH keys encrypted with GPG
  • Firewall enabled with stealth mode
  • Privacy settings optimized
  • Git hooks prevent secrets in commits
  • Secure defaults for Safari and system
  • Application permissions documented

🧠 Obsidian Knowledge System

Includes a sophisticated personal knowledge management setup:

  • 13 essential plugins for advanced functionality
  • Template system with Templater integration
  • Daily/weekly/monthly review cycles
  • Christopher Alexander pattern language philosophy
  • Multilingual support (EN/ES/FR/CA)

🤝 Contributing

This is a personal dotfiles repository, but ideas and improvements are welcome:

  1. Fork the repository
  2. Create a feature branch
  3. Test thoroughly on a fresh macOS installation
  4. Submit a pull request with clear description

📜 License

MIT License - Use, modify, and share freely.

🙏 Acknowledgments

Inspired by:


Live long and prosper! 🖖

Made with ❤️ for the macOS community

S
Description
🖖 Complete macOS dotfiles system - 'Engage!'
Readme
14 MiB
Languages
Python 73%
Shell 25.1%
JavaScript 1.2%
Ruby 0.7%