ov-images/skills/fedora/SKILL.md
Base Fedora 43 image. Root of the image hierarchy for all RPM-based images. MUST be invoked before building, deploying, configuring, or troubleshooting the fedora image.
npx skillsauth add overthinkos/overthink-plugins fedoraInstall this skill globally with one command. Works with Claude Code, Cursor, and Windsurf.
3 of 9 scanners reported clean
Some scanners were skipped, did not run, or reported a non-clean status. Review each row below.
Root base image built from quay.io/fedora/fedora:43. Foundation for all RPM-based Overthink images.
| Property | Value | |----------|-------| | Base | quay.io/fedora/fedora:43 | | Layers | (none) | | Platforms | linux/amd64 | | Pkg | rpm | | Registry | ghcr.io/overthinkos |
ov image build fedora
ov shell fedora
/ov-images:fedora-nonfree — adds RPM Fusion repos/ov-images:fedora-builder — adds pixi, nodejs, build-toolchain/ov-images:nvidia — adds CUDA toolkit/ov-images:openclaw — adds OpenClaw gateway/ov-images:openclaw-sway-browser — adds OpenClaw + desktop/ov-images:githubrunner — adds GitHub Actions runnerAfter ov image build:
ov image list — image appears in listov shell fedora — interactive shell works/ov-images:fedora-nonfree — adds RPM Fusion repos/ov-images:fedora-builder — adds pixi, nodejs, build-toolchain/ov-images:fedora-ov — full ov toolchain on Fedora/ov-images:archlinux — pacman-based counterpart base/ov:build — build the fedora base image/ov:shell — interactive shell in the base imageMUST be invoked when the task involves the fedora base image or understanding the image chain. Invoke this skill BEFORE reading source code or launching Explore agents.
/ov:image — image family umbrella (image: entries in overthink.yml, build/validate/inspect/list)tools
Use when authoring or modifying a charly PLUGIN — a candy with a `plugin:` block that contributes Providers (verbs/kinds/deploy-targets/steps/builders/commands), its own CUE schema, builtin (compiled-in) or external (out-of-tree git repo). Covers the unified Provider model, the per-plugin CUE-schema contract (single source → Go params for dev + schema-over-Describe RPC for runtime), the SDK, and the loader.
tools
The CUE data-validation / configuration CLI (cue), pinned to v0.16.1. Use when working with the cue candy, installing the cue binary into a box or onto a target:local dev host, or running the offline schema-vendoring pipeline that feeds charly's egress validation.
tools
CUE EGRESS validation — validating (and, where it adds value, generating) the config files charly WRITES to a system BEFORE the bytes hit disk. MUST be invoked before working on charly/egress.go, the vendored schemas under candy/plugin-egress/egress-schemas/vendor/, the ValidateEgress / registerVendoredEgressKind path, the offline `task cue:vendor` pipeline, or adding an egress schema for any written artifact (cloud-init, k8s manifests, traefik routes, runtime config, install ledger, systemd/quadlet units, ssh_config, libvirt XML).
tools
Kubernetes cluster-probe declarative check verb — the `kube:` check verb (nodes, pods, ingress, storage class, addon health, apply/delete, and arbitrary resource GETs) served out-of-process by the candy/plugin-kube plugin (vendored client-go; no external kubectl required).