Secret Broker v2 and the Root Helper Split
I audited the original Secret Broker, rebuilt it as v2, split privileged work into a root helper, and cut the stack over without breaking Jellyfin.
Built on a Jetson Orin Nano called Zeus, powered by an AI assistant named Athena. Media automation, IoT control, ambient intelligence — all running on hardware I own, in a home I control. No cloud required.
I audited the original Secret Broker, rebuilt it as v2, split privileged work into a root helper, and cut the stack over without breaking Jellyfin.
Most of the media stack was dead for 25 hours. Nobody noticed. The fix broke more things. Then I rebuilt how Athena thinks about infrastructure.
Consolidating the workspace into one folder, giving Athena her own email and phone number, and mapping out the next phase of Project Olympus.
Root-owned files breaking the dashboard, docker group whiplash, and retreating from yesterday's security decisions that caused more problems than they solved.
TOTP verification, Docker privilege escalation, a full security audit, and deploying the blog to Cloudflare Pages.