1//! Sidecar setup (CLAUDE.md *Deployment*): the one engine the NixOS 2//! module and the container image both call. This library holds the 3//! parts with no I/O, so every rule is testable without a server: 4//! 5//! - [`config`]: the one config file naming the target, its options, 6//! the schemas to import and the user mappings. 7//! - [`secret`]: each secret from a file or an env var, exactly one. 8//! - [`sync`]: the plan that brings the foreign tables in line with the 9//! target's catalog, change by change, never by drop and re-import. 10#![forbid(unsafe_code)] 11 12pub mod config; 13pub mod secret; 14pub mod sync;