docs: update repo references mensfeld/coi -> coipond/coi (org transfer)
docs: align wiki to the Karafka writing style
Style-only pass across 39 pages: reduce decorative bold to scannable labels and
callouts, Title Case headings, expand contractions, present tense, US English,
cut filler and --- separators, tag code fences. Commands, code, config,
COI_* env vars, paths, URLs, wiki links/anchors, and tables left unchanged.
docs: point URLs at mensfeld/coi + fix leftover code-on-incus branding
Repo renamed mensfeld/code-on-incus -> mensfeld/coi: update all wiki links
(install.sh raw URL, issues/releases/tree/wiki links) and one leftover
"code-on-incus" prose ref -> Coi.
docs: rebrand to Coi (drop all-caps COI; Coi primary, coi command)
COI -> Coi across all pages; sidebar + Home first-mention use "Coi (Code on Incus)".
Preserved: COI_* env-var names and the literal "# COI Sandbox ..." context markers
(they document the actual on-disk marker text). Lowercase coi commands unchanged.
Document 0.12 tool-switching, headless prompt runs, and config/profile mount + env_command_timeout symmetry
- Container Lifecycle: new 'Running a different AI tool in the same container'
section (shared session_name across two per-tool profiles; first-switch
credential seeding) (#708)
- Headless Orchestration: new 'Fire-and-forget prompt runs' section covering
coi run --prompt / --prompt-file / --prompt-name and the [prompts] registry
(trusted-scope only) with a cron example (#701)
- Profiles/Configuration: correct the now-false 'profiles use [[mounts]], config
uses [[mounts.default]]' note — both shapes work in both scopes; document
env_command_timeout as profile-settable (#783)
- Configuration: [prompts] stub + capability rows; note coi build works in any
[incus] project (#777)
- Troubleshooting: kitty/xterm-* 'unsuitable terminal' is handled automatically (#772)
- Migration Guide + Supported Tools: surface tool-switching and headless prompts
docs: add 0.11 → 0.12 Migration Guide entry
The Migration Guide stopped at 0.10.1 → 0.11.0; add the 0.11 → 0.12 section for
the upcoming release. 0.12.0 is additive (no breaking changes, no config
migration), so it follows the "New in X (opt-in, no action needed)" pattern:
lists the new capabilities (coi tool spec, coi top, codex, omp,
SANDBOX_CONTEXT.json, egress hardening, git readonly) with links to their pages,
plus Notes on the three fixes with upgrade-relevant behavior (#744 tool env on
exec/reused containers, #733 tmpfs_size, #726 shell storage_pool).
Surfaced the new entry in Home + _Sidebar migration sub-links. All links verified.
Correct release version to 0.11.0 (breaking change → minor bump, not 0.10.2)
The model→[tool.claude] move is a breaking change, so the release is v0.11.0
under semver, not a 0.10.2 patch. Updates the Migration-Guide heading/body,
the [[network.hosts]] config comment, and the coi close alias note.
Align wiki with v0.10.2: model→[tool.claude], [[network.hosts]]/coi hosts, [defaults] profile, coi close, COI_TIMING_DEBUG
- Migration-Guide: new 0.10.1→0.10.2 section for the breaking `model` move to
[tool.claude] (wired via ANTHROPIC_MODEL).
- Configuration + Profiles: move `model` docs from the config root/[defaults] to
[tool.claude]; drop the now-invalid root/profile-root `model`.
- Network-Isolation: new "Static Host Entries ([[network.hosts]])" section with
the per-mode reachability table, trusted-scope-only caveat, and `coi hosts`
runtime commands; Configuration + Container-Operations reference/cross-link it.
- Profiles + Configuration: document [defaults] profile (no-flag default profile,
precedence, trusted-scope-only, unknown-name hard error).
- Container-Lifecycle: note `coi close` as an alias for `coi shutdown`.
- Troubleshooting + Configuration: document COI_TIMING_DEBUG / _JSON startup
profiling.
0.10.0 release sweep: convert removed flags/env-vars to config-key docs, add 0.9->0.10 migration section
PUSH TO MASTER ONLY WHEN v0.10.0 IS TAGGED — this describes 0.10 behavior.
- Migration-Guide: full 'Upgrading from 0.9 to 0.10' section (removed-flags
table, deleted env-var layers, claude-on-incus retirement, resume
persistence conversion, profile-beats-project-config, new opt-in features
incl. [[credentials]], hardened profile, use_sudo, ready_timeout, coi run
script, list filters)
- Configuration: hierarchy table drops the env-var and config-flag layers;
env-var section becomes a removed->replacement table; CLI flags section
rewritten around operational-only flags with a removed-flags table;
[shell] use_tmux added to the reference
- Getting-Started, Best-Practices, Architecture, Container-Lifecycle,
Container-Operations, Tmux-Automation: --persistent examples converted to
[container] persistent = true config; shutdown --timeout ->
shutdown_timeout
- Image-Management: --image/--persistent/--compression workflows converted
to config/profile equivalents (image publish keeps --compression)
- Supported-Tools: --tool selection converted to [tool] name / per-tool
profiles; new 'Tool Credentials and Third-Party Providers' section
covering the credential catalog and [[credentials]]
- Profiles: profile create flag list matches 0.10 (--inherits/--user/
--project only); profile-vs-project-config precedence note
docs(wiki): extract audit log + coi audit into dedicated Audit-Log page
Security-Monitoring was the largest page (~500 lines). Move the on-disk audit
log format, field reference, and the full 'coi audit' command docs into a new
Audit-Log page (Security-Monitoring now links to it with a short stub). Retarget
inbound links (Session-Logs, Migration-Guide, Home, sidebar). Security-Monitoring
328 lines; all internal links verified.
docs: 0.9 updates — upgrade guide (0.8→0.9), sockets, env_commands, pi
- Migration-Guide: add 'Upgrading from 0.8 to 0.9' (trust gate, network
sanitize, read-only .coi, protected git paths, allowlist/IPv6 tightening;
new features: sockets, env_commands, coi trust/audit, pi)
- Configuration: document [[sockets]] and [defaults.env_commands]; fix default
protected_paths list; add pi to tool name
- Supported-Tools: add pi section
- Home: link the 0.8→0.9 upgrade guide
docs: fix bugs and fill content gaps from re-analysis
Bug fixes:
- Linux-Setup-Guide: fix usermod command (incus,incus-admin not
'incus incus-admin $USER' which passed incus-admin as a username)
- Image-Management: clarify Best Practices item 4 — coi image publish
captures filesystem state, not process memory; stateful = snapshots only
Content improvements:
- Home.md: add one-sentence description of what COI is before the callout
- Tmux-Automation: replace non-deterministic sleep-based CI examples with
polling helpers; add Note callout explaining why fixed sleeps are unreliable
- FAQ.md: expand Troubleshooting Quick Links from 2 to 7 entries covering
container pause/kill, privileged=true error, Docker Compose, DNS build issues
- Resource-and-Time-Limits: add prose section explaining what each limit
actually does (CPU enforce/priority, memory hard vs soft, swap semantics,
disk I/O cgroup blkio, tmpfs, runtime auto-stop)
- File-Transfer: add UID shifting note explaining automatic ownership mapping
and when to chown after pushing to system paths
- Security-Monitoring: clarify [monitoring] vs [monitoring.nft] as two
independent subsystems with separate prerequisites
- Configuration: note that forward_env is top-level in profiles vs under
[defaults] in main config
- Migration-Guide: add 4 more entries from Troubleshooting content (bool
pointer fix, settings.json deep merge, Docker Compose three-step launch,
EXDEV session save fix, UID/GID remapping)
docs: complete structural, content, and style improvements (S4-S6, C1-C5, F5)
Structural:
- S4: Add Slot System section to Container-Lifecycle-and-Sessions explaining
container naming, auto-allocation, per-slot isolation, and alias suffixes
- S5: Merge Self-Update into System-Health-Check (update commands, how-it-works,
post-update steps); Self-Update.md becomes a redirect
- S6: Add Migration-Guide.md covering .coi.toml → .coi/config.toml move and
[[mounts]] vs [[mounts.default]] syntax difference
Content:
- C1: Add Best-Practices.md covering session mode selection, network mode
guide, monitoring recommendations, long-running tasks, team workflows,
AI-generated code handling, and storage cleanup
- C2: Expand Snapshot-Management.md with context opener (stateless vs stateful
tradeoffs, restore requirement) and Best Practices section
- C3: Add Troubleshooting section to Image-Management.md (image not found,
build failures, wrong image applied, stale image after update) and
Best Practices section
- C4: Document coi run in Container-Operations.md with use cases, flags,
and differences from coi shell
- C5: Add JSONL field schema tables to Security-Monitoring.md (common fields,
type-specific fields, NFT-specific fields)
Formatting:
- F5: Add Best Practices sections to Network-Isolation, Profiles,
Image-Management, and Snapshot-Management
Navigation:
- Home.md updated with Best-Practices and Migration-Guide in nav