print.sh

# Design plans / notes in docs/plan/ ARE tracked (committed so they're shared
# across sessions and with teammates). Timestamped YYYYMMDD-HHMMSS-<slug>.md so
# they sort chronologically.

# macOS Finder metadata — never commit (esp. now that docs/plan/ is tracked).
.DS_Store

# Local reference clone of kubernetes-sigs/agent-sandbox — the strategic
# reference implementation we steal orchestration patterns from (see the
# workspace-operator). A nested checkout kept alongside the code, never
# committed into this repo. Do NOT treat as deletable cruft.
/agent-sandbox/

# Byte-compiled / optimized / DLL files
__pycache__/
*.py[cod]
*$py.class
tmp-*

# C extensions
*.so

# Distribution / packaging
.Python
build/
!.claude/skills/build/
develop-eggs/
dist/
downloads/
eggs/
.eggs/
lib/
lib64/
parts/
sdist/
var/
wheels/
share/python-wheels/
*.egg-info/
.installed.cfg
*.egg
MANIFEST

# PyInstaller
#  Usually these files are written by a python script from a template
#  before PyInstaller builds the exe, so as to inject date/other infos into it.
*.manifest
*.spec

# Installer logs
pip-log.txt
pip-delete-this-directory.txt

# Unit test / coverage reports
htmlcov/
.tox/
.nox/
.coverage
.coverage.*
.cache
nosetests.xml
coverage.xml
*.cover
*.py,cover
.hypothesis/
.pytest_cache/
cover/

# Translations
*.mo
*.pot

# Django stuff:
*.log
local_settings.py
db.sqlite3
db.sqlite3-journal

# Flask stuff:
instance/
.webassets-cache

# Scrapy stuff:
.scrapy

# Sphinx documentation
docs/_build/

# PyBuilder
.pybuilder/
target/

# Jupyter Notebook
.ipynb_checkpoints

# IPython
profile_default/
ipython_config.py

# pyenv
#   For a library or package, you might want to ignore these files since the code is
#   intended to run in multiple environments; otherwise, check them in:
# .python-version

# pipenv
#   According to pypa/pipenv#598, it is recommended to include Pipfile.lock in version control.
#   However, in case of collaboration, if having platform-specific dependencies or dependencies
#   having no cross-platform support, pipenv may install dependencies that don't work, or not
#   install all needed dependencies.
#Pipfile.lock

# UV
#   Similar to Pipfile.lock, it is generally recommended to include uv.lock in version control.
#   This is especially recommended for binary packages to ensure reproducibility, and is more
#   commonly ignored for libraries.
#uv.lock

# poetry
#   Similar to Pipfile.lock, it is generally recommended to include poetry.lock in version control.
#   This is especially recommended for binary packages to ensure reproducibility, and is more
#   commonly ignored for libraries.
#   https://python-poetry.org/docs/basic-usage/#commit-your-poetrylock-file-to-version-control
#poetry.lock

# pdm
#   Similar to Pipfile.lock, it is generally recommended to include pdm.lock in version control.
#pdm.lock
#   pdm stores project-wide configurations in .pdm.toml, but it is recommended to not include it
#   in version control.
#   https://pdm.fming.dev/latest/usage/project/#working-with-version-control
.pdm.toml
.pdm-python
.pdm-build/

# PEP 582; used by e.g. github.com/David-OConnor/pyflow and github.com/pdm-project/pdm
__pypackages__/

# Celery stuff
celerybeat-schedule
celerybeat.pid

# SageMath parsed files
*.sage.py

# Environments
.env
.venv
env/
venv/
ENV/
env.bak/
venv.bak/

# Spyder project settings
.spyderproject
.spyproject

# Rope project settings
.ropeproject

# mkdocs documentation
/site

# mypy
.mypy_cache/
.dmypy.json
dmypy.json

# Pyre type checker
.pyre/

# pytype static type analyzer
.pytype/

# Cython debug symbols
cython_debug/

# PyCharm
#  JetBrains specific template is maintained in a separate JetBrains.gitignore that can
#  be found at https://github.com/github/gitignore/blob/main/Global/JetBrains.gitignore
#  and can be added to the global gitignore or merged into this file.  For a more nuclear
#  option (not recommended) you can uncomment the following to ignore the entire idea folder.
#.idea/

# Ruff stuff:
.ruff_cache/

# PyPI configuration file
.pypirc

# Terraform
*.tfstate
*.tfstate.*
*.tfplan
*.tfplan.*
.terraform.lock.hcl
.terraform/
terraform.tfvars.backup
terraform.tfvars
*.tfvars
!common.tfvars
terraform.tfstate.d/
**/logs/
state-backups/

# AWS Credentials
*.aws-creds
!*.aws-creds.example

# Local scratch — migration POCs, probes, throwaway experiments.
# Anything here is intentional out-of-tree work; nothing under poc/
# is built or shipped.
poc/

# Vault sensitive files
infra/access/vault-keys.json

# Config files (generated from Terraform outputs, AWS Secrets Manager, and GitHub Actions)
infra/access/*/sm-stored.config
infra/access/*/gh-stored.config
infra/access/sm-stored.config
infra/access/gh-stored.config

# Custom ignores
infra/aws/route53_zone_config.txt
infra/env/.terraform.lock.hcl

# --- Overrides for infra directories ---
# The generic "env/" ignore rule above matches any folder named "env" anywhere,
# which unintentionally ignored our Terraform configuration under infra/env/.
# Re-include that specific directory so Terraform files are tracked.
!infra/env/
!infra/env/**
# Re-include EKS provider scripts (same issue as infra/env/)
!infra/providers/eks/env/
!infra/providers/eks/env/**

# Auto-generated registry config files (synced to GitHub variables)
infra/package-registries/pypi.env
infra/oci-registries/oci.env

# EKS ops generated files
infra/cluster_platforms/eks/.backend-configs/
infra/cluster_platforms/eks/iam_users/
infra/cluster_platforms/eks/oci-registries/

# Kubeconfig files (generated by infra.sh and e2e.sh)
kube.conf
kubeconfig-*
infra/providers/eks/env/kube.conf

# Claude Code
.claude/settings.local.json

# Generated Chart.yaml files (from Chart.yaml.template)
apps/*/helm/Chart.yaml
ops/apps-chart/Chart.yaml

# Release manifest (tracked for drift detection on main branch)
!manifest.yaml
*.tgz

docker-bake.hcl
.claude/worktrees/
apps/data/rates-web/tsconfig.tsbuildinfo
docs/.DS_Store
.DS_Store
backups/
backups/
node_modules/
apps/chat-ui/dist/
apps/chat-ui/coverage/
apps/chat-ui/package-lock.json
apps/chat-ui/*.tsbuildinfo

# Re-include frontend src/lib (general /lib rule above ignores it)
!apps/chat-ui/src/lib/
!apps/chat-ui/src/lib/**

# Holding dir for local-only clones (e.g. agent-sandbox); track only the dir marker
/.gitignored/*
!/.gitignored/.gitkeep
