# External Secrets Operator - Kubernetes secret sync from external providers # Syncs secrets from 1Password Connect to native Kubernetes Secrets # # Static manifests rendered from upstream Helm chart v2.2.0 # Upstream: https://github.com/external-secrets/external-secrets # # Prerequisites: # - 1password-connect must be deployed and healthy # - external-secrets-crds must be synced first # apiVersion: argoproj.io/v1alpha1 kind: Application metadata: name: external-secrets namespace: argocd spec: project: default source: repoURL: ssh://forgejo@forge.ops.eblu.me:2222/eblume/blumeops.git targetRevision: main path: argocd/manifests/external-secrets destination: server: https://kubernetes.default.svc namespace: external-secrets syncPolicy: syncOptions: - CreateNamespace=true - ServerSideApply=true