--- # yaml-language-server: $schema=https://kubernetes-schemas.pages.dev/external-secrets.io/externalsecret_v1beta1.json apiVersion: external-secrets.io/v1beta1 kind: ExternalSecret metadata: name: ghostfolio spec: secretStoreRef: kind: ClusterSecretStore name: onepassword-connect target: name: ghostfolio-secret template: engineVersion: v2 data: ACCESS_TOKEN_SALT: "{{ .GHOSTFOLIO_ACCESS_TOKEN_SALT }}" JWT_SECRET_KEY: "{{ .GHOSTFOLIO_JWT_SECRET_KEY }}" dataFrom: - extract: key: ghostfolio --- apiVersion: external-secrets.io/v1beta1 kind: ExternalSecret metadata: name: ghostfolio-db spec: secretStoreRef: kind: ClusterSecretStore name: crunchy-pgo-secrets target: name: ghostfolio-db-secret template: engineVersion: v2 data: DATABASE_URL: postgresql://{{ index . "user" }}:{{ index . "password" }}@{{ index . "host" }}:{{ index . "port" }}/{{ index . "dbname" }} dataFrom: - extract: key: postgres-pguser-ghostfolio