Add MIT LICENSE and a per-file as-is notice

The repo is public and files are fetched by raw URL, so a reader who lands
on one runbook never sees the README -- the repo's context does not travel
with the file. Each .md now carries two lines under the title, each .ps1 the
equivalent at the end of its .NOTES block.

Deliberately two lines, not a paragraph. These files are read through `| more`
on a client console mid-incident, and the top of the file is where the
procedure-specific warnings live -- never a live chart, stop the service
before copying, confirm authorization before acting. A legal preamble above
those competes with them and trains people to skip past.

Wording aims at a stranger who found the repo, not at the quality of the
procedure: these double as documented-procedure evidence for E&O, and
language implying the content is unreliable works against that.

MIT rather than no license: the warranty and liability disclaimer is the part
that does the work, and leaving it unlicensed makes reuse ambiguous rather
than disclaimed.

Also fixes 5 stale ops/rb URLs in scripts/*.ps1 that the previous commit
missed -- it only swept the .md files.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01HwcG1jLs1T425QRMxtjxP7
This commit is contained in:
2026-09-02 23:06:44 -07:00
parent 6589082317
commit f2a979f047
16 changed files with 94 additions and 7 deletions
+5 -1
View File
@@ -7,7 +7,7 @@
.NOTES
Convention for scripts in this repo — designed to run via:
irm https://gitea.ivangodwin.com/ops/rb/raw/branch/main/scripts/<file>.ps1 | iex
irm rb.godwinsystems.com/scripts/<file>.ps1 | iex
Because `irm | iex` runs in the caller's session:
- No param() block — you can't pass args through the pipe. Prompt with
@@ -17,6 +17,10 @@
PUBLIC REPO: placeholders only. Never hard-code a client, host, user, or
secret. Prompt for them at run time.
Provided as-is, without warranty. This runs in your session via `iex` —
read it before you run it. You are responsible for the systems you run
it on. See LICENSE.
#>
$ErrorActionPreference = 'Stop'
+5 -1
View File
@@ -11,13 +11,17 @@
Business), not plain Pro.
.NOTES
Run via: irm https://gitea.ivangodwin.com/ops/rb/raw/branch/main/scripts/cg-disable.ps1 | iex
Run via: irm rb.godwinsystems.com/scripts/cg-disable.ps1 | iex
Referenced by od-smb-cred.md, Step 3.
If Credential Guard is still running after reboot, it was enabled with a
UEFI lock (needs the bcdedit / physical-presence removal), or MDM policy is
re-enabling it — align with the environment baseline instead of fighting it
locally.
Provided as-is, without warranty. This runs in your session via `iex` —
read it before you run it. You are responsible for the systems you run
it on. See LICENSE.
#>
$ErrorActionPreference = 'Stop'
+5 -1
View File
@@ -22,7 +22,7 @@
.NOTES
Manual spot-check:
irm https://gitea.ivangodwin.com/ops/rb/raw/branch/main/scripts/od-backup-check.ps1 | iex
irm rb.godwinsystems.com/scripts/od-backup-check.ps1 | iex
For unattended monitoring, schedule a filled-in LOCAL copy (with <DEST> and the
heartbeat URL baked in) — keep that copy in the private tier, not here. See
@@ -30,6 +30,10 @@
iex-safe: uses `return`, never `exit` (which would close an interactive
session). PUBLIC REPO: no client specifics hard-coded; prompt at run time.
Provided as-is, without warranty. This runs in your session via `iex` —
read it before you run it. You are responsible for the systems you run
it on. See LICENSE.
#>
$ErrorActionPreference = 'Stop'
+5 -1
View File
@@ -15,7 +15,7 @@
fails clearly if FreeDentalConfig.xml isn't found in either.
.NOTES
Run via: irm https://gitea.ivangodwin.com/ops/rb/raw/branch/main/scripts/od-cfg-acl.ps1 | iex
Run via: irm rb.godwinsystems.com/scripts/od-cfg-acl.ps1 | iex
Referenced by od-cfg-persist.md, Option B.
SECURITY: on direct-connection setups FreeDentalConfig.xml also holds the
@@ -23,6 +23,10 @@
not change that exposure, but prefer a limited MySQL user over root for
workstation connections, and Middle Tier as the long-term fix that removes
per-workstation DB credentials entirely. See the runbook's security note.
Provided as-is, without warranty. This runs in your session via `iex` —
read it before you run it. You are responsible for the systems you run
it on. See LICENSE.
#>
$ErrorActionPreference = 'Stop'
+5 -1
View File
@@ -28,7 +28,7 @@
.NOTES
Run ON THE DATABASE SERVER, elevated, when no one is using Open Dental:
irm https://gitea.ivangodwin.com/ops/rb/raw/branch/main/scripts/od-db-backup.ps1 | iex
irm rb.godwinsystems.com/scripts/od-db-backup.ps1 | iex
Because `irm | iex` runs in the caller's session: no param() block (prompts via
Read-Host), and #Requires is not enforced (admin is checked manually).
@@ -38,6 +38,10 @@
PUBLIC REPO: no client specifics hard-coded. All paths are auto-detected or
prompted at run time.
Provided as-is, without warranty. This runs in your session via `iex` —
read it before you run it. You are responsible for the systems you run
it on. See LICENSE.
#>
$ErrorActionPreference = 'Stop'