{
  "manifest_version": "1.0.0",
  "template": {
    "id": "fa7d8459-46a7-4565-a2cf-aecc48166e7f",
    "slug": "wygiwyh",
    "name": "WYGIWYH",
    "description": "Self-hosted multi-currency personal finance tracker with PostgreSQL",
    "url": "https://railway.com/deploy/wygiwyh",
    "upstream": {
      "image": "eitchtee/wygiwyh:0.23.2@sha256:64b02913916b60df21dcb70a7d44d98c20d8d5e46690e0ea5cad2d3e828bbd2b"
    }
  },
  "status": "unvalidated",
  "validated_at": null,
  "success_rate_30d": null,
  "services": [
    {
      "name": "web",
      "source": {
        "image": "eitchtee/wygiwyh:0.23.2@sha256:64b02913916b60df21dcb70a7d44d98c20d8d5e46690e0ea5cad2d3e828bbd2b"
      },
      "needs_volume": true,
      "volume_mount_path": "/usr/src/app/attachments",
      "http": true
    },
    {
      "name": "db",
      "source": {
        "image": "postgres:15.19-bookworm@sha256:d4a8e1f88f475ee3e0137fa89d21ebc59f6c6ab16bf369ee92907607cc3455ae"
      },
      "needs_volume": true,
      "volume_mount_path": "/var/lib/postgresql",
      "http": false
    }
  ],
  "required_inputs": [
    {
      "key": "TZ",
      "service": "web",
      "description": "Time zone for scheduled background tasks.",
      "secret": false,
      "strategy": "default",
      "default": "UTC"
    },
    {
      "key": "URL",
      "service": "web",
      "description": "Public URL(s), space-separated; used as Django's CSRF trusted origins. Add a custom domain here.",
      "secret": false,
      "strategy": "railway_provided",
      "railway_source": "railway_domain"
    },
    {
      "key": "PORT",
      "service": "web",
      "description": "Port Railway routes to and health-checks. Keep it equal to INTERNAL_PORT.",
      "secret": false,
      "strategy": "default",
      "default": "8000"
    },
    {
      "key": "DEBUG",
      "service": "web",
      "description": "Django debug mode. Keep false.",
      "secret": false,
      "strategy": "default",
      "default": "false"
    },
    {
      "key": "SQL_HOST",
      "service": "web",
      "description": "The bundled PostgreSQL on Railway's private network.",
      "secret": false,
      "strategy": "railway_provided",
      "railway_source": "railway_private_domain"
    },
    {
      "key": "SQL_PORT",
      "service": "web",
      "description": "PostgreSQL port.",
      "secret": false,
      "strategy": "default",
      "default": "5432"
    },
    {
      "key": "SQL_USER",
      "service": "web",
      "description": "Database user, from the db service.",
      "secret": false,
      "strategy": "railway_provided",
      "railway_source": "reference_variable"
    },
    {
      "key": "SECRET_KEY",
      "service": "web",
      "description": "Django secret key, generated. Changing it signs everyone out.",
      "secret": true,
      "strategy": "generate",
      "generate": "random_base64_32"
    },
    {
      "key": "ADMIN_EMAIL",
      "service": "web",
      "description": "Your email. The admin account is created with it on the first start; you sign in with it.",
      "secret": false,
      "strategy": "ask_user"
    },
    {
      "key": "SQL_DATABASE",
      "service": "web",
      "description": "Database name, from the db service.",
      "secret": false,
      "strategy": "railway_provided",
      "railway_source": "reference_variable"
    },
    {
      "key": "SQL_PASSWORD",
      "service": "web",
      "description": "Database password, from the db service.",
      "secret": true,
      "strategy": "railway_provided",
      "railway_source": "reference_variable"
    },
    {
      "key": "TASK_WORKERS",
      "service": "web",
      "description": "Number of background (procrastinate) worker processes.",
      "secret": false,
      "strategy": "default",
      "default": "1"
    },
    {
      "key": "HTTPS_ENABLED",
      "service": "web",
      "description": "true: Secure session cookie and trust Railway's X-Forwarded-Proto header.",
      "secret": false,
      "strategy": "default",
      "default": "true"
    },
    {
      "key": "INTERNAL_PORT",
      "service": "web",
      "description": "Port gunicorn listens on.",
      "secret": false,
      "strategy": "default",
      "default": "8000"
    },
    {
      "key": "ADMIN_PASSWORD",
      "service": "web",
      "description": "The admin's initial password, generated. Copy it to sign in; change it in WYGIWYH later.",
      "secret": true,
      "strategy": "generate",
      "generate": "strong_password"
    },
    {
      "key": "RAILWAY_RUN_UID",
      "service": "web",
      "description": "Start as root so the start command can hand the root-owned volume to the app user; the app itself runs as app.",
      "secret": false,
      "strategy": "default",
      "default": "0"
    },
    {
      "key": "WEB_CONCURRENCY",
      "service": "web",
      "description": "Number of gunicorn worker processes.",
      "secret": false,
      "strategy": "default",
      "default": "2"
    },
    {
      "key": "DJANGO_ALLOWED_HOSTS",
      "service": "web",
      "description": "Host names Django answers, space-separated. Keep healthcheck.railway.app for Railway's health check.",
      "secret": false,
      "strategy": "railway_provided",
      "railway_source": "railway_domain"
    },
    {
      "key": "RAILWAY_HEALTHCHECK_TIMEOUT_SEC",
      "service": "web",
      "description": "The first start runs database migrations and creates the admin.",
      "secret": false,
      "strategy": "default",
      "default": "300"
    },
    {
      "key": "PGDATA",
      "service": "db",
      "description": "Data directory inside the volume (the volume root holds lost+found).",
      "secret": false,
      "strategy": "default",
      "default": "/var/lib/postgresql/pgdata"
    },
    {
      "key": "POSTGRES_DB",
      "service": "db",
      "description": "PostgreSQL database.",
      "secret": false,
      "strategy": "default",
      "default": "wygiwyh"
    },
    {
      "key": "POSTGRES_USER",
      "service": "db",
      "description": "PostgreSQL user.",
      "secret": false,
      "strategy": "default",
      "default": "wygiwyh"
    },
    {
      "key": "POSTGRES_PASSWORD",
      "service": "db",
      "description": "PostgreSQL password, generated.",
      "secret": true,
      "strategy": "generate",
      "generate": "strong_password"
    }
  ],
  "deploy": {
    "mcp": {
      "server": "railway",
      "tool": "deploy_template",
      "args": {
        "template_code": "wygiwyh"
      }
    },
    "cli": "railway deploy --template wygiwyh",
    "api": {
      "method": "POST",
      "path": "/graphql/v2",
      "body": {
        "query": "mutation templateDeploy($input: TemplateDeployV2Input!) { templateDeployV2(input: $input) { projectId workflowId } }",
        "variables": {
          "input": {
            "templateId": "fa7d8459-46a7-4565-a2cf-aecc48166e7f",
            "serializedConfig": {
              "buckets": {},
              "services": {
                "0c83b38a-413e-4e3b-8987-8ea023c3921f": {
                  "icon": null,
                  "name": "web",
                  "deploy": {
                    "startCommand": "sh -c 'chown -R app:app /usr/src/app/attachments && exec /start-single'",
                    "healthcheckPath": "/login/",
                    "restartPolicyType": "ON_FAILURE",
                    "restartPolicyMaxRetries": 10
                  },
                  "source": {
                    "image": "eitchtee/wygiwyh:0.23.2@sha256:64b02913916b60df21dcb70a7d44d98c20d8d5e46690e0ea5cad2d3e828bbd2b"
                  },
                  "variables": {
                    "TZ": {
                      "isOptional": false,
                      "description": "Time zone for scheduled background tasks.",
                      "defaultValue": "UTC"
                    },
                    "URL": {
                      "isOptional": false,
                      "description": "Public URL(s), space-separated; used as Django's CSRF trusted origins. Add a custom domain here.",
                      "defaultValue": "https://${{RAILWAY_PUBLIC_DOMAIN}}"
                    },
                    "PORT": {
                      "isOptional": false,
                      "description": "Port Railway routes to and health-checks. Keep it equal to INTERNAL_PORT.",
                      "defaultValue": "8000"
                    },
                    "DEBUG": {
                      "isOptional": false,
                      "description": "Django debug mode. Keep false.",
                      "defaultValue": "false"
                    },
                    "SQL_HOST": {
                      "isOptional": false,
                      "description": "The bundled PostgreSQL on Railway's private network.",
                      "defaultValue": "${{db.RAILWAY_PRIVATE_DOMAIN}}"
                    },
                    "SQL_PORT": {
                      "isOptional": false,
                      "description": "PostgreSQL port.",
                      "defaultValue": "5432"
                    },
                    "SQL_USER": {
                      "isOptional": false,
                      "description": "Database user, from the db service.",
                      "defaultValue": "${{db.POSTGRES_USER}}"
                    },
                    "SECRET_KEY": {
                      "isOptional": false,
                      "description": "Django secret key, generated. Changing it signs everyone out.",
                      "defaultValue": "{{SECRET_KEY}}"
                    },
                    "ADMIN_EMAIL": {
                      "isOptional": false,
                      "description": "Your email. The admin account is created with it on the first start; you sign in with it.",
                      "defaultValue": "{{ADMIN_EMAIL}}"
                    },
                    "SQL_DATABASE": {
                      "isOptional": false,
                      "description": "Database name, from the db service.",
                      "defaultValue": "${{db.POSTGRES_DB}}"
                    },
                    "SQL_PASSWORD": {
                      "isOptional": false,
                      "description": "Database password, from the db service.",
                      "defaultValue": "${{db.POSTGRES_PASSWORD}}"
                    },
                    "TASK_WORKERS": {
                      "isOptional": false,
                      "description": "Number of background (procrastinate) worker processes.",
                      "defaultValue": "1"
                    },
                    "HTTPS_ENABLED": {
                      "isOptional": false,
                      "description": "true: Secure session cookie and trust Railway's X-Forwarded-Proto header.",
                      "defaultValue": "true"
                    },
                    "INTERNAL_PORT": {
                      "isOptional": false,
                      "description": "Port gunicorn listens on.",
                      "defaultValue": "8000"
                    },
                    "ADMIN_PASSWORD": {
                      "isOptional": false,
                      "description": "The admin's initial password, generated. Copy it to sign in; change it in WYGIWYH later.",
                      "defaultValue": "{{ADMIN_PASSWORD}}"
                    },
                    "OIDC_CLIENT_ID": {
                      "isOptional": true,
                      "description": "Optional. OIDC client id (with OIDC_CLIENT_SECRET and OIDC_SERVER_URL enables single sign-on)."
                    },
                    "OIDC_SERVER_URL": {
                      "isOptional": true,
                      "description": "Optional. OIDC issuer URL."
                    },
                    "RAILWAY_RUN_UID": {
                      "isOptional": false,
                      "description": "Start as root so the start command can hand the root-owned volume to the app user; the app itself runs as app.",
                      "defaultValue": "0"
                    },
                    "WEB_CONCURRENCY": {
                      "isOptional": false,
                      "description": "Number of gunicorn worker processes.",
                      "defaultValue": "2"
                    },
                    "OIDC_CLIENT_NAME": {
                      "isOptional": true,
                      "description": "Optional. Name shown on the OIDC login button."
                    },
                    "OIDC_ALLOW_SIGNUP": {
                      "isOptional": true,
                      "description": "Optional. Upstream default true lets anyone at your OIDC provider get an account; set false to restrict."
                    },
                    "ENABLE_SOFT_DELETE": {
                      "isOptional": true,
                      "description": "Optional. true keeps deleted transactions in the database."
                    },
                    "OIDC_CLIENT_SECRET": {
                      "isOptional": true,
                      "description": "Optional. OIDC client secret."
                    },
                    "DJANGO_ALLOWED_HOSTS": {
                      "isOptional": false,
                      "description": "Host names Django answers, space-separated. Keep healthcheck.railway.app for Railway's health check.",
                      "defaultValue": "${{RAILWAY_PUBLIC_DOMAIN}} healthcheck.railway.app localhost 127.0.0.1"
                    },
                    "KEEP_DELETED_ENTRIES_FOR": {
                      "isOptional": true,
                      "description": "Optional. Days to keep soft-deleted transactions (default 365, 0 keeps all)."
                    },
                    "RAILWAY_HEALTHCHECK_TIMEOUT_SEC": {
                      "isOptional": false,
                      "description": "The first start runs database migrations and creates the admin.",
                      "defaultValue": "300"
                    }
                  },
                  "networking": {
                    "serviceDomains": {
                      "<hasDomain>:8000": {
                        "port": 8000
                      }
                    }
                  },
                  "volumeMounts": {
                    "0c83b38a-413e-4e3b-8987-8ea023c3921f": {
                      "mountPath": "/usr/src/app/attachments"
                    }
                  }
                },
                "273eb09f-bfde-4201-8e1a-14827ec5dede": {
                  "icon": null,
                  "name": "db",
                  "deploy": {
                    "startCommand": null,
                    "healthcheckPath": null,
                    "restartPolicyType": "ON_FAILURE",
                    "restartPolicyMaxRetries": 10
                  },
                  "source": {
                    "image": "postgres:15.19-bookworm@sha256:d4a8e1f88f475ee3e0137fa89d21ebc59f6c6ab16bf369ee92907607cc3455ae"
                  },
                  "variables": {
                    "PGDATA": {
                      "isOptional": false,
                      "description": "Data directory inside the volume (the volume root holds lost+found).",
                      "defaultValue": "/var/lib/postgresql/pgdata"
                    },
                    "POSTGRES_DB": {
                      "isOptional": false,
                      "description": "PostgreSQL database.",
                      "defaultValue": "wygiwyh"
                    },
                    "POSTGRES_USER": {
                      "isOptional": false,
                      "description": "PostgreSQL user.",
                      "defaultValue": "wygiwyh"
                    },
                    "POSTGRES_PASSWORD": {
                      "isOptional": false,
                      "description": "PostgreSQL password, generated.",
                      "defaultValue": "{{POSTGRES_PASSWORD}}"
                    }
                  },
                  "volumeMounts": {
                    "273eb09f-bfde-4201-8e1a-14827ec5dede": {
                      "mountPath": "/var/lib/postgresql"
                    }
                  }
                }
              }
            }
          }
        }
      }
    }
  },
  "post_deploy": {
    "healthcheck": {
      "service": "web",
      "method": "GET",
      "path": "/login/",
      "expect_status": 200
    }
  },
  "resources": {
    "expected_services": 2,
    "needs_volume": true
  },
  "generated_at": "2026-10-07T10:14:36.716Z",
  "generator_version": "0.1.0"
}
