# Whitelist approach: ignore everything, then allow configuration files only.
/*
!/.gitignore
!/.HA_VERSION
!/configuration.yaml
!/automations.yaml
!/scripts.yaml
!/scenes.yaml
!/themes/
!/compose.yaml
!/packages/
!/dashboards/
!/blueprints/

# From .storage: only dashboards, energy settings and area/label names.
# Everything else there (logins, tokens, integration credentials) stays out.
!/.storage/
/.storage/*
!/.storage/lovelace.*
!/.storage/lovelace_dashboards
!/.storage/lovelace_resources
!/.storage/energy
!/.storage/core.area_registry
!/.storage/core.label_registry
/.storage/*.bak-*

# Never commit these, even if the whitelist above changes
secrets.yaml
.cloud/
*.db
*.db-shm
*.db-wal
*.log*
backups/
