#!/bin/sh
 set -e
+
 . "${HOME}/.nonpath_bins/plomlib.sh"
+# for: get_passphrase
 
 PATH_BORGKEYS="${HOME}/.config/borg/keys"
 NAME_REPO=borg
     REPO="${NAME_SERVER}:${NAME_REPO}"
     while true; do
         if [ -z "${BORG_PASSPHRASE}" ]; then
-           get_passphrase
-            export BORG_PASSPHRASE="${PASSPHRASE}"
+            export BORG_PASSPHRASE="$(get_passphrase)"
         fi
         set +e
         ARCHIVES=$(borg list "${REPO}")  # separate step so we may fail early on bad passphrase
             echo "Aborting due to unexpected ${NAME_BORGAPP} error."
             exit 1
         fi
-        export BORG_PASSPHRASE=""
+        export BORG_PASSPHRASE=
     done
     ARCHIVE=$(echo "${ARCHIVES}" | grep "${NAME_ARCHIVE}" | tail -1 | cut -f1 -d' ')
     echo "Pulling archive: ${ARCHIVE}"
 
 #!/bin/sh
 set -e
 
-# for: audio_dev_is_mute
 . "${HOME}/.nonpath_bins/plomlib.sh"
+# for: audio_dev_is_mute
 
 MAX_LOUDNESS=150
 
 
+set -e
+
 get_passphrase() {
     stty -echo
     printf "\nPassphrase: "
     read PASSPHRASE
     stty echo
-    echo "" # newline so user knows their input return was accepted
+    printf "${PASSPHRASE}"
 }
 
 audio_dev_is_mute() {
 
 #!/bin/sh
 # see sway-bar(5) and swaybar-protocol(7)
+set -e
 
-# for: audio_dev_is_mute
 . "${HOME}/.nonpath_bins/plomlib.sh"
+# for: audio_dev_is_mute
 
 SYSCLASS_DIR=/sys/class
 
 
-export DEBIAN_FRONTEND=noninteractive
+# NB: this all assumes we're run from script's parent directory
+PARENT_DIR=$(dirname $(pwd))
+DEBIAN_RELEASE=$(basename ${PARENT_DIR})
+PATH_REPO=$(dirname ${PARENT_DIR})
+PATH_CONF="${PATH_REPO}/${DEBIAN_RELEASE}"
+PATH_CONF_HOME="${PATH_CONF}/home"
 
 USERNAME=plom
 PATH_USER_HOME="/home/${USERNAME}"
 
-# NB: this assume we're run from script's parent directory
-cd ../..
-PATH_REPO=$(pwd)
-cd -
-PATH_CONF="${PATH_REPO}/testing"
-PATH_CONF_HOME="${PATH_CONF}/home"
-
 expect_min_n_args() {
     MIN_ARGS="$1"
     EXPLAINER="$2"
 
 set -e
+cd $(dirname "$0")
 
-# NB: this assume we're run from script's parent directory
 . ./_config_scripts_lib.sh
+# for:
+# abort_if_exists
+# abort_if_not_user
+# abort_if_offline
+# - PATH_REPO
+# - PATH_USER_HOME
+# - USERNAME
 
 PATH_REPOS="${HOME}/repos"
 PATH_BORGKEYS="${HOME}/.config/borg/keys"
 ssh-keyscan "${REPOS_SITE_DOMAIN}" >> "${PATH_KNOWN_HOSTS}"
 mkdir "${PATH_REPOS}"
 cd "${PATH_REPOS}"
-ssh ${REPOS_SITE_LOGIN} "cd $REMOTE_PATH_REPOS && ls -1" | while read REPO_NAME; do
+ssh ${REPOS_SITE_LOGIN} "cd ${REMOTE_PATH_REPOS} && ls -1" | while read REPO_NAME; do
     git clone --recurse "${REPOS_SITE_LOGIN}:${REMOTE_PATH_REPOS}/${REPO_NAME}"
 done
+cd -
 
 echo "\nSetting up borg and pull in ~/org"
 PATH_TARED_KEYS=borg_keyfiles
 
 #!/bin/sh
 set -e
+cd $(dirname "$0")
 
-# NB: this assume we're run from script's parent directory
 . ./_config_scripts_lib.sh
+# for:
+# - abort_if_offline
+# - expect_min_n_args
+# - PATH_CONF
+# - PATH_CONF_HOME
+# - PATH_REPO
+# - PATH_USER_HOME
+# - USERNAME
 
 PATH_REL_ETC=etc
 PATH_CONF_ETC="${PATH_CONF}/${PATH_REL_ETC}"
 TAG_ALL=all
 TAGS_USER='user desktop'
 
+export DEBIAN_FRONTEND=noninteractive
+
 copy_dirtree() {
     expect_min_n_args 3 "(source root, target root, tags)" "$@"
     SOURCE_ROOT="$1"
     TARGET_ROOT="$2"
     shift 2
-    modules="$@"
-    INITIAL_DIRECTORY="$(pwd)"
+    TAGS="$@"
     for TAG in ${TAGS}; do
        TAG_PATH="${SOURCE_ROOT}/${TAG}"
        if [ ! -d "${TAG_PATH}" ]; then
             mkdir -p "${DIRECTORY}"
             cp "${SOURCE_PATH}" "${TARGET_PATH}"
         done
-        cd "${INITIAL_DIRECTORY}"
+        cd -
     done
 }
 
 install_aptmarkeds() {
     # Walk through the package names in ../aptmark/ files to ensure the respective
     # packages are installed.
-    for TAG in ${MIN_TAGS} user desktop; do
+    for TAG in $1; do
         PATH="${PATH_CONF}/aptmark/${TAG}"
         if [ ! -f "${PATH}" ]; then
             continue
 SYSTEM_CLASS_NAME="$(get_system_class_for ${SYSTEM_NAME})"
 MIN_TAGS="${TAG_ALL} ${SYSTEM_CLASS_NAME} ${SYSTEM_NAME}"
 
-echo "\nUpgrading to testing."
+echo "\nUpgrading to ${DEBIAN_RELEASE}."
 # For this step only very selectively prepare /etc/ files.
 cp "${PATH_CONF_ETC}/${TAG_ALL}/${PATH_REL_APT_CONF}/99_minimize_dependencies" "${PATH_ETC}/${PATH_REL_APT_CONF}/"
 upgrade_from_older_release
     # Hold kernel known to work with nvidia-drivers.
     apt-mark hold linux-image-amd64 linux-headers-amd64
 fi
-install_aptmarkeds
+install_aptmarkeds ${MIN_TAGS} ${TAGS_USER}
 apt -y --purge autoremove
 
 # NB: This needs to come before steps potentially overwriting /etc/network/interfaces.
 
 #!/bin/sh
 set -e
+cd $(dirname "$0")
 
-# NB: this assume we're run from script's parent directory
 . ./_config_scripts_lib.sh
-. "${PATH_CONF_HOME}"/desktop/.nonpath_bins/plomlib.sh
+# for:
+# - abort_if_exists
+# - abort_if_not_user
+# - abort_if_offline
+# - expect_min_n_args
+# - DEBIAN_RELEASE
+# - PATH_CONF_HOME
+# - PATH_REPO
+# - PATH_USER_HOME
+# - USERNAME
+
+. "${PATH_USER_HOME}/.nonpath_bins/plomlib.sh"
+# for: get_passphrase
 
 export PATH_SECRETS=${PATH_USER_HOME}/to_usb
 
     sleep 0.1
 done
 while true; do
-    get_passphrase
+    PASSPHRASE=$(get_passphrase)
     set +e
     echo "${PASSPHRASE}" | pmount "${PATH_DEV}"
     RESULT=$?
   echo "Cannot pass to user script passphrase with illegal character, aborting."
   exit 1
 fi
-su -l "${USERNAME}" -c "cd ${PATH_REPO}/testing/scripts && /bin/sh ./_setup_secrets_user.sh '${PASSPHRASE}'"
+su -l "${USERNAME}" -c "/bin/sh ./$(basename ${PATH_REPO})/${DEBIAN_RELEASE}/scripts/_setup_secrets_user.sh '${PASSPHRASE}'"