ReadonlyconfigGuest configuration path; must already exist inside the environment.
Optional ReadonlyexecutableGuest executable on PATH or an explicit executable path.
Optional ReadonlyfrozenRequire existing guest package pins.
Optional ReadonlymachineExplicit guest machine selection, independent of the host selection.
Optional ReadonlynoReject removal actions in a guest build.
Optional ReadonlyplanInspect only; does not bootstrap or apply guest resources.
Guest-side reconciliation settings. Paths refer to the guest, never the host.