Compare commits

..

697 Commits

Author SHA1 Message Date
nixpkgs-ci[bot]
ba9b3359a7 Merge master into staging-next 2026-09-17 18:10:58 +00:00
Francesco Gazzetta
9e597d73df mindustry: 159.3 -> 160.4 (#562180) 2026-09-17 17:59:47 +00:00
Adam C. Stephens
d79f69f670 omp: 18.2.1 -> 18.2.4 (#564260) 2026-09-17 17:59:34 +00:00
teutat3s
313553d6e9 deploy-rs: 0-unstable-2026-02-02 -> 0-unstable-2026-09-14 (#563931) 2026-09-17 17:46:49 +00:00
Peder Bergebakken Sundt
2ad3449345 treewide: mark as broken on darwin (last successful Hydra build 2024) (#563346) 2026-09-17 17:46:48 +00:00
nixpkgs-ci[bot]
837be3b19b librewolf-unwrapped: 155.0.1-1 -> 156.0-1 (#563896) 2026-09-17 17:44:56 +00:00
Peder Bergebakken Sundt
d7dcc85125 goperf: 0-unstable-2026-08-13 -> 0-unstable-2026-09-08 (#564196) 2026-09-17 17:41:42 +00:00
Peder Bergebakken Sundt
029cd3fc48 colmap: skip failing test on aarch64 (#564144) 2026-09-17 17:41:23 +00:00
Peder Bergebakken Sundt
dc63f71712 python3Packages.cyvcf2: init at 0.34.0 (#564256) 2026-09-17 17:39:29 +00:00
Peder Bergebakken Sundt
e56346e4cc python3Packages.pybedtools: init at 0.12.1 (#564246) 2026-09-17 17:37:58 +00:00
Austin Horstman
93b21a67cd luarocks-packages-updater: normalize preserved licenses (#564271) 2026-09-17 17:21:58 +00:00
Adam C. Stephens
73154279fc forgejo: 16.0.4 -> 16.0.5; forgejo-lts: 15.0.8 -> 15.0.9 (#564275) 2026-09-17 17:04:00 +00:00
nixpkgs-ci[bot]
3a0bb39f72 wiki-go: 1.9.0 -> 1.9.1 (#564152) 2026-09-17 16:53:24 +00:00
nixpkgs-ci[bot]
08b1c5e349 lighthouse-steamvr: 2.0.0 -> 2.1.0 (#564074) 2026-09-17 16:27:42 +00:00
nixpkgs-ci[bot]
cd2ad23e87 homepage-dashboard: 2.2.0 -> 2.3.0 (#564059) 2026-09-17 16:27:39 +00:00
Gaétan Lepage
2076945292 vimPlugins: update on 2026-09-17 (#564157) 2026-09-17 16:27:31 +00:00
Pavol Rusnak
e85fa8b46f python3Packages.compressed-tensors: 0.17.1 -> 0.18.0 (#564049) 2026-09-17 16:25:28 +00:00
Johannes Kirschbauer
b5e81f4aea doc/nixos: treewide migrate inline includes to nav.json (#562207) 2026-09-17 16:24:25 +00:00
Chris Moultrie
0007391c9b forgejo: 15.0.8 -> 15.0.9
changelog: https://codeberg.org/forgejo/forgejo/milestone/142240
2026-09-17 12:20:06 -04:00
Chris Moultrie
648d34a94a forgejo: 16.0.4 -> 16.0.5
changelog: https://codeberg.org/forgejo/forgejo/milestone/142243
2026-09-17 12:19:33 -04:00
Austin Horstman
295b53ace8 luarocks-packages-updater: normalize preserved licenses
Normalize known license metadata when writing preserved package expressions as well as freshly fetched ones. Regenerate lzn-auto-require metadata using the existing GPL-2.0 mapping.
2026-09-17 11:09:23 -05:00
nixpkgs-ci[bot]
eaac17deea tabiew: 0.15.0 -> 0.15.1 (#564145) 2026-09-17 15:54:18 +00:00
nixpkgs-ci[bot]
2efeee1c3b claude-agent-acp: 0.75.1 -> 0.79.0 (#564263) 2026-09-17 15:35:08 +00:00
Gaetan Lepage
62e0a11dce python3Packages.pybedtools: init at 0.12.1 2026-09-17 15:25:30 +00:00
R. Ryantm
2cd7638e79 claude-agent-acp: 0.75.1 -> 0.79.0 2026-09-17 15:24:24 +00:00
nixpkgs-ci[bot]
f4a6f271f7 descent3-unwrapped: 1.5.0-beta-unstable-2026-01-21 -> 1.5.0-beta-unstable-2026-09-16 (#564178) 2026-09-17 15:23:35 +00:00
Gaetan Lepage
ce1876602f python3Packages.cyvcf2: init at 0.34.0 2026-09-17 15:21:51 +00:00
Gaétan Lepage
b55025c9f4 pyright: 1.1.412 -> 1.1.414 (#563774) 2026-09-17 15:17:19 +00:00
Sizhe Zhao
7aaf71697a virtualbox: 7.2.16 -> 7.2.18 (#564143) 2026-09-17 15:08:31 +00:00
Adam C. Stephens
77f89faee7 omp: 18.2.1 -> 18.2.4
Changelog: https://github.com/can1357/oh-my-pi/releases/tag/v18.2.4
2026-09-17 11:05:47 -04:00
Peder Bergebakken Sundt
3ac40df985 comaps: 2026.08.07-3 -> 2026.08.31-14 (#560818) 2026-09-17 14:57:08 +00:00
nixpkgs-ci[bot]
71c1f117ab gsender: 1.6.3 -> 1.6.4 (#564225) 2026-09-17 14:53:28 +00:00
Gaétan Lepage
52c5382894 bedtools: cleanup (#564207) 2026-09-17 14:50:42 +00:00
teutat3s
711113a826 deploy-rs: 0-unstable-2026-02-02 -> 0-unstable-2026-09-14
Diff: 77c906c0ba...e760371d63
2026-09-17 16:47:20 +02:00
Martin Weinelt
1bc4284729 simple-mtpfs: drop (#547273) 2026-09-17 14:42:14 +00:00
nixpkgs-ci[bot]
4610cbd06c olympus-unwrapped: 26.09.06.01 -> 26.09.15.05 (#564193) 2026-09-17 14:27:00 +00:00
R. Ryantm
04fefff867 gsender: 1.6.3 -> 1.6.4 2026-09-17 14:15:49 +00:00
nixpkgs-ci[bot]
4288114100 n8n: 2.37.10 -> 2.39.6 (#564111) 2026-09-17 13:52:01 +00:00
nixpkgs-ci[bot]
056381cad0 torrserver: 144.1 -> 144.4 (#564182) 2026-09-17 13:39:03 +00:00
StepBroBD
131cf0f911 zotero: 10.0.1 -> 10.0.2 (#562964) 2026-09-17 13:16:45 +00:00
Adam C. Stephens
9f7a02f6d3 beam29Packages.erlang: 29.0.6 -> 29.1 (#564075) 2026-09-17 13:12:18 +00:00
nixpkgs-ci[bot]
bf0faabb8f uni: 2.9.0 -> 2.10.0 (#564202) 2026-09-17 13:07:22 +00:00
nixpkgs-ci[bot]
6dcae3e713 obscura: 0.2.0 -> 0.2.2 (#556899) 2026-09-17 13:07:20 +00:00
Gaétan Lepage
e70be0ec6a vimPlugins.tiny-code-action-nvim: init at 2026-04-25 (#564205) 2026-09-17 13:03:29 +00:00
Gaetan Lepage
9b95b7c73a bedtools: cleanup 2026-09-17 13:01:04 +00:00
nixpkgs-ci[bot]
18f2faeb97 nomnatong: 5.17 -> 5.18 (#564099) 2026-09-17 12:54:31 +00:00
nixpkgs-ci[bot]
3a3cc17a68 vorta: 0.11.5 -> 0.11.6 (#564029) 2026-09-17 12:54:30 +00:00
Moritz Böhme
d2f47c5f7c vimPlugins.tiny-code-action-nvim: init at 2026-04-25 2026-09-17 14:44:20 +02:00
Stefan Frijters
d39e6e4dfe timekpr: 0.5.8 -> 0.5.10 (#563925) 2026-09-17 12:42:41 +00:00
R. Ryantm
9bc1aa871e uni: 2.9.0 -> 2.10.0 2026-09-17 12:41:07 +00:00
Otavio Salvador
5dd0c7c749 timekpr: 0.5.8 -> 0.5.10
Upstream rewrote configuration handling to stop using configparser, which
fixes the daemon dying on startup under Python 3.14: configparser now rejects
keys containing the delimiter, and 0.5.8 wrote its commented config template
through it.

0.5.10 also turned bin/timekpr{a,c,d} from Python scripts into /bin/sh
launchers that exec /usr/bin/python3, so patch that path as well.

Assisted-by: Claude Code (Opus 5)
2026-09-17 09:27:03 -03:00
Francesco Gazzetta
a5677d1b54 urn-timer: limit to linux platform (#563992) 2026-09-17 12:23:44 +00:00
R. Ryantm
114849c42e goperf: 0-unstable-2026-08-13 -> 0-unstable-2026-09-08 2026-09-17 12:19:51 +00:00
nixpkgs-ci[bot]
c8649eaf2d Merge master into staging-next 2026-09-17 12:13:47 +00:00
Johannes Kirschbauer
891305c469 {doc/lib-functions,pkgs/nixos-render-docs}: prepare data export of lib functions documentation (#542661) 2026-09-17 12:07:09 +00:00
nixpkgs-ci[bot]
b07148aa4e exa-agent-skills: 2026.09.11-e7de871 -> 2026.09.16-73cc4b0 (#564132) 2026-09-17 12:06:12 +00:00
R. Ryantm
49fce2efb6 olympus-unwrapped: 26.09.06.01 -> 26.09.15.05 2026-09-17 11:56:56 +00:00
Felix Bargfeldt
82339b1bf9 radicle-explorer: 0-unstable-2026-09-03 -> 0-unstable-2026-09-14 (#564183) 2026-09-17 11:42:33 +00:00
zowoq
3afdf092cf terraform-providers.hashicorp_tfe: 0.80.0 -> 0.81.0 (#564138) 2026-09-17 11:36:55 +00:00
Thiago Kenji Okada
11487ec823 libretro.genesis-plus-gx: 0-unstable-2026-08-28 -> 0-unstable-2026-09-12 (#564062) 2026-09-17 11:35:26 +00:00
R. Ryantm
9e0f3c1107 radicle-explorer: 0-unstable-2026-09-03 -> 0-unstable-2026-09-14 2026-09-17 11:32:00 +00:00
Jörg Thalheim
39f8a2aac8 nix-eval-jobs: modernize (#564179) 2026-09-17 11:28:45 +00:00
R. Ryantm
59df76b10f torrserver: 144.1 -> 144.4 2026-09-17 11:27:07 +00:00
Gaetan Lepage
ab8c88ee74 nix-eval-jobs: modernize 2026-09-17 11:13:25 +00:00
Gaétan Lepage
dcb3ef8906 nix-eval-jobs: 2.35.3 -> 2.35.4 (#564163) 2026-09-17 11:07:00 +00:00
R. Ryantm
630ddb5c68 descent3-unwrapped: 1.5.0-beta-unstable-2026-01-21 -> 1.5.0-beta-unstable-2026-09-16 2026-09-17 11:06:04 +00:00
kirillrdy
977be6689e uutils-coreutils: 0.11.0 -> 0.12.0 (#564123) 2026-09-17 10:14:32 +00:00
zowoq
381239a90d nix-eval-jobs: 2.35.3 -> 2.35.4
Diff: https://github.com/NixOS/nix-eval-jobs/compare/v2.35.3...v2.35.4
2026-09-17 20:14:06 +10:00
Grimmauld
24237d408c keeweb: drop (#564151) 2026-09-17 10:05:04 +00:00
Sizhe Zhao
55dad5738a qwen-code: 0.16.0 -> 0.23.4 (#563550) 2026-09-17 10:04:12 +00:00
Alexander Bantyev
2e8eb5f167 civetweb: add configurable build flags, use versionCheckHook at installCheckPhase (#561959) 2026-09-17 09:59:27 +00:00
Vincent Laporte
1acfd66170 ocamlPackages.ocaml-version: 4.1.2 -> 4.1.4 (#535182) 2026-09-17 09:41:19 +00:00
Felix Bargfeldt
16b5ff73a6 dust: 1.2.5 -> 1.2.6 (#564078) 2026-09-17 09:35:04 +00:00
夜坂雅
d294ad3f8d keeweb: drop 2026-09-17 17:29:23 +08:00
Kerstin Humm
156183e45f python3Packages.icalendar-compatibility: 0.1.4 -> 0.1.5 (#564048) 2026-09-17 09:28:10 +00:00
nixpkgs-ci[bot]
65941a6f21 rusthound-ce: 2.5.9 -> 2.5.13 (#564060) 2026-09-17 09:27:24 +00:00
Marek Fajkus
e8519f24d6 elmPackages.elm-verify-examples: fix build with 0.19.2 (#563599) 2026-09-17 09:18:02 +00:00
R. Ryantm
ccf661c769 wiki-go: 1.9.0 -> 1.9.1 2026-09-17 09:15:41 +00:00
Alexander Bantyev
e4caf49937 python3Packages.rapidyaml: init at 0.15.2 (#544194) 2026-09-17 09:04:55 +00:00
nixpkgs-ci[bot]
4cc97477a2 src-cli: 7.6.0 -> 8.0.0 (#564085) 2026-09-17 09:04:17 +00:00
Alexander Bantyev
5af2f40a57 porting-advisor-for-graviton: init at 1.1.1 (#542937) 2026-09-17 09:03:47 +00:00
Alexander Bantyev
6905415e0b python.mosek: init at 11.2.2 (#542873) 2026-09-17 08:59:33 +00:00
Marek Fajkus
eee3c9e4d7 elmPackages.elm-verify-examples: fix build with 0.19.2
use more recent upstream commit that implements support for elm 0.19.2
2026-09-17 10:59:03 +02:00
Gaetan Lepage
9d20c55c06 colmap: skip failing test on aarch64 2026-09-17 08:58:56 +00:00
h7x4
9fe606f8e8 nixos/tests/docuum: init (#563084) 2026-09-17 08:54:40 +00:00
Fabian Affolter
1a1642a203 python3Packages.tesla-fleet-api: 1.12.1 -> 1.13.0 (#563624) 2026-09-17 08:46:56 +00:00
R. Ryantm
3f966e4f01 tabiew: 0.15.0 -> 0.15.1 2026-09-17 08:35:32 +00:00
Friedrich Altheide
debbb23b3b virtualbox: 7.2.16 -> 7.2.18 2026-09-17 10:33:49 +02:00
rorosen
e72ae69c88 k3s_1_37: init at 1.37.0+k3s1 (#563705) 2026-09-17 08:31:11 +00:00
Austin Horstman
1b666dfa55 vimPlugins.render-markdown-nvim: 8.13.0 -> 8.14.0 2026-09-17 03:15:37 -05:00
Austin Horstman
06ae3e2c6d vimPlugins.project-nvim: 6.2.1-1 -> 6.3.0-1 2026-09-17 03:15:36 -05:00
Austin Horstman
b5b404af7b vimPlugins.opencode-nvim: 1.0.1 -> 1.0.2 2026-09-17 03:15:36 -05:00
Austin Horstman
9876d4293d vimPlugins.notmuch-nvim: 0.4.0 -> 0.5.0 2026-09-17 03:15:35 -05:00
Austin Horstman
5582285912 vimPlugins.codecompanion-nvim: 19.24.1 -> 19.25.0 2026-09-17 03:15:35 -05:00
Austin Horstman
24788c2e25 vimPlugins: update on 2026-09-17 2026-09-17 03:15:35 -05:00
Gaétan Lepage
a32edd7654 vastai: init at 1.5.6 (#559251) 2026-09-17 08:15:29 +00:00
Gaetan Lepage
b7b20140c2 vastai: init at 1.5.6
Co-authored-by: Samuel Ainsworth <skainsworth@gmail.com>
2026-09-17 07:43:59 +00:00
Gaetan Lepage
4f520099ae python3Packages.borb_2: init at 2.1.25
Co-authored-by: Samuel Ainsworth <skainsworth@gmail.com>
2026-09-17 07:43:57 +00:00
R. Ryantm
65b0971f90 terraform-providers.hashicorp_tfe: 0.80.0 -> 0.81.0 2026-09-17 07:42:00 +00:00
R. Ryantm
8c7d584fe6 exa-agent-skills: 2026.09.11-e7de871 -> 2026.09.16-73cc4b0 2026-09-17 07:30:16 +00:00
Vincent Laporte
6285de71f9 ocamlPackages.spdx_licenses: 1.5.0 -> 1.6.0 (#564005) 2026-09-17 07:13:25 +00:00
Pol Dellaiera
2cc2cc7be4 fetchCargoVendor: narrow the bootstrap Python override (#563735) 2026-09-17 06:58:40 +00:00
Gaétan Lepage
071c5cefcf ggml: 0.23.0 -> 0.24.0 (#564077) 2026-09-17 06:56:17 +00:00
dotlambda
7d57b8ea84 nixos/printers: assert that each class contains at least one printer or class (#564028) 2026-09-17 06:54:53 +00:00
Gaetan Lepage
8bb8c426db uutils-coreutils: 0.11.0 -> 0.12.0
Diff: https://github.com/uutils/coreutils/compare/0.11.0...0.12.0

Changelog: https://github.com/uutils/coreutils/releases/tag/0.12.0
2026-09-17 06:51:06 +00:00
Marek Fajkus
5518f0fd64 elmPackages.elm-analyse: drop package (#563810) 2026-09-17 06:49:32 +00:00
Marek Fajkus
d4e27aed76 elmPackages.elm-analyse: drop package 2026-09-17 08:42:58 +02:00
K900
4ae38317fd matrix-continuwuity: 26.8.1 -> 26.9.0 (#564016) 2026-09-17 06:25:53 +00:00
Arne Keller
c347de8744 nextcloud-talk-desktop: 2.2.3 -> 2.2.4, fix screenshare issue (#561950) 2026-09-17 06:22:23 +00:00
Gaétan Lepage
6667c75f2a python3Packages.lang{chain,graph,smith}: update (#563722) 2026-09-17 06:22:00 +00:00
nixpkgs-ci[bot]
fc3d38ef07 Merge master into staging-next 2026-09-17 06:16:13 +00:00
Vladimír Čunát
b825c77421 thunderbird-latest-unwrapped: 155.0 -> 156.0 (#564083) 2026-09-17 06:07:48 +00:00
Arne Keller
e0c2adc1fa super-productivity: 18.21.2 -> 19.0.1, use finalAttrs (#563527) 2026-09-17 06:01:38 +00:00
nixpkgs-ci[bot]
f5d1035747 Merge master into staging-next 2026-09-17 06:00:59 +00:00
Masum Reza
2afbb68363 ananicy-rules-cachyos: 0-unstable-2026-08-31 -> 0-unstable-2026-09-08 (#564108) 2026-09-17 05:59:40 +00:00
Masum Reza
0580a509ca antigravity-acp: fix SSL cert (#563911) 2026-09-17 05:53:32 +00:00
Grimmauld
1d4df94123 apt: remove unused gnutls, libgcrypt, libgpg-error (#563886) 2026-09-17 05:35:13 +00:00
Konstantin Alekseev
cab069695d pyright: 1.1.412 -> 1.1.414
Upstream switched to a pnpm workspace and removed the per-package npm
lockfiles, causing the previous updater to fail with HTTP 404.

Use fetchPnpmDeps and pnpm_11 to build the CLI and language-server bundles
with their typeshed stubs. Replace the custom updater with nix-update-script
and remove the obsolete root npm lockfile. Add a version passthru test.

Changelogs:
https://github.com/microsoft/pyright/releases/tag/1.1.413
https://github.com/microsoft/pyright/releases/tag/1.1.414

Assisted-by: OpenAI Codex (GPT-6)
2026-09-17 08:32:21 +03:00
Grimmauld
d6dbfd7f64 stress-ng: remove libgcrypt dependency (#563950) 2026-09-17 05:23:33 +00:00
R. Ryantm
f481850906 n8n: 2.37.10 -> 2.39.6 2026-09-17 05:18:12 +00:00
kirillrdy
80538d0116 python3Packages.qasync: fix Python 3.14 running loop incompatibility (#563108) 2026-09-17 05:14:43 +00:00
R. Ryantm
87912b31e7 ananicy-rules-cachyos: 0-unstable-2026-08-31 -> 0-unstable-2026-09-08 2026-09-17 04:55:37 +00:00
R. Ryantm
662aa62411 ocamlPackages.ocaml-version: 4.1.2 -> 4.1.4 2026-09-17 04:55:00 +00:00
nixpkgs-ci[bot]
b185ed2be2 skills: 1.5.23 -> 1.6.0 (#564080) 2026-09-17 04:28:01 +00:00
R. Ryantm
3e94732d54 nomnatong: 5.17 -> 5.18 2026-09-17 04:06:48 +00:00
Ivan Mincik
2ca92d2ee0 gnucobol: use autoreconfHook on darwin too (#558424) 2026-09-17 04:00:53 +00:00
Ivan Mincik
eccf0b6656 peertube: 8.2.4 -> 8.3.0 (#563525) 2026-09-17 03:58:10 +00:00
Ivan Mincik
76942be9d1 icestudio: 0.12-unstable-2026-06-29 -> 1.0.0.PRw-20260821-unstable-20… (#560827) 2026-09-17 03:49:20 +00:00
Ivan Mincik
1fb7a0b746 python3Packages.emerge: 2.8.2 -> 2.8.9 (#558853) 2026-09-17 03:48:16 +00:00
Ivan Mincik
9099ded31d kikit: 1.8.0 -> 1.8.1, python3Packages.pcbnewtransition: drop (#529058) 2026-09-17 03:44:13 +00:00
nixpkgs-ci[bot]
ef439a7b48 gogup: 1.9.1 -> 1.9.3 (#564082) 2026-09-17 03:33:07 +00:00
R. Ryantm
3974bcd925 src-cli: 7.6.0 -> 8.0.0 2026-09-17 02:34:49 +00:00
R. Ryantm
3e08ca40b1 thunderbird-latest-unwrapped: 155.0 -> 156.0 2026-09-17 02:23:21 +00:00
R. Ryantm
f4fdda5cb8 gogup: 1.9.1 -> 1.9.3 2026-09-17 02:22:19 +00:00
nixpkgs-ci[bot]
3ae588623b art: 1.26.8 -> 1.26.9 (#564037) 2026-09-17 02:16:49 +00:00
R. Ryantm
94a00f1e9b skills: 1.5.23 -> 1.6.0 2026-09-17 02:11:00 +00:00
Muhammad Falak R Wani
6b23412317 dust: 1.2.5 -> 1.2.6
Diff: https://github.com/bootandy/dust/compare/v1.2.5...v1.2.6
Changelog: https://github.com/bootandy/dust/releases/tag/v1.2.6
Signed-off-by: Muhammad Falak R Wani <falakreyaz@gmail.com>
2026-09-17 07:40:55 +05:30
R. Ryantm
447ddca116 ggml: 0.23.0 -> 0.24.0 2026-09-17 02:00:27 +00:00
Adam C. Stephens
cfce7b719a beam29Packages.erlang: 29.0.6 -> 29.1
Changelog: https://github.com/erlang/otp/releases/tag/OTP-29.1
2026-09-16 21:50:14 -04:00
R. Ryantm
f6993fdeff lighthouse-steamvr: 2.0.0 -> 2.1.0 2026-09-17 01:44:47 +00:00
nixpkgs-ci[bot]
ea68747d23 streamlink: 8.5.0 -> 8.6.0 (#563200) 2026-09-17 01:33:36 +00:00
Aaron Andersen
bf2173f2e3 seedfiles: init at 1.7.2 (#561807) 2026-09-17 01:16:08 +00:00
dotlambda
2f7a95bbf5 getmail6: run versionCheckHook (#564020) 2026-09-17 01:09:46 +00:00
Ihar Hrachyshka
b180a48f2e {_7zz,_7zip-zstd}/setup-hook.sh: don't extract alternate streams; allow safe parent symlinks; _7zip-zstd: install 7z.so on darwin (#562093) 2026-09-17 01:04:57 +00:00
Robert Schütz
968fc6762f getmail6: run versionCheckHook 2026-09-16 18:00:21 -07:00
dotlambda
0d094817da zammad: 7.1.2 -> 7.1.3 (#563776) 2026-09-17 00:57:17 +00:00
R. Ryantm
5c0edaf955 libretro.genesis-plus-gx: 0-unstable-2026-08-28 -> 0-unstable-2026-09-12 2026-09-17 00:43:55 +00:00
Robert Schütz
cd1fdc1df9 nixos/printers: assert that each class contains at least one printer or class 2026-09-16 17:43:53 -07:00
nixpkgs-ci[bot]
ff0f454fa6 Merge master into staging-next 2026-09-17 00:23:56 +00:00
R. Ryantm
fca8186252 rusthound-ce: 2.5.9 -> 2.5.13 2026-09-17 00:21:44 +00:00
R. Ryantm
f390808c21 homepage-dashboard: 2.2.0 -> 2.3.0 2026-09-17 00:17:58 +00:00
zowoq
6ae8874057 terraform-providers.hashicorp_google-beta: 8.1.0 -> 8.3.0 (#564050) 2026-09-16 23:57:02 +00:00
Gergő Gutyina
0be9e1ae9f alsa-tools: enable strictDeps, enable structuredAttrs (#563012) 2026-09-16 23:43:51 +00:00
David McFarland
53430cc512 dotnet: september 2026 releases (#561926) 2026-09-16 23:34:03 +00:00
Gergő Gutyina
bcf2afba00 i3lock-fancy-rapid: fix version; enable strictDeps, structuredAttrs (#561099) 2026-09-16 23:31:12 +00:00
Sarah Clark
6d0c18ba10 python3Packages.compressed-tensors: 0.17.1 -> 0.18.0 2026-09-16 16:26:01 -07:00
R. Ryantm
9d293f6d05 terraform-providers.hashicorp_google-beta: 8.1.0 -> 8.3.0 2026-09-16 23:22:24 +00:00
R. Ryantm
f9f733e5b0 python3Packages.icalendar-compatibility: 0.1.4 -> 0.1.5 2026-09-16 23:12:28 +00:00
Peder Bergebakken Sundt
242e8d73f4 bisq2: 2.1.12 -> 2.1.13 (#563920) 2026-09-16 22:57:44 +00:00
Peder Bergebakken Sundt
a6a63f9dda uutils-util-linux: 0.0.1-unstable-2026-05-01 -> 0.0.1-unstable-2026-09-01 (#561028) 2026-09-16 22:55:35 +00:00
Gergő Gutyina
cb094f52c5 pnpm: point alias to pnpm_12 (#562930) 2026-09-16 22:54:54 +00:00
Peder Bergebakken Sundt
69b48f5a27 slang-server: 0.2.10 -> 0.3.0 (#561788) 2026-09-16 22:54:51 +00:00
Peder Bergebakken Sundt
d392ba5521 fluux-messenger: 0.17.3 -> 0.17.4 (#563834) 2026-09-16 22:53:59 +00:00
Peder Bergebakken Sundt
b92c25c008 ausaxs: 1.2.8 -> 1.3.0 (#563891) 2026-09-16 22:53:44 +00:00
Nick Cao
8066327472 keycloak: 26.7.3 -> 26.7.4 (#564012) 2026-09-16 22:52:02 +00:00
Peder Bergebakken Sundt
38237e5758 musicfree-desktop: use latest electron (#563386) 2026-09-16 22:39:59 +00:00
Peder Bergebakken Sundt
1647b7a856 flycast: display package version in Settings > About (#562920) 2026-09-16 22:35:48 +00:00
Nick Cao
79ea818b65 python3Packages.obspy: 1.4.2-unstable-2025-08-21 -> 1.5.1 (#563593) 2026-09-16 22:34:35 +00:00
Peder Bergebakken Sundt
277eb9c991 sillytavern: 1.18.0 -> 1.19.0 (#563294) 2026-09-16 22:30:54 +00:00
Dmitry Kalinkin
8f41440111 blender: 5.2.1 -> 5.2.2 (#563845) 2026-09-16 22:28:39 +00:00
Dmitry Kalinkin
88882fb4cc python3Packages.boost-histogram: 1.7.2 -> 1.8.1 (#550312) 2026-09-16 22:28:19 +00:00
Peder Bergebakken Sundt
01b301c4f7 pioneer: 20260203 -> 20260907 (#562992) 2026-09-16 22:27:40 +00:00
Peder Bergebakken Sundt
141b4dc3eb ricochet-refresh: 3.0.39 -> 3.0.45 (#562986) 2026-09-16 22:27:26 +00:00
Peder Bergebakken Sundt
c8f8fd4061 siglo: fix dependencies for version 0.9.9 (#562368) 2026-09-16 22:25:03 +00:00
Yohann Boniface
0d30e9e20f ticktick: 8.0.10 -> 8.0.11 (#554563) 2026-09-16 22:24:54 +00:00
Peder Bergebakken Sundt
50a4c95c55 python3Packages.powerline: use installFonts hook (#562765) 2026-09-16 22:24:39 +00:00
Yohann Boniface
978139e15e multica-cli: modernize (#563415) 2026-09-16 22:24:37 +00:00
Peder Bergebakken Sundt
540aa971d5 sabiql: 2.0.1 -> 3.0.1 (#562229) 2026-09-16 22:24:06 +00:00
Yohann Boniface
9f2b6fb1dd gi-crystal: add license (#562087) 2026-09-16 22:23:49 +00:00
Peder Bergebakken Sundt
f6786e9426 meteor: 3.4 -> 3.5.2 (#562855) 2026-09-16 22:23:10 +00:00
Peder Bergebakken Sundt
aeca08089c sview: 26.07 -> 26.09 (#562958) 2026-09-16 22:21:43 +00:00
Peder Bergebakken Sundt
c33ab561b7 gitify: 7.7.0 -> 7.8.0 (#563139) 2026-09-16 22:21:17 +00:00
Peder Bergebakken Sundt
597bbf03ed mongodb-7_0: 7.0.40 -> 7.0.43 (#562405) 2026-09-16 22:20:20 +00:00
Peder Bergebakken Sundt
d582c82995 d-seams: 1.0.1 -> 2.10.0, add myself as maintainer (#562937) 2026-09-16 22:18:53 +00:00
Cosima Neidahl
4d251af83b lomiri.lomiri: 0.5.0 -> 0.6.1 (#534100) 2026-09-16 22:18:38 +00:00
Yohann Boniface
4c4fc00a10 python3Packages.spdx3-validate: init at 0.0.7 (#563676) 2026-09-16 22:15:34 +00:00
Felix Bühler
9cbd54c4ff formats: split into individual files (#560493) 2026-09-16 22:09:43 +00:00
Yohann Boniface
fe8419ca1b python3Packages.google-cloud-asset: nix-update-script needs version-regex (#564022) 2026-09-16 21:56:19 +00:00
Peder Bergebakken Sundt
c79db2f14a brlcad: skip failing test on aarch64-linux (#564019) 2026-09-16 21:42:22 +00:00
R. Ryantm
79b29360a2 art: 1.26.8 -> 1.26.9 2026-09-16 21:40:24 +00:00
Yohann Boniface
23abd97a6a river-filtile: restrict to linux platform (#563906) 2026-09-16 21:36:01 +00:00
dotlambda
846c7a6b22 pghero: drop (#563778) 2026-09-16 21:25:28 +00:00
Felix Bühler
e17e440240 graphify: 0.9.53 -> 0.9.61 (#562821) 2026-09-16 21:20:27 +00:00
Gaétan Lepage
d2dcdafa1c python3Packages.fastmcp: disable yet another flaky test (#564024) 2026-09-16 21:14:52 +00:00
Yohann Boniface
7adda5dd70 rasm: 3.2.7 -> 3.3 (#563893) 2026-09-16 21:14:00 +00:00
K900
25ec20fe2a mesa: 26.2.2 -> 26.2.3 (#564025) 2026-09-16 21:11:34 +00:00
Fabian Affolter
9e4a9a086a nuclei-templates: 10.4.8 -> 10.4.9 (#564009) 2026-09-16 21:10:26 +00:00
R. Ryantm
ec64bcf500 vorta: 0.11.5 -> 0.11.6 2026-09-16 21:08:44 +00:00
Gaétan Lepage
18e83b5aef agent-client-protocol: 0.12.0 -> 0.12.1 (#558455) 2026-09-16 21:06:25 +00:00
K900
5c07714694 mesa: 26.2.2 -> 26.2.3
Diff: https://gitlab.freedesktop.org/mesa/mesa/-/compare/mesa-26.2.2...26.2.3

Changelog: https://docs.mesa3d.org/relnotes/26.2.3.html
2026-09-17 00:05:03 +03:00
dotlambda
f73c962ee8 home-assistant: remove stale disabled tests (#563789) 2026-09-16 21:04:38 +00:00
dotlambda
298bb668ee jellyfin-ffmpeg: 8.1.2-4 -> 8.1.2-5 (#563626) 2026-09-16 21:04:14 +00:00
Peder Bergebakken Sundt
3168a6dfa3 python3Packages.amaranth: 0.5.9 -> 0.5.10 (#562238) 2026-09-16 20:58:44 +00:00
Gaetan Lepage
a2a2401bb1 python3Packages.obspy: 1.4.2-unstable-2025-08-21 -> 1.5.1
Diff: 75bac0c96a...75bac0c96a

Changelog: https://github.com/obspy/obspy/releases/tag/v1.4.2
2026-09-16 20:58:41 +00:00
Sandro Jäckel
94dc08cc59 python3Packages.fastmcp: disable yet another flaky test 2026-09-16 22:57:54 +02:00
Peder Bergebakken Sundt
3c3302f2a1 python3Packages.pytorch-tokenizers: 1.4.1 -> 1.5.0; python3Packages.executorch: 1.4.1 -> 1.5.0 (#563968) 2026-09-16 20:57:52 +00:00
Sarah Clark
fdeb34b110 python3Packages.google-cloud-asset: nix-update-script needs version-regex 2026-09-16 13:47:17 -07:00
Gaetan Lepage
68367da727 brlcad: skip failing test on aarch64-linux 2026-09-16 20:43:57 +00:00
StepBroBD
acd72229d8 ntpsec: init at 1.2.5 (#563253) 2026-09-16 20:40:06 +00:00
nixpkgs-ci[bot]
65f975b32a beads: 1.2.2 -> 1.3.0 (#564007) 2026-09-16 20:37:09 +00:00
Nick Cao
112d9e5c87 faiss: 1.15.0 -> 1.15.1 (#564001) 2026-09-16 20:36:12 +00:00
Bart Oostveen
5036aeb14e matrix-continuwuity: 26.8.1 -> 26.9.0
Release notes: https://forgejo.ellis.link/continuwuation/continuwuity/releases/tag/v26.9.0
Changelog: https://forgejo.ellis.link/continuwuation/continuwuity/src/commit/v26.9.0/CHANGELOG.md
Diff: https://forgejo.ellis.link/continuwuation/continuwuity/compare/v26.8.1...v26.9.0
2026-09-16 22:34:36 +02:00
Nick Cao
bc071daf4c edhm-ui: fix license (#563673) 2026-09-16 20:30:15 +00:00
Gaétan Lepage
3622e76a47 logica: init at 1.3.14159265358 (#378389) 2026-09-16 20:29:25 +00:00
Nick Cao
9daa7a152e dorion: 6.13.0 -> 6.13.1 (#563839) 2026-09-16 20:29:21 +00:00
Gergő Gutyina
6fbff4112b feh: 3.12.4 -> 3.13 (#563945) 2026-09-16 20:28:29 +00:00
Nick Cao
e52081b123 python3Packages.hyponcloud: 1.0.1 -> 1.0.2 (#563800) 2026-09-16 20:28:28 +00:00
Nick Cao
f521453694 python3Packages.mailsuite: 2.3.1 -> 2.3.2 (#563899) 2026-09-16 20:27:51 +00:00
Peder Bergebakken Sundt
557bc5feff plink2: init at 2.0.0-a.7.6 (#563938) 2026-09-16 20:27:12 +00:00
Nick Cao
f4652abfa4 passff-host: fetch pass executable by lib.getExe (#563970) 2026-09-16 20:26:38 +00:00
Nick Cao
8bfa654ef1 terraform-providers.launchdarkly_launchdarkly: 3.1.4 -> 3.1.5 (#563887) 2026-09-16 20:26:36 +00:00
Nick Cao
a7a799449d snmalloc: remove unused stdenv (#563856) 2026-09-16 20:26:09 +00:00
Nick Cao
21c3a513bf anda: 0.8.9 -> 0.8.10 (#563850) 2026-09-16 20:25:55 +00:00
Gaétan Lepage
8b7bed7b74 harlequin: 2.14.0 -> 2.15.0 (#563969) 2026-09-16 20:25:26 +00:00
Nick Cao
a50bf0c1b0 python3Packages.scikit-hep-testdata: 0.6.7 -> 0.6.8 (#563919) 2026-09-16 20:24:25 +00:00
nixpkgs-ci[bot]
b0a239e167 github-desktop: 3.6.5 -> 3.6.6 (#563732) 2026-09-16 20:23:35 +00:00
nixpkgs-ci[bot]
2970e58ba0 sstorytime: 1.0-beta-unstable-2026-08-20 -> 1.0-beta-unstable-2026-09-15 (#560257) 2026-09-16 20:23:31 +00:00
Nick Cao
036746c147 coroot: 1.26.1 -> 1.26.3 (#563914) 2026-09-16 20:23:04 +00:00
liberodark
a872dc5020 ntpsec: init at 1.2.5 2026-09-16 22:22:47 +02:00
Nick Cao
5cea7e450e vscode-extensions.quarto.quarto: 1.137.0 -> 1.138.0 (#563972) 2026-09-16 20:22:12 +00:00
Nick Cao
cdd7ed6069 restate: 1.7.9 -> 1.7.10 (#563967) 2026-09-16 20:19:49 +00:00
Nick Cao
5b773f89df pokego: 0.5.8 -> 0.5.9 (#563964) 2026-09-16 20:19:26 +00:00
Peder Bergebakken Sundt
7bcf0f95ba python3Packages.starlette-admin: 0.17.1 -> 1.0.1 (#562924) 2026-09-16 20:19:14 +00:00
Nick Cao
a7fb1f54ff rlottie: 0.2-unstable-2026-09-01 -> 0.2-unstable-2026-09-11 (#563957) 2026-09-16 20:18:57 +00:00
Peder Bergebakken Sundt
1ed1ec70ce sus-compiler: 0.4.0 -> 0.5.0 (#553999) 2026-09-16 20:18:26 +00:00
Nick Cao
7cafe7b696 coroot-node-agent: 1.35.8 -> 1.35.10 (#563951) 2026-09-16 20:18:03 +00:00
Peder Bergebakken Sundt
99cf620d3d inav-blackbox-tools: unstable-2021-04-22 -> 9.0.0 (#561114) 2026-09-16 20:17:26 +00:00
Peder Bergebakken Sundt
2a959b3aa6 python3Packages.lifelines: cleanup, fix (#563953) 2026-09-16 20:15:45 +00:00
Nick Cao
f7dba56ce4 ovhcloud-cli: 0.14.0 -> 0.15.0 (#564004) 2026-09-16 20:14:32 +00:00
Peder Bergebakken Sundt
b169007fbd python3Packages.flash-attn-4: 4.0.0.beta30 -> 4.0.0.beta31 (#563895) 2026-09-16 20:13:58 +00:00
Nick Cao
e08385307a skopeo: 1.24.0 -> 1.24.1 (#563997) 2026-09-16 20:13:10 +00:00
Peder Bergebakken Sundt
04bb6d5ae2 nocturne: 1.5.1 -> 1.5.2 (#564008) 2026-09-16 20:12:51 +00:00
Nick Cao
83ae8bf372 subxt: 0.50.3 -> 0.51.0 (#563994) 2026-09-16 20:11:50 +00:00
Peder Bergebakken Sundt
245a9c87e7 python3Packages.aiosmtplib: cleanup, fix build on darwin (#563909) 2026-09-16 20:11:19 +00:00
Nick Cao
1e88e3512c trufflehog: 3.97.4 -> 3.97.5 (#563991) 2026-09-16 20:11:08 +00:00
Peder Bergebakken Sundt
695aef1449 python3Packages.shacl2code: cleanup, fix build on darwin (#563941) 2026-09-16 20:10:45 +00:00
Nick Cao
8ec4b56198 python3Packages.appium-python-client: 6.0.0 -> 6.0.6 (#563988) 2026-09-16 20:10:29 +00:00
Nick Cao
a8cb37db47 nvs: 1.14.1 -> 1.15.0 (#563982) 2026-09-16 20:09:40 +00:00
Nick Cao
0b07ef889a python3Packages.publicsuffixlist: 1.0.2.20260910 -> 1.0.2.20260916 (#563979) 2026-09-16 20:09:02 +00:00
Nick Cao
aef779c40e python3Packages.iamdata: 0.1.202609151 -> 0.1.202609161 (#563978) 2026-09-16 20:08:42 +00:00
Sandro
cbe158f363 netboxPlugins.netbox-peering-manager: init at 0.3.1 (#530507) 2026-09-16 20:08:36 +00:00
Gaétan Lepage
b96e1646f0 brlcad: fix build; tinygltf_2: init at 2.9.7 (#562564) 2026-09-16 20:06:30 +00:00
R. Ryantm
a8ef91438b keycloak: 26.7.3 -> 26.7.4 2026-09-16 20:06:28 +00:00
Nick Cao
b4690c5717 go-dnscollector: 3.0.0 -> 3.1.0 (#563692) 2026-09-16 20:05:37 +00:00
Nick Cao
00f78b9bcc tree-sitter-grammars.tree-sitter-cuda: 0.21.1 -> 0.21.2 (#563660) 2026-09-16 20:02:41 +00:00
Aaron Andersen
8de5040876 sessiond-hooks: init at 0.1.0 (#559581) 2026-09-16 20:01:13 +00:00
Nick Cao
3303e5b818 pocket-casts: 0.13.0 -> 0.14.0 (#563750) 2026-09-16 20:01:06 +00:00
nixpkgs-ci[bot]
64d1d0ce39 wavelog: 3.1.0 -> 3.2.2 (#560381) 2026-09-16 19:59:35 +00:00
Nick Cao
398b95f7c9 avbroot: 3.34.0 -> 3.34.1 (#563741) 2026-09-16 19:59:30 +00:00
Nick Cao
7094600410 dnscontrol: 5.0.4 -> 5.1.0 (#563738) 2026-09-16 19:58:39 +00:00
Nick Cao
a6b4663f84 n8n-task-runner-launcher: 1.4.7 -> 1.5.0 (#563731) 2026-09-16 19:57:34 +00:00
Nick Cao
7a51f59efd vscode-extensions.divyanshuagrawal.competitive-programming-helper: 2026.8.1785865132 -> 2026.9.1789051951 (#563793) 2026-09-16 19:56:29 +00:00
Nick Cao
c5e18237ff chezmoi: 2.72.1 -> 2.72.2 (#563773) 2026-09-16 19:54:30 +00:00
Nick Cao
b57d65047b lmath: 1.11.1 -> 1.11.2 (#563765) 2026-09-16 19:53:59 +00:00
Nick Cao
79c91ed985 prometheus-speedtest-exporter: 1.1.0 -> 1.2.0 (#563764) 2026-09-16 19:53:44 +00:00
Nick Cao
0a4ffe75d1 patch2pr: 0.47.0 -> 0.48.0 (#563763) 2026-09-16 19:53:20 +00:00
Nick Cao
08b32bbfde wdt: 1.27.1612021-unstable-2026-06-26 -> 1.27.1612021-unstable-2026-09-15 (#563762) 2026-09-16 19:52:44 +00:00
Nick Cao
bc2856f23a fcitx5-pinyin-moegirl: 20260812 -> 20260911 (#563760) 2026-09-16 19:52:22 +00:00
R. Ryantm
0c86912def nuclei-templates: 10.4.8 -> 10.4.9 2026-09-16 19:50:53 +00:00
R. Ryantm
25fd36615c nocturne: 1.5.1 -> 1.5.2 2026-09-16 19:43:46 +00:00
R. Ryantm
0a51a2ca3c beads: 1.2.2 -> 1.3.0 2026-09-16 19:37:29 +00:00
R. Ryantm
da8396c48b ocamlPackages.spdx_licenses: 1.5.0 -> 1.6.0 2026-09-16 19:31:57 +00:00
nixpkgs-ci[bot]
98e651337c silo: 2026-09-03T13-18-01Z -> 2026-09-16T00-00-00Z (#563996) 2026-09-16 19:31:05 +00:00
nixpkgs-ci[bot]
a4ff1313e9 nest-cli: 12.0.0 -> 12.0.3 (#563987) 2026-09-16 19:31:04 +00:00
Gaetan Lepage
59666d238e faiss: 1.15.0 -> 1.15.1
Diff: https://github.com/facebookresearch/faiss/compare/v1.15.0...v1.15.1

Changelog: https://github.com/facebookresearch/faiss/blob/v1.15.1/CHANGELOG.md
2026-09-16 19:29:56 +00:00
Gaétan Lepage
2ead8cb5b8 zed-editor: 1.19.2 -> 1.20.1 (#563960) 2026-09-16 19:29:28 +00:00
R. Ryantm
238cce95cd ovhcloud-cli: 0.14.0 -> 0.15.0 2026-09-16 19:29:12 +00:00
Gaetan Lepage
1a3a605d2b python3Packages.executorch: 1.4.1 -> 1.5.0
Diff: https://github.com/pytorch/executorch/compare/v1.4.1...v1.5.0

Changelog: https://github.com/pytorch/executorch/releases/tag/v1.5.0
2026-09-16 19:28:19 +00:00
Gaétan Lepage
7d89f6e4cb python3Packages.dulwich: 1.2.10 -> 1.2.15 (#563745) 2026-09-16 19:28:00 +00:00
rorosen
e5e6db967f nixos/rancher: make preloaded images detect derivation changes (#552640) 2026-09-16 19:24:51 +00:00
Antoine du Hamel
bb9b082416 nodejs_26: reuse abseil-cpp and libhwy (#563998) 2026-09-16 19:22:58 +00:00
Antoine du Hamel
adceae5479 nodejs_26: reuse abseil-cpp and libhwy
Instead of building the vendored ones
2026-09-16 21:16:59 +02:00
Robert Schütz
2f1677d9bf pghero: drop 2026-09-16 12:16:02 -07:00
Antoine du Hamel
011734c107 nodejs_26: 26.8.2 -> 26.9.0 (#563985) 2026-09-16 19:10:36 +00:00
Peder Bergebakken Sundt
3d303324cd gambit-unstable: unstable-2023-12-04->4.9.8-unstable-2026-08-15 (#553149) 2026-09-16 19:07:23 +00:00
R. Ryantm
75d3d33e5e silo: 2026-09-03T13-18-01Z -> 2026-09-16T00-00-00Z 2026-09-16 19:03:08 +00:00
R. Ryantm
c77f0a727e skopeo: 1.24.0 -> 1.24.1 2026-09-16 19:02:30 +00:00
nixpkgs-ci[bot]
fecdf89436 tusd: 2.10.0 -> 2.10.1 (#563990) 2026-09-16 19:00:13 +00:00
R. Ryantm
f61382b7c3 subxt: 0.50.3 -> 0.51.0 2026-09-16 18:57:16 +00:00
R. Ryantm
f30f029757 trufflehog: 3.97.4 -> 3.97.5 2026-09-16 18:49:03 +00:00
R. Ryantm
3957ed10be tusd: 2.10.0 -> 2.10.1 2026-09-16 18:47:46 +00:00
Rafael Ieda
bbb6d50d10 urn-timer: limit to linux platform 2026-09-16 15:45:25 -03:00
Arne Keller
aabb9c02b5 wgnord: 0.2.1 -> 0.2.2 (#562767) 2026-09-16 18:43:48 +00:00
nixpkgs-ci[bot]
739509ae28 npb: 1.1.0 -> 1.1.3 (#563944) 2026-09-16 18:42:57 +00:00
Robert Schütz
3f624e1881 zammad: 7.1.2 -> 7.1.3
Diff: https://github.com/zammad/zammad/compare/7.1.2...7.1.3

Changelog: https://zammad.com/en/product/releases/7-1-3
2026-09-16 11:38:40 -07:00
R. Ryantm
2ca2f48b1b python3Packages.appium-python-client: 6.0.0 -> 6.0.6 2026-09-16 18:34:33 +00:00
R. Ryantm
920679a2f1 nest-cli: 12.0.0 -> 12.0.3 2026-09-16 18:27:44 +00:00
Antoine du Hamel
0f6531efa2 nodejs_26: 26.8.2 -> 26.9.0 2026-09-16 20:17:24 +02:00
indium114
9f8d0e8956 mindustry: 159.3 -> 160.4 2026-09-16 20:16:43 +02:00
nixpkgs-ci[bot]
5faab3a1b7 Merge master into staging-next 2026-09-16 18:11:05 +00:00
Grimmauld
408f28cce7 kicad.base: remove unused dependencies (#563947) 2026-09-16 18:04:19 +00:00
nixpkgs-ci[bot]
6e87954cb4 casadi: 3.8.0 -> 3.8.1 (#563966) 2026-09-16 18:00:52 +00:00
nixpkgs-ci[bot]
08629c27ab clickhouse-lts: 26.8.2.7-lts -> 26.8.5.13-lts (#563901) 2026-09-16 18:00:48 +00:00
Fabian Affolter
7caa92a59d python3Packages.claude-agent-sdk: 0.2.152 -> 0.2.153 (#563714) 2026-09-16 17:56:49 +00:00
R. Ryantm
f9820d304b nvs: 1.14.1 -> 1.15.0 2026-09-16 17:55:48 +00:00
Fabian Affolter
d89aa2c899 essh: 0.3.3 -> 0.4.0 (#563946) 2026-09-16 17:55:34 +00:00
Fabian Affolter
71170898b2 python3Packages.print-color: 0.4.7 -> 0.4.8 (#563965) 2026-09-16 17:55:31 +00:00
Fabian Affolter
b107356973 python3Packages.tesla-fleet-api: migrate to finalAttrs 2026-09-16 19:55:09 +02:00
Fabian Affolter
332e805520 malwoverview: 8.0.5 -> 8.1.0 (#563628) 2026-09-16 17:53:56 +00:00
Fabian Affolter
114eaf4377 dalfox: 3.2.2 -> 3.2.3 (#563709) 2026-09-16 17:53:48 +00:00
Fabian Affolter
d42897f202 python3Packages.fastgit: 0.1.3 -> 0.1.4 (#563713) 2026-09-16 17:53:44 +00:00
R. Ryantm
a2bfbd8fa0 wavelog: 3.1.0 -> 3.2.2 2026-09-16 17:53:42 +00:00
K900
c225517d62 linux-firmware: 20260910 -> 20260916 (#563977) 2026-09-16 17:50:25 +00:00
Sarah Clark
4207fd0fcf python3Packages.langgraph-store-mongodb: 0.3.0 -> 0.4.0
Fixes CVE-2026-55253.
2026-09-16 10:37:08 -07:00
K900
0edb33d27a linux-firmware: 20260910 -> 20260916
Diff: 20260910...20260916
2026-09-16 20:29:45 +03:00
Sarah Clark
4d666bc09a python3Packages.langgraph-checkpoint-postgres: 3.1.0 -> 3.1.2 2026-09-16 10:26:05 -07:00
Sarah Clark
cc6bd4b428 python3Packages.langchain-xai: 1.2.2 -> 1.3.0 2026-09-16 10:26:05 -07:00
Sarah Clark
3413a96f0e python3Packages.langsmith: 0.8.18 -> 0.12.4 2026-09-16 10:26:05 -07:00
Sarah Clark
3d6dc4b7a0 python3Packages.langgraph-store-mongodb: 0.3.0 -> 0.4.0 2026-09-16 10:26:05 -07:00
Sarah Clark
0abd8e911e python3Packages.langgraph-sdk: 0.4.2 -> 0.4.4 2026-09-16 10:26:05 -07:00
Sarah Clark
d138a99dc7 python3Packages.langchain: disable tests that depend on new langchain-mcp
langchain-mcp depends on fastapi 4.x which is being packaged in PR #563493.
2026-09-16 10:26:05 -07:00
Sarah Clark
2ad51ef94b python3Packages.langchain: 1.3.14 -> 1.4.0 2026-09-16 10:26:05 -07:00
Sarah Clark
9af4ec55c4 python3Packages.langgraph-runtime-inmem: 0.32.3 -> 0.34.1 2026-09-16 10:26:05 -07:00
Sarah Clark
5ae3d457b0 python3Packages.langgraph-checkpoint-mongodb: 0.4.0 -> 0.5.0 2026-09-16 10:26:05 -07:00
Sarah Clark
bdbdb40e40 python3Packages.langchain-openai: 1.4.1 -> 1.6.2 2026-09-16 10:26:05 -07:00
Sarah Clark
02cdafaa37 python3Packages.langgraph: 1.2.10 -> 1.2.11 2026-09-16 10:26:05 -07:00
Sarah Clark
d6ec3795f5 python3Packages.langchain-fireworks: 1.4.4 -> 1.6.1 2026-09-16 10:26:05 -07:00
Sarah Clark
701c6e3fce python3Packages.langchain-anthropic: 1.5.2 -> 1.7.2 2026-09-16 10:26:05 -07:00
Sarah Clark
25cb81b386 python3Packages.langchain-aws: 1.6.4 -> 1.7.6 2026-09-16 10:26:05 -07:00
Sarah Clark
5bec716bc8 python3Packages.langchain-core: 1.5.4 -> 1.6.3 2026-09-16 10:26:05 -07:00
Sarah Clark
c9cb78f470 python3Packages.langchain-protocol: 0.0.18 -> 0.0.19 2026-09-16 10:26:05 -07:00
nixpkgs-ci[bot]
8325a97162 keycloakPlugins.keycloak-orgs: 0.175 -> 0.180 (#563971) 2026-09-16 17:26:00 +00:00
Fabian Affolter
b77ec9f90d python3Packages.publicsuffixlist: 1.0.2.20260910 -> 1.0.2.20260916
Changelog: https://github.com/ko-zu/psl/blob/v1.0.2.20260916-gha/CHANGES.md
2026-09-16 19:21:32 +02:00
R. Ryantm
9d20aec071 vscode-extensions.quarto.quarto: 1.137.0 -> 1.138.0 2026-09-16 17:20:55 +00:00
Fabian Affolter
fb23a62e2b python3Packages.iamdata: 0.1.202609151 -> 0.1.202609161
Diff: https://github.com/cloud-copilot/iam-data-python/compare/v0.1.202609151...v0.1.202609161

Changelog: https://github.com/cloud-copilot/iam-data-python/releases/tag/v0.1.202609161
2026-09-16 19:18:25 +02:00
Gaetan Lepage
93f6646127 harlequin: 2.14.0 -> 2.15.0
Diff: https://github.com/tconbeer/harlequin/compare/v2.14.0...v2.15.0

Changelog: https://github.com/tconbeer/harlequin/releases/tag/v2.15.0
2026-09-16 17:16:07 +00:00
Gaetan Lepage
8279d1eafe python3Packages.textual-textarea: 0.18.2 -> 0.18.4
Diff: https://github.com/tconbeer/textual-textarea/compare/v0.18.2...v0.18.4

Changelog: https://github.com/tconbeer/textual-textarea/releases/tag/v0.18.4
2026-09-16 17:16:06 +00:00
R. Ryantm
319991b165 keycloakPlugins.keycloak-orgs: 0.175 -> 0.180 2026-09-16 17:14:33 +00:00
Grimmauld
08b72d0619 passff-host: fetch pass executable by lib.getExe
This trivially adds support for `passff-host.override { pass = passage; }`
and `passff-host.override { pass = gopass; }`. Upstream recently added
support for alternative implementations, which just changes the pass
binary being called [1].

[1] ec10f9c153
2026-09-16 19:12:20 +02:00
Gaetan Lepage
dc23dc969b python3Packages.pytorch-tokenizers: 1.4.1 -> 1.5.0
Diff: https://github.com/meta-pytorch/tokenizers/compare/v1.4.1...v1.5.0

Changelog: https://github.com/meta-pytorch/tokenizers/releases/tag/v1.5.0
2026-09-16 17:05:19 +00:00
Sarah Clark
adca85f723 python3Packages.dulwich: 1.2.10 -> 1.2.15 2026-09-16 09:59:20 -07:00
yvnth
dd16649fb0 pokego: 0.5.8 -> 0.5.9 2026-09-16 22:22:34 +05:30
R. Ryantm
fe73660b1a restate: 1.7.9 -> 1.7.10 2026-09-16 16:48:31 +00:00
R. Ryantm
813c5a54ea python3Packages.print-color: 0.4.7 -> 0.4.8 2026-09-16 16:43:30 +00:00
Adam C. Stephens
d7552af4ee omp: 18.1.21 -> 18.2.1 (#563942) 2026-09-16 16:42:00 +00:00
Aiden Schembri
c3b9190ca7 zed-editor: 1.19.2 -> 1.20.1 2026-09-16 18:39:12 +02:00
Carl Richard Theodor Schneider
f68cde7e94 rlottie: 0.2-unstable-2026-09-01 -> 0.2-unstable-2026-09-11 2026-09-16 18:24:51 +02:00
Tristan Ross
0fc63129a6 llvmPackages_23.lldb: update gnu-install-dirs.patch to fix build (#560655) 2026-09-16 16:14:50 +00:00
Gaetan Lepage
6750d8f5ad python3Packages.lifelines: cleanup, fix 2026-09-16 16:13:57 +00:00
Gaétan Lepage
7b033cac49 just-lsp: 0.7.1 -> 0.8.0 (#563769) 2026-09-16 15:55:10 +00:00
Bobby Rong
6914a6cc58 gthumb: 3.12.10 -> 3.12.11 (#563631) 2026-09-16 15:42:41 +00:00
Gaétan Lepage
f105db07b4 llama-cpp: run update script only for the main package (#563932) 2026-09-16 15:38:56 +00:00
R. Ryantm
ec65eb4e1d casadi: 3.8.0 -> 3.8.1 2026-09-16 15:35:17 +00:00
dish
f7d1498853 stress-ng: remove libgcrypt dependency
Unused
2026-09-16 11:33:51 -04:00
R. Ryantm
b5ff04f749 coroot-node-agent: 1.35.8 -> 1.35.10 2026-09-16 15:32:38 +00:00
dish
5389f907a6 kicad.base: remove unused dependencies
Removing all of these dependencies changes nothing about the output
derivation, so it seems to be fine. Saves quite a bit of building before
on stdenv rebuilds which is nice, but also just cleans up dep trees
2026-09-16 11:24:12 -04:00
nixpkgs-ci[bot]
9adb83c465 tutanota-desktop: 357.260812.1 -> 359.260904.0 (#558415) 2026-09-16 15:23:10 +00:00
R. Ryantm
2147fff8c8 essh: 0.3.3 -> 0.4.0 2026-09-16 15:13:39 +00:00
Gaetan Lepage
cf6b8face9 python3Packages.shacl2code: allow local networking on darwin to fix sandbox build 2026-09-16 15:08:23 +00:00
Gaetan Lepage
acc58f9ef7 python3Packages.shacl2code: cleanup 2026-09-16 15:07:56 +00:00
Gaetan Lepage
68982e7897 plink2: init at 2.0.0-a.7.6 2026-09-16 15:05:21 +00:00
R. Ryantm
0e5ee1265d feh: 3.12.4 -> 3.13 2026-09-16 15:04:30 +00:00
R. Ryantm
213652b7ae npb: 1.1.0 -> 1.1.3 2026-09-16 15:03:20 +00:00
Doron Behar
875bdb3243 aurral: 2.8.0 -> 2.9.0 (#563546) 2026-09-16 14:59:56 +00:00
Adam C. Stephens
169d60ae94 omp: 18.1.21 -> 18.2.1
Changelog: https://github.com/can1357/oh-my-pi/releases/tag/v18.2.1
2026-09-16 10:54:33 -04:00
Grimmauld
ecd1bd77d0 xmlsec: 1.3.7 -> 1.3.12, cleanup (#560583) 2026-09-16 14:48:05 +00:00
nixpkgs-ci[bot]
3522324788 portmaster: 2.2.1 -> 2.2.3 (#559003) 2026-09-16 14:44:59 +00:00
Pavol Rusnak
9b3c63e595 ollama: fix update-script invocation 2026-09-16 16:42:26 +02:00
Pavol Rusnak
226a78c359 llama-cpp: run update script only for the main package 2026-09-16 16:42:07 +02:00
lewo
e24bc6ebf5 gremlin-console: 3.8.1 -> 3.8.2 (#561609) 2026-09-16 14:41:39 +00:00
Martin Weinelt
7fd98145d7 python3Packages.msmart-ng: 2026.8.0 -> 2026.9.0 (#550513) 2026-09-16 14:39:09 +00:00
StepBroBD
4510f8e00d ocamlPackages.ocaml-solo5: 1.3.3 -> 1.3.4 (#563854) 2026-09-16 14:37:43 +00:00
Martin Weinelt
8ba243f20d home-assistant-custom-components.midea_ac: 2026.8.3 -> 2026.9.0
https://github.com/mill1000/midea-ac-py/releases/tag/2026.9.0
2026-09-16 16:32:53 +02:00
Lin Jian
059184dc91 deploy-rs: add passthru.updateScript 2026-09-16 16:32:35 +02:00
Emmanuel Rosa
11f825c25c bisq2: 2.1.12 -> 2.1.13 2026-09-16 10:15:32 -04:00
Francesco Gazzetta
1963bf72d7 rat-king-adventure: 2.3.2 -> 2.3.4 (#563905) 2026-09-16 14:14:07 +00:00
Adam C. Stephens
e3fbb89a6f nixos/netbird-relay: init module (#559588) 2026-09-16 14:11:22 +00:00
Arne Keller
67834cc3b7 jet: fix native image with GraalVM 25.2.4 (#556631) 2026-09-16 14:10:58 +00:00
Holiu618
f8ac764e88 coroot: 1.26.1 -> 1.26.3
Diff: https://github.com/coroot/coroot/compare/v1.26.1...v1.26.3
2026-09-16 22:10:09 +08:00
Arne Keller
e225c84a3e roon-server: 2.70.1671 -> 2.71.1683 (#556654) 2026-09-16 14:08:15 +00:00
nixpkgs-ci[bot]
7643f47507 tor-browser: 15.0.22 -> 15.0.23, mullvad-browser: 15.0.21 -> 15.0.23 (#563582) 2026-09-16 14:07:09 +00:00
Francesco Gazzetta
dbd1e55608 rat-king-adventure: 2.3.2 -> 2.3.4 2026-09-16 16:06:21 +02:00
Arne Keller
fa077c5e34 nixos/kubernetes: disambiguate kubelet cluster DNS options (#553266) 2026-09-16 14:06:18 +00:00
Gaetan Lepage
cbd44e0959 python3Packages.aiosmtplib: allow local networking on darwin to fix sandbox build 2026-09-16 14:02:34 +00:00
Gaetan Lepage
dda64d5a87 python3Packages.aiosmtplib: enable __structuredAttrs 2026-09-16 14:02:13 +00:00
R. Ryantm
e290b45cf0 python3Packages.scikit-hep-testdata: 0.6.7 -> 0.6.8 2026-09-16 14:01:09 +00:00
Gaetan Lepage
fdffa9859a python3Packages.aiosmtplib: cleanup 2026-09-16 14:01:02 +00:00
Ali Heydari
bfb00e5a41 antigravity-acp: fix SSL cert 2026-09-16 17:30:53 +03:30
Adam C. Stephens
e9c17a0ea6 rustfs-cli: 0.1.35 -> 0.1.36 (#563897) 2026-09-16 13:54:52 +00:00
Gaétan Lepage
c87a053cd5 python3Packages.torchrunx: init at 0.4.0, python3Packages.rsl-rl-lib: init at 5.4.2, python3Packages.mujoco-warp: init at 3.13.0, python3Packages.mjviser: init at 0.0.14, mujoco: install plugins (#563696) 2026-09-16 13:49:01 +00:00
Pavol Rusnak
19bc0c47e2 taproot-assets: 0.8.3 -> 0.8.4 (#563890) 2026-09-16 13:48:17 +00:00
Niklas Korz
56c762f516 pgschema: build in sandbox (#560683) 2026-09-16 13:47:52 +00:00
Rafael Ieda
7ef6807609 river-filtile: restrict to linux platform 2026-09-16 10:46:44 -03:00
Thomas Bemme
e98c2c0320 librewolf-unwrapped: 155.0.1-1 -> 156.0-1 2026-09-16 15:44:27 +02:00
R. Ryantm
25c183e5f2 clickhouse-lts: 26.8.2.7-lts -> 26.8.5.13-lts 2026-09-16 13:40:29 +00:00
Benjamin Sparks
a44863928a pgschema: skip tests on darwin
Using `__darwinAllowLocalNetworking` allows binding to port 0, but
darwin's sandbox blocks a required syscall
2026-09-16 15:40:01 +02:00
R. Ryantm
1e5e447613 python3Packages.mailsuite: 2.3.1 -> 2.3.2 2026-09-16 13:37:28 +00:00
Niklas Korz
b6bfbdf005 mastodon: 4.6.7 -> 4.6.8 (#563674) 2026-09-16 13:37:12 +00:00
Nikolay Korotkiy
cdb2b853c4 xchm: 1.39 -> 1.40 (#563881) 2026-09-16 13:30:56 +00:00
nixpkgs-ci[bot]
ca8583d363 gpu-screen-recorder-notification: 1.3.4 -> 1.3.6 (#563781) 2026-09-16 13:28:30 +00:00
Gaetan Lepage
4542fa3b95 python3Packages.flash-attn-4: 4.0.0.beta30 -> 4.0.0.beta31
Changelog: https://github.com/Dao-AILab/flash-attention/releases/tag/fa4-v4.0.0.beta31
2026-09-16 13:26:43 +00:00
R. Ryantm
02fb3ecabd rustfs-cli: 0.1.35 -> 0.1.36 2026-09-16 13:21:46 +00:00
kyehn
e43df35775 ausaxs: 1.2.8 -> 1.3.0 2026-09-16 13:16:49 +00:00
K900
29452a53b4 amnezia-vpn: 5.0.0.5 -> 5.0.1.5 (#563456) 2026-09-16 13:15:37 +00:00
R. Ryantm
2688a0bc9a rasm: 3.2.7 -> 3.3 2026-09-16 13:13:41 +00:00
Guilhem Saurel
fca10e6434 python3Packages.mjviser: init at 0.0.14
Co-authored-by: Gaétan Lepage <gaetan@glepage.com>
2026-09-16 15:12:11 +02:00
Guilhem Saurel
cc17231465 python3Packages.mujoco-warp: init at 3.13.0
Co-authored-by: Gaétan Lepage <gaetan@glepage.com>
2026-09-16 15:12:11 +02:00
Guilhem Saurel
78dd42f034 python3Packages.rsl-rl-lib: init at 5.4.2
Co-authored-by: Gaétan Lepage <gaetan@glepage.com>
2026-09-16 15:12:11 +02:00
Guilhem Saurel
d4fbf11754 python3Packages.torchrunx: init at 0.4.0
Co-authored-by: Gaétan Lepage <gaetan@glepage.com>
2026-09-16 15:12:11 +02:00
Guilhem Saurel
daca700894 mujoco: install plugins 2026-09-16 15:12:10 +02:00
Robert Helgesson
b55672ac80 trash-cli: 0.24.5.26 -> 0.26.9.14 (#563844) 2026-09-16 13:11:22 +00:00
R. Ryantm
7a561e6dd5 taproot-assets: 0.8.3 -> 0.8.4 2026-09-16 13:06:41 +00:00
Marcus Ramberg
88142f2dc8 dms-greeter: 1.6.1 -> 1.6.2 (#563883) 2026-09-16 13:01:12 +00:00
Kira Bruneau
3aee84b3ba poke: 4.3 -> 5.0 (#554935) 2026-09-16 13:00:05 +00:00
Nick Cao
6e5c898f12 fcitx5: 5.1.21 -> 5.1.22 (#561256) 2026-09-16 12:55:34 +00:00
R. Ryantm
afc5f88d3e terraform-providers.launchdarkly_launchdarkly: 3.1.4 -> 3.1.5 2026-09-16 12:55:23 +00:00
夜坂雅
d2547f4890 apt: remove unused gnutls, libgcrypt, libgpg-error 2026-09-16 20:49:36 +08:00
Arjan Schrijver
890b4d2de2 dms-greeter: 1.6.1 -> 1.6.2
Diff: https://github.com/AvengeMedia/dank-greeter/compare/v1.6.1...v1.6.2
2026-09-16 14:39:49 +02:00
Rowan Skewes
62e4779812 python3Packages.logica: init at 1.3.1415926535897
Logica is an open source declarative logic programming language for data manipulation.
2026-09-16 22:39:18 +10:00
nixpkgs-ci[bot]
fdda5fe696 brook: 20240606 -> 20270101 (#563847) 2026-09-16 12:34:56 +00:00
nixpkgs-ci[bot]
0618175936 networkmanager: 1.58.0 -> 1.58.1 (#556001) 2026-09-16 12:34:38 +00:00
Ramses
e658d5bf65 bazarr: separate frontend and backend packaging (#558701) 2026-09-16 12:32:23 +00:00
R. Ryantm
bda7c1ffd4 xchm: 1.39 -> 1.40 2026-09-16 12:26:34 +00:00
Ramses
cc6a44cd5d swayimg: 5.5 -> 5.6 (#561142) 2026-09-16 12:26:19 +00:00
Anthony
69ecdba67e rpi-imager: 2.0.10-1-proto1 -> 2.0.11.1 (#554865) 2026-09-16 12:25:50 +00:00
Ramses
81beaa6707 xkcd-font: 2017-08-24 -> 2026.2 (#563296) 2026-09-16 12:24:58 +00:00
Ramses
a87194e077 typstPackages: sync with Typst Universe as of 2026-09-14 (#563355) 2026-09-16 12:22:19 +00:00
StepBroBD
4c24331fcb ocamlPackages.letsencrypt: 1.1.0 → 2.1.0 (#563329) 2026-09-16 12:17:26 +00:00
nixpkgs-ci[bot]
71bb675326 Merge master into staging-next 2026-09-16 12:14:08 +00:00
Grimmauld
505bececee libvirt: drop unused libgcrypt dependency (#563853) 2026-09-16 12:10:01 +00:00
nixpkgs-ci[bot]
3257a290dd gpu-screen-recorder-ui: 1.13.7 -> 1.13.9 (#563780) 2026-09-16 12:04:30 +00:00
Gaétan Lepage
d3194c02c2 python3Packages.playwright: update hash, playwright-webkit: add missing libmanette (#563824) 2026-09-16 12:01:37 +00:00
Herwig Hochleitner
100186c249 libmirage: 3.3.2 -> 3.3.3 (#563114) 2026-09-16 12:00:45 +00:00
Vincent Laporte
b360a4ea4c ocamlPackages.letsencrypt: 1.1.0 → 2.1.0 2026-09-16 13:52:28 +02:00
Vincent Laporte
112fd11b21 ocamlPackages.jws: init at 0.0.2 2026-09-16 13:52:28 +02:00
Ramses
3e2b669b13 Gnustep: drop toolchain closure (#559551) 2026-09-16 11:45:11 +00:00
Emily
41461f1b1c {,ungoogled-}chromium,chromedriver: 153.0.8010.36 -> 153.0.8010.47 (#563725) 2026-09-16 11:40:42 +00:00
StepBroBD
c571020cc0 ocamlPackages.httpcats: 0.3.1 → 0.3.2 (#563619) 2026-09-16 11:36:03 +00:00
VZstless
0fd3a96a84 snmalloc: remove unused stdenv 2026-09-16 19:34:17 +08:00
loner
81e31c1760 qwen-code: 0.16.0 -> 0.23.4 2026-09-16 19:33:39 +08:00
Yifei Sun
acb34eea2c ocamlPackages.ocaml-solo5: 1.3.3 -> 1.3.4 2026-09-16 13:33:18 +02:00
夜坂雅
10318b90a6 libvirt: drop unused libgcrypt dependency 2026-09-16 19:23:41 +08:00
Ramses
f02bd24925 prometheus: use nix-update-script (#560012) 2026-09-16 11:22:06 +00:00
nixpkgs-ci[bot]
30ab336cd4 libcs50: 11.0.3 -> 11.0.4 (#563681) 2026-09-16 11:21:17 +00:00
nixpkgs-ci[bot]
e30dfca943 neowall: 0.6.1 -> 0.7.1 (#563832) 2026-09-16 11:21:16 +00:00
Ramses
8c8052288c linuxPackages.bpftrace: 0.26.1 -> 0.27.0 (#562058) 2026-09-16 11:19:47 +00:00
Ramses
7ef1f0bfde gimp: 3.2.4 -> 3.2.6 (#562061) 2026-09-16 11:14:51 +00:00
Grimmauld
6fb79dc3cb munge: use openssl instead of libgcrypt (#563841) 2026-09-16 11:11:33 +00:00
StepBroBD
846e516b73 fastly: 16.0.0 -> 16.1.0 (#563255) 2026-09-16 11:11:07 +00:00
Ramses
c5707a7bd4 nixosTests.redis: drop version suffix from test name (#562805) 2026-09-16 11:11:00 +00:00
Ramses
c07bc6e2f8 joplin-desktop: 3.6.16 -> 3.7.18 (#562806) 2026-09-16 11:06:45 +00:00
Ramses
d9ed937db7 wasm-language-tools: fix build for Rust 1.98 (#562940) 2026-09-16 11:05:40 +00:00
nixpkgs-ci[bot]
a6a2a1796a shelter: 0-unstable-2026-08-14 -> 0-unstable-2026-09-06 (#563838) 2026-09-16 11:00:11 +00:00
Grimmauld
1017eafaf5 networkmanager: drop libgcrypt (#563825) 2026-09-16 10:59:13 +00:00
R. Ryantm
6f225e41a2 python3Packages.msmart-ng: 2026.8.0 -> 2026.9.0 2026-09-16 10:55:09 +00:00
R. Ryantm
957c771aa2 anda: 0.8.9 -> 0.8.10 2026-09-16 10:51:33 +00:00
R. Ryantm
34c9f04085 brook: 20240606 -> 20270101 2026-09-16 10:39:15 +00:00
Johannes Kirschbauer
a694fdc604 doc/functions: use manifest mode from nixdoc
This simplifies the tooling and produces a structured data-asset that can
be exposed for nixos-search and docs.nixos.org.
2026-09-16 12:28:00 +02:00
Johannes Kirschbauer
71e8a8d498 pkgs/nixos-render-docs: add 'nixdoc' collection to nav
the manuals needs a way to place generated pages that have no markdown
file behind them.

This pr adds a new nav entry of the shape: '{ collection, type }'

'type' selects the renderer, so other generated data such as options
can follow later.

Assisted-by: opus-4-8
2026-09-16 12:26:23 +02:00
R. Ryantm
e1d7762c24 blender: 5.2.1 -> 5.2.2 2026-09-16 10:25:54 +00:00
R. Ryantm
ef121a48a7 trash-cli: 0.24.5.26 -> 0.26.9.14 2026-09-16 10:25:18 +00:00
nixpkgs-ci[bot]
bc74f4015d libigl: 2.6.3 -> 2.6.4 (#563758) 2026-09-16 10:24:50 +00:00
Pavol Rusnak
2478965db4 llama-cpp-vulkan: 0.4.0 -> 0.4.1 (#563826) 2026-09-16 10:22:56 +00:00
夜坂雅
1217001b63 munge: use openssl instead of libgcrypt 2026-09-16 18:18:55 +08:00
R. Ryantm
157056ffe3 dorion: 6.13.0 -> 6.13.1 2026-09-16 10:07:34 +00:00
Doron Behar
3d35b67b0b mpd-mpris: 0.4.3 -> 0.4.4 (#563680) 2026-09-16 10:07:04 +00:00
Doron Behar
3737770316 ddccontrol-db: 20260902 -> 20260915 (#563610) 2026-09-16 10:05:25 +00:00
nixpkgs-ci[bot]
077581beda itgmaniaPackages.itg3encore: 0-unstable-2026-08-10 -> 0-unstable-2026-09-14 (#563325) 2026-09-16 10:04:36 +00:00
Letgamer
5c8de9484d networkmanager: drop libgcrypt 2026-09-16 12:01:08 +02:00
dotlambda
0f4a29c798 immich: 3.2.1 -> 3.2.2 (#563707) 2026-09-16 09:59:45 +00:00
R. Ryantm
397345d386 shelter: 0-unstable-2026-08-14 -> 0-unstable-2026-09-06 2026-09-16 09:54:37 +00:00
Stefan Haan
cef9420cd6 fluux-messenger: 0.17.3 -> 0.17.4 2026-09-16 11:41:57 +02:00
Alexander Bantyev
1dec9ab545 fetchYarnDeps: make registry URL configurable (#532667) 2026-09-16 09:15:27 +00:00
Johan Herland
232ad9f616 python.mosek: init at 11.2.2
Assisted-by: Claude Sonnet 4.6 <noreply@anthropic.com>
2026-09-16 09:14:42 +00:00
Alexander Bantyev
9cc5499bf1 python3Packages.dspy: init at 3.2.1 (#542504) 2026-09-16 09:10:44 +00:00
R. Ryantm
375374b719 neowall: 0.6.1 -> 0.7.1 2026-09-16 09:06:36 +00:00
isabel
98080383d3 plezy: 2.19.1 -> 2.20.0; clean up (#563575) 2026-09-16 09:03:40 +00:00
isabel
a449f3a268 feishin: 1.15.1 -> 1.17.0 (#563284) 2026-09-16 09:03:35 +00:00
isabel
68c6dae79d python3Packages.exllamav3: 1.4.8 -> 1.5.0; tabbyapi: 0-unstable-2026-09-07 -> 0-unstable-2026-09-14 (#563287) 2026-09-16 09:03:26 +00:00
Guilhem Saurel
67bf9043b1 playwright-webkit: add missing libmanette
fix:
```
playwright-webkit> setting RPATH to: /nix/store/q5vyb8dni0fv6a9fh65ifm4galvi51k2-playwright-webkit/minibrowser-wpe/lib:/nix/store/sv8pf8cqmgrgh7jl2n9ww3knslxnfz33-libevent-2.1.13/lib:/nix/store/f9yy4q7dkvpw3i508nf510h9s240f3pf-libopus-1.6.1/lib:/nix/store/85v143gw8jcqjg04gxb38c4han2z7myb-freetype-2.14.3/lib:/nix/store/hrxf1fxrp7qwxrlv5k4aqxlwlam952aa-fontconfig-2.18.3-lib/lib:/nix/store/ixb298xx205dwm4n39kc93njl898wa62-libepoxy-1.5.10/lib:/nix/store/9wh3vnl7plpk052nczlzyh3v7zb3jhkw-libwebp-1.6.0/lib:/nix/store/pzky0fzxs3iy95lf14ffybxg973nv933-expat-2.8.4/lib:/nix/store/0a1k64ih9k5ribbjs07bgmzhb43djnr0-harfbuzz-13.2.1/lib:/nix/store/nms9avlwlsidnq1yiqs53ls4h9v7bmys-libjpeg-turbo-3.1.4.1/lib:/nix/store/pdm9fz4pc70pwhgzj88wilg3pzsyk7q1-libpng-apng-1.6.58/lib:/nix/store/lw86vj9kfwgvlivg3p8qg2nibpmhmsl9-zlib-1.3.2/lib:/nix/store/7mf69bavdjazjvbhflj0s40d2a6mk5wb-glib-2.88.3/lib:/nix/store/kvg90amxwq1gpm6yhhwykiiq9n97dnrl-libsoup-3.6.6/lib:/nix/store/yxnhmna7iyk0gb83q90315dcv1ixcnxd-gstreamer-1.28.6/lib:/nix/store/604gsr59rj7dzd0nrhp143rpvf7gyiaz-gcc-15.3.0-lib/lib:/nix/store/wkiqjb44n5k0fwhmc523dvflspd47q3b-gcc-15.3.0-libgcc/lib
playwright-webkit> auto-patchelf: 1 dependencies could not be satisfied
playwright-webkit> error: auto-patchelf could not satisfy dependency libmanette-0.2.so.0 wanted by /nix/store/q5vyb8dni0fv6a9fh65ifm4galvi51k2-playwright-webkit/minibrowser-wpe/lib/libWPEWebKit-2.0.so.1.12.0
playwright-webkit> auto-patchelf failed to find all the required dependencies.
playwright-webkit> Add the missing dependencies to --libs or use `--ignore-missing="foo.so.1 bar.so etc.so"`.
```
2026-09-16 10:58:02 +02:00
Guilhem Saurel
318e2a9e8f python3Packages.playwright: fix hash
fix:
```
$ nix build .#python314Packages.playwright
error: hash mismatch in fixed-output derivation '/nix/store/mkj5lwh2vqrjgdz2r77mia974dvfdagk-source.drv':
         specified: sha256-DHMX7RaySqfy2Xi+Rw4nUg9pYrpxIksjq1JhWfknOaI=
            got:    sha256-RwIn+0EcHnStjORVFmT7gp4bGjl+qer1FgtI3+aPF2w=
error: Cannot build '/nix/store/wfsyrwyi6sqs3c8z9nf9zhnwa755yg5k-python3.14-playwright-1.63.0.drv'.
       Reason: 1 dependency failed.
       Output paths:
         /nix/store/2jm6fr6xc99jbihl8b47qilypq7n2qj8-python3.14-playwright-1.63.0
         /nix/store/8zcrf5qzlvaid7v8yxwimw2h5kygcjcg-python3.14-playwright-1.63.0-dist
```
2026-09-16 10:56:50 +02:00
Yt
d839a79f6e meilisearch: 1.53.1 -> 1.53.2 (#563808) 2026-09-16 08:56:42 +00:00
Anthony
731d505530 goss: 0.4.9 -> 0.4.10 (#547648) 2026-09-16 08:49:45 +00:00
R. Ryantm
85d8611633 llama-cpp-vulkan: 0.4.0 -> 0.4.1 2026-09-16 08:18:02 +00:00
R. Ryantm
369737df40 meilisearch: 1.53.1 -> 1.53.2 2026-09-16 08:05:12 +00:00
R. Ryantm
a5ca528546 python3Packages.hyponcloud: 1.0.1 -> 1.0.2 2026-09-16 07:33:37 +00:00
R. Ryantm
edc8ee2569 sstorytime: 1.0-beta-unstable-2026-08-20 -> 1.0-beta-unstable-2026-09-15 2026-09-16 07:17:36 +00:00
R. Ryantm
c8ed052954 vscode-extensions.divyanshuagrawal.competitive-programming-helper: 2026.8.1785865132 -> 2026.9.1789051951 2026-09-16 07:03:20 +00:00
Jamie Magee
0d8452321d home-assistant: remove stale disabled tests 2026-09-15 23:36:33 -07:00
nixpkgs-ci[bot]
0f1fd70371 Merge master into staging-next 2026-09-16 06:15:52 +00:00
R. Ryantm
bba8246272 gpu-screen-recorder-notification: 1.3.4 -> 1.3.6 2026-09-16 05:53:09 +00:00
R. Ryantm
b14808e380 gpu-screen-recorder-ui: 1.13.7 -> 1.13.9 2026-09-16 05:52:51 +00:00
R. Ryantm
6f29ba5957 chezmoi: 2.72.1 -> 2.72.2 2026-09-16 05:11:41 +00:00
Jhony Angulo
0783edc221 just-lsp: 0.7.1 -> 0.8.0 2026-09-15 23:45:28 -05:00
R. Ryantm
446e94f9ff lmath: 1.11.1 -> 1.11.2 2026-09-16 04:09:24 +00:00
R. Ryantm
97429bee0f prometheus-speedtest-exporter: 1.1.0 -> 1.2.0 2026-09-16 03:51:09 +00:00
R. Ryantm
aec279916e patch2pr: 0.47.0 -> 0.48.0 2026-09-16 03:46:22 +00:00
R. Ryantm
a78d5a8d43 wdt: 1.27.1612021-unstable-2026-06-26 -> 1.27.1612021-unstable-2026-09-15 2026-09-16 03:38:56 +00:00
R. Ryantm
498a6d3c33 fcitx5-pinyin-moegirl: 20260812 -> 20260911 2026-09-16 03:35:43 +00:00
R. Ryantm
475d4aa27e libigl: 2.6.3 -> 2.6.4 2026-09-16 03:13:27 +00:00
R. Ryantm
266751fb4f pocket-casts: 0.13.0 -> 0.14.0 2026-09-16 02:17:35 +00:00
R. Ryantm
6b35026a28 avbroot: 3.34.0 -> 3.34.1 2026-09-16 00:36:08 +00:00
nixpkgs-ci[bot]
341d5ab264 Merge master into staging-next 2026-09-16 00:23:46 +00:00
zowoq
23fa6a7edc dnscontrol: 5.0.4 -> 5.1.0
Diff: https://github.com/DNSControl/dnscontrol/compare/v5.0.4...v5.1.0

Changelog: https://github.com/DNSControl/dnscontrol/releases/tag/v5.1.0
2026-09-16 10:15:31 +10:00
emilylange
885ed3ec18 ungoogled-chromium: 153.0.8010.36-1 -> 153.0.8010.47-1
https://chromereleases.googleblog.com/2026/09/stable-channel-update-for-desktop_0541751186.html

This update includes 42 security fixes.

CVEs:
CVE-2026-91726 CVE-2026-91721 CVE-2026-91749 CVE-2026-91724
CVE-2026-91728 CVE-2026-91734 CVE-2026-91727 CVE-2026-91743
CVE-2026-91744 CVE-2026-91712 CVE-2026-91748 CVE-2026-91720
CVE-2026-91731 CVE-2026-91747 CVE-2026-91733 CVE-2026-91741
CVE-2026-91709 CVE-2026-91717 CVE-2026-91735 CVE-2026-91708
CVE-2026-91736 CVE-2026-91740 CVE-2026-91710 CVE-2026-91718
CVE-2026-91716 CVE-2026-91746 CVE-2026-91729 CVE-2026-91737
CVE-2026-91711 CVE-2026-91715 CVE-2026-91745 CVE-2026-91723
CVE-2026-91732 CVE-2026-91742 CVE-2026-91714 CVE-2026-91725
CVE-2026-91739 CVE-2026-91713 CVE-2026-91738 CVE-2026-91730
CVE-2026-91722 CVE-2026-91719
2026-09-16 02:05:39 +02:00
Domen Kožar
e8e8643b0b fetchCargoVendor: narrow the bootstrap Python override
Override charset-normalizer only through requests instead of creating a
separate Python package scope. This preserves the Cargo vendoring bootstrap
cycle break while allowing other Python dependencies to reuse their scope.

Paired evaluation samples reduce prek CPU time by about 20% and a two-hook
git-hooks/prek configuration by about 12%, with unchanged derivation paths
for the tested packages on Linux and aarch64-darwin.

Assisted-by: OpenAI Codex (GPT-6)
2026-09-15 18:50:03 -05:00
R. Ryantm
501b418a07 github-desktop: 3.6.5 -> 3.6.6 2026-09-15 22:49:44 +00:00
R. Ryantm
de5262cb14 n8n-task-runner-launcher: 1.4.7 -> 1.5.0 2026-09-15 22:32:45 +00:00
rorosen
debd9e764e k3s: k3s_1_35 -> k3s_1_36
Stable version according to https://update.k3s.io/v1-release/channels
2026-09-15 23:57:59 +02:00
emilylange
37e4c5dee5 chromium,chromedriver: 153.0.8010.36 -> 153.0.8010.47
https://chromereleases.googleblog.com/2026/09/stable-channel-update-for-desktop_0541751186.html

This update includes 42 security fixes.

CVEs:
CVE-2026-91726 CVE-2026-91721 CVE-2026-91749 CVE-2026-91724
CVE-2026-91728 CVE-2026-91734 CVE-2026-91727 CVE-2026-91743
CVE-2026-91744 CVE-2026-91712 CVE-2026-91748 CVE-2026-91720
CVE-2026-91731 CVE-2026-91747 CVE-2026-91733 CVE-2026-91741
CVE-2026-91709 CVE-2026-91717 CVE-2026-91735 CVE-2026-91708
CVE-2026-91736 CVE-2026-91740 CVE-2026-91710 CVE-2026-91718
CVE-2026-91716 CVE-2026-91746 CVE-2026-91729 CVE-2026-91737
CVE-2026-91711 CVE-2026-91715 CVE-2026-91745 CVE-2026-91723
CVE-2026-91732 CVE-2026-91742 CVE-2026-91714 CVE-2026-91725
CVE-2026-91739 CVE-2026-91713 CVE-2026-91738 CVE-2026-91730
CVE-2026-91722 CVE-2026-91719
2026-09-15 23:30:36 +02:00
R. Ryantm
4c17ca6e6e python3Packages.claude-agent-sdk: 0.2.152 -> 0.2.153 2026-09-15 21:25:06 +00:00
R. Ryantm
5ae815d802 python3Packages.fastgit: 0.1.3 -> 0.1.4 2026-09-15 21:24:42 +00:00
R. Ryantm
96fbaee8fe dalfox: 3.2.2 -> 3.2.3 2026-09-15 21:04:23 +00:00
Robert Schütz
d2c12646d0 immich: 3.2.1 -> 3.2.2
Diff: https://github.com/immich-app/immich/compare/v3.2.1...v3.2.2

Changelog: https://github.com/immich-app/immich/releases/tag/v3.2.2
2026-09-15 13:57:00 -07:00
rorosen
cb436d0761 k3s_1_37: init at 1.37.0+k3s1
https://github.com/k3s-io/k3s/releases/tag/v1.37.0%2Bk3s1
2026-09-15 22:51:51 +02:00
R. Ryantm
08f6dedf13 go-dnscollector: 3.0.0 -> 3.1.0 2026-09-15 20:19:24 +00:00
Gliczy
ed523f3d76 mpd-mpris: 0.4.3 -> 0.4.4 2026-09-15 21:54:45 +02:00
R. Ryantm
0a923a21a2 libcs50: 11.0.3 -> 11.0.4 2026-09-15 19:54:41 +00:00
Nico Felbinger
30877ba223 netboxPlugins.netbox-peering-manager: init at 0.3.1 2026-09-15 21:44:44 +02:00
Sandro Jäckel
1408d54b02 mastodon: 4.6.7 -> 4.6.8 2026-09-15 21:40:11 +02:00
Grayson Tinker
382d0ba5d9 edhm-ui: fix license 2026-09-15 13:34:13 -06:00
Samuel Silva
c83d8d9ec5 python3Packages.spdx3-validate: init at 0.0.7 2026-09-15 16:19:30 -03:00
coolcuber
825d6b38a9 inav-blackbox-tools: unstable-2021-04-22 -> 9.0.0 2026-09-15 15:10:40 -04:00
R. Ryantm
e7b7398504 tree-sitter-grammars.tree-sitter-cuda: 0.21.1 -> 0.21.2 2026-09-15 18:54:25 +00:00
nixpkgs-ci[bot]
3550cbd8a9 Merge master into staging-next 2026-09-15 18:10:16 +00:00
coolcuber
97970e5e04 gambit-unstable: unstable-2023-12-04 -> 4.9.8-unstable-2026-08-15 2026-09-15 14:06:12 -04:00
R. Ryantm
6cf712f38d gthumb: 3.12.10 -> 3.12.11 2026-09-15 16:26:15 +00:00
R. Ryantm
8a3f3c9032 malwoverview: 8.0.5 -> 8.1.0 2026-09-15 16:08:32 +00:00
Robert Schütz
73641cb012 jellyfin-ffmpeg: 8.1.2-4 -> 8.1.2-5
Diff: https://github.com/jellyfin/jellyfin-ffmpeg/compare/v8.1.2-4...v8.1.2-5

Changelog: https://github.com/jellyfin/jellyfin-ffmpeg/releases/tag/v8.1.2-5
2026-09-15 09:00:45 -07:00
Vincent Laporte
16d284469f ocamlPackages.httpcats: 0.3.1 → 0.3.2 2026-09-15 17:53:38 +02:00
R. Ryantm
58c584a01e python3Packages.tesla-fleet-api: 1.12.1 -> 1.13.0 2026-09-15 15:53:06 +00:00
BatteredBunny
511d1e0bfb plezy: clean up 2026-09-15 18:24:25 +03:00
BatteredBunny
54f26e6ec5 plezy: 2.19.1 -> 2.20.0 2026-09-15 18:24:25 +03:00
Johan Herland
2feca18139 python3Packages.dspy: init at 3.2.1 2026-09-15 15:22:16 +00:00
Johan Herland
146cf8edd7 python3Packages.gepa: fix up versioning 2026-09-15 15:21:52 +00:00
R. Ryantm
88efbce838 ddccontrol-db: 20260902 -> 20260915 2026-09-15 15:16:28 +00:00
R. Ryantm
1984969619 python3Packages.boost-histogram: 1.7.2 -> 1.8.1 2026-09-15 14:14:50 +00:00
novalkun
0d761b20d3 wgnord: 0.2.1 -> 0.2.2
Update src.hash, install template.conf, turn the new query alias
into a function so resholve can see curl, add gawk for status,
and adopt the package.

Resolves #438189
Supersedes #453208
2026-09-15 20:51:47 +07:00
whispers
58b12ab110 mullvad-browser: 15.0.21 -> 15.0.23
changelog: https://gitlab.torproject.org/tpo/applications/tor-browser-build/-/raw/mb-15.0.23-build1/projects/browser/Bundle-Data/Docs-MB/ChangeLog.txt
firefox esr: https://www.firefox.com/en-US/firefox/140.16.0/releasenotes/
firefox security advisories: https://www.mozilla.org/en-US/security/advisories/mfsa2026-92/
2026-09-15 09:19:56 -04:00
whispers
9dfab98dff tor-browser: 15.0.22 -> 15.0.23
changelog: https://gitlab.torproject.org/tpo/applications/tor-browser-build/-/raw/tbb-15.0.23-build1/projects/browser/Bundle-Data/Docs-TBB/ChangeLog.txt
firefox esr: https://www.firefox.com/en-US/firefox/140.16.0/releasenotes/
firefox security advisories: https://www.mozilla.org/en-US/security/advisories/mfsa2026-92/
2026-09-15 09:19:55 -04:00
BatteredBunny
f302f038e1 feishin: 1.15.1 -> 1.17.0 2026-09-15 15:41:47 +03:00
BatteredBunny
6be6cc9ccf tabbyapi: 0-unstable-2026-09-07 -> 0-unstable-2026-09-14 2026-09-15 15:36:50 +03:00
BatteredBunny
5c7097d108 python3Packages.exllamav3: 1.4.8 -> 1.5.0 2026-09-15 15:36:50 +03:00
nixpkgs-ci[bot]
40bfd164c3 Merge master into staging-next 2026-09-15 12:13:08 +00:00
Yifei Sun
c78a4b5429 fastly: 16.0.0 -> 16.1.0
Changelog: https://github.com/fastly/cli/blob/v16.1.0/CHANGELOG.md
2026-09-15 13:18:53 +02:00
staticdev
f3ae27e102 aurral: 2.8.0 -> 2.9.0 2026-09-15 13:00:45 +02:00
Thomas
bd1e42c527 super-productivity: 18.21.2 -> 19.0.1, use finalAttrs 2026-09-15 11:37:16 +02:00
eljamm
f11a727399 peertube: 8.2.4 -> 8.3.0
Changelog: https://github.com/Chocobozzz/PeerTube/blob/refs/tags/v8.3.0/CHANGELOG.md
2026-09-15 10:58:04 +02:00
K900
05d13e9627 amnezia-vpn: 5.0.0.5 -> 5.0.1.5 2026-09-15 09:28:41 +03:00
nixpkgs-ci[bot]
4b300207d9 Merge master into staging-next 2026-09-15 06:15:48 +00:00
Ethan Carter Edwards
89c0d1d96f multica-cli: modernize
Signed-off-by: Ethan Carter Edwards <ethan@ethancedwards.com>
2026-09-14 22:18:15 -04:00
tree-sapii
bcf43584f1 simple-mtpfs: drop 2026-09-14 21:30:29 -04:00
David McFarland
ee4d12a81b dotnet-sdk_{8..11}: enable __structuredAttrs 2026-09-14 21:41:42 -03:00
nixpkgs-ci[bot]
a9a6d9769e Merge master into staging-next 2026-09-15 00:25:21 +00:00
Ulysses Zhan
9f09c62934 musicfree-desktop: use latest electron
Signed-off-by: Ulysses Zhan <UlyssesZhan@gmail.com>
2026-09-14 17:24:31 -07:00
jel
7617a09a6f xkcd-font: 2017-08-24 -> 2026.2 2026-09-15 01:42:34 +02:00
Code Instable
b272fed691 typstPackages: sync with Typst Universe as of 2026-09-14
Updates typstPackages to match Typst Universe as of 2026-09-14, at commit 24193b5ac2932093c7cb53b051030a15b51619ff.

It was regenerated with maintainers/scripts/update-typst-packages.py.

- Typst Packages data source: typst/packages@24193b5
- Nixpkgs upstream reference: NixOS/nixpkgs@3364443
2026-09-15 00:07:27 +02:00
Rafael Ieda
7757ec195a treewide: mark as broken on darwin (last successful Hydra build 2024) 2026-09-14 18:25:33 -03:00
R. Ryantm
435e9b05fe itgmaniaPackages.itg3encore: 0-unstable-2026-08-10 -> 0-unstable-2026-09-14 2026-09-14 20:29:32 +00:00
David McFarland
7f0f8c4f5d dotnet-sdk_{8..11}: enable strictDeps 2026-09-14 16:15:58 -03:00
Notarin Steele
b3b6dda583 sillytavern: 1.18.0 -> 1.19.0 2026-09-14 14:51:13 -04:00
nixpkgs-ci[bot]
3a54b20725 Merge master into staging-next 2026-09-14 18:10:24 +00:00
David McFarland
688ba8d4d6 dotnetCorePackages.sdk_11_0: 11.0.100-preview.7.26381.103 -> 11.0.100-rc.1.26425.128 2026-09-14 14:50:01 -03:00
David McFarland
dbba2449c8 dotnetCorePackages.sdk_10_0: 10.0.400 -> 10.0.401 2026-09-14 14:50:01 -03:00
David McFarland
fb230d1646 dotnetCorePackages.sdk_9_0: 9.0.317 -> 9.0.318 2026-09-14 14:50:01 -03:00
David McFarland
c2252bbb23 dotnetCorePackages.sdk_8_0: 8.0.424 -> 8.0.425 2026-09-14 14:50:00 -03:00
Astro
0ff39385d1 alsa-tools: enable strictDeps, enable structuredAttrs 2026-09-14 16:08:14 +02:00
R. Ryantm
751918093d streamlink: 8.5.0 -> 8.6.0 2026-09-14 12:32:04 +00:00
nixpkgs-ci[bot]
e97b635f47 Merge master into staging-next 2026-09-14 12:14:18 +00:00
Shogo Takata
781770ed71 gitify: 7.7.0 -> 7.8.0 2026-09-14 17:48:19 +09:00
R. Ryantm
574feb33c5 libmirage: 3.3.2 -> 3.3.3 2026-09-14 06:52:51 +00:00
ennnvy
2f82b38ec8 python3Packages.qasync: add patch to fix Python 3.14 running loop incompatibility 2026-09-14 14:21:35 +08:00
nixpkgs-ci[bot]
83e8c37160 Merge master into staging-next 2026-09-14 06:20:22 +00:00
h7x4
410f5906b6 nixos/tests/docuum: init 2026-09-14 12:55:26 +09:00
nixpkgs-ci[bot]
0ada4117ca Merge master into staging-next 2026-09-14 00:26:54 +00:00
OPNA2608
a40518f338 nixosTests.lomiri: Fix deprecation warnings 2026-09-14 01:27:39 +02:00
Boris Nagaev
cec689100f ricochet-refresh: 3.0.39 -> 3.0.45 2026-09-13 19:15:51 +00:00
nixpkgs-ci[bot]
421336fd3e Merge master into staging-next 2026-09-13 18:48:00 +00:00
nixpkgs-ci[bot]
6312385d3f Merge master into staging-next 2026-09-13 18:10:02 +00:00
t4ccer
363fdbe57e zotero: 10.0.1 -> 10.0.2 2026-09-13 15:24:29 -02:30
Marko Muller
a00f8f41d8 sview: 26.07 -> 26.09 2026-09-13 19:22:17 +02:00
Diogo Correia
66aa9e1159 pnpm: point alias to pnpm_12 2026-09-13 18:21:51 +01:00
Diogo Correia
44dec3b7ff home-assistant-custom-lovelace-modules.weather-forecast-card: pin to pnpm 11 2026-09-13 18:21:51 +01:00
Diogo Correia
3731013062 tranquil-pds-frontend: pin to pnpm 11 2026-09-13 18:21:51 +01:00
Diogo Correia
63c40b4e48 sparkle: pin to pnpm 11 2026-09-13 18:21:50 +01:00
Diogo Correia
c44e08b9e4 rustfs: pin to pnpm 11 2026-09-13 18:21:50 +01:00
Diogo Correia
c653c7be60 prettier: pin to pnpm 11 2026-09-13 18:21:50 +01:00
Diogo Correia
4492d4f730 murmure: pin to pnpm 11 2026-09-13 18:21:50 +01:00
Diogo Correia
159c0f52a3 matrix-authentication-service: pin to pnpm 11 2026-09-13 18:21:49 +01:00
Diogo Correia
d9aaae32ee esphome-device-builder-frontend: pin to pnpm 11 2026-09-13 18:21:49 +01:00
Diogo Correia
113570fc5c bichon: pin to pnpm 11 2026-09-13 18:21:49 +01:00
Nathan Mills
4932f3ffac pioneer: 20260203 -> 20260907
https://github.com/pioneerspacesim/pioneer/releases/20260907
2026-09-13 16:54:38 +00:00
Sam Estep
dd065049af wasm-language-tools: fix build for Rust 1.98
Assisted-by: Claude:fable-5.1
2026-09-13 12:29:09 -04:00
Rafael Ieda
e812cddc97 d-seams: 1.0.1 -> 2.10.0 2026-09-13 13:19:46 -03:00
Peder Bergebakken Sundt
d9ec84a6d1 python3Packages.starlette-admin: 0.17.1 -> 1.0.1
Changelog:
* https://jowilf.github.io/starlette-admin/changelog/

releases:
* https://github.com/jowilf/starlette-admin/releases#release-0.17.0
* https://github.com/jowilf/starlette-admin/releases#release-0.17.1
* https://github.com/jowilf/starlette-admin/releases#release-1.0.0
* https://github.com/jowilf/starlette-admin/releases#release-1.0.1

Migration guide:
* https://jowilf.github.io/starlette-admin/migration/#from-017x-to-100

Part of:
* https://github.com/NixOS/nixpkgs/issues/562880
2026-09-13 17:43:40 +02:00
Talles Coelho
1ef0c9efb9 flycast: display package version in Settings > About 2026-09-13 12:12:30 -03:00
whispers
2a0c7bd88d llvmPackages_23.lldb: update gnu-install-dirs.patch to fix build
ba34cbad41
moved the location of the handling for _lldb.so in the python bindings,
which we delete in gnu-install-dirs.patch. to allow the patch to apply
to lldb 23, we make the patch version dependent and move the deletion to
the new location in the source for the llvm 23 version.
2026-09-13 10:36:34 -04:00
BeLeap
29d2812b7e joplin-desktop: use nixpkgs Yarn and skip Electron installer
Use the patched offline Yarn and avoid Joplin\u2019s networked Electron installer.

Assisted-by: pi 0.85.1 (openai-codex model)
2026-09-13 22:35:32 +09:00
BeLeap
3767c91f9a joplin-desktop: remove obsolete postFetch workaround
The upstream Yarn lockfile no longer needs the metadata version workaround.

Assisted-by: pi 0.85.1 (openai-codex model)
2026-09-13 22:34:57 +09:00
BeLeap
8b9a673c1c joplin-desktop: 3.6.16 -> 3.7.18
Update release data with update.py.

Assisted-by: pi 0.85.1 (openai-codex model)
2026-09-13 22:34:39 +09:00
nixpkgs-ci[bot]
a34b8e1953 Merge master into staging-next 2026-09-13 12:12:16 +00:00
Santiago Fraire Willemoes
c3472d08f9 nixos/netbird-relay: init module 2026-09-13 10:16:09 +01:00
R. Ryantm
0b77059250 graphify: 0.9.53 -> 0.9.61 2026-09-13 08:12:06 +00:00
Harinn
405a54987e valkey: rename passthru test attribute to valkey 2026-09-13 14:12:30 +07:00
Harinn
50ba83bd2d nixosTests.redis: drop version suffix from test name 2026-09-13 14:12:29 +07:00
nixpkgs-ci[bot]
b0ff850fc0 Merge master into staging-next 2026-09-13 06:18:04 +00:00
eveeifyeve
45d48aad8b python3Packages.powerline: use installFonts hook 2026-09-13 14:15:45 +10:00
nixpkgs-ci[bot]
78bb6139a2 Merge master into staging-next 2026-09-13 00:27:09 +00:00
Hythera
2c3fc4a74c meteor: 3.4 -> 3.5.2
changelog: https://github.com/meteor/meteor/releases/tag/release%2FMETEOR%403.5.2

diff: https://github.com/meteor/meteor/compare/release/METEOR%403.4...release/METEOR%403.5.2
2026-09-12 22:17:43 +02:00
Hythera
e828746b4a meteor: add meta.changelog 2026-09-12 22:17:42 +02:00
Hythera
1e73edc38d meteor: fix update script 2026-09-12 22:17:39 +02:00
nixpkgs-ci[bot]
f170819950 Merge master into staging-next 2026-09-12 18:09:41 +00:00
nixpkgs-ci[bot]
cf489720f6 Merge master into staging-next 2026-09-12 12:11:37 +00:00
Jonas Heinrich
88af8524e5 brlcad: use tinygltf_2 to fix build 2026-09-12 13:25:36 +02:00
Jonas Heinrich
428e44b0e2 tinygltf_2: init at 2.9.7 2026-09-12 13:25:36 +02:00
nixpkgs-ci[bot]
73d3951f2e Merge master into staging-next 2026-09-12 06:13:47 +00:00
nixpkgs-ci[bot]
a4ccc8d0d6 Merge master into staging-next 2026-09-12 00:23:25 +00:00
Ihar Hrachyshka
1434752e6c jprofiler: fix unpackPhase
Add 7zz -snld to allow symlinks with ../ component.
2026-09-11 18:22:08 -04:00
qubitnano
516fcb2242 mongodb-7_0: 7.0.40 -> 7.0.43
https://www.mongodb.com/docs/manual/release-notes/7.0-changelog/#7043-changelog

Fixes: CVE-2026-82052
Fixes: CVE-2026-82053
Fixes: CVE-2026-82054
Fixes: CVE-2026-82056
Fixes: CVE-2026-82058
Fixes: CVE-2026-82059
Fixes: CVE-2026-82060
Fixes: CVE-2026-82063
Fixes: CVE-2026-82064
Fixes: CVE-2026-82065
Fixes: CVE-2026-82066
Fixes: CVE-2026-82067
Fixes: CVE-2026-82068
Fixes: CVE-2026-82070
Fixes: CVE-2026-82074
Fixes: CVE-2026-82075
Fixes: CVE-2026-82076
2026-09-11 17:36:28 -04:00
Shringe
e21f9c7b31 siglo: fix dependencies for version 0.9.9 2026-09-11 13:45:54 -05:00
nixpkgs-ci[bot]
d400b12e47 Merge master into staging-next 2026-09-11 18:10:14 +00:00
R. Ryantm
3f8522bbcc tutanota-desktop: 357.260812.1 -> 359.260904.0 2026-09-11 13:19:18 +00:00
eljamm
51dd26c98c icestudio: use finalAttrs and refactor 2026-09-11 14:35:39 +02:00
eljamm
d74f05a2f4 icestudio: 0.12-unstable-2026-06-29 -> 1.0.0.PRw-20260821-unstable-2026-08-20
icestudio: remove nwjs override
2026-09-11 14:34:29 +02:00
theeasternfurry
4c0a31a0d5 sabiql: 2.0.1 -> 3.0.1 2026-09-11 17:05:03 +07:00
Johannes Kirschbauer
020dd6427b doc/nixos: fixup module chapters includes 2026-09-11 10:20:05 +02:00
Johannes Kirschbauer
e52af07c7c doc/nixos: migrate inline includes to nav.json 2026-09-11 09:48:33 +02:00
Johannes Kirschbauer
cfe7713c42 doc/nixos: setup nav.json migration 2026-09-11 09:48:02 +02:00
Ihar Hrachyshka
af82473316 quba: use default _7zz unpack options
The _7zz unpack hook now passes -sns- -snld by default.
2026-09-10 22:36:19 -04:00
Ihar Hrachyshka
ca47b50a02 lmstudio: use _7zz unpack hook
The _7zz unpack hook now passes -sns- -snld by default.
2026-09-10 22:36:17 -04:00
Ihar Hrachyshka
aea6e988a4 wechat: use _7zz unpack hook
The _7zz unpack hook now passes -sns- -snld by default.
2026-09-10 22:36:16 -04:00
Ihar Hrachyshka
fe69b2631f openusage: use _7zz unpack hook
The _7zz unpack hook now passes -sns- -snld by default.
2026-09-10 22:36:15 -04:00
Ihar Hrachyshka
79ad09776a kitty-bin: use _7zz unpack hook
The _7zz unpack hook now passes -sns- -snld by default.
2026-09-10 22:36:13 -04:00
Ihar Hrachyshka
65fc01905f ghostty-bin: use _7zz unpack hook
The _7zz unpack hook now passes -sns- -snld by default.
2026-09-10 22:36:12 -04:00
Ihar Hrachyshka
de6b0d4ffc proxyman: use _7zz unpack hook
The _7zz unpack hook now passes -sns- -snld by default.
2026-09-10 22:36:11 -04:00
Ihar Hrachyshka
f8c2153b9c linear: use _7zz unpack hook
The _7zz unpack hook now passes -sns- -snld by default.
2026-09-10 22:36:10 -04:00
Ihar Hrachyshka
7320da9378 cmux: use _7zz unpack hook
The _7zz unpack hook now passes -sns- -snld by default.
2026-09-10 22:36:08 -04:00
Ihar Hrachyshka
404143528b orbstack: use _7zz unpack hook
The _7zz unpack hook now passes -sns- -snld by default.
2026-09-10 22:36:07 -04:00
Ihar Hrachyshka
3f7bf515e7 bbedit: use _7zz unpack hook
The _7zz unpack hook now passes -sns- -snld by default.
2026-09-10 22:36:06 -04:00
Ihar Hrachyshka
5fdf44a457 _7zip-zstd: install 7z.so on darwin
On darwin, 7z fails with:

    Codec Load Error: .../lib/7zip/7z.so : errno=2 : No such file or directory

7z is a frontend that dlopens its archive module from 7z.so. Upstream
names that module 7z.so on all Unix platforms, including darwin.
2026-09-10 22:36:05 -04:00
Ihar Hrachyshka
ce18d9ef80 {_7zz,_7zip-zstd}/setup-hook.sh: allow safe parent symlinks
Some archives contain relative symlinks with leading `..` components
that nevertheless resolve within the extracted directory. For some
reason, 7z rejects these by default.

Despite its "kSymLinks_AllowDangerous" name in code, bare -snld only
relaxes this enforcement. It still rejects links that escape the root;
bypassing those checks would require -snld20.

Adding -snld to the DMG and .7z unpack hooks allows us to clean up
explicit unpack commands in packages that needed it.
2026-09-10 22:36:03 -04:00
Ihar Hrachyshka
cefab2e4aa {_7zz,_7zip-zstd}/setup-hook.sh: don't extract alternate streams
.dmg files may contain files on APFS or HFS volumes with additional
metadata.

These "alternate streams" of metadata are extracted by 7z as actual
files with names like `file:com.apple.provenance`. These files are not
treated by macOS as actual on-file metadata, so unless some other
program post-processes them with `xattr`, they don't serve their
supposed goal.

Moreover, these files are actively harmful: they violate .app bundle
seals, which results in signature check and startup failures for
affected apps.

Ideally, Nix NAR would carry this additional on-file metadata, but it
doesn't. So it's better to just avoid extracting these files, which is
done with `-sns-` option here.

Fixes #561556
2026-09-10 22:35:37 -04:00
Grayson Tinker
a56571d313 gi-crystal: add license 2026-09-10 20:25:23 -06:00
R. Ryantm
d3b8be81a8 linuxPackages.bpftrace: 0.26.1 -> 0.27.0 2026-09-11 00:54:34 +00:00
R. Ryantm
467d528969 gimp: 3.2.4 -> 3.2.6 2026-09-11 00:52:29 +00:00
Peder Bergebakken Sundt
2771480ed4 python3Packages.amaranth: 0.5.9 -> 0.5.10
Changelog: https://github.com/amaranth-lang/amaranth/blob/v0.5.10/docs/changes.rst
2026-09-11 00:17:44 +02:00
José Luis Lafuente
c6211eb66e civetweb: use versionCheckHook at installCheckPhase 2026-09-10 18:15:47 +01:00
José Luis Lafuente
e1b0c4dfc5 civetweb: Add configurable build flags 2026-09-10 18:15:42 +01:00
Aiden Schembri
cf2e9829e4 nextcloud-talk-desktop: 2.2.3 -> 2.2.4, fix screenshare issue 2026-09-10 18:34:29 +02:00
es-sai-fi
deec6149fa seedfiles: init at 1.7.2 2026-09-10 11:07:17 -05:00
Jairo Llopis
12685fe637 nixos/rancher: make preloaded images detect derivation changes
The previous setup created one fixed-name symlink per image under
/var/lib/rancher/${name}/agent/images/. Because the symlink name did not
change when the underlying image derivation changed, k3s had no signal
that the archive on disk was different and would not re-import it. Old
symlinks could also dangle after garbage collection removed the referenced
store path.

Expose all declared images through a single /nix/store directory whose
path changes whenever any image changes. The directory is symlinked into
${imageDir}/nixos so that ${imageDir} remains a normal directory usable
for manually added images. This makes k3s detect and re-import updated
images on every generation switch.

Add an end-to-end test that declares an image, switches to a NixOS
specialisation declaring a different version of the same image, and checks
that the cluster runs the new image.

Assisted-by: OpenCode + Kimi k2.7-code
Co-authored-by: rorosen <76747196+rorosen@users.noreply.github.com>
2026-09-10 08:29:05 +02:00
Vonfry
03227cb12a libime: 1.1.14 -> 1.1.16 2026-09-10 11:42:50 +08:00
Vonfry
07be485ad1 fcitx5-skk: 5.1.10 -> 5.1.11
Diff: https://github.com/fcitx/fcitx5-skk/compare/5.1.10...5.1.11
2026-09-10 11:42:49 +08:00
Vonfry
d25839525d fcitx5-rime: 5.1.14 -> 5.1.16 2026-09-10 11:42:49 +08:00
Vonfry
e1e14878a1 qt6Packages.fcitx5-qt: 5.1.14 -> 5.1.15
Diff: https://github.com/fcitx/fcitx5-qt/compare/5.1.14...5.1.15
2026-09-10 11:42:49 +08:00
Vonfry
71aafdf6a5 qt6Packages.fcitx5-chinese-addons: 5.1.12 -> 5.1.14
Diff: https://github.com/fcitx/fcitx5-chinese-addons/compare/5.1.12...5.1.14
2026-09-10 11:42:49 +08:00
Evan Porter
de6b058801 slang-server: 0.2.10 -> 0.3.0 2026-09-09 19:58:01 -07:00
R. Ryantm
fad3f00b01 gremlin-console: 3.8.1 -> 3.8.2 2026-09-09 13:04:12 +00:00
Vonfry
a913cedba1 fcitx5: 5.1.21 -> 5.1.22
Diff: https://github.com/fcitx/fcitx5/compare/5.1.21...5.1.22
2026-09-09 19:59:07 +08:00
sempiternal-aurora
0d7ffa648b gnucobol: use autoreconfHook on darwin too 2026-09-08 16:49:06 +10:00
Lin Xianyi
6f7a42550a swayimg: 5.5 -> 5.6
Changelog: https://github.com/artemsen/swayimg/releases/tag/v5.6
2026-09-08 12:25:57 +08:00
coolcuber
95a39b592a i3lock-fancy-rapid: fix version; enable strictDeps, structuredAttrs 2026-09-07 20:24:06 -04:00
kyehn
86b7930378 uutils-util-linux: 0.0.1-unstable-2026-05-01 -> 0.0.1-unstable-2026-09-01 2026-09-07 20:50:16 +00:00
Ryan Omasta
c028d391bd comaps: 2026.08.07-3 -> 2026.08.31-14
https://codeberg.org/comaps/comaps/releases/tag/v2026.08.31-14
Diff: https://codeberg.org/comaps/comaps/compare/v2026.08.07-3...v2026.08.31-14
2026-09-07 03:40:29 -06:00
whispers
fcce7ff567 python3Packages.xmlsec: fix build with xmlsec ≥1.3.11 2026-09-06 19:01:47 -04:00
whispers
57a511fb32 xmlsec: 1.3.7 -> 1.3.12
changelog: https://www.aleksey.com/xmlsec/news.html

also: drop support for gcrypt, which is considered a "legacy engine" by
upstream and was already broken. this was previously causing
passthru.tests to fail.
2026-09-06 19:01:47 -04:00
whispers
ff03c78b82 xmlsec: enable structuredAttrs and strictDeps, remove substituteAllInPlace 2026-09-06 19:01:46 -04:00
whispers
0bae42c42e xmlsec: drop unnecessary fixpoint 2026-09-06 19:01:44 -04:00
h7x4
1d076f1a80 formats/java-properties: expose as format 2026-09-06 20:35:15 +09:00
h7x4
75ef69c333 formats: split into individual files 2026-09-06 20:35:15 +09:00
R. Ryantm
27de7b547c obscura: 0.2.0 -> 0.2.2 2026-09-06 01:13:38 +00:00
whoomee
bff137ddc7 prometheus: use nix-update-script 2026-09-04 23:13:48 +02:00
sollniss
86922aed38 sogo: don't embed the compile command line in installed binaries
Same .GCC.command.line issue as sope: -frecord-gcc-switches from
general.make kept clang, llvm, gcc and gnustep-base's dev output in the
runtime closure.

Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com>
2026-09-05 00:10:12 +09:00
sollniss
dd516856e6 sope: don't embed the compile command line in installed binaries
general.make builds with -frecord-gcc-switches, which makes clang store the
full command line in a .GCC.command.line ELF section. strip -S does not
remove that section, so the store paths of clang, llvm and gcc stayed as
runtime references.

Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com>
2026-09-05 00:10:12 +09:00
sollniss
928b7bc0fb wrapGNUstepAppsHook: keep build-only inputs out of GNUstep.conf
gnustep-make's environment hook accumulates the NIX_GNUSTEP_* search paths
from every package in the build environment. Without strictDeps that also
covers the native build inputs, so the compiler wrapper, pkg-config and
patchelf ended up in the installed config file and became runtime
references of every package using this hook.

Restrict the generated config to this derivation's outputs and its runtime
dependencies, and stop writing NIX_GNUSTEP_SYSTEM_HEADERS, which only pulls
in -dev outputs: gnustep-base parses the key but never uses it in any
NSSearchPathForDirectoriesInDomains branch.

Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com>
2026-09-05 00:10:12 +09:00
r0chd
cdb86f5c1e sessiond-hooks: init at 0.1.0 2026-09-03 18:32:54 +02:00
R. Ryantm
b1377830a1 portmaster: 2.2.1 -> 2.2.3 2026-09-02 05:15:53 +00:00
R. Ryantm
0c35fe3325 python3Packages.emerge: 2.8.2 -> 2.8.9 2026-09-01 16:57:34 +00:00
Connor Grady
fe7f97f4c8 bazarr: separate frontend and backend packaging
Builds the backend with buildPythonApplication and the frontend
separately with buildNpmPackage. This applies language-specific
tooling to each component and keeps each component independently
reusable and overridable.
2026-09-01 01:45:15 -05:00
Jérémy Audiger
2fccda4811 mistral-vibe: fix test configuration
Signed-off-by: Jérémy Audiger <jeremy.audiger@icloud.com>
2026-08-31 20:30:02 +02:00
Jérémy Audiger
44c51db4d3 mistralai: fix test dependencies
Signed-off-by: Jérémy Audiger <jeremy.audiger@icloud.com>
2026-08-31 20:30:02 +02:00
Jérémy Audiger
67ba6522dc agent-client-protocol: 0.12.0 to 0.12.1
Signed-off-by: Jérémy Audiger <jeremy.audiger@icloud.com>
2026-08-31 20:29:51 +02:00
OPNA2608
780ffbdbe3 lomiri.lomiri: 0.5.0 -> 0.6.1 2026-08-31 06:29:49 +02:00
Ryan Omasta
85f6b890aa python3Packages.pcbnewtransition: drop 2026-08-30 15:33:42 -06:00
Ryan Omasta
4efbf94490 kikit: 1.8.0 -> 1.8.1
https://github.com/yaqwsx/KiKit/releases/tag/v1.8.1
Diff: https://github.com/yaqwsx/KiKit/compare/v1.8.0...v1.8.1
2026-08-30 15:33:42 -06:00
Casey Link
c2bb4505e5 roon-server: 2.70.1671 -> 2.71.1683
https://community.roonlabs.com/t/roon-2-71-hotfix-1683-is-live/323450

Assisted-by: Pi (OpenAI Codex gpt-5.6-sol)
2026-08-26 08:51:11 +02:00
Casey Link
d5f4df73f7 jet: fix native image with GraalVM 25.2.4
GraalVM 25.1 removed automatic feature discovery, so explicitly
register graal-build-time's InitAtBuildTimeFeature. Also set Jet's
native-image property so its native patches are applied.

Add an install check covering JSON-to-keywordized-EDN conversion.

Assisted-by: Pi coding agent (OpenAI Codex GPT-5.6-sol)
2026-08-26 08:01:17 +02:00
R. Ryantm
2b95c141e2 networkmanager: 1.58.0 -> 1.58.1 2026-08-24 06:27:16 +00:00
R. Ryantm
9672b60ee4 poke: 4.3 -> 5.0 2026-08-21 05:46:02 +00:00
R. Ryantm
c4fd1b6ac0 rpi-imager: 2.0.10-1-proto1 -> 2.0.11.1 2026-08-20 23:18:38 +00:00
foundationkitty
8f79bdaf44 ticktick: 8.0.10 -> 8.0.11 2026-08-19 19:19:13 -07:00
Peder Bergebakken Sundt
31e1f9db74 sus-compiler: 0.4.0 -> 0.5.0 2026-08-18 20:00:06 +02:00
Antoine Cotten
121d1ddf97 nixos/kubernetes: disambiguate kubelet cluster DNS options 2026-08-16 11:08:34 +02:00
R. Ryantm
23f3cee192 goss: 0.4.9 -> 0.4.10 2026-07-31 06:15:33 +00:00
Johan Herland
4435c085fa python3Packages.rapidyaml: init at 0.15.2
Assisted-by: Claude Sonnet 4.6 <noreply@anthropic.com>
2026-07-24 14:09:30 +00:00
Johan Herland
accb9be43e porting-advisor-for-graviton: init at 1.1.1
Assisted-by: Claude Sonnet 4.6 <noreply@anthropic.com>
2026-07-17 16:24:52 +02:00
José Luis Lafuente
f5ac7ff926 fetchYarnDeps: make registry URL configurable 2026-06-17 14:42:21 +02:00
512 changed files with 10466 additions and 24541 deletions

View File

@@ -6,9 +6,10 @@ from typing import TypedDict
# Coupled to where this file lives!
# Needed to resolve the relative includes file paths
DOC_ROOT = Path(__file__).resolve().parent.parent
REPO_ROOT = Path(__file__).resolve().parent.parent.parent
ROOT_FILE = DOC_ROOT / "manual.md.in"
ROOT_FILE = REPO_ROOT / "nixos/doc/manual/manual.md"
DOC_ROOT = ROOT_FILE.parent
INCLUDE_RE = re.compile(r"^```\{=include=\}(?P<rest>.*)$")
FENCE_RE = re.compile(r"^(```|~~~)")

View File

@@ -1,151 +1,27 @@
# Generates the documentation for library functions via nixdoc.
# To build this derivation, run `nix-build -A nixpkgs-manual.lib-docs`
{
lib,
stdenvNoCC,
nixdoc,
nix,
nixpkgs ? { },
libsets ? [
{
name = "asserts";
description = "assertion functions";
}
{
name = "attrsets";
description = "attribute set functions";
}
{
name = "strings";
description = "string manipulation functions";
}
{
name = "versions";
description = "version string functions";
}
{
name = "trivial";
description = "miscellaneous functions";
}
{
name = "fixedPoints";
baseName = "fixed-points";
description = "explicit recursion functions";
}
{
name = "lists";
description = "list manipulation functions";
}
{
name = "debug";
description = "debugging functions";
}
{
name = "options";
description = "NixOS / nixpkgs option handling";
}
{
name = "path";
description = "path functions";
}
{
name = "fetchers";
description = "functions which can be reused across fetchers";
}
{
name = "filesystem";
description = "filesystem functions";
}
{
name = "fileset";
description = "file set functions";
}
{
name = "sources";
description = "source filtering functions";
}
{
name = "cli";
description = "command-line serialization functions";
}
{
name = "generators";
description = "functions that create file formats from nix data structures";
}
{
name = "gvariant";
description = "GVariant formatted string serialization functions";
}
{
name = "customisation";
description = "Functions to customise (derivation-related) functions, derivations, or attribute sets";
}
{
name = "meta";
description = "functions for derivation metadata";
}
{
name = "derivations";
description = "miscellaneous derivation-specific functions";
}
],
}:
stdenvNoCC.mkDerivation {
name = "nixpkgs-lib-docs";
src = ../../lib;
nativeBuildInputs = [
nixdoc
nix
];
nativeBuildInputs = [ nixdoc ];
buildPhase = ''
mkdir -p src
cp -r ${../../lib} src/lib
mkdir -p $out
nixdoc --manifest ${../function-catalog.json} --root src --output $out/lib-functions.json
'';
installPhase = ''
runHook preInstall
cd ..
export NIX_STATE_DIR=$(mktemp -d)
nix-instantiate --eval --strict --json ${./lib-function-locations.nix} \
--arg nixpkgsPath "./." \
--argstr revision ${nixpkgs.rev or "master"} \
--argstr libsetsJSON ${lib.escapeShellArg (builtins.toJSON libsets)} \
--store $(mktemp -d) \
> locations.json
function docgen {
name=$1
baseName=$2
description=$3
# TODO: wrap lib.$name in <literal>, make nixdoc not escape it
if [[ -e "lib/$baseName.nix" ]]; then
nixdoc -c "$name" -d "lib.$name: $description" -l locations.json -f "lib/$baseName.nix" > "$out/$name.md"
else
nixdoc -c "$name" -d "lib.$name: $description" -l locations.json -f "lib/$baseName/default.nix" > "$out/$name.md"
fi
echo "$out/$name.md" >> "$out/index.md"
}
mkdir -p "$out"
cat > "$out/index.md" << 'EOF'
```{=include=} sections auto-id-prefix=auto-generated
EOF
${lib.concatMapStrings (
{
name,
baseName ? name,
description,
}:
''
docgen ${name} ${baseName} ${lib.escapeShellArg description}
''
) libsets}
echo '```' >> "$out/index.md"
runHook postInstall
'';
}

View File

@@ -1,82 +0,0 @@
{
nixpkgsPath,
revision,
libsetsJSON,
}:
let
lib = import (nixpkgsPath + "/lib");
libsets = builtins.fromJSON libsetsJSON;
libDefPos =
prefix: set:
builtins.concatMap (
name:
[
{
name = builtins.concatStringsSep "." (prefix ++ [ name ]);
location = builtins.unsafeGetAttrPos name set;
}
]
++ lib.optionals (builtins.length prefix == 0 && builtins.isAttrs set.${name}) (
libDefPos (prefix ++ [ name ]) set.${name}
)
) (builtins.attrNames set);
libset =
toplib:
map (subsetname: {
subsetname = subsetname;
functions = libDefPos [ ] toplib.${subsetname};
}) (map (x: x.name) libsets);
flattenedLibSubset =
{ subsetname, functions }:
map (fn: {
name = "lib.${subsetname}.${fn.name}";
value = fn.location;
}) functions;
locatedlibsets = libs: map flattenedLibSubset (libset libs);
removeFilenamePrefix =
prefix: filename:
let
prefixLen = (builtins.stringLength prefix) + 1; # +1 to remove the leading /
filenameLen = builtins.stringLength filename;
substr = builtins.substring prefixLen filenameLen filename;
in
substr;
removeNixpkgs = removeFilenamePrefix (toString nixpkgsPath);
liblocations = builtins.filter (elem: elem.value != null) (lib.lists.flatten (locatedlibsets lib));
fnLocationRelative =
{ name, value }:
{
inherit name;
value = value // {
file = removeNixpkgs value.file;
};
};
relativeLocs = (map fnLocationRelative liblocations);
sanitizeId = builtins.replaceStrings [ "'" ] [ "-prime" ];
urlPrefix = "https://github.com/NixOS/nixpkgs/blob/${revision}";
jsonLocs = builtins.listToAttrs (
map (
{ name, value }:
{
name = sanitizeId name;
value =
let
text = "${value.file}:${toString value.line}";
target = "${urlPrefix}/${value.file}#L${toString value.line}";
in
"[${text}](${target}) in `<nixpkgs>`";
}
) relativeLocs
);
in
jsonLocs

View File

@@ -91,7 +91,7 @@ stdenvNoCC.mkDerivation (
substituteInPlace ./languages-frameworks/python.section.md \
--subst-var-by python-interpreter-table "$(<"${pythonInterpreterTable}")"
cat ./functions/library.md.in ${lib-docs}/index.md > ./functions/library.md
cp ${lib-docs}/lib-functions.json ./lib-functions.json
substitute ./manual.md.in ./manual.md \
--replace-fail '@MANUAL_VERSION@' '${lib.version}'
@@ -147,7 +147,7 @@ stdenvNoCC.mkDerivation (
'';
passthru = {
lib-docs = callPackage ./lib-function-docs.nix { inherit nixpkgs; };
lib-docs = callPackage ./lib-function-docs.nix { };
epub = callPackage ./epub.nix { };

124
doc/function-catalog.json Normal file
View File

@@ -0,0 +1,124 @@
{
"version": 1,
"groups": [
{ "id": "asserts", "description": "assertion functions" },
{ "id": "attrsets", "description": "attribute set functions" },
{ "id": "strings", "description": "string manipulation functions" },
{ "id": "versions", "description": "version string functions" },
{ "id": "trivial", "description": "miscellaneous functions" },
{ "id": "fixedPoints", "description": "explicit recursion functions" },
{ "id": "lists", "description": "list manipulation functions" },
{ "id": "debug", "description": "debugging functions" },
{ "id": "options", "description": "NixOS / nixpkgs option handling" },
{ "id": "path", "description": "path functions" },
{
"id": "fetchers",
"description": "functions which can be reused across fetchers"
},
{ "id": "filesystem", "description": "filesystem functions" },
{ "id": "fileset" },
{ "id": "sources", "description": "source filtering functions" },
{ "id": "cli", "description": "command-line serialization functions" },
{
"id": "generators",
"description": "functions that create file formats from nix data structures"
},
{
"id": "gvariant",
"description": "GVariant formatted string serialization functions"
},
{
"id": "customisation",
"description": "Functions to customise (derivation-related) functions, derivations, or attribute sets"
},
{ "id": "meta", "description": "functions for derivation metadata" },
{
"id": "derivations",
"description": "miscellaneous derivation-specific functions"
}
],
"sources": [
{ "path": "lib.trivial", "file": "lib/trivial.nix", "groups": ["trivial"] },
{
"path": "lib.fixedPoints",
"file": "lib/fixed-points.nix",
"groups": ["fixedPoints"]
},
{
"path": "lib.attrsets",
"file": "lib/attrsets.nix",
"groups": ["attrsets"]
},
{ "path": "lib.lists", "file": "lib/lists.nix", "groups": ["lists"] },
{ "path": "lib.strings", "file": "lib/strings.nix", "groups": ["strings"] },
{
"path": "lib.customisation",
"file": "lib/customisation.nix",
"groups": ["customisation"]
},
{
"path": "lib.derivations",
"file": "lib/derivations.nix",
"groups": ["derivations"]
},
{ "path": "lib.meta", "file": "lib/meta.nix", "groups": ["meta"] },
{
"path": "lib.versions",
"file": "lib/versions.nix",
"groups": ["versions"]
},
{ "path": "lib.cli", "file": "lib/cli.nix", "groups": ["cli"] },
{
"path": "lib.gvariant",
"file": "lib/gvariant.nix",
"groups": ["gvariant"]
},
{
"path": "lib.generators",
"file": "lib/generators.nix",
"groups": ["generators"]
},
{ "path": "lib.asserts", "file": "lib/asserts.nix", "groups": ["asserts"] },
{ "path": "lib.debug", "file": "lib/debug.nix", "groups": ["debug"] },
{
"path": "lib.fetchers",
"file": "lib/fetchers.nix",
"groups": ["fetchers"]
},
{ "path": "lib.path", "file": "lib/path/default.nix", "groups": ["path"] },
{
"path": "lib.filesystem",
"file": "lib/filesystem.nix",
"groups": ["filesystem"]
},
{
"path": "lib.fileset",
"file": "lib/fileset/default.nix",
"groups": ["fileset"]
},
{
"path": "lib.sources",
"file": "lib/sources.nix",
"groups": ["sources"],
"mode": "deep",
"include": [
"pathIsGitRepo",
"commitIdFromGitRepo",
"cleanSource",
"cleanSourceWith",
"cleanSourceFilter",
"pathHasContext",
"canCleanSource",
"urlToName",
"shortRev",
"revOrTag",
"repoRevToName",
"sourceByRegex",
"sourceFilesBySuffices",
"sourceByGlobs",
"trace"
]
},
{ "path": "lib.options", "file": "lib/options.nix", "groups": ["options"] }
]
}

View File

@@ -1,5 +1,3 @@
# Nixpkgs Library Functions {#sec-functions-library}
Nixpkgs provides a standard library at `pkgs.lib`, or through `import <nixpkgs/lib>`.
<!-- nixdoc-generated documentation must be appended here during build! -->

View File

@@ -562,6 +562,29 @@ stdenv.mkDerivation (finalAttrs: {
})
```
##### `fetchYarnDeps` arguments {#javascript-fetchyarndeps}
`fetchYarnDeps` accepts the following arguments:
- `yarnLock`: Path to the `yarn.lock` file to fetch dependencies for.
- `hash` (or `sha256`): The output hash of the offline cache.
- `mirrorUrl`: Optional registry mirror URL used in place of the default yarn
registry (`https://registry.yarnpkg.com/`). When set, any resolved URL
pointing at the default registry is rewritten to use this mirror before
downloading. This is useful for pointing at a local or internal registry
mirror. Note that changing the mirror does not change the output hash, since
the downloaded contents are identical.
```nix
{
yarnOfflineCache = fetchYarnDeps {
yarnLock = finalAttrs.src + "/yarn.lock";
mirrorUrl = "https://registry.npmmirror.com/";
hash = "sha256-AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA=";
};
}
```
##### `yarnConfigHook` arguments {#javascript-yarnconfighook}
By default, `yarnConfigHook` relies upon the attribute `${yarnOfflineCache}` (or `${offlineCache}` if the former is not set) to find the location of the offline cache produced by `fetchYarnDeps`. To disable this phase, you can set `dontYarnInstallDeps = true` or override the `configurePhase`.

View File

@@ -628,9 +628,12 @@
"file": "functions.md"
},
{
"id-prefix": "auto-generated",
"file": "functions/library.md"
},
{
"collection": "lib-functions.json",
"type": "nixdoc"
},
{
"file": "functions/generators.section.md"
},

View File

@@ -3906,6 +3906,9 @@
"javascript-yarn-v3-v4": [
"index.html#javascript-yarn-v3-v4"
],
"javascript-fetchyarndeps": [
"index.html#javascript-fetchyarndeps"
],
"javascript-yarnconfighook": [
"index.html#javascript-yarnconfighook"
],

View File

@@ -102,6 +102,8 @@
- `bosun` has been removed as it is no longer maintained upstream. the corresponding monitoring options has been removed.
- `python3Packages.starlette-admin` v1.0.0 has released, which mainly refactors internals and adds a large set of new features. The high-level API is mostly unchanged, but users migrating from v0.17 may want to view [the migration guide](https://jowilf.github.io/starlette-admin/migration/#from-017x-to-100).
- `uhttpmock` providing 0.0 ABI was removed. `uhttpmock_1_0` providing 1.0 ABI was renamed to `uhttpmock` and `uhttpmock_1_0` was kept as an alias.
- `himalaya` has been updated from `v1.2.0` to `v2.0.0`, which introduces breaking changes. See the [release notes](https://github.com/pimalaya/himalaya/releases/tag/v2.0.0) and the [migration guide](https://github.com/pimalaya/himalaya/blob/master/MIGRATION.md).

View File

@@ -20,9 +20,3 @@ get upgraded along with your host system when you run `nixos-rebuild`,
which is often not what you want. By contrast, in the imperative
approach, containers are configured and updated independently from the
host system.
```{=include=} sections
imperative-containers.section.md
declarative-containers.section.md
container-networking.section.md
```

View File

@@ -1,15 +1,3 @@
# Administration {#ch-running}
This chapter describes various aspects of managing a running NixOS system, such as how to use the {command}`systemd` service manager.
```{=include=} chapters
service-mgmt.chapter.md
rebooting.chapter.md
user-sessions.chapter.md
control-groups.chapter.md
logging.chapter.md
system-state.chapter.md
cleaning-store.chapter.md
containers.chapter.md
troubleshooting.chapter.md
```

View File

@@ -8,10 +8,3 @@ However, it is possible and not-uncommon to create [impermanent systems], whose
this kind of configuration, special care needs to be taken.
[impermanent systems]: https://wiki.nixos.org/wiki/Impermanence
```{=include=} sections
nixos-state.section.md
systemd-state.section.md
zfs-state.section.md
```

View File

@@ -2,11 +2,3 @@
This chapter describes solutions to common problems you might encounter
when you manage your NixOS system.
```{=include=} sections
boot-problems.section.md
maintenance-mode.section.md
rollback.section.md
store-corruption.section.md
network-problems.section.md
```

View File

@@ -10,9 +10,3 @@ of the Nix language are fully described in the [Nix
manual](https://nixos.org/nix/manual/#chap-writing-nix-expressions), but
here we give a short overview of the most important constructs useful in
NixOS configuration files.
```{=include=} sections
config-file.section.md
abstractions.section.md
modularity.section.md
```

View File

@@ -2,27 +2,4 @@
This chapter describes how to configure various aspects of a NixOS machine through the configuration file {file}`/etc/nixos/configuration.nix`. As described in [](#sec-changing-config), changes to this file only take effect after you run {command}`nixos-rebuild`.
```{=include=} chapters
config-syntax.chapter.md
package-mgmt.chapter.md
user-mgmt.chapter.md
file-systems.chapter.md
x-windows.chapter.md
wayland.chapter.md
gpu-accel.chapter.md
xfce.chapter.md
networking.chapter.md
linux-kernel.chapter.md
subversion.chapter.md
```
```{=include=} chapters
@MODULE_CHAPTERS@
```
```{=include=} chapters
profiles.chapter.md
mattermost.chapter.md
kubernetes.chapter.md
```
<!-- Apache; libvirtd virtualisation -->

View File

@@ -39,8 +39,3 @@ configuration, use `pkgs` prefix (variable).
To "uninstall" a package, remove it from
[](#opt-environment.systemPackages) and run `nixos-rebuild switch`.
```{=include=} sections
customizing-packages.section.md
adding-custom-packages.section.md
```

View File

@@ -37,10 +37,3 @@ System startup will fail if any of the filesystems fails to mount,
dropping you to the emergency shell. You can make a mount asynchronous
and non-critical by adding `options = [ "nofail" ];`.
:::
```{=include=} sections
luks-file-systems.section.md
sshfs-file-systems.section.md
nfs-file-systems.section.md
overlayfs.section.md
```

View File

@@ -3,14 +3,4 @@
This section describes how to configure networking components
on your NixOS machine.
```{=include=} sections
network-manager.section.md
ssh.section.md
ipv4-config.section.md
ipv6-config.section.md
firewall.section.md
wireless.section.md
ad-hoc-network-config.section.md
renaming-interfaces.section.md
```
<!-- TODO: OpenVPN, NAT -->

View File

@@ -11,8 +11,3 @@ NixOS has two distinct styles of package management:
- *Ad hoc*, where you install, upgrade and uninstall packages via the
`nix-env` command. This style allows mixing packages from different
Nixpkgs versions. It's the only choice for non-root users.
```{=include=} sections
declarative-packages.section.md
ad-hoc-packages.section.md
```

View File

@@ -16,17 +16,3 @@ install media, many are actually intended to be used in real installs.
What follows is a brief explanation of the purpose and use-case for each
profile. Detailing each option configured by each one is out of scope.
```{=include=} sections
profiles/all-hardware.section.md
profiles/base.section.md
profiles/clone-config.section.md
profiles/demo.section.md
profiles/docker-container.section.md
profiles/graphical.section.md
profiles/headless.section.md
profiles/installation-device.section.md
profiles/perlless.section.md
profiles/minimal.section.md
profiles/qemu-guest.section.md
```

View File

@@ -103,12 +103,16 @@ let
cp -r ${../../../doc/release-notes} ./release-notes-nixpkgs
cp ${./nav.json} nav.json
substituteInPlace ./manual.md \
--replace-fail '@NIXOS_VERSION@' "${version}"
substituteInPlace ./configuration/configuration.md \
substituteInPlace ./nav.json \
--replace-fail \
'@MODULE_CHAPTERS@' \
${escapeShellArg (concatMapStringsSep "\n" (p: "${p.value}") config.meta.doc)}
'"@MODULE_CHAPTERS@"' \
${escapeShellArg (
concatMapStringsSep ",\n" (p: ''{ "file": "${p.value}" }'') config.meta.doc
)}
substituteInPlace ./nixos-options.md \
--replace-fail \
'@NIXOS_OPTIONS_JSON@' \
@@ -200,9 +204,10 @@ rec {
--script ./highlightjs/loader.js \
--script ./anchor.min.js \
--script ./anchor-use.js \
--sidebar-depth 2 \
--sidebar-depth 3 \
--header ${./header.html}\
--no-navheader \
--experimental-config nav.json \
./manual.md \
$dst/${common.indexPath}

View File

@@ -1,16 +1,3 @@
# Development {#ch-development}
This chapter describes how you can modify and extend NixOS.
```{=include=} chapters
sources.chapter.md
writing-modules.chapter.md
building-parts.chapter.md
bootspec.chapter.md
what-happens-during-a-system-switch.chapter.md
writing-documentation.chapter.md
nixos-tests.chapter.md
developing-the-test-driver.chapter.md
testing-installer.chapter.md
modular-services.md
```

View File

@@ -4,11 +4,3 @@ When you add some feature to NixOS, you should write a test for it.
NixOS tests are kept in the directory `nixos/tests`, and are executed
(using Nix) by a testing framework that automatically starts one or more
virtual machines containing the NixOS system(s) required for the test.
```{=include=} sections
writing-nixos-tests.section.md
running-nixos-tests.section.md
running-nixos-tests-interactively.section.md
linking-nixos-tests-to-packages.section.md
testing-hardware-features.section.md
```

View File

@@ -53,10 +53,3 @@ More detailed output can be displayed by setting `STC_DEBUG=1`.
Most of these actions are either self-explaining but some of them have to do
with our units or the activation script. For this reason, these topics are
explained in the next sections.
```{=include=} sections
unit-handling.section.md
activation-script.section.md
non-switchable-systems.section.md
etc-overlay.section.md
```

View File

@@ -209,16 +209,3 @@ in
}
```
:::
```{=include=} sections
option-declarations.section.md
option-types.section.md
option-def.section.md
assertions.section.md
meta-attributes.section.md
importing-modules.section.md
replace-modules.section.md
freeform-modules.section.md
settings-options.section.md
state-revision.section.md
```

View File

@@ -1,13 +1,3 @@
# Installation {#ch-installation}
This section describes how to obtain, install, and configure NixOS for first-time use.
```{=include=} chapters
obtaining.chapter.md
installing.chapter.md
changing-config.chapter.md
upgrading.chapter.md
building-nixos.chapter.md
building-images-via-nixos-rebuild-build-image.chapter.md
building-images-via-systemd-repart.chapter.md
```

View File

@@ -577,12 +577,3 @@ With a partitioned disk.
:::
## Additional installation notes {#sec-installation-additional-notes}
```{=include=} sections
installing-usb.section.md
installing-pxe.section.md
installing-kexec.section.md
installing-virtualbox-guest.section.md
installing-from-other-distro.section.md
installing-behind-a-proxy.section.md
```

View File

@@ -32,21 +32,6 @@
-->
```{=include=} preface
preface.md
```
```{=include=} parts
installation/installation.md
configuration/configuration.md
administration/running.md
development/development.md
```
```{=include=} chapters
contributing-to-this-manual.chapter.md
```
```{=include=} appendix html:into-file=//options.html
nixos-options.md
```

444
nixos/doc/manual/nav.json Normal file
View File

@@ -0,0 +1,444 @@
{
"open": [],
"items": [
{
"file": "preface.md"
},
{
"label": "Installation",
"id": "ch-installation",
"children": [
{
"file": "installation/installation.md"
},
{
"file": "installation/obtaining.chapter.md"
},
{
"label": "Installing NixOS",
"id": "sec-installation",
"children": [
{
"file": "installation/installing.chapter.md"
},
{
"file": "installation/installing-usb.section.md"
},
{
"file": "installation/installing-pxe.section.md"
},
{
"file": "installation/installing-kexec.section.md"
},
{
"file": "installation/installing-virtualbox-guest.section.md"
},
{
"file": "installation/installing-from-other-distro.section.md"
},
{
"file": "installation/installing-behind-a-proxy.section.md"
}
]
},
{
"file": "installation/changing-config.chapter.md"
},
{
"file": "installation/upgrading.chapter.md"
},
{
"file": "installation/building-nixos.chapter.md"
},
{
"file": "installation/building-images-via-nixos-rebuild-build-image.chapter.md"
},
{
"file": "installation/building-images-via-systemd-repart.chapter.md"
}
]
},
{
"label": "Configuration",
"id": "ch-configuration",
"children": [
{
"file": "configuration/configuration.md"
},
{
"label": "Configuration Syntax",
"id": "sec-configuration-syntax",
"children": [
{
"file": "configuration/config-syntax.chapter.md"
},
{
"file": "configuration/config-file.section.md"
},
{
"file": "configuration/abstractions.section.md"
},
{
"file": "configuration/modularity.section.md"
}
]
},
{
"label": "Package Management",
"id": "sec-package-management",
"children": [
{
"file": "configuration/package-mgmt.chapter.md"
},
{
"label": "Declarative Package Management",
"id": "sec-declarative-package-mgmt",
"children": [
{
"file": "configuration/declarative-packages.section.md"
},
{
"file": "configuration/customizing-packages.section.md"
},
{
"file": "configuration/adding-custom-packages.section.md"
}
]
},
{
"file": "configuration/ad-hoc-packages.section.md"
}
]
},
{
"file": "configuration/user-mgmt.chapter.md"
},
{
"label": "File Systems",
"id": "ch-file-systems",
"children": [
{
"file": "configuration/file-systems.chapter.md"
},
{
"file": "configuration/luks-file-systems.section.md"
},
{
"file": "configuration/sshfs-file-systems.section.md"
},
{
"file": "configuration/nfs-file-systems.section.md"
},
{
"file": "configuration/overlayfs.section.md"
}
]
},
{
"file": "configuration/x-windows.chapter.md"
},
{
"file": "configuration/wayland.chapter.md"
},
{
"file": "configuration/gpu-accel.chapter.md"
},
{
"file": "configuration/xfce.chapter.md"
},
{
"label": "Networking",
"id": "sec-networking",
"children": [
{
"file": "configuration/networking.chapter.md"
},
{
"file": "configuration/network-manager.section.md"
},
{
"file": "configuration/ssh.section.md"
},
{
"file": "configuration/ipv4-config.section.md"
},
{
"file": "configuration/ipv6-config.section.md"
},
{
"file": "configuration/firewall.section.md"
},
{
"file": "configuration/wireless.section.md"
},
{
"file": "configuration/ad-hoc-network-config.section.md"
},
{
"file": "configuration/renaming-interfaces.section.md"
}
]
},
{
"file": "configuration/linux-kernel.chapter.md"
},
{
"file": "configuration/subversion.chapter.md"
},
"@MODULE_CHAPTERS@",
{
"label": "Profiles",
"id": "ch-profiles",
"children": [
{
"file": "configuration/profiles.chapter.md"
},
{
"file": "configuration/profiles/all-hardware.section.md"
},
{
"file": "configuration/profiles/base.section.md"
},
{
"file": "configuration/profiles/clone-config.section.md"
},
{
"file": "configuration/profiles/demo.section.md"
},
{
"file": "configuration/profiles/docker-container.section.md"
},
{
"file": "configuration/profiles/graphical.section.md"
},
{
"file": "configuration/profiles/headless.section.md"
},
{
"file": "configuration/profiles/installation-device.section.md"
},
{
"file": "configuration/profiles/perlless.section.md"
},
{
"file": "configuration/profiles/minimal.section.md"
},
{
"file": "configuration/profiles/qemu-guest.section.md"
}
]
},
{
"file": "configuration/mattermost.chapter.md"
},
{
"file": "configuration/kubernetes.chapter.md"
}
]
},
{
"label": "Administration",
"id": "ch-running",
"children": [
{
"file": "administration/running.md"
},
{
"file": "administration/service-mgmt.chapter.md"
},
{
"file": "administration/rebooting.chapter.md"
},
{
"file": "administration/user-sessions.chapter.md"
},
{
"file": "administration/control-groups.chapter.md"
},
{
"file": "administration/logging.chapter.md"
},
{
"label": "Necessary system state",
"id": "ch-system-state",
"children": [
{
"file": "administration/system-state.chapter.md"
},
{
"file": "administration/nixos-state.section.md"
},
{
"file": "administration/systemd-state.section.md"
},
{
"file": "administration/zfs-state.section.md"
}
]
},
{
"file": "administration/cleaning-store.chapter.md"
},
{
"label": "Container Management",
"id": "ch-containers",
"children": [
{
"file": "administration/containers.chapter.md"
},
{
"file": "administration/imperative-containers.section.md"
},
{
"file": "administration/declarative-containers.section.md"
},
{
"file": "administration/container-networking.section.md"
}
]
},
{
"label": "Troubleshooting",
"id": "ch-troubleshooting",
"children": [
{
"file": "administration/troubleshooting.chapter.md"
},
{
"file": "administration/boot-problems.section.md"
},
{
"file": "administration/maintenance-mode.section.md"
},
{
"file": "administration/rollback.section.md"
},
{
"file": "administration/store-corruption.section.md"
},
{
"file": "administration/network-problems.section.md"
}
]
}
]
},
{
"label": "Development",
"id": "ch-development",
"children": [
{
"file": "development/development.md"
},
{
"file": "development/sources.chapter.md"
},
{
"label": "Writing NixOS Modules",
"id": "sec-writing-modules",
"children": [
{
"file": "development/writing-modules.chapter.md"
},
{
"file": "development/option-declarations.section.md"
},
{
"file": "development/option-types.section.md"
},
{
"file": "development/option-def.section.md"
},
{
"file": "development/assertions.section.md"
},
{
"file": "development/meta-attributes.section.md"
},
{
"file": "development/importing-modules.section.md"
},
{
"file": "development/replace-modules.section.md"
},
{
"file": "development/freeform-modules.section.md"
},
{
"file": "development/settings-options.section.md"
},
{
"file": "development/state-revision.section.md"
}
]
},
{
"file": "development/building-parts.chapter.md"
},
{
"file": "development/bootspec.chapter.md"
},
{
"label": "What happens during a system switch?",
"id": "sec-switching-systems",
"children": [
{
"file": "development/what-happens-during-a-system-switch.chapter.md"
},
{
"file": "development/unit-handling.section.md"
},
{
"file": "development/activation-script.section.md"
},
{
"file": "development/non-switchable-systems.section.md"
},
{
"file": "development/etc-overlay.section.md"
}
]
},
{
"file": "development/writing-documentation.chapter.md"
},
{
"label": "NixOS Tests",
"id": "sec-nixos-tests",
"children": [
{
"file": "development/nixos-tests.chapter.md"
},
{
"file": "development/writing-nixos-tests.section.md"
},
{
"file": "development/running-nixos-tests.section.md"
},
{
"file": "development/running-nixos-tests-interactively.section.md"
},
{
"file": "development/linking-nixos-tests-to-packages.section.md"
},
{
"file": "development/testing-hardware-features.section.md"
}
]
},
{
"file": "development/developing-the-test-driver.chapter.md"
},
{
"file": "development/testing-installer.chapter.md"
},
{
"file": "development/modular-services.md"
}
]
},
{
"file": "contributing-to-this-manual.chapter.md"
}
]
}

View File

@@ -1,4 +1,13 @@
{
"module-services-netbird-relay": [
"index.html#module-services-netbird-relay"
],
"module-services-netbird-relay-quickstart": [
"index.html#module-services-netbird-relay-quickstart"
],
"module-services-netbird-relay-tls": [
"index.html#module-services-netbird-relay-tls"
],
"module-services-portmaster": [
"index.html#module-services-portmaster"
],

View File

@@ -132,6 +132,8 @@
- [qbit-manage](https://github.com/StuffAnThings/qbit_manage), a tool to help manage tedious tasks in qBittorrent and automate them. Available as [services.qbit-manage](#opt-services.qbit-manage.enable).
- [Netbird Relay](https://netbird.io/), a module to relay traffic when a point-to-point connection is not possible.
## Backward Incompatibilities {#sec-release-26.11-incompatibilities}
<!-- To avoid merge conflicts, consider adding your item at an arbitrary place in the list instead. -->
@@ -209,6 +211,8 @@
- `security.polkit.enablePkexecWrapper` has been introduced, making the `pkexec` setuid wrapper opt-in.
- `services.pghero` has been removed because the `pghero` package was unmaintained and thus dropped from Nixpkgs.
- Apache Kafka has dropped support for ZooKeeper mode. The `apacheKafka_3_9` and `apacheKafka_4_0` packages have been removed, as every remaining packaged version is KRaft-only. The `services.apache-kafka.zookeeper` option (previously an alias for `services.apache-kafka.settings."zookeeper.connect"`) has been removed; migrate your cluster to [KRaft](#module-services-apache-kafka-kraft) mode instead.
- `virtualisation.containers.registries.block` / `insecure` / `search` were deprecated,
@@ -291,6 +295,8 @@
<!-- To avoid merge conflicts, consider adding your item at an arbitrary place in the list instead. -->
- `services.k3s` and `services.rke2` now expose the images declared in `images` through a `/nix/store` directory symlinked into `/var/lib/rancher/${name}/agent/images/nixos/`. The directory's store path changes whenever any image derivation changes, which makes k3s/rke2 detect and re-import the new archives, while `/var/lib/rancher/${name}/agent/images/` itself remains a normal directory that can still be used for manually added images. Previously, each image was linked with a fixed file name directly in that directory, so the cluster would not notice image updates and old symlinks could become dangling. After upgrading, you may want to remove those dangling symlinks (that was the case already when you wanted to stop deploying an image).
- `programs.regreet` has been renamed to `services.displayManager.regreet`.
- `komodo` has been updated to the v2 release line (2.x). See the [upstream v1 → v2 upgrade guide](https://github.com/moghtech/komodo/releases/tag/v2.0.0).

View File

@@ -78,11 +78,6 @@ in
config.hardware.printers.ensurePrinters. Specifying a symblic
name here that does not match any of those printers is
considered a hard error.
::: {.warning}
Print jobs to this class will quietly fail if there are no
printers in this class. CUPS reports them as pending
:::
'';
};
classes = mkOption {
@@ -267,7 +262,14 @@ in
'';
}
)
];
]
++ map (class: {
assertion = cfg.ensureClasses.${class}.printers != [ ] || cfg.ensureClasses.${class}.classes != [ ];
message = ''
At least one of the lists `config.hardware.printers.ensureClasses.${class}.printers`
and `config.hardware.printers.ensureClasses.${class}.classes` has to be non-empty.
'';
}) (builtins.attrNames cfg.ensureClasses);
systemd.services.cups = {
postStart =
@@ -333,17 +335,6 @@ in
d = cfg.ensureDefaultPrinter;
})}
#### CLASS DEFINITIONS ####
lpadmin -p _tmp -v file:/dev/null
${lib.concatMapStringsSep "\n" (
className:
lpadmin {
p = "_tmp";
c = className;
}
) classNames}
lpadmin -x _tmp
#### ADDING PRINTERS TO CLASSES ####
${lib.concatMapStringsSep "\n" (
className:

View File

@@ -967,7 +967,6 @@
./services/misc/paisa.nix
./services/misc/paperless.nix
./services/misc/persistent-evdev.nix
./services/misc/pghero.nix
./services/misc/pinchflat.nix
./services/misc/pinnwand.nix
./services/misc/plex.nix
@@ -1353,6 +1352,7 @@
./services/networking/nebula-lighthouse-service.nix
./services/networking/nebula.nix
./services/networking/netbird.nix
./services/networking/netbird/netbird-relay.nix
./services/networking/netbird/server.nix
./services/networking/netclient.nix
./services/networking/netfoil.nix

View File

@@ -520,6 +520,9 @@ in
(mkRemovedOptionModule [ "services" "filesender" ] ''
services.filesender has been removed since it depends on simplesamlphp which was severely unmaintained.
'')
(mkRemovedOptionModule [ "services" "pghero" ] ''
services.pghero has been removed because the (unmaintained) package was removed from Nixpkgs.
'')
(mkRemovedOptionModule [ "services" "postfixadmin" ] ''
services.postfixadmin has been removed since it was unmaintained in nixpkgs and the version
available only supported PHP 8.1 which is EOL.

View File

@@ -129,13 +129,24 @@ in
};
clusterDns = mkOption {
description = "Use alternative DNS.";
description = ''
List of DNS resolvers (IP addresses) used inside containers.
Defaulted to {option}`services.kubernetes.addons.dns.clusterIp`
when {option}`services.kubernetes.addons.dns.enable` is `true`.
Refer to the list of configuration attributes for [KubeletConfiguration](https://kubernetes.io/docs/reference/config-api/kubelet-config.v1beta1/#kubelet-config-k8s-io-v1beta1-KubeletConfiguration).
'';
default = [ "10.1.0.1" ];
type = listOf str;
};
clusterDomain = mkOption {
description = "Use alternative domain.";
description = ''
Search DNS domain used inside containers.
Refer to the list of configuration attributes for [KubeletConfiguration](https://kubernetes.io/docs/reference/config-api/kubelet-config.v1beta1/#kubelet-config-k8s-io-v1beta1-KubeletConfiguration).
'';
default = config.services.kubernetes.addons.dns.clusterDomain;
defaultText = literalExpression "config.${options.services.kubernetes.addons.dns.clusterDomain}";
type = str;

View File

@@ -849,13 +849,22 @@ let
"L+".argument = "${manifest.source}";
};
};
# Make a systemd-tmpfiles rule for a container image
mkImageRule = image: {
name = "${imageDir}/${image.name}";
value = {
"L+".argument = "${image}";
};
};
# Build a single store directory containing symlinks to all
# container images declared in the NixOS configuration. The
# directory's store path changes whenever any image changes, so
# k3s/rke2 re-imports images on every generation switch. It is
# exposed under ${imageDir}/nixos so that ${imageDir} itself
# remains a normal directory that users can still populate manually.
agentImagesDir = pkgs.linkFarm "${name}-agent-images" (
map (image: {
# The store-path hash is included in the link name so that two
# different images with the same tarball base name do not
# collide. The context is discarded because tmpfiles link names
# must not carry store-path references.
name = builtins.unsafeDiscardStringContext (builtins.baseNameOf image);
path = image;
}) cfg.images
);
# Merge charts with charts contained in enabled auto deploying charts
helmCharts =
(lib.concatMapAttrs (n: v: { ${n} = v.package; }) (
@@ -873,7 +882,11 @@ let
};
in
(lib.mapAttrs' (_: v: mkManifestRule v) enabledManifests)
// (builtins.listToAttrs (map mkImageRule cfg.images))
// (lib.optionalAttrs (cfg.images != [ ]) {
"${imageDir}/nixos" = {
"L+".argument = "${agentImagesDir}";
};
})
// (lib.optionalAttrs (cfg.containerdConfigTemplate != null) {
${containerdConfigTemplateFile} = {
"L+".argument = "${pkgs.writeText "config.toml.tmpl" cfg.containerdConfigTemplate}";

View File

@@ -74,7 +74,7 @@ in
'';
description = ''
List of derivations that provide container images.
All images are linked to {file}`${baseModule.paths.imageDir}` before k3s starts and are consequently imported
All images are linked into {file}`${baseModule.paths.imageDir}/nixos/` before k3s starts and are consequently imported
by the k3s agent. Consider importing the k3s airgap images archive of the k3s package in
use, if you want to pre-provision this node with all k3s container images. This option
only makes sense on nodes with an enabled agent.

View File

@@ -72,7 +72,7 @@ in
'';
description = ''
List of derivations that provide container images.
All images are linked to {file}`${baseModule.paths.imageDir}` before rke2 starts and are consequently imported
All images are linked into {file}`${baseModule.paths.imageDir}/nixos/` before rke2 starts and are consequently imported
by the rke2 agent. Consider importing the rke2 core and CNI image archives of the rke2 package in
use, if you want to pre-provision this node with all rke2 container images. For a full list of available airgap images, check the
[source](https://github.com/NixOS/nixpkgs/blob/c8a1939887ee6e5f5aae29ce97321c0d83165f7d/pkgs/applications/networking/cluster/rke2/1_32/images-versions.json).

View File

@@ -1,159 +0,0 @@
{
config,
pkgs,
lib,
utils,
...
}:
let
cfg = config.services.pghero;
settingsFormat = pkgs.formats.yaml { };
settingsFile = settingsFormat.generate "pghero.yaml" cfg.settings;
in
{
options.services.pghero = {
enable = lib.mkEnableOption "PgHero service";
package = lib.mkPackageOption pkgs "pghero" { };
listenAddress = lib.mkOption {
type = lib.types.str;
example = "[::1]:3000";
description = ''
`hostname:port` to listen for HTTP traffic.
This is bound using the systemd socket activation.
'';
};
extraArgs = lib.mkOption {
type = lib.types.listOf lib.types.str;
default = [ ];
description = ''
Additional command-line arguments for the systemd service.
Refer to the [Puma web server documentation] for available arguments.
[Puma web server documentation]: https://puma.io/puma#configuration
'';
};
settings = lib.mkOption {
type = settingsFormat.type;
default = { };
example = {
databases = {
primary = {
url = "<%= ENV['PRIMARY_DATABASE_URL'] %>";
};
};
};
description = ''
PgHero configuration. Refer to the [PgHero documentation] for more
details.
[PgHero documentation]: https://github.com/ankane/pghero/blob/master/guides/Linux.md#multiple-databases
'';
};
environment = lib.mkOption {
type = lib.types.attrsOf lib.types.str;
default = { };
description = ''
Environment variables to set for the service. Secrets should be
specified using {option}`environmentFile`.
'';
};
environmentFiles = lib.mkOption {
type = lib.types.listOf lib.types.path;
default = [ ];
description = ''
File to load environment variables from. Loaded variables override
values set in {option}`environment`.
'';
};
extraGroups = lib.mkOption {
type = lib.types.listOf lib.types.str;
default = [ ];
example = [ "tlskeys" ];
description = ''
Additional groups for the systemd service.
'';
};
};
config = lib.mkIf cfg.enable {
systemd.sockets.pghero = {
unitConfig.Description = "PgHero HTTP socket";
wantedBy = [ "sockets.target" ];
listenStreams = [ cfg.listenAddress ];
};
systemd.services.pghero = {
description = "PgHero performance dashboard for PostgreSQL";
wantedBy = [ "multi-user.target" ];
requires = [ "pghero.socket" ];
after = [
"pghero.socket"
"network.target"
];
environment = {
RAILS_ENV = "production";
PGHERO_CONFIG_PATH = settingsFile;
}
// cfg.environment;
serviceConfig = {
Type = "notify";
WatchdogSec = "10";
ExecStart = utils.escapeSystemdExecArgs (
[
(lib.getExe cfg.package)
"--bind-to-activated-sockets"
"only"
]
++ cfg.extraArgs
);
Restart = "always";
WorkingDirectory = "${cfg.package}/share/pghero";
EnvironmentFile = cfg.environmentFiles;
SupplementaryGroups = cfg.extraGroups;
DynamicUser = true;
UMask = "0077";
ProtectHome = true;
ProtectProc = "invisible";
ProcSubset = "pid";
ProtectClock = true;
ProtectHostname = true;
ProtectControlGroups = true;
ProtectKernelLogs = true;
ProtectKernelModules = true;
ProtectKernelTunables = true;
PrivateUsers = true;
PrivateDevices = true;
RestrictRealtime = true;
RestrictNamespaces = true;
RestrictAddressFamilies = [
"AF_INET"
"AF_INET6"
"AF_UNIX"
];
DeviceAllow = [ "" ];
DevicePolicy = "closed";
CapabilityBoundingSet = [ "" ];
MemoryDenyWriteExecute = true;
LockPersonality = true;
SystemCallArchitectures = "native";
SystemCallErrorNumber = "EPERM";
SystemCallFilter = [ "@system-service" ];
};
};
};
}

View File

@@ -1,4 +1,4 @@
# Netbird {#module-services-netbird}
# Netbird Client {#module-services-netbird}
## Quickstart {#module-services-netbird-quickstart}

View File

@@ -0,0 +1,92 @@
# Netbird Relay {#module-services-netbird-relay}
The Relay service forwards encrypted WireGuard traffic between peers that cannot establish a direct P2P connection
For more information, check [external relays](https://docs.netbird.io/selfhosted/maintenance/scaling/set-up-external-relays) documentation.
## Quickstart {#module-services-netbird-relay-quickstart}
You can run the relay directly, or behind a reverse proxy, like `traefik`.
To run it directly, you'll have to run it on HTTPS port (443) and it will need the TLS certificates. Which you can configure using the `acme` module.
In the following example, we can see the `traefik` route and the relay configuration.
The operator should configure the TLS for the domain used by the relay, whether it's via `traefik` itself or using the `acme` module.
```nix
let
relayDomain = "relay.example.com";
in
{
services.netbird.relay = {
enable = true;
settings = {
listen-address = ":33080";
exposed-address = "rels://${relayDomain}:443";
log-level = "info";
enable-stun = true;
stun-ports = [ 3479 ];
};
openFirewall = true;
authSecretFile = "/run/auth_secret";
};
services.traefik = {
enable = true;
dynamicConfigOptions = {
http = {
routers = {
vpn-relay = {
rule = "Host(`${relayDomain}`)";
entryPoints = [ "websecure" ];
service = "vpn-relay-svc";
tls = { };
};
};
services = {
vpn-relay-svc = {
loadBalancer.servers = [ { url = "http://[::1]:33080"; } ];
};
};
};
};
};
}
```
Finally, you must let `netbird.server` know about the new relay:
```nix
{ }:
{
services.netbird.server = {
# ...other config...
management = {
# ...other config...
settings = {
# ...other config...
Relay = {
Addresses = [ "rels://${relayDomain}:443" ];
CredentialsTTL = "24h0m0s";
Secret = {
_secret = "/run/auth_secret";
};
};
};
};
};
}
```
Done!
## TLS with Let's Encrypt {#module-services-netbird-relay-tls}
You can expose the netbird relay directly to the internet with TLS. Then you won't need a reverse proxy.
To use TLS, set `settings."letsencrypt-domains"`.
The relay gets and renews the certificates only when `settings."letsencrypt-domains"` is set.
Certificates are stored on disk, and the services runs as a systemd dynamic user.
The only writable location is therefore a `StateDirectory`, which can only be under `/var/lib`.
Open the ports `tcp/443` and `tcp/80` manually for the HTTP challenge.

View File

@@ -0,0 +1,248 @@
{
config,
lib,
pkgs,
...
}:
let
inherit (lib)
getExe'
types
;
cfg = config.services.netbird.relay;
cmd = getExe' cfg.package "netbird-relay";
derivedLEDataDir = lib.optionalAttrs (
cfg.settings ? "letsencrypt-domain" && !cfg.settings ? "letsencrypt-data-dir"
) { "letsencrypt-data-dir" = "/var/lib/netbird-relay"; };
args = lib.cli.toCommandLineShellGNU { } (cfg.settings // derivedLEDataDir);
listenPortMatch = builtins.match ".*:([0-9]+)$" cfg.settings.listen-address;
listenPort = if listenPortMatch == null then null else lib.toInt (builtins.head listenPortMatch);
# Checks
authSecretSet = cfg.authSecretFile != null;
needsPrivPort = listenPort != null && listenPort < 1024;
letsencryptEnabled = cfg.settings ? "letsencrypt-domain";
in
{
options.services.netbird.relay = {
enable = lib.mkEnableOption "Netbird's Relay Service";
package = lib.mkPackageOption pkgs "netbird-relay" { };
# as per RFC 0042:
settings = lib.mkOption {
type = types.submodule {
freeformType =
with lib.types;
nullOr (oneOf [
bool
str
# For --letsencrypt-domains strings
(listOf (oneOf [ str ]))
]);
options.listen-address = lib.mkOption {
type = types.str;
description = ''
The host address and port separated by colon where the relay will listen
'';
default = ":33080";
};
options.exposed-address = lib.mkOption {
type = types.str;
description = ''
Exposed address for peers. Address told to the peers to connect to
'';
example = "rels://relay.example.com:443";
};
options.enable-stun = lib.mkOption {
type = types.bool;
default = false;
description = "Enable embedded STUN server";
};
options.stun-ports = lib.mkOption {
type = types.listOf types.port;
default = [ 3478 ];
description = "STUN server UDP ports";
};
options.log-level = lib.mkOption {
type = types.enum [
"panic"
"fatal"
"error"
"warn"
"info"
"debug"
"trace"
];
default = "info";
description = "Log level of the netbird relay service";
};
options.metrics-port = lib.mkOption {
type = types.port;
default = 9092;
description = "Metrics endpoint http port. Metrics are accessible under host:metrics-port/metrics";
};
options.health-listen-address = lib.mkOption {
type = types.str;
description = ''
Listen address of healthcheck server
'';
default = ":9000";
};
};
default = null;
description = ''
Settings to configure the netbird relay.
Converted automatically into cli args, check all the options with `netbird-relay --help`
'';
};
environmentFile = lib.mkOption {
type = types.nullOr types.externalPath;
default = null;
description = ''
Path (as string) to an environmentFile with the netbird relay environment variables.
You can find all the variables under [Relay runtime env variables](https://docs.netbird.io/selfhosted/environment-variables#runtime-variables-2).
WARNING: You must manually open any port configured via environmentFile.
If you use an Internet domain privileged port (e.g 443), add CAP_NET_BIND_SERVICE to systemd's CapabilityBoundingSet and AmbientCapabilities
'';
example = "/run/netbird-relay.env";
};
openFirewall = lib.mkOption {
type = types.bool;
default = false;
description = ''
Open STUN ports in the firewall for the netbird relay.
WARNING: You must manually open listen-address port/tcp and port 80/tcp,
if you are exposing the relay directly to the internet.
Review [set-up-external-relays](https://docs.netbird.io/selfhosted/maintenance/scaling/set-up-external-relays)
'';
};
authSecretFile = lib.mkOption {
type = types.nullOr types.externalPath;
default = null;
description = ''
Path (as string) to a file containing the auth-secret used by netbird to connect to the relay server.
It will populate `NB_AUTH_SECRET`
'';
example = "/run/auth_secret";
};
};
config = lib.mkIf cfg.enable {
assertions = [
{
assertion = authSecretSet || cfg.environmentFile != null;
message = "services.netbird.relay requires NB_AUTH_SECRET, either set authSecretFile or configure it in environmentFile";
}
{
assertion = !(cfg.settings.auth-secret or null != null);
message = "settings.auth-secret puts the secret into the nix store and the cli args. Use relay.authSecretFile instead";
}
{
assertion =
!letsencryptEnabled || lib.hasPrefix "/var/lib/" (cfg.settings."letsencrypt-data-dir" or "");
message = "settings.letsencrypt-data-dir must be under /var/lib, the only writable location when using DynamidcUser in systemd";
}
{
assertion = !(cfg.settings.enable-stun && cfg.settings.stun-ports == [ ]);
message = "Missing stun ports while enable-stun = true";
}
];
systemd.services.netbird-relay = {
description = "Relay for Netbird, a wireguard VPN";
documentation = [ "https://netbird.io/docs/" ];
after = [
"network.target"
];
wantedBy = [ "multi-user.target" ];
script = ''
${lib.optionalString authSecretSet ''
export NB_AUTH_SECRET="$(< "$CREDENTIALS_DIRECTORY/auth_secret")"
''}
exec ${cmd} ${args}
'';
unitConfig = {
# Spread the restart
StartLimitIntervalSec = 60;
StartLimitBurst = 10;
};
serviceConfig = {
EnvironmentFile = lib.mkIf (cfg.environmentFile != null) [ cfg.environmentFile ];
# Let systemd ingest the secret safely
LoadCredential = lib.mkIf authSecretSet "auth_secret:${cfg.authSecretFile}";
Restart = "always";
RestartSec = "5s";
StateDirectory = lib.mkIf letsencryptEnabled (
lib.removeSuffix "/" (lib.removePrefix "/var/lib/" cfg.settings."letsencrypt-data-dir")
);
# Hardening::Start
# Dynamic user automatically sets:
# NoNewPrivileges = true;
# RemoveIPC = true;
# RestrictSUIDSGID = true;
# ProtectSystem = "strict";
# ProtectHome = "read-only";
# see https://www.freedesktop.org/software/systemd/man/latest/systemd.exec.html#DynamicUser=
DynamicUser = true;
LockPersonality = true;
MemoryDenyWriteExecute = true;
# Relay is mostly stateless, no need to give access to any of this:
PrivateDevices = true;
PrivateMounts = true;
PrivateTmp = true;
ProtectClock = true;
ProtectControlGroups = true;
ProtectHostname = true;
ProtectKernelLogs = true;
ProtectKernelModules = true;
ProtectKernelTunables = true;
ProcSubset = "pid";
ProtectProc = "invisible";
RestrictNamespaces = true;
RestrictRealtime = true;
SystemCallFilter = [ "@system-service" ];
SystemCallArchitectures = "native";
# If a user wants to bind netbird to 443, we must allow binding to
# a socket to Internet domain privileged ports
CapabilityBoundingSet = lib.optionals needsPrivPort [ "CAP_NET_BIND_SERVICE" ];
AmbientCapabilities = lib.optionals needsPrivPort [ "CAP_NET_BIND_SERVICE" ];
# Use only IP, no socket needed
RestrictAddressFamilies = [
"AF_INET"
"AF_INET6"
"AF_NETLINK"
];
UMask = "0077";
# Hardening::End
};
};
networking.firewall.allowedUDPPorts = lib.mkIf (
cfg.openFirewall && cfg.settings.enable-stun
) cfg.settings.stun-ports;
};
meta = {
doc = ./netbird-relay.md;
maintainers = [
lib.maintainers.woile
];
};
}

View File

@@ -573,6 +573,7 @@ in
documize = runTest ./documize.nix;
docuseal-psql = runTest ./docuseal-postgres.nix;
docuseal-sqlite = runTest ./docuseal-sqlite.nix;
docuum = runTestOn [ "x86_64-linux" "aarch64-linux" ] ./docuum.nix;
doh-proxy-rust = runTest ./doh-proxy-rust.nix;
dokuwiki = runTest ./dokuwiki.nix;
dolibarr = runTest ./dolibarr.nix;
@@ -1240,6 +1241,7 @@ in
nebula.reload = runTest ./nebula/reload.nix;
neo4j = runTest ./neo4j.nix;
netbird = runTest ./netbird.nix;
netbird-relay = runTest ./netbird-relay.nix;
netbox = runTest ./web-apps/netbox/default.nix;
netdata = runTest ./netdata.nix;
netfoil = runTest ./netfoil.nix;
@@ -1461,7 +1463,6 @@ in
pgadmin4 = runTest ./pgadmin4.nix;
pgbackrest = import ./pgbackrest { inherit runTest; };
pgbouncer = runTest ./pgbouncer.nix;
pghero = runTest ./pghero.nix;
pgmanage = runTest ./pgmanage.nix;
pgweb = runTest ./pgweb.nix;
phosh = runTest ./phosh.nix;

58
nixos/tests/docuum.nix Normal file
View File

@@ -0,0 +1,58 @@
{ pkgs, lib, ... }:
{
name = "docuum";
meta.maintainers = [ lib.maintainers.h7x4 ];
containers.machine = {
virtualisation.docker.enable = true;
services.docuum = {
enable = true;
threshold = "5 MB";
keep = [ "^keep-me:" ];
};
};
testScript =
let
# Each image is 2 MB, so the third non-exempt image should be evicted.
imageSizeKb = 2 * 1024;
mkTestImage =
name:
pkgs.dockerTools.buildImage {
inherit name;
tag = "test";
copyToRoot = pkgs.runCommand "docuum-test-data-${name}" { } ''
mkdir -p $out
echo "${name}" > $out/name
dd if=/dev/zero of=$out/data bs=1024 count=${toString imageSizeKb}
'';
};
images = {
keepMe = mkTestImage "keep-me";
old = mkTestImage "old-image";
new = mkTestImage "new-image";
};
in
''
start_all()
machine.wait_for_unit("docker.service")
machine.wait_for_unit("docuum.service")
machine.wait_until_succeeds("journalctl -u docuum --grep 'Listening for Docker events'")
machine.succeed(
"docker load < ${images.keepMe}",
"docker load < ${images.old}",
"docker load < ${images.new}",
)
machine.wait_until_fails("docker image inspect old-image:test")
machine.succeed(
"docker image inspect keep-me:test",
"docker image inspect new-image:test",
)
'';
}

View File

@@ -88,6 +88,7 @@ let
sharedTestFunctions = lib: ''
from collections.abc import Callable
import datetime
import tempfile
import subprocess
@@ -140,7 +141,7 @@ let
with machine.nested("Waiting for the screen to have terminalTextColor {} on it:".format(terminalTextColor)):
retry(check_for_color(terminalTextColor))
with machine.nested("Ensuring terminalTextColor {} stays present on the screen:".format(terminalTextColor)):
retry(fn=check_for_color_continued_presence(terminalTextColor), timeout_seconds=5)
retry(fn=check_for_color_continued_presence(terminalTextColor), timeout=datetime.timedelta(seconds=5))
def change_tty_back_forth(ttynumMain: int, ttynumDiff: int) -> None:
"""
@@ -148,9 +149,9 @@ let
"""
machine.send_key(f"ctrl-alt-f{ttynumDiff}")
machine.sleep(10)
machine.sleep(datetime.timedelta(seconds=10))
machine.send_key(f"ctrl-alt-f{ttynumMain}")
machine.sleep(10)
machine.sleep(datetime.timedelta(seconds=10))
def ensure_greeter_launched() -> None:
"""
@@ -189,7 +190,7 @@ let
with machine.nested("Waiting for the screen to have launcherColor {} on it:".format(launcherColor)):
retry(check_for_color(launcherColor))
with machine.nested("Ensuring launcherColor {} stays present on the screen:".format(launcherColor)):
retry(fn=check_for_color_continued_presence(launcherColor), timeout_seconds=30)
retry(fn=check_for_color_continued_presence(launcherColor), timeout=datetime.timedelta(seconds=30))
# Display "hangs" since qtmir bump? Not sure why. Switch to a different tty and back, and ensure that launcher button is still shown
change_tty_back_forth(ttynumMain, ttynumDiff)
@@ -198,7 +199,7 @@ let
# First input seems to get dropped while Mir registers the new input device. Send a key that does nothing, to get that out of the way, and sleep a tiny bit for registration to finish.
machine.send_key("left")
machine.sleep(3)
machine.sleep(datetime.timedelta(seconds=3))
machine.screenshot("lomiri_launched")
@@ -207,7 +208,7 @@ let
Wait for on-screen text, and try to optimise retry count for slow hardware.
"""
machine.sleep(30)
machine.sleep(datetime.timedelta(seconds=30))
machine.wait_for_text(text)
def toggle_maximise() -> None:
@@ -220,9 +221,9 @@ let
# For some reason, Lomiri in these VM tests very frequently opens the starter menu a few seconds after sending the above.
# Because this isn't 100% reproducible all the time, and there is no command to await when OCR doesn't pick up some text,
# the best we can do is send some Escape input after waiting some arbitrary time and hope that it works out fine.
machine.sleep(5)
machine.sleep(datetime.timedelta(seconds=5))
machine.send_key("esc")
machine.sleep(5)
machine.sleep(datetime.timedelta(seconds=5))
def mouse_click(xpos, ypos) -> None:
"""
@@ -231,11 +232,11 @@ let
# Move
machine.execute(f"ydotool mousemove --absolute -- {xpos} {ypos}")
machine.sleep(2)
machine.sleep(datetime.timedelta(seconds=2))
# Click (C0 - left button: down & up)
machine.execute("ydotool click 0xC0")
machine.sleep(2)
machine.sleep(datetime.timedelta(seconds=2))
def open_starter() -> None:
"""
@@ -672,10 +673,10 @@ in
machine.send_chars("run0 touch /tmp/polkit-test\n")
# There's an authentication notification here that gains focus, but we struggle with OCRing it
# Just hope that it's up after a short wait
machine.sleep(10)
machine.sleep(datetime.timedelta(seconds=10))
machine.screenshot("polkit_agent")
machine.send_chars("${password}")
machine.sleep(2) # Hopefully enough delay to make sure all the password characters have been registered? Maybe just placebo
machine.sleep(datetime.timedelta(seconds=2)) # Hopefully enough delay to make sure all the password characters have been registered? Maybe just placebo
machine.send_chars("\n")
machine.wait_for_file("/tmp/polkit-test", 10)
@@ -732,7 +733,7 @@ in
machine.send_key("tab")
machine.send_key("ret")
machine.sleep(2) # sleep a tiny bit so gallery can close & the focus can return to LSS
machine.sleep(datetime.timedelta(seconds=2)) # sleep a tiny bit so gallery can close & the focus can return to LSS
machine.send_key("alt-f4")
'';
}
@@ -824,9 +825,9 @@ in
machine.wait_for_console_text('SET KEYMAP "us"')
# Handle keybind fallout
machine.sleep(10) # wait for everything to settle
machine.sleep(datetime.timedelta(seconds=10)) # wait for everything to settle
machine.send_key("esc") # close launcher in case it was opened
machine.sleep(2) # wait for animation to finish
machine.sleep(datetime.timedelta(seconds=2)) # wait for animation to finish
# Make sure input leaks are gone
machine.send_key("backspace")
machine.send_key("backspace")

View File

@@ -0,0 +1,53 @@
{ pkgs, ... }:
{
name = "netbird-relay";
meta.maintainers = [
pkgs.lib.maintainers.woile
];
nodes = {
relay = {
environment.systemPackages = [
pkgs.coturn
];
networking.hosts = {
"127.0.0.1" = [ "relay.example.com" ];
};
systemd.tmpfiles.rules = [
"d /run/ 0755 root root -"
"f /run/auth_secret 0600 root root - super-secret-token"
];
services.netbird.relay = {
enable = true;
settings = {
listen-address = ":33080";
# rel -> http ; rels -> https
exposed-address = "rel://relay.example.com:33080";
log-level = "info";
enable-stun = true;
stun-ports = [ 3479 ];
health-listen-address = ":9000";
};
authSecretFile = "/run/auth_secret";
};
};
};
testScript = ''
# Wait for service to start
relay.start()
relay.wait_for_unit("netbird-relay.service")
# Wait for TCP ports to be open an active
relay.wait_for_open_port(9000)
relay.wait_for_open_port(33080)
# Test the STUN port (UDP)
relay.wait_until_succeeds("turnutils_stunclient -p 3479 127.0.0.1", timeout=10)
# assert on health
relay.succeed("curl -f http://127.0.0.1:9000/health")
'';
}

View File

@@ -1,68 +0,0 @@
let
pgheroPort = 1337;
pgheroUser = "pghero";
pgheroPass = "pghero";
in
{ lib, ... }:
{
name = "pghero";
meta.maintainers = [ lib.maintainers.tie ];
nodes.machine =
{ config, ... }:
{
services.postgresql = {
enable = true;
# This test uses default peer authentication (socket and its directory is
# world-readably by default), so we essentially test that we can connect
# with DynamicUser= set.
ensureUsers = [
{
name = "pghero";
ensureClauses.superuser = true;
}
];
};
services.pghero = {
enable = true;
listenAddress = "[::]:${toString pgheroPort}";
settings = {
databases = {
postgres.url = "<%= ENV['POSTGRES_DATABASE_URL'] %>";
nulldb.url = "nulldb:///";
};
};
environment = {
PGHERO_USERNAME = pgheroUser;
PGHERO_PASSWORD = pgheroPass;
POSTGRES_DATABASE_URL = "postgresql:///postgres?host=/run/postgresql";
};
};
};
testScript = ''
pgheroPort = ${toString pgheroPort}
pgheroUser = "${pgheroUser}"
pgheroPass = "${pgheroPass}"
pgheroUnauthorizedURL = f"http://localhost:{pgheroPort}"
pgheroBaseURL = f"http://{pgheroUser}:{pgheroPass}@localhost:{pgheroPort}"
def expect_http_code(node, code, url):
http_code = node.succeed(f"curl -s -o /dev/null -w '%{{http_code}}' '{url}'")
assert http_code.split("\n")[-1].strip() == code, \
f"expected HTTP status code {code} but got {http_code}"
machine.wait_for_unit("postgresql.target")
machine.wait_for_unit("pghero.service")
with subtest("requires HTTP Basic Auth credentials"):
expect_http_code(machine, "401", pgheroUnauthorizedURL)
with subtest("works with some databases being unavailable"):
expect_http_code(machine, "500", pgheroBaseURL + "/nulldb")
with subtest("connects to the PostgreSQL database"):
expect_http_code(machine, "200", pgheroBaseURL + "/postgres")
'';
}

View File

@@ -99,6 +99,7 @@ let
auto-deploy = mkTests ./auto-deploy.nix;
configuration = mkTests ./configuration.nix;
etcd = mkTests ./etcd.nix;
image-upgrade = mkTests ./image-upgrade.nix;
multi-node = mkTests ./multi-node.nix;
single-node = mkTests ./single-node.nix;
};

View File

@@ -0,0 +1,118 @@
# Tests that a container image whose contents change (same name and tag)
# is detected and re-imported by the cluster.
# It only declares the image change (via a NixOS specialisation) and checks
# the end result (the pod output); it never inspects how the image is linked.
{
pkgs,
lib,
rancherDistro,
rancherPackage,
serviceName,
disabledComponents,
coreImages,
vmResources,
...
}:
let
containerdSocket =
{
k3s = "/run/k3s/containerd/containerd.sock";
rke2 = "/run/rke2/containerd/containerd.sock";
}
.${rancherDistro};
# Build a Docker image with a fixed name but an auto-generated tag based on
# the derivation hash. Two derivations with different contents produce
# different tags, so the cluster treats them as distinct images.
mkTestImage =
commandOutput:
pkgs.dockerTools.buildImage {
name = "test.local/test";
compressor = "zstd";
copyToRoot = pkgs.busybox;
config = {
Entrypoint = [ "sh" ];
Cmd = [
"-c"
"echo '${commandOutput}'"
];
};
};
testImageV1 = mkTestImage "image v1 deployed";
testImageV2 = mkTestImage "image v2 deployed";
in
{
name = "${rancherPackage.name}-image-upgrade";
interactive.sshBackdoor.enable = true;
nodes.machine =
{ pkgs, ... }:
{
imports = [ ../../modules/profiles/base.nix ];
environment.systemPackages = with pkgs; [
kubectl
cri-tools
];
environment.sessionVariables.KUBECONFIG = "/etc/rancher/${rancherDistro}/${rancherDistro}.yaml";
virtualisation = vmResources;
services.${rancherDistro} = {
enable = true;
role = "server";
package = rancherPackage;
disable =
{
k3s = lib.remove "traefik" disabledComponents;
rke2 = lib.remove "rke2-ingress-nginx" disabledComponents;
}
.${rancherDistro};
images =
coreImages ++ lib.optional (rancherDistro == "k3s") rancherPackage.airgap-images ++ [ testImageV1 ];
};
# A declaration that swaps the image for one with the same name but a
# different auto-generated tag and different contents. Switching to this
# specialisation is the only thing the test does to trigger a re-import.
specialisation.image-v2 = {
inheritParentConfig = true;
configuration =
{ lib, ... }:
{
services.${rancherDistro}.images = lib.mkForce (
coreImages ++ lib.optional (rancherDistro == "k3s") rancherPackage.airgap-images ++ [ testImageV2 ]
);
};
};
};
testScript =
{ nodes, ... }:
''
def switch_to_v2():
toplevel = "${nodes.machine.system.build.toplevel}"
machine.succeed(f"{toplevel}/specialisation/image-v2/bin/switch-to-configuration switch")
machine.wait_for_unit("${serviceName}")
with subtest("v1 image is imported and runs"):
machine.wait_until_succeeds("crictl -r ${containerdSocket} img | grep 'test\\.local/test'")
machine.wait_until_succeeds("kubectl get sa default")
machine.succeed("kubectl create job test-job --image=${testImageV1.imageName}:${testImageV1.imageTag}")
machine.wait_until_succeeds("kubectl wait --for=condition=complete job/test-job --timeout=180s")
v1_output = machine.succeed("kubectl logs -l batch.kubernetes.io/job-name=test-job --tail=-1").rstrip()
t.assertEqual(v1_output, "image v1 deployed", f"unexpected v1 output: {v1_output!r}")
with subtest("Same-name image with different auto-generated tag is re-imported"):
machine.succeed("kubectl delete job test-job --ignore-not-found=true")
switch_to_v2()
machine.succeed("kubectl create job test-job --image=${testImageV2.imageName}:${testImageV2.imageTag}")
machine.wait_until_succeeds("kubectl wait --for=condition=complete job/test-job --timeout=240s")
v2_output = machine.succeed("kubectl logs -l batch.kubernetes.io/job-name=test-job --tail=-1").rstrip()
t.assertEqual(v2_output, "image v2 deployed", f"unexpected v2 output: {v2_output!r}")
'';
meta.maintainers = lib.teams.k3s.members ++ pkgs.rke2.meta.maintainers;
}

View File

@@ -4,12 +4,8 @@
package,
...
}:
let
mkTestName =
pkg: "${pkg.pname}_${builtins.replaceStrings [ "." ] [ "" ] (lib.versions.majorMinor pkg.version)}";
in
{
name = mkTestName package;
name = package.pname;
meta.maintainers = lib.teams.redis.members;
nodes = {

View File

@@ -461,12 +461,12 @@ final: prev: {
SchemaStore-nvim = buildVimPlugin {
pname = "SchemaStore.nvim";
version = "0-unstable-2026-09-12";
version = "0-unstable-2026-09-16";
src = fetchFromGitHub {
owner = "b0o";
repo = "SchemaStore.nvim";
rev = "05e938c0aa5dfbdbb11972fa4c8a85f27f402ba0";
hash = "sha256-p+h2y42PRUM1ZPIlBe31/n7IPmh3oEiWgL3HuoUI8Yg=";
rev = "ab094b7f788231fe9b68deac78c3d512302c58a6";
hash = "sha256-AKGx8ubYHhDireMwOcimvr7zpM1sjytkaRHtguAfVLo=";
};
meta.homepage = "https://github.com/b0o/SchemaStore.nvim/";
meta.license = getLicenseFromSpdxId "Apache-2.0";
@@ -1135,12 +1135,12 @@ final: prev: {
async-nvim = buildVimPlugin {
pname = "async.nvim";
version = "0-unstable-2026-09-03";
version = "0-unstable-2026-09-16";
src = fetchFromGitHub {
owner = "lewis6991";
repo = "async.nvim";
rev = "ca8f5696c45bd4786b8840923d86b6932ce92ded";
hash = "sha256-dUP9knuzL4qiXdbcjil3Yu5Ve3sVL1DSKJbEY5FwDpA=";
rev = "15f28ec323a75f34f317336831c00c2d1b0a7192";
hash = "sha256-8S2HNBBwB3c58NudCGrTyBKoQkGDIG0Syravh+sl/Dw=";
};
meta.homepage = "https://github.com/lewis6991/async.nvim/";
meta.license = getLicenseFromSpdxId "MIT";
@@ -3513,12 +3513,12 @@ final: prev: {
coc-nvim = buildVimPlugin {
pname = "coc.nvim";
version = "0.0.82-unstable-2026-09-11";
version = "0.0.82-unstable-2026-09-16";
src = fetchFromGitHub {
owner = "neoclide";
repo = "coc.nvim";
rev = "90b55f067595e7f9dd920c957d6345f434f32dd2";
hash = "sha256-6gX6voB7AZhBmG/NYUCEwEm6V5gunT+WHVSvOsZ0Kj4=";
rev = "c39eba4cf90254dd9e3ce54f617f07d1853d5da5";
hash = "sha256-FMP/UaBSAj29Cei7CDLamtjOAOAqcZLGBYjt/6uQHlI=";
};
meta.homepage = "https://github.com/neoclide/coc.nvim/";
meta.license = getLicenseFromSpdxId "MIT";
@@ -3611,12 +3611,12 @@ final: prev: {
codecompanion-nvim = buildVimPlugin {
pname = "codecompanion.nvim";
version = "19.24.1";
version = "19.25.0";
src = fetchFromGitHub {
owner = "olimorris";
repo = "codecompanion.nvim";
tag = "v19.24.1";
hash = "sha256-oihHiKhU093AT5aqvTxJ4wXmH+pMKFJ5zgzUo5SJ/Yw=";
tag = "v19.25.0";
hash = "sha256-PTvllgZji45JdW1NW9YmRDJqiEvdmbpeB2QGvu10jbM=";
};
meta.homepage = "https://github.com/olimorris/codecompanion.nvim/";
meta.license = getLicenseFromSpdxId "Apache-2.0";
@@ -4228,12 +4228,12 @@ final: prev: {
coq_nvim = buildVimPlugin {
pname = "coq_nvim";
version = "0-unstable-2026-09-04";
version = "0-unstable-2026-09-14";
src = fetchFromGitHub {
owner = "ms-jpq";
repo = "coq_nvim";
rev = "a0689fdab9ad5a46bc8730c96a43f215d605f23c";
hash = "sha256-ZKju7Pb5GdhWVwF1oXgGt6DXZvyaaQKQHSuKce6P+DI=";
rev = "735596a7ec4f4984c90827f8e1100e320eb14cba";
hash = "sha256-igRYHOoBBz7R5aUuxPkaAfmTH6TYSXMNV2pBTcT5Pe0=";
};
meta.homepage = "https://github.com/ms-jpq/coq_nvim/";
meta.license = getLicenseFromSpdxId "GPL-3.0-only";
@@ -4816,12 +4816,12 @@ final: prev: {
demicolon-nvim = buildVimPlugin {
pname = "demicolon.nvim";
version = "2.0-unstable-2026-06-20";
version = "2.0-unstable-2026-09-16";
src = fetchFromGitHub {
owner = "mawkler";
repo = "demicolon.nvim";
rev = "153444f17494e2ff6ab7d226e6173c1841b1130a";
hash = "sha256-gBGJphvT1AXN/UImrSWiWhhzcQt4i68Vbwtr9jXipwo=";
rev = "d4bc516cc346202eb7f933b38e47534d41769f46";
hash = "sha256-N60NIspY5QspqvqfndU74jJDClm7uBL5VpKwnamuodM=";
};
meta.homepage = "https://github.com/mawkler/demicolon.nvim/";
meta.license = getLicenseFromSpdxId "MIT";
@@ -5490,12 +5490,12 @@ final: prev: {
easy-dotnet-nvim = buildVimPlugin {
pname = "easy-dotnet.nvim";
version = "0-unstable-2026-09-10";
version = "0-unstable-2026-09-15";
src = fetchFromGitHub {
owner = "GustavEikaas";
repo = "easy-dotnet.nvim";
rev = "bde7a1cf7c4dbad61d68b2ca41672bfe194b06f8";
hash = "sha256-/1FzQEXnPOl+jcj0QQ04u9lJgmDb2Ejhy3KurFpkCnU=";
rev = "df600029a54754d90ac35fe284b3921bb7bf1023";
hash = "sha256-1F1IXv3lNC7PP+fQESrQtx/7YTrMgl2SGRIAZzuxUQI=";
};
meta.homepage = "https://github.com/GustavEikaas/easy-dotnet.nvim/";
meta.license = getLicenseFromSpdxId "MIT";
@@ -5799,12 +5799,12 @@ final: prev: {
executor-nvim = buildVimPlugin {
pname = "executor.nvim";
version = "0-unstable-2025-08-15";
version = "0-unstable-2026-09-15";
src = fetchFromGitHub {
owner = "google";
repo = "executor.nvim";
rev = "56dfbe6f7fbf4a6ba7e5934df2d95810e0235f64";
hash = "sha256-FdcOzT3LgJBifXdEAzfMtcfrIDlYFcY1RogVxcl3Avk=";
rev = "f40ff80b0831c34e8feae92b996477b4bba67764";
hash = "sha256-UaBqJzR+s4DgtMJ2JDKhr+jJekPr8LspQvVdfgU9x/8=";
};
meta.homepage = "https://github.com/google/executor.nvim/";
meta.license = getLicenseFromSpdxId "Apache-2.0";
@@ -6753,12 +6753,12 @@ final: prev: {
gitignore-nvim = buildVimPlugin {
pname = "gitignore.nvim";
version = "0-unstable-2025-05-30";
version = "0-unstable-2026-09-15";
src = fetchFromGitHub {
owner = "wintermute-cell";
repo = "gitignore.nvim";
rev = "0344f643768c4d64af4add8c1bdddf6f7d4c9010";
hash = "sha256-9Qu+oVOtufvf+ekj2rY+T9c2y7BXh9d7hfl6ZiMYpPY=";
rev = "15ed88abbaeb5deffe6d7c6d51af9b6ff784135f";
hash = "sha256-45PCvabbqcgasvuFg/g8c/N6XkU43/lmqoATMnvc8NY=";
};
meta.homepage = "https://github.com/wintermute-cell/gitignore.nvim/";
meta.license = getLicenseFromSpdxId "MIT";
@@ -8125,12 +8125,12 @@ final: prev: {
iron-nvim = buildVimPlugin {
pname = "iron.nvim";
version = "0-unstable-2026-08-30";
version = "0-unstable-2026-09-15";
src = fetchFromGitHub {
owner = "Vigemus";
repo = "iron.nvim";
rev = "1ad44e4e82ad31b7df1cdb7f154c707bfd0d303c";
hash = "sha256-59+/yLkvBsAVmYt7HfQYn0A2oPAewAQcNx3XneyKVaQ=";
rev = "0168b419bc7df70cd2d97c2ec8158b6b002450b2";
hash = "sha256-2oQ4CGcdxVJpubxv+NQLbVk3cW38iP45xX3rAL1ZOl4=";
};
meta.homepage = "https://github.com/Vigemus/iron.nvim/";
meta.license = getLicenseFromSpdxId "BSD-3-Clause";
@@ -11218,12 +11218,12 @@ final: prev: {
neoconf-nvim = buildVimPlugin {
pname = "neoconf.nvim";
version = "1.4.0-unstable-2026-09-03";
version = "1.4.0-unstable-2026-09-17";
src = fetchFromGitHub {
owner = "folke";
repo = "neoconf.nvim";
rev = "931000cfab0120191ee914afbbc3f2b02f3533de";
hash = "sha256-IfL6Rbp6KIHs/QZ25kPQU2NDTkasYv4B2yiAAmbLSKg=";
rev = "54f249a7f1a87a51ff1f559e873daf05e20a454b";
hash = "sha256-tpjnVOIaULSgEzPypvKipNWlEbYvtMossbu/yhHgsWY=";
};
meta.homepage = "https://github.com/folke/neoconf.nvim/";
meta.license = getLicenseFromSpdxId "Apache-2.0";
@@ -12130,12 +12130,12 @@ final: prev: {
nginx-vim = buildVimPlugin {
pname = "nginx.vim";
version = "1.1.0-unstable-2026-02-09";
version = "1.1.0-unstable-2026-09-15";
src = fetchFromGitHub {
owner = "chr4";
repo = "nginx.vim";
rev = "a5991f38135d0c6c259d0b9f5e629ba33b891b9e";
hash = "sha256-rGqNjdaK5HX6Cad3x+awRLz24PfsA+APWg+vKjWn490=";
rev = "3f1ce6c24ba3b5bde979cfac2c017612d7bfd311";
hash = "sha256-7UVwoZjyfl2YiNzQnfanoqAmfmZlhRlrbtYxqrBVTGY=";
};
meta.homepage = "https://github.com/chr4/nginx.vim/";
meta.license = unfree;
@@ -12409,12 +12409,12 @@ final: prev: {
notmuch-nvim = buildVimPlugin {
pname = "notmuch.nvim";
version = "0.4.0";
version = "0.5.0";
src = fetchFromGitHub {
owner = "yousefakbar";
repo = "notmuch.nvim";
tag = "v0.4.0";
hash = "sha256-A+vlH8fUNd3/lTH++sp90YXRqe3/uTxOTNw43CJQQyc=";
tag = "v0.5.0";
hash = "sha256-Q2xxAC10xZFa+xKXnnyJRe5qi/aqZUwp0+l7SIIBriM=";
};
meta.homepage = "https://github.com/yousefakbar/notmuch.nvim/";
meta.license = unfree;
@@ -14671,12 +14671,12 @@ final: prev: {
opencode-nvim = buildVimPlugin {
pname = "opencode.nvim";
version = "1.0.1";
version = "1.0.2";
src = fetchFromGitHub {
owner = "nickjvandyke";
repo = "opencode.nvim";
tag = "v1.0.1";
hash = "sha256-rJz8AtUEgyTMvLd5cMD0wcsaNgW8FmPX1dtLymHM00o=";
tag = "v1.0.2";
hash = "sha256-AoQXcrIymg2DDHKYQFkV039bFo/AN1QJVevhsIcc/+I=";
};
meta.homepage = "https://github.com/nickjvandyke/opencode.nvim/";
meta.license = getLicenseFromSpdxId "MIT";
@@ -15373,12 +15373,12 @@ final: prev: {
project-nvim = buildVimPlugin {
pname = "project.nvim";
version = "6.2.1-1";
version = "6.3.0-1";
src = fetchFromGitHub {
owner = "DrKJeff16";
repo = "project.nvim";
tag = "v6.2.1-1";
hash = "sha256-jJwnMO5rYhlDp+ykL/72o4fllbtLCxdX+2ZCBJGxtwg=";
tag = "v6.3.0-1";
hash = "sha256-X8Jd6KtX/oM8Oe1KsRlixfGNAUwfkWfXQO/Xkg7EAqU=";
};
meta.homepage = "https://github.com/DrKJeff16/project.nvim/";
meta.license = getLicenseFromSpdxId "Apache-2.0";
@@ -15849,12 +15849,12 @@ final: prev: {
render-markdown-nvim = buildVimPlugin {
pname = "render-markdown.nvim";
version = "8.13.0";
version = "8.14.0";
src = fetchFromGitHub {
owner = "MeanderingProgrammer";
repo = "render-markdown.nvim";
tag = "v8.13.0";
hash = "sha256-ukJUaqEYI60o/lyLM5GaKsRdMW/24IZnzVzPB9/Q/zo=";
tag = "v8.14.0";
hash = "sha256-pG8lAo4qucIu+gAwrEaK79VkDFTLcuuPBYhq3sg951E=";
};
meta.homepage = "https://github.com/MeanderingProgrammer/render-markdown.nvim/";
meta.license = getLicenseFromSpdxId "MIT";
@@ -18233,6 +18233,20 @@ final: prev: {
meta.hydraPlatforms = [ ];
};
tiny-code-action-nvim = buildVimPlugin {
pname = "tiny-code-action.nvim";
version = "0-unstable-2026-04-25";
src = fetchFromGitHub {
owner = "rachartier";
repo = "tiny-code-action.nvim";
rev = "0d040ed81f7953118b81cd12681fcdfcac069803";
hash = "sha256-UF9zeO5Uujdt2MEwy2d2Lhk6JRnEN4vrEvYslv0/zaA=";
};
meta.homepage = "https://github.com/rachartier/tiny-code-action.nvim/";
meta.license = getLicenseFromSpdxId "MIT";
meta.hydraPlatforms = [ ];
};
tiny-devicons-auto-colors-nvim = buildVimPlugin {
pname = "tiny-devicons-auto-colors.nvim";
version = "0-unstable-2026-05-29";
@@ -26403,12 +26417,12 @@ final: prev: {
zotcite = buildVimPlugin {
pname = "zotcite";
version = "0.7-unstable-2026-08-24";
version = "0.7-unstable-2026-09-15";
src = fetchFromGitHub {
owner = "jalvesaq";
repo = "zotcite";
rev = "282bd8963218f840d7286ce6874bafc7c6b4b535";
hash = "sha256-qR2/SLTUw4Mc2KpdPbkPETuvxKpOg6N3Qu3XgrNy48k=";
rev = "669110c668cee18565069ed8980c14af7798df0b";
hash = "sha256-vOO70rXJMIOH8xdP0z4E5+JU+Nx+NBYdMlYaFkU4XOs=";
};
meta.homepage = "https://github.com/jalvesaq/zotcite/";
meta.license = getLicenseFromSpdxId "GPL-3.0-only";

View File

@@ -4655,6 +4655,13 @@ assertNoAdditions {
};
});
tiny-code-action-nvim = super.tiny-code-action-nvim.overrideAttrs {
nvimSkipModules = [
# test for optional previewer
"tiny-code-action.previewers.snacks"
];
};
tmux-complete-vim = super.tmux-complete-vim.overrideAttrs {
# Vim plugin with optional nvim-compe lua module
nvimSkipModules = [ "compe_tmux" ];

View File

@@ -1300,6 +1300,7 @@ https://github.com/levouh/tint.nvim/,,
https://github.com/tinted-theming/tinted-nvim/,,
https://github.com/tinted-theming/tinted-vim/,,
https://github.com/rachartier/tiny-cmdline.nvim/,,
https://github.com/rachartier/tiny-code-action.nvim/,,
https://github.com/rachartier/tiny-devicons-auto-colors.nvim/,,
https://github.com/rachartier/tiny-glimmer.nvim/,,
https://github.com/rachartier/tiny-inline-diagnostic.nvim/,,

View File

@@ -1391,8 +1391,8 @@ let
mktplcRef = {
name = "competitive-programming-helper";
publisher = "DivyanshuAgrawal";
version = "2026.8.1785865132";
hash = "sha256-/JVuIOoTgeENtbvYFri1/RtiZ6PCabOrwC1mzHoaML4=";
version = "2026.9.1789051951";
hash = "sha256-Et8v+Yl51tKTGoKx8rOMW3VscFkfIKwwqcLyw9fmI90=";
};
meta = {
changelog = "https://marketplace.visualstudio.com/items/DivyanshuAgrawal.competitive-programming-helper/changelog";

View File

@@ -7,8 +7,8 @@ vscode-utils.buildVscodeMarketplaceExtension {
mktplcRef = {
name = "quarto";
publisher = "quarto";
version = "1.137.0";
hash = "sha256-huXW4duf8MbilHPlYMyMPxMd+s0Gv9BejE20PxcYsjo=";
version = "1.138.0";
hash = "sha256-xwqs28ihgYnk7lPLjGQGwnG7ig2HLT9ZyCg1jiHpmR8=";
};
meta = {
changelog = "https://marketplace.visualstudio.com/items/quarto.quarto/changelog";

View File

@@ -83,7 +83,7 @@ let
in
stdenv.mkDerivation (finalAttrs: {
pname = "gimp";
version = "3.2.4";
version = "3.2.6";
outputs = [
"out"
@@ -94,7 +94,7 @@ stdenv.mkDerivation (finalAttrs: {
src = fetchurl {
url = "https://download.gimp.org/gimp/v${lib.versions.majorMinor finalAttrs.version}/gimp-${finalAttrs.version}.tar.xz";
hash = "sha256-cxK8U+nG0tAFbKe5PxxrmHB5Rt2TT3FMIbh0bstgFYg=";
hash = "sha256-QLFekK0MDGMbdto8Rn6phH+lwk83QTrFtJKASGCijNg=";
};
patches = [

View File

@@ -1,10 +1,10 @@
{
"chromium": {
"version": "153.0.8010.36",
"version": "153.0.8010.47",
"chromedriver": {
"version": "153.0.8010.37",
"hash_darwin": "sha256-IMyEnUmK3slNB/QDZ+vtUyzHyU0AB+L6+BMbpCRluYA=",
"hash_darwin_aarch64": "sha256-cd1ZWatLQFIkPtCdVacrxFaFfj3rjG9qJ7kGlL3C6OA="
"version": "153.0.8010.48",
"hash_darwin": "sha256-/4yv3KWuvKNAro9oeK+PFsTOrg878yS11aDYSX5S890=",
"hash_darwin_aarch64": "sha256-5eO1WwJ8iQrXUjHb776Z1YahR/A8aCoX7JrJXQEcIQ8="
},
"deps": {
"depot_tools": {
@@ -21,8 +21,8 @@
"DEPS": {
"src": {
"url": "https://chromium.googlesource.com/chromium/src.git",
"rev": "507c6ee3e2f3b2ca0e660547e5b9ea4820c67f4c",
"hash": "sha256-q29a3PWQ7wMG4/JL9EyCK7EaDCeG+4Q/ruemOvvgeZM=",
"rev": "73934a44f61e6b3878d1943064c141a5a820f5f7",
"hash": "sha256-D7Oqukze3CzYVWN9AQq9zN6HN2GcZ6b7ZSqhM5bjvUU=",
"recompress": true
},
"src/third_party/clang-format/script": {
@@ -92,8 +92,8 @@
},
"src/third_party/angle": {
"url": "https://chromium.googlesource.com/angle/angle.git",
"rev": "fca5efdfeff5daf430bc4458375c8d6b7e457400",
"hash": "sha256-IoHQfdjZ6TV03VVzHZcxhPqGmNYNhKZrPG4BvQQfC7c="
"rev": "ed04c8113c6538f3e1264042da8cb4afd100369b",
"hash": "sha256-mZrVJ/P3tPoiSkGBH4fEjNAexLsjAzts8jjkCQZ4kOs="
},
"src/third_party/angle/third_party/glmark2/src": {
"url": "https://chromium.googlesource.com/external/github.com/glmark2/glmark2",
@@ -132,8 +132,8 @@
},
"src/third_party/dawn": {
"url": "https://dawn.googlesource.com/dawn.git",
"rev": "225a7ba1bcb997d26de3e894e04fb341638e8c5a",
"hash": "sha256-/ic1j1gu2wl5wCLCESfEcsLAPU5Dmsx8oKFb6RhYzg4="
"rev": "28ffc61fc935c599677cff4dddfa4a12209ce500",
"hash": "sha256-6ySDyyQs/nfFF9AeoUY57GYDx7V8b0GQ17PCwQkzZVk="
},
"src/third_party/dawn/third_party/glfw3/src": {
"url": "https://chromium.googlesource.com/external/github.com/glfw/glfw",
@@ -632,8 +632,8 @@
},
"src/third_party/pthreadpool/src": {
"url": "https://chromium.googlesource.com/external/github.com/google/pthreadpool.git",
"rev": "02460584c6092e527c8b89f7df4de143d70e801f",
"hash": "sha256-4EHJzZT+Gbhs8SkOhjSvDIPEqIQU93oJmtF3c/T+qjw="
"rev": "15a6644ba1c45f1acc16ac1e883efc3e56c6bed2",
"hash": "sha256-YJD9n8cxoqTrTQJHKuZFW2qnlNcNmh5rQlBpnlF46to="
},
"src/third_party/pyelftools": {
"url": "https://chromium.googlesource.com/chromiumos/third_party/pyelftools.git",
@@ -672,8 +672,8 @@
},
"src/third_party/skia": {
"url": "https://skia.googlesource.com/skia.git",
"rev": "4f574af2444846ceca4d277a8095c5d4229d175f",
"hash": "sha256-HrpA4labNWXPWj/yiS9O8KjdQPwJOllmR5r66TwCjB0="
"rev": "fca11a08da7c1ed3777b40b31611961c85c63c43",
"hash": "sha256-iQNNgvRVUuyAcSVE+pNJWrWz0NJd/MZLxd9vbYztong="
},
"src/third_party/smhasher/src": {
"url": "https://chromium.googlesource.com/external/smhasher.git",
@@ -842,8 +842,8 @@
},
"src/v8": {
"url": "https://chromium.googlesource.com/v8/v8.git",
"rev": "f343157cebb388bfa416baccb5d35507e6fe8cc7",
"hash": "sha256-zSCyFQpDMNygmV6N4TajL8VB5+VRynrMPV/wAiWsJO4="
"rev": "6b96683d44174e78ff4e65cb274bad56dc108231",
"hash": "sha256-Oa1wzIbWVPX0x7adJVPUxQocK5gofG0vE56QTg0XKCs="
},
"src/agents/shared": {
"url": "https://chromium.googlesource.com/chromium/agents.git",
@@ -853,7 +853,7 @@
}
},
"ungoogled-chromium": {
"version": "153.0.8010.36",
"version": "153.0.8010.47",
"deps": {
"depot_tools": {
"rev": "6411ed52842756261c66b6b8ece6b53ade2570f1",
@@ -865,16 +865,16 @@
"hash": "sha256-qvQ13Ws2tb4i2Hdu34kBHivYPAn8w06zjLdQgK4BIJg="
},
"ungoogled-patches": {
"rev": "153.0.8010.36-1",
"hash": "sha256-JyvizS0oJC8J6VhtnpTKUGVbc31KCvTvwa4TmO+CHaY="
"rev": "153.0.8010.47-1",
"hash": "sha256-J/IiNmqJzL35TfiGbsqrXnI8lUizCWuxzVBHgo7cG80="
},
"npmHash": "sha256-pF0JtwFpPC4/fodbhSJnQKkczA9WlDg4VqEAy9aDVLg="
},
"DEPS": {
"src": {
"url": "https://chromium.googlesource.com/chromium/src.git",
"rev": "507c6ee3e2f3b2ca0e660547e5b9ea4820c67f4c",
"hash": "sha256-q29a3PWQ7wMG4/JL9EyCK7EaDCeG+4Q/ruemOvvgeZM=",
"rev": "73934a44f61e6b3878d1943064c141a5a820f5f7",
"hash": "sha256-D7Oqukze3CzYVWN9AQq9zN6HN2GcZ6b7ZSqhM5bjvUU=",
"recompress": true
},
"src/third_party/clang-format/script": {
@@ -944,8 +944,8 @@
},
"src/third_party/angle": {
"url": "https://chromium.googlesource.com/angle/angle.git",
"rev": "fca5efdfeff5daf430bc4458375c8d6b7e457400",
"hash": "sha256-IoHQfdjZ6TV03VVzHZcxhPqGmNYNhKZrPG4BvQQfC7c="
"rev": "ed04c8113c6538f3e1264042da8cb4afd100369b",
"hash": "sha256-mZrVJ/P3tPoiSkGBH4fEjNAexLsjAzts8jjkCQZ4kOs="
},
"src/third_party/angle/third_party/glmark2/src": {
"url": "https://chromium.googlesource.com/external/github.com/glmark2/glmark2",
@@ -984,8 +984,8 @@
},
"src/third_party/dawn": {
"url": "https://dawn.googlesource.com/dawn.git",
"rev": "225a7ba1bcb997d26de3e894e04fb341638e8c5a",
"hash": "sha256-/ic1j1gu2wl5wCLCESfEcsLAPU5Dmsx8oKFb6RhYzg4="
"rev": "28ffc61fc935c599677cff4dddfa4a12209ce500",
"hash": "sha256-6ySDyyQs/nfFF9AeoUY57GYDx7V8b0GQ17PCwQkzZVk="
},
"src/third_party/dawn/third_party/glfw3/src": {
"url": "https://chromium.googlesource.com/external/github.com/glfw/glfw",
@@ -1484,8 +1484,8 @@
},
"src/third_party/pthreadpool/src": {
"url": "https://chromium.googlesource.com/external/github.com/google/pthreadpool.git",
"rev": "02460584c6092e527c8b89f7df4de143d70e801f",
"hash": "sha256-4EHJzZT+Gbhs8SkOhjSvDIPEqIQU93oJmtF3c/T+qjw="
"rev": "15a6644ba1c45f1acc16ac1e883efc3e56c6bed2",
"hash": "sha256-YJD9n8cxoqTrTQJHKuZFW2qnlNcNmh5rQlBpnlF46to="
},
"src/third_party/pyelftools": {
"url": "https://chromium.googlesource.com/chromiumos/third_party/pyelftools.git",
@@ -1524,8 +1524,8 @@
},
"src/third_party/skia": {
"url": "https://skia.googlesource.com/skia.git",
"rev": "4f574af2444846ceca4d277a8095c5d4229d175f",
"hash": "sha256-HrpA4labNWXPWj/yiS9O8KjdQPwJOllmR5r66TwCjB0="
"rev": "fca11a08da7c1ed3777b40b31611961c85c63c43",
"hash": "sha256-iQNNgvRVUuyAcSVE+pNJWrWz0NJd/MZLxd9vbYztong="
},
"src/third_party/smhasher/src": {
"url": "https://chromium.googlesource.com/external/smhasher.git",
@@ -1694,8 +1694,8 @@
},
"src/v8": {
"url": "https://chromium.googlesource.com/v8/v8.git",
"rev": "f343157cebb388bfa416baccb5d35507e6fe8cc7",
"hash": "sha256-zSCyFQpDMNygmV6N4TajL8VB5+VRynrMPV/wAiWsJO4="
"rev": "6b96683d44174e78ff4e65cb274bad56dc108231",
"hash": "sha256-Oa1wzIbWVPX0x7adJVPUxQocK5gofG0vE56QTg0XKCs="
},
"src/agents/shared": {
"url": "https://chromium.googlesource.com/chromium/agents.git",

View File

@@ -0,0 +1,10 @@
{
traefik-crd = {
url = "https://k3s.io/k3s-charts/assets/traefik-crd/traefik-crd-41.4.2+up41.4.0.tgz";
sha256 = "0dfvh65gilw4z3cyia8gq0hqgcp09cbdihq6g6n93af9lbpwysnf";
};
traefik = {
url = "https://k3s.io/k3s-charts/assets/traefik/traefik-41.4.2+up41.4.0.tgz";
sha256 = "1379f54pci4y41szpnw016wr6kkawyyr6sfzijdsz3f8fryhp3xp";
};
}

View File

@@ -0,0 +1,26 @@
{
"airgap-images-amd64-tar-gz": {
"url": "https://github.com/k3s-io/k3s/releases/download/v1.37.0%2Bk3s1/k3s-airgap-images-amd64.tar.gz",
"sha256": "936f0ef6acaacb1950367308fbbe0388244df2ffc2a80cbd99e1f01ddde413e7"
},
"airgap-images-amd64-tar-zst": {
"url": "https://github.com/k3s-io/k3s/releases/download/v1.37.0%2Bk3s1/k3s-airgap-images-amd64.tar.zst",
"sha256": "0b4ff0d6e233de54be4e16cb5aa298fd53ad88f66ad8ae31093b5ef4dcefcdd0"
},
"airgap-images-arm-tar-gz": {
"url": "https://github.com/k3s-io/k3s/releases/download/v1.37.0%2Bk3s1/k3s-airgap-images-arm.tar.gz",
"sha256": "b7d9f8e94a28d0f70b8b9d6782f3d3190fe94b0b19fca4554e41ad3dbdee1f3f"
},
"airgap-images-arm-tar-zst": {
"url": "https://github.com/k3s-io/k3s/releases/download/v1.37.0%2Bk3s1/k3s-airgap-images-arm.tar.zst",
"sha256": "be1628b6beb17937140171374beed94e550a9c3c8ea98eec23ae6f21ca8493f1"
},
"airgap-images-arm64-tar-gz": {
"url": "https://github.com/k3s-io/k3s/releases/download/v1.37.0%2Bk3s1/k3s-airgap-images-arm64.tar.gz",
"sha256": "d1b534c7b5b67e06fdea2231813b3adc596ba36d7a63699fec1eb23e3c0baf17"
},
"airgap-images-arm64-tar-zst": {
"url": "https://github.com/k3s-io/k3s/releases/download/v1.37.0%2Bk3s1/k3s-airgap-images-arm64.tar.zst",
"sha256": "b3bd28d3a20144927b25ebb1d255a16ce55bb050b9af5e63abd1bf91c0838fe5"
}
}

View File

@@ -0,0 +1,21 @@
{
k3sVersion = "1.37.0+k3s1";
k3sCommit = "bb7cf0657bafdfbb4349d1740810442d09c2248a";
k3sRepoSha256 = "0glzg974w7f0jdaljr9bxw36qv53chii25rjbrvlbzlyzjq19wws";
k3sVendorHash = "sha256-AObmRWcIyFDy1aTA66LLFYnnUQzpf6+Ts6HQRA3i26A=";
chartVersions = import ./chart-versions.nix;
imagesVersions = builtins.fromJSON (builtins.readFile ./images-versions.json);
k3sRootVersion = "0.15.2";
k3sRootSha256 = "0yxq2jqqb7flm4rs9dl7fqxba3mmwkmjbc8rx7pgai4qa1lzyigy";
k3sCNIVersion = "1.9.1-k3s1";
k3sCNISha256 = "1ggaz0p1c2k94car9d89a05smz3zx32sxn197b1l5kmjcnzdwadh";
containerdVersion = "2.3.4-k3s1";
containerdSha256 = "18kci7drnlxkn4vk166jijavgwaml1vhlfqirhzljmb4g16ydrah";
containerdPackage = "github.com/k3s-io/containerd/v2";
criCtlVersion = "1.37.0-k3s1";
flannelVersion = "v0.28.4";
flannelPluginVersion = "v1.9.0-flannel1";
kubeRouterVersion = "v2.6.3-k3s1";
criDockerdVersion = "v0.3.19-k3s5";
helmJobVersion = "v0.13.3-build20260727";
}

View File

@@ -15,4 +15,5 @@ in
k3s_1_34 = forVersions ./1_34/versions.nix;
k3s_1_35 = forVersions ./1_35/versions.nix;
k3s_1_36 = forVersions ./1_36/versions.nix;
k3s_1_37 = forVersions ./1_37/versions.nix;
}

View File

@@ -598,13 +598,13 @@
"vendorHash": "sha256-EikYOTTTkj5E82xza6nYvd1AWFg8fzo1ka2umc+25/k="
},
"hashicorp_google-beta": {
"hash": "sha256-S1fCXg59/+f/QH181Ii8Z4kjYP+qsDYCMiTYYF6J810=",
"hash": "sha256-EvcjgQupjAPKkbPObTTXNUsyyo7Udwc6rriD4/K7UhE=",
"homepage": "https://registry.terraform.io/providers/hashicorp/google-beta",
"owner": "hashicorp",
"repo": "terraform-provider-google-beta",
"rev": "v8.1.0",
"rev": "v8.3.0",
"spdx": "MPL-2.0",
"vendorHash": "sha256-zskGz3bL89H3df4QmwX2JXhHv2K34nHxOLiExeZ7lUY="
"vendorHash": "sha256-t3lzDRh0v6vMbw8qLXTOjKNUtaBlXOZkqNO+mJyP9NQ="
},
"hashicorp_helm": {
"hash": "sha256-O3QcQf+TBmSB/mY5wybk/8BUG5RTjLhJYU+9jOOUqBI=",
@@ -670,13 +670,13 @@
"vendorHash": "sha256-CwTlb0QTq0lpZK90IL6mBLoarFYFLsjiLYauGEaR1Rk="
},
"hashicorp_tfe": {
"hash": "sha256-0cDJS89LsTuE2MJoNCnG8Xy7pJYisOggKrqQlK4OeAw=",
"hash": "sha256-gEzX7Q/8OMNb3jOf7E9bph6qactFdZHmITr1l/I9kSc=",
"homepage": "https://registry.terraform.io/providers/hashicorp/tfe",
"owner": "hashicorp",
"repo": "terraform-provider-tfe",
"rev": "v0.80.0",
"rev": "v0.81.0",
"spdx": "MPL-2.0",
"vendorHash": "sha256-O+UMVIed8JEwjaXGTewOY6Vk+MopCQSx+qyMvJW7bkI="
"vendorHash": "sha256-hfSLa5MrrQ0JFZntykbU33TQnuAoYYFasOzUOzi1RV8="
},
"hashicorp_time": {
"hash": "sha256-kdCdph+H3fWizMh+7AGBEscKpCwP7naj+3NSmPK25Us=",
@@ -851,11 +851,11 @@
"vendorHash": "sha256-BFhxDYfbHNY4omovikg01UDqt2oxCtg9Q85DPuHSUeE="
},
"launchdarkly_launchdarkly": {
"hash": "sha256-bcZ2DGQMCRR5fLn0ixuSk1ghw7xT4GGgEjcqx6zwri8=",
"hash": "sha256-DVpsm3adZEwWzgvIFu8pXUGVTch18oW4UdXPQ8XZZb0=",
"homepage": "https://registry.terraform.io/providers/launchdarkly/launchdarkly",
"owner": "launchdarkly",
"repo": "terraform-provider-launchdarkly",
"rev": "v3.1.4",
"rev": "v3.1.5",
"spdx": "MPL-2.0",
"vendorHash": "sha256-d8RQfuLRNGTUzA2Ygy3QEis5j5Ape5kmcnZSs77c84M="
},

View File

@@ -85,8 +85,8 @@ rec {
thunderbird = thunderbird-latest;
thunderbird-latest = common {
version = "155.0";
sha512 = "fe0247ac50d2741a49517fabe729dc990a66e7044f450e4fe6871b663096bcd15f22ed83eea0557106d38eee34e464fead5a7567d0906995ff2a945fae64b60c";
version = "156.0";
sha512 = "8fd524f9d622f007e9bd5e8bcc440f185427a928a04d3aae14fc476e011ff1c15b68607292624ea4c4e4d596722193dda88e233cdfb6bbf5d05bd180870532ba";
updateScript = callPackage ./update.nix {
attrPath = "thunderbirdPackages.thunderbird-latest";

View File

@@ -72,9 +72,9 @@ let
buildType = "release";
# Use maintainers/scripts/update.nix to update the version and all related hashes or
# change the hashes in extpack.nix and guest-additions/default.nix as well manually.
virtualboxVersion = "7.2.16";
virtualboxVersion = "7.2.18";
virtualboxSubVersion = "";
virtualboxSha256 = "50356ccdaefe8f03537600ec31898b506e3a85ce79b94f26fb6cc1920c9e18eb";
virtualboxSha256 = "06db4060caadc70346335c0a731ca6667cdabf206de289c64f3f96f2d341b9d0";
kvmPatchVboxVersion = "7.2.6";
kvmPatchVersion = "20260201";

View File

@@ -5,7 +5,7 @@
}:
fetchurl rec {
pname = "virtualbox-extpack";
version = "7.2.16";
version = "7.2.18";
name = "Oracle_VirtualBox_Extension_Pack-${version}.vbox-extpack";
url = "https://download.virtualbox.org/virtualbox/${version}/${name}";
sha256 =
@@ -13,7 +13,7 @@ fetchurl rec {
# Thus do not use `nix-prefetch-url` but instead plain old `sha256sum`.
# Checksums can also be found at https://download.virtualbox.org/virtualbox/${version}/SHA256SUMS
let
value = "d1e268cfa05223fd651703043af09f39dfb90da259ce9ec093d9d9b022f19689";
value = "e06834239947db06cc077d464bbb15d6441917ca03573e518506344dc28b64b9";
in
assert (builtins.stringLength value) == 64;
value;

View File

@@ -5,7 +5,7 @@
}:
fetchurl {
url = "http://download.virtualbox.org/virtualbox/${virtualboxVersion}/VBoxGuestAdditions_${virtualboxVersion}.iso";
sha256 = "c9349c0231d81c821fc1de7b9592bf07bb7c3f111c3f942ddddc211496ef7a3e";
sha256 = "346ea2b9ed47bb954464af83835b14bd8afa5fc1864f34e2561ed923fb74981c";
meta = {
description = "Guest additions ISO for VirtualBox";
longDescription = ''

View File

@@ -18,9 +18,9 @@
libx11,
}:
let
virtualboxVersion = "7.2.16";
virtualboxVersion = "7.2.18";
virtualboxSubVersion = "";
virtualboxSha256 = "50356ccdaefe8f03537600ec31898b506e3a85ce79b94f26fb6cc1920c9e18eb";
virtualboxSha256 = "06db4060caadc70346335c0a731ca6667cdabf206de289c64f3f96f2d341b9d0";
platform =
if stdenv.hostPlatform.isAarch64 then
@@ -98,7 +98,9 @@ stdenv.mkDerivation {
# https://github.com/VirtualBox/virtualbox/issues/812
postPatch = ''
substituteInPlace ./src/vboxguest-${virtualboxVersion}_NixOS/vboxvideo/vbox_fb.c --replace-fail "RTLNX_VER_MIN(6,19,0)" "RTLNX_VER_RANGE(6,6,152, 6,6,999) || RTLNX_VER_RANGE(6,12,103, 6,12,999) || RTLNX_VER_RANGE(6,18,44, 6,18,999) || RTLNX_VER_MIN(6,19,0)"
substituteInPlace ./src/vboxguest-${virtualboxVersion}_NixOS/vboxvideo/vbox_fb.c \
--replace-fail "RTLNX_VER_MIN(6,19,0) || RTLNX_VER_RANGE(6,12,103, 6,13,0)" \
"RTLNX_VER_MIN(6,19,0) || RTLNX_VER_RANGE(6,12,103, 6,13,0) || RTLNX_VER_RANGE(6,6,152, 6,6,999) || RTLNX_VER_RANGE(6,18,44, 6,18,999)"
'';
buildPhase = ''

View File

@@ -104,6 +104,7 @@ in
src ? null,
hash ? "",
sha256 ? "",
mirrorUrl ? null,
...
}@args:
let
@@ -148,7 +149,9 @@ in
yarnLock=''${yarnLock:=$PWD/yarn.lock}
mkdir -p $out
(cd $out; prefetch-yarn-deps --verbose --builder $yarnLock)
(cd $out; prefetch-yarn-deps --verbose --builder $yarnLock ${
lib.optionalString (mirrorUrl != null) "--mirrorUrl ${lib.escapeShellArg mirrorUrl}"
})
runHook postBuild
'';
@@ -161,6 +164,7 @@ in
"name"
"hash"
"sha256"
"mirrorUrl"
]
++ (lib.optional (src == null) "src")
))

View File

@@ -21,15 +21,27 @@ const exec = async (...args) => {
return res
}
const downloadFileHttps = (fileName, url, expectedHash, verbose, hashType = 'sha1') => {
const yarnRegistryUrl = 'https://registry.yarnpkg.com/';
function ensureTrailingSlash(str) {
return str.endsWith('/') ? str : str + '/';
}
const downloadFileHttps = (fileName, url, expectedHash, verbose, hashType = 'sha1', mirrorRegistryUrl = null) => {
const registryUrl =
mirrorRegistryUrl && url.startsWith(yarnRegistryUrl)
? url.replace(yarnRegistryUrl, ensureTrailingSlash(mirrorRegistryUrl))
: url;
return new Promise((resolve, reject) => {
const get = (url, redirects = 0) => https.get(url, (res) => {
const get = (registryUrl, redirects = 0) => https.get(registryUrl, (res) => {
if(redirects > 10) {
reject('Too many redirects!');
return;
}
if(res.statusCode === 301 || res.statusCode === 302) {
const location = new URL(res.headers.location, url);
const location = new URL(res.headers.location, registryUrl);
if (verbose) console.log('following redirect to ' + location);
return get(location, redirects + 1);
}
@@ -41,13 +53,13 @@ const downloadFileHttps = (fileName, url, expectedHash, verbose, hashType = 'sha
file.close()
const h = hash.read()
if (expectedHash === undefined){
console.log(`Warning: lockfile url ${url} doesn't end in "#<hash>" to validate against. Downloaded file had hash ${h}.`);
} else if (h != expectedHash) return reject(new Error(`hash mismatch, expected ${expectedHash}, got ${h} for ${url}`))
console.log(`Warning: lockfile url ${registryUrl} doesn't end in "#<hash>" to validate against. Downloaded file had hash ${h}.`);
} else if (h != expectedHash) return reject(new Error(`hash mismatch, expected ${expectedHash}, got ${h} for ${registryUrl}`))
resolve()
})
res.on('error', e => reject(e))
})
get(url)
get(registryUrl)
})
}
@@ -90,7 +102,7 @@ const isGitUrl = pattern => {
return false
}
const downloadPkg = (pkg, verbose) => {
const downloadPkg = (pkg, verbose, mirrorUrl = null) => {
for (let marker of ['@file:', '@link:']) {
const split = pkg.key.split(marker)
if (split.length == 2) {
@@ -122,9 +134,9 @@ const downloadPkg = (pkg, verbose) => {
} else if (url.startsWith('https://')) {
if (typeof pkg.integrity === 'string' || pkg.integrity instanceof String) {
const [ type, checksum ] = pkg.integrity.split('-')
return downloadFileHttps(fileName, url, Buffer.from(checksum, 'base64').toString('hex'), verbose, type)
return downloadFileHttps(fileName, url, Buffer.from(checksum, 'base64').toString('hex'), verbose, type, mirrorUrl)
}
return downloadFileHttps(fileName, url, hash, verbose)
return downloadFileHttps(fileName, url, hash, verbose, 'sha1', mirrorUrl)
} else if (url.startsWith('file:')) {
console.warn(`ignoring unsupported file:path url "${url}"`)
} else {
@@ -155,11 +167,11 @@ const uniqueBy = (arr, callback) => {
return [...map.values()]
}
const prefetchYarnDeps = async (lockContents, verbose) => {
const prefetchYarnDeps = async (lockContents, verbose, mirrorUrl) => {
const lockData = lockfile.parse(lockContents)
await performParallel(
uniqueBy(Object.entries(lockData.object), ([_, value]) => value.resolved)
.map(([key, value]) => () => downloadPkg({ key, ...value }, verbose))
.map(([key, value]) => () => downloadPkg({ key, ...value }, verbose, mirrorUrl))
)
await fs.promises.writeFile('yarn.lock', lockContents)
if (verbose) console.log('Done')
@@ -173,18 +185,23 @@ Options:
-h --help Show this help
-v --verbose Verbose output
--builder Only perform the download to current directory, then exit
--mirrorUrl <url> Use the given registry mirror URL in place of the default
yarn registry (${yarnRegistryUrl})
`)
process.exit(1)
}
const main = async () => {
const args = process.argv.slice(2)
let next, lockFile, verbose, isBuilder
let next, lockFile, verbose, isBuilder, mirrorUrl
while (next = args.shift()) {
if (next == '--builder') {
isBuilder = true
} else if (next == '--verbose' || next == '-v') {
verbose = true
} else if (next == '--mirrorUrl') {
mirrorUrl = args.shift()
if (!mirrorUrl) showUsage()
} else if (next == '--help' || next == '-h') {
showUsage()
} else if (!lockFile) {
@@ -201,13 +218,13 @@ const main = async () => {
}
if (isBuilder) {
await prefetchYarnDeps(lockContents, verbose)
await prefetchYarnDeps(lockContents, verbose, mirrorUrl)
} else {
const { stdout: tmpDir } = await exec('mktemp', [ '-d' ])
try {
process.chdir(tmpDir.trim())
await prefetchYarnDeps(lockContents, verbose)
await prefetchYarnDeps(lockContents, verbose, mirrorUrl)
const { stdout: hash } = await exec('nix-hash', [ '--type', 'sha256', '--base32', tmpDir.trim() ])
console.log(hash)
} finally {

View File

@@ -9,6 +9,11 @@
yarnLock = ./simple.lock;
sha256 = "sha256-FRrt8BixleILmFB2ZV8RgPNLqgS+dlH5nWoPgeaaNQ8=";
};
mirrorUrl = testers.invalidateFetcherByDrvHash fetchYarnDeps {
yarnLock = ./simple.lock;
mirrorUrl = "https://registry.npmjs.com/";
sha256 = "sha256-FRrt8BixleILmFB2ZV8RgPNLqgS+dlH5nWoPgeaaNQ8=";
};
gitDep = testers.invalidateFetcherByDrvHash fetchYarnDeps {
yarnLock = ./git.lock;
sha256 = "sha256-f90IiEzHDiBdswWewRBHcJfqqpPipaMg8N0DVLq2e8Q=";

View File

@@ -11,15 +11,13 @@
}:
let
python = python3.override {
self = python;
packageOverrides = final: prev: {
# The ast-serialize package, a dependency for mypy, depends on
# fetchCargoVendor and is part of the bootstrap chain for requests.
charset-normalizer = prev.charset-normalizer.override { withMypyc = false; };
python3Packages = python3.pkgs // {
# Break the requests -> charset-normalizer -> mypy -> ast-serialize ->
# fetchCargoVendor bootstrap cycle without overriding the whole Python scope.
requests = python3.pkgs.requests.override {
charset-normalizer = python3.pkgs.charset-normalizer.override { withMypyc = false; };
};
};
python3Packages = python.pkgs;
replaceWorkspaceValues = writers.writePython3Bin "replace-workspace-values" {
libraries = with python3Packages; [

View File

@@ -119,11 +119,12 @@ stdenv.mkDerivation (finalAttrs: {
''
runHook preInstall
# Upstream always names this module 7z.so on Unix, including Darwin.
install -Dt "$out/${if isWindows then "bin" else "lib"}/7zip" \
CPP/7zip/Bundles/Alone/b/*/7za${extensions.executable} \
CPP/7zip/Bundles/Alone2/b/*/7zz${extensions.executable} \
CPP/7zip/Bundles/Alone7z/b/*/7zr${extensions.executable} \
CPP/7zip/Bundles/Format7zF/b/*/7z${extensions.sharedLibrary} \
CPP/7zip/Bundles/Format7zF/b/*/7z${if isWindows then extensions.sharedLibrary else ".so"} \
CPP/7zip/UI/Console/b/*/7z${extensions.executable}
install -D CPP/7zip/Bundles/SFXCon/b/*/7zCon${extensions.executable} "$out/lib/7zip/7zCon.sfx"

View File

@@ -3,10 +3,10 @@ unpackCmdHooks+=(_tryUnpackDmg)
_try7zip() {
if ! [[ $curSrc =~ \.7z$ ]]; then return 1; fi
7z x "$curSrc"
7z x -snld "$curSrc"
}
_tryUnpackDmg() {
if ! [[ $curSrc =~ \.dmg$ ]]; then return 1; fi
7z x "$curSrc"
7z x -sns- -snld "$curSrc"
}

View File

@@ -1,5 +1,5 @@
unpackCmdHooks+=(_tryUnpackDmg)
_tryUnpackDmg() {
if ! [[ "$curSrc" =~ \.dmg$ ]]; then return 1; fi
7zz x "$curSrc"
7zz x -sns- -snld "$curSrc"
}

View File

@@ -15,6 +15,9 @@ stdenv.mkDerivation (finalAttrs: {
pname = "alsa-tools";
version = "1.2.15";
strictDeps = true;
__structuredAttrs = true;
src = fetchurl {
url = "mirror://alsa/tools/alsa-tools-${finalAttrs.version}.tar.bz2";
hash = "sha256-gASY01IzZy72f0v3TMbh034f5wwFQOLS4GLyMZ57Xfc=";
@@ -23,11 +26,11 @@ stdenv.mkDerivation (finalAttrs: {
nativeBuildInputs = [
makeWrapper
pkg-config
fltk_1_3
];
buildInputs = [
alsa-lib
fltk_1_3
gtk3
gtk4
psmisc

View File

@@ -1,6 +1,8 @@
diff --git a/service/server/CMakeLists.txt b/service/server/CMakeLists.txt
index 4cc47168..b7840b4d 100644
--- a/service/server/CMakeLists.txt
+++ b/service/server/CMakeLists.txt
@@ -341,56 +341,6 @@
@@ -341,115 +341,6 @@ if(APPLE)
)
endif()
@@ -32,6 +34,30 @@
- ${CONAN_EXECS} ${CONAN_BINS}
- "$<TARGET_FILE_DIR:${PROJECT}>"
-)
-
-# prebuilt openvpn carries the rpath of whatever machine baked it; point the
-# build-tree copy at the local conan openssl (install rewrites it to $ORIGIN)
-if(LINUX)
- file(GENERATE OUTPUT ${CMAKE_CURRENT_BINARY_DIR}/set_openvpn_rpath.cmake
- CONTENT "file(RPATH_SET FILE \"$<TARGET_FILE_DIR:${PROJECT}>/openvpn\" NEW_RPATH \"$<TARGET_FILE_DIR:OpenSSL::SSL>\")\n"
- )
- add_custom_command(TARGET ${PROJECT} POST_BUILD
- COMMAND ${CMAKE_COMMAND} -P ${CMAKE_CURRENT_BINARY_DIR}/set_openvpn_rpath.cmake
- )
-elseif(APPLE)
- file(GENERATE OUTPUT ${CMAKE_CURRENT_BINARY_DIR}/set_openvpn_rpath.cmake CONTENT
-[=[
-set(ovpn "$<TARGET_FILE_DIR:AmneziaVPN-service>/openvpn")
-set(dir "$<TARGET_FILE_DIR:OpenSSL::SSL>")
-execute_process(COMMAND install_name_tool -delete_rpath "${dir}" "${ovpn}" ERROR_QUIET)
-execute_process(COMMAND install_name_tool -add_rpath "${dir}" "${ovpn}")
-]=]
- )
- add_custom_command(TARGET ${PROJECT} POST_BUILD
- COMMAND ${CMAKE_COMMAND} -P ${CMAKE_CURRENT_BINARY_DIR}/set_openvpn_rpath.cmake
- )
-endif()
-
-if(WIN32)
- # using PERMISSIONS on Windows appends read-only flag
- # to the files so just omit it for it
@@ -40,7 +66,11 @@
- COMPONENT AmneziaVPN
- )
-else()
- install(FILES ${CONAN_EXECS}
- set(CONAN_EXECS_INSTALL ${CONAN_EXECS})
- if(LINUX)
- list(REMOVE_ITEM CONAN_EXECS_INSTALL "$<TARGET_FILE:openvpn::openvpn>")
- endif()
- install(FILES ${CONAN_EXECS_INSTALL}
- DESTINATION ${CMAKE_INSTALL_BINDIR}
- COMPONENT AmneziaVPN
- PERMISSIONS
@@ -53,6 +83,37 @@
- DESTINATION ${CMAKE_INSTALL_BINDIR}
- COMPONENT AmneziaVPN
-)
-
-# install openvpn via the service's dep set to ship its openssl, then
-# rewrite conan's absolute build rpath to a relative one for the package
-if(LINUX)
- install(IMPORTED_RUNTIME_ARTIFACTS openvpn::openvpn
- RUNTIME_DEPENDENCY_SET service_deps
- PERMISSIONS
- OWNER_READ OWNER_EXECUTE
- GROUP_READ GROUP_EXECUTE
- WORLD_READ WORLD_EXECUTE
- COMPONENT AmneziaVPN
- )
- install(CODE "
- set(_ovpn \"\$ENV{DESTDIR}\${CMAKE_INSTALL_PREFIX}/${CMAKE_INSTALL_BINDIR}/openvpn\")
- file(CHMOD \"\${_ovpn}\" PERMISSIONS
- OWNER_READ OWNER_WRITE OWNER_EXECUTE GROUP_READ GROUP_EXECUTE WORLD_READ WORLD_EXECUTE)
- file(RPATH_SET FILE \"\${_ovpn}\" NEW_RPATH \"$ORIGIN:$ORIGIN/../lib\")
- file(CHMOD \"\${_ovpn}\" PERMISSIONS
- OWNER_READ OWNER_EXECUTE GROUP_READ GROUP_EXECUTE WORLD_READ WORLD_EXECUTE)
- "
- COMPONENT AmneziaVPN
- )
-elseif(APPLE)
- install(CODE "
- set(_ovpn \"\$ENV{DESTDIR}\${CMAKE_INSTALL_PREFIX}/${CMAKE_INSTALL_BINDIR}/openvpn\")
- execute_process(COMMAND install_name_tool -delete_rpath \"$<TARGET_FILE_DIR:OpenSSL::SSL>\" \"\${_ovpn}\" ERROR_QUIET)
- execute_process(COMMAND install_name_tool -add_rpath \"@executable_path/../Frameworks\" \"\${_ovpn}\")
- "
- COMPONENT AmneziaVPN
- )
-endif()
-
# install drivers
if (WIN32)

View File

@@ -22,13 +22,13 @@ let
# Even minor updates can break VPN connections without failing the build.
amneziawg-go-pinned = amneziawg-go.overrideAttrs (
finalAttrs: _: {
version = "3.0.1";
version = "3.1.20260814";
src = fetchFromGitHub {
owner = "amnezia-vpn";
repo = "amneziawg-go";
tag = "v${finalAttrs.version}";
hash = "sha256-wtjUJSTDWWgJLedyQPlPa+TtOztciyDWIbyZ24N5ELM=";
hash = "sha256-HMmbKd1wYzotB+GAZ8GulyJmX7+XUnXOEerab0OCPO8=";
};
vendorHash = "sha256-Y2dCwlKMVLrkzDcNKyCPxFJwMbCA2mQKkakvzwbamCY=";
@@ -84,7 +84,7 @@ let
in
stdenv.mkDerivation (finalAttrs: {
pname = "amnezia-vpn";
version = "5.0.0.5";
version = "5.0.1.5";
__structuredAttrs = true;
@@ -92,7 +92,7 @@ stdenv.mkDerivation (finalAttrs: {
owner = "amnezia-vpn";
repo = "amnezia-client";
tag = finalAttrs.version;
hash = "sha256-knQgGyNkOV9CX1I0hJ8xEMRENBV35E2DwWUOgby3iUo=";
hash = "sha256-pSuKAv/Vy4k9kCotIzN1g5NbnyUG/6hDeuQQcGOt5Ow=";
fetchSubmodules = true;
# Preserve VCS metadata needed by the build before .git is removed.
postCheckout = ''

View File

@@ -5,16 +5,16 @@
buildGoModule rec {
pname = "amnezia-xray";
version = "1.3.0";
version = "1.4.0";
src = fetchFromGitHub {
owner = "amnezia-vpn";
repo = "amnezia-xray-bindings";
tag = "v${version}";
hash = "sha256-kGtRw5Ic/++1ehwLToZ96WfC3ULp+DIsPYArqjL06ck=";
hash = "sha256-lvU3bDzd5kgYl5DjdglnQzgjPwhtczxWu6LyxeVvVXE=";
};
vendorHash = "sha256-JAHpQUMQT6tJKwGld0QCobDxgLVujA4KHkhOLXHS65w=";
vendorHash = "sha256-L05GHzj9lyFAm9JgR8ZDQf+2auumug6PcoD1F4ozk3E=";
env.CGO_ENABLED = 1;

View File

@@ -7,13 +7,13 @@
stdenvNoCC.mkDerivation {
pname = "ananicy-rules-cachyos";
version = "0-unstable-2026-08-31";
version = "0-unstable-2026-09-08";
src = fetchFromGitHub {
owner = "CachyOS";
repo = "ananicy-rules";
rev = "7870e04fb5b1dfc57dc3ed4e576459246f826149";
hash = "sha256-06sKcoJQoYvfGDKkAmlBhDiApg8IDXn8BUmihZsWr/4=";
rev = "03ef03fbf7e834385377432ccecaedd32e3414bb";
hash = "sha256-7aM+IsRctA/XIYVkqpljf4kHttoUtG9t/FO+Ium1XaM=";
};
dontConfigure = true;

View File

@@ -11,16 +11,16 @@
rustPlatform.buildRustPackage (finalAttrs: {
pname = "anda";
version = "0.8.9";
version = "0.8.10";
src = fetchFromGitHub {
owner = "FyraLabs";
repo = "anda";
tag = finalAttrs.version;
hash = "sha256-QPB5wLuvCf/bLkqZqsPkvfCeOmiHUtxzbIa3lWMjWoo=";
hash = "sha256-Uch/QFHmqgxtv1tDwBK5lEPYGf8fS1h3hcKzSNITFHg=";
};
cargoHash = "sha256-Qh4tVzMU7VI//+3AsK9r7+WlxBAGzG/QnBsvrMxgudM=";
cargoHash = "sha256-VaP4eAgg8cLMOX6b1a5/QTHF+K9a+jD+FmgUZScjFtI=";
__structuredAttrs = true;

View File

@@ -4,6 +4,8 @@
fetchurl,
unzip,
autoPatchelfHook,
makeBinaryWrapper,
cacert,
}:
let
sources = {
@@ -35,6 +37,7 @@ stdenv.mkDerivation {
nativeBuildInputs = [
unzip
makeBinaryWrapper
]
++ lib.optionals stdenv.hostPlatform.isLinux [
autoPatchelfHook
@@ -53,11 +56,16 @@ stdenv.mkDerivation {
install -m755 agy_acp_server.par $out/bin/agy_acp_server.par
install -m555 localharness_external $out/bin/localharness_external
ln -s $out/bin/agy_acp_server.par $out/bin/agy_acp_server
ln -s agy_acp_server.par $out/bin/agy_acp_server
runHook postInstall
'';
postFixup = ''
wrapProgram $out/bin/agy_acp_server.par \
--set-default SSL_CERT_FILE "${cacert}/etc/ssl/certs/ca-bundle.crt"
'';
meta = {
description = "Google's AI coding agent. Official ACP server powered by Antigravity";
homepage = "https://antigravity.google/docs/ide/extensions";

View File

@@ -11,10 +11,7 @@
doxygen,
dpkg,
gettext,
gnutls,
gtest,
libgcrypt,
libgpg-error,
libseccomp,
libtasn1,
libxslt,
@@ -75,10 +72,7 @@ stdenv.mkDerivation (finalAttrs: {
curl
db
dpkg
gnutls
gtest
libgcrypt
libgpg-error
libseccomp
libtasn1
lz4
@@ -96,7 +90,6 @@ stdenv.mkDerivation (finalAttrs: {
(lib.cmakeOptionType "filepath" "BERKELEY_INCLUDE_DIRS" "${lib.getDev db}/include")
(lib.cmakeOptionType "filepath" "DPKG_DATADIR" "${dpkg}/share/dpkg")
(lib.cmakeOptionType "filepath" "DOCBOOK_XSL" "${docbook_xsl}/share/xml/docbook-xsl")
(lib.cmakeOptionType "filepath" "GNUTLS_INCLUDE_DIR" "${lib.getDev gnutls}/include")
(lib.cmakeFeature "DROOT_GROUP" "root")
(lib.cmakeBool "USE_NLS" withNLS)
(lib.cmakeBool "WITH_DOC" withDocs)

View File

@@ -39,13 +39,13 @@
stdenv.mkDerivation (finalAttrs: {
pname = "art";
version = "1.26.8";
version = "1.26.9";
src = fetchFromGitHub {
owner = "artraweditor";
repo = "ART";
tag = finalAttrs.version;
hash = "sha256-kgDmGxdmKK/19vxruTQ0845iaRSWthlkYoeAFVaju2U=";
hash = "sha256-C4mA16FX+3LUeGtDaJnQdcVFoKpPGC4asYv0GKjbTJo=";
};
# Fix the build with CMake 4.

View File

@@ -16,7 +16,7 @@
buildNpmPackage (finalAttrs: {
pname = "aurral";
version = "2.8.0";
version = "2.9.0";
__structuredAttrs = true;
@@ -24,7 +24,7 @@ buildNpmPackage (finalAttrs: {
owner = "lklynet";
repo = "aurral";
tag = "v${finalAttrs.version}";
hash = "sha256-Ceo5CHIGa+98XFLazqmAyAV64rzDYqB0gvJ95AKwfUk=";
hash = "sha256-pwk+efWL0dfvKiobRmGXgPtvunpRDOVbtxohbJamVqY=";
};
# Specifies files to package leveraging npm & nix hooks. Not used by upstream.
@@ -33,7 +33,7 @@ buildNpmPackage (finalAttrs: {
./package.json.patch
];
npmDepsHash = "sha256-Qa/TcKzMEY/w8FWKMiHUeqVB9cMxxWtEwF30y0nndkg=";
npmDepsHash = "sha256-NVz5eqDDtMBKiTDl3aX0pHBYGTcYal8lmCf8mbKu31I=";
nodejs = nodejs_26;

View File

@@ -1,36 +1,36 @@
--- a/CMakeLists.txt
+++ b/CMakeLists.txt
@@ -110,7 +110,7 @@
set(DLIB_USE_MKL_FFT OFF)
set(DLIB_USE_FFMPEG OFF)
set(CMAKE_CXX_STANDARD 17) # dlib must be compiled with C++17
- FetchContent_MakeAvailable(dlib)
+ add_subdirectory(dlib)
set(CMAKE_CXX_STANDARD 20) # continue with C++20
@@ -75,7 +75,7 @@
set(DLIB_USE_MKL_FFT OFF)
set(DLIB_USE_FFMPEG OFF)
set(CMAKE_CXX_STANDARD 17) # dlib must be compiled with C++17
- FetchContent_MakeAvailable(dlib)
+ add_subdirectory(dlib)
set(CMAKE_CXX_STANDARD 20) # continue with C++20
endif()
add_compile_definitions("DLIB_AVAILABLE")
endif()
@@ -141,7 +141,6 @@
@@ -106,7 +106,6 @@
thread_pool
GIT_REPOSITORY https://github.com/bshoshany/thread-pool
)
- FetchContent_MakeAvailable(thread_pool)
set(BS_THREAD_POOL_INCLUDE_DIR ${thread_pool_SOURCE_DIR}/include)
endif()
if(USE_SYSTEM_GCEM)
@@ -151,7 +150,6 @@
@@ -121,7 +120,6 @@
gcem
GIT_REPOSITORY https://github.com/klytje/gcem
)
- FetchContent_MakeAvailable(GCEM)
set(GCEM_INCLUDE_DIR ${gcem_SOURCE_DIR}/include)
endif()
set_property(
@@ -160,7 +158,9 @@
@@ -131,7 +129,9 @@
)
unset(compile_options)
-include_directories(${thread_pool_SOURCE_DIR}/include ${gcem_SOURCE_DIR}/include ${backward_SOURCE_DIR})
+include_directories(${backward_SOURCE_DIR})
-include_directories(${BS_THREAD_POOL_INCLUDE_DIR} ${GCEM_INCLUDE_DIR} ${BACKWARD_INCLUDE_DIR})
+include_directories(${BACKWARD_INCLUDE_DIR})
+add_subdirectory(gcem)
+include_directories(thread_pool/include gcem/include)

View File

@@ -68,13 +68,13 @@ let
in
stdenv.mkDerivation (finalAttrs: {
pname = "ausaxs";
version = "1.2.8";
version = "1.3.0";
src = fetchFromGitHub {
owner = "AUSAXS";
repo = "AUSAXS";
tag = "v${finalAttrs.version}";
hash = "sha256-elzkFzLyECiDuA8TokA8/wUYBZisKY1IRxQmikMn2f4=";
hash = "sha256-H3lozYImLNwQ7FYz3idgBX/o3miSyUxdZ+ZlJQP2Xms=";
};
patches = [ ./cmake-no-fetchcontent.patch ];

View File

@@ -10,16 +10,16 @@
rustPlatform.buildRustPackage rec {
pname = "avbroot";
version = "3.34.0";
version = "3.34.1";
src = fetchFromGitHub {
owner = "chenxiaolong";
repo = "avbroot";
tag = "v${version}";
hash = "sha256-uukbK8RANF708tawY8k6u5RPqqt4XXv0joRD2vLVZ0Q=";
hash = "sha256-iw06eQOSbWQBIBqmmQ/07stGLIDv41odD3yf7ODoLBU=";
};
cargoHash = "sha256-Az4w1JNJsbl/vs+lpVcrXg4Yu1Cg2Lc50/X4Kqg/M1Q=";
cargoHash = "sha256-63fmeZMazvSRjXqdO0l+go98DIWER60U3bDSp9jc+kQ=";
nativeBuildInputs = [
pkg-config

View File

@@ -1,29 +1,16 @@
{
lib,
stdenv,
fetchFromGitHub,
fetchNpmDeps,
nodejs,
npmHooks,
buildNpmPackage,
dart-sass,
makeBinaryWrapper,
python313,
fetchFromGitHub,
ffmpeg,
unar,
nixosTests,
lib,
nix-update-script,
nixosTests,
nodejs_22,
python313Packages,
unar,
}:
let
python = python313.withPackages (ps: [
ps.lxml
ps.numpy
ps.pillow
ps.psycopg2
ps.setuptools
ps.webrtcvad
]);
in
stdenv.mkDerivation (finalAttrs: {
python313Packages.buildPythonApplication (finalAttrs: {
pname = "bazarr";
version = "1.6.0";
@@ -34,41 +21,28 @@ stdenv.mkDerivation (finalAttrs: {
hash = "sha256-r3H0JEcGYzQOTHVR/zONmtOIF+LnJd+qn2pcAj8vdOA=";
};
npmRoot = "frontend";
npmDeps = fetchNpmDeps {
name = "${finalAttrs.pname}-${finalAttrs.version}-npm-deps";
inherit (finalAttrs) src;
sourceRoot = "${finalAttrs.src.name}/frontend";
hash = "sha256-cb++eqVtKZer9B1rwJ9WR4mZImnASeFU2MojgXAPWf4=";
};
nativeBuildInputs = [
nodejs
npmHooks.npmConfigHook
dart-sass
makeBinaryWrapper
dependencies = with python313Packages; [
lxml
numpy
pillow
psycopg2
setuptools
webrtcvad
];
buildPhase = ''
runHook preBuild
pushd frontend
# sass-embedded's bundled Dart compiler won't run in the sandbox; use nixpkgs' dart-sass.
# https://github.com/sass/embedded-host-node/issues/334
substituteInPlace node_modules/sass-embedded/dist/lib/src/compiler-path.js \
--replace-fail 'compilerCommand = (() => {' 'compilerCommand = (() => { return ["dart-sass"];'
npm run build
popd
runHook postBuild
'';
__structuredAttrs = true;
dontBuild = true;
dontWrapPythonPrograms = true;
pyproject = false;
installPhase = ''
runHook preInstall
mkdir -p $out/share/bazarr/frontend
cp -r bazarr bazarr.py custom_libs libs migrations $out/share/bazarr/
cp -r frontend/build $out/share/bazarr/frontend/build
mkdir -p $out/lib/bazarr/frontend
cp -r bazarr bazarr.py custom_libs libs migrations $out/lib/bazarr/
cp -r ${finalAttrs.passthru.frontend} $out/lib/bazarr/frontend/build
printf '%s' "${finalAttrs.version}" > $out/share/bazarr/VERSION
printf '%s' "${finalAttrs.version}" > $out/lib/bazarr/VERSION
printf '%s' "${
lib.generators.toKeyValue { } {
@@ -77,29 +51,62 @@ stdenv.mkDerivation (finalAttrs: {
packageversion = finalAttrs.version;
packageauthor = "nixpkgs";
}
}" > $out/share/bazarr/package_info
}" > $out/lib/bazarr/package_info
makeWrapper ${lib.getExe python} $out/bin/bazarr \
--add-flags $out/share/bazarr/bazarr.py \
makeWrapper ${lib.getExe python313Packages.python} $out/bin/bazarr \
--add-flags $out/lib/bazarr/bazarr.py \
--prefix PATH : ${
lib.makeBinPath [
ffmpeg
unar
]
}
} \
--prefix PYTHONPATH : ${python313Packages.makePythonPath finalAttrs.passthru.dependencies} \
--set PYTHONNOUSERSITE true
runHook postInstall
'';
passthru = {
frontend = buildNpmPackage {
inherit (finalAttrs) src version;
pname = "${finalAttrs.pname}-frontend";
sourceRoot = "${finalAttrs.src.name}/frontend";
nodejs = nodejs_22;
npmDepsHash = "sha256-cb++eqVtKZer9B1rwJ9WR4mZImnASeFU2MojgXAPWf4=";
nativeBuildInputs = [ dart-sass ];
# sass-embedded's bundled Dart compiler won't run in the sandbox; use nixpkgs' dart-sass.
# https://github.com/sass/embedded-host-node/issues/334
preBuild = ''
substituteInPlace node_modules/sass-embedded/dist/lib/src/compiler-path.js \
--replace-fail 'compilerCommand = (() => {' 'compilerCommand = (() => { return ["dart-sass"];'
'';
installPhase = ''
runHook preInstall
mv build $out
runHook postInstall
'';
dontFixup = true;
};
tests.smoke-test = nixosTests.bazarr;
updateScript = nix-update-script { };
updateScript = nix-update-script {
extraArgs = lib.cli.toCommandLineGNU { } { subpackage = "frontend"; };
};
};
meta = {
description = "Subtitle manager for Sonarr and Radarr";
homepage = "https://www.bazarr.media/";
changelog = "https://github.com/morpheus65535/bazarr/releases/tag/v${finalAttrs.version}";
changelog = "https://github.com/morpheus65535/bazarr/releases/tag/${finalAttrs.src.tag}";
sourceProvenance = with lib.sourceTypes; [ fromSource ];
license = lib.licenses.gpl3Only;
maintainers = with lib.maintainers; [

View File

@@ -18,11 +18,6 @@ stdenvNoCC.mkDerivation (finalAttrs: {
nativeBuildInputs = [ _7zz ];
# 7zz extracts APFS alternate data streams as separate files, breaking the seal
postUnpack = ''
find . -name "*:com.apple.*" -delete
'';
installPhase = ''
runHook preInstall

View File

@@ -15,16 +15,16 @@
buildGoModule (finalAttrs: {
pname = "beads";
version = "1.2.2";
version = "1.3.0";
src = fetchFromGitHub {
owner = "gastownhall";
repo = "beads";
tag = "v${finalAttrs.version}";
hash = "sha256-HSZ1z4WaHQDPomW6nNs8iUnld36BuHnOVaODD5mxY00=";
hash = "sha256-QryUnK04c9Wm9/VgWoaOJW9M2HoZVZzSDMSMBtjKiyc=";
};
vendorHash = "sha256-WWEwGpCwMPD7jaz02zN745RQQqYTQttehbcT3J9hayM=";
vendorHash = "sha256-DFS9dSZX3v3q3Yk6+bfnoEN1uIULs2h8t/P9W2tk6l8=";
subPackages = [ "cmd/bd" ];

View File

@@ -6,21 +6,23 @@
python3,
bzip2,
xz,
versionCheckHook,
}:
stdenv.mkDerivation rec {
stdenv.mkDerivation (finalAttrs: {
pname = "bedtools";
version = "2.31.1";
__structuredAttrs = true;
strictDeps = true;
src = fetchFromGitHub {
owner = "arq5x";
repo = "bedtools2";
rev = "v${version}";
sha256 = "sha256-rrk+FSv1bGL0D1lrIOsQu2AT7cw2T4lkDiCnzil5fpg=";
tag = "v${finalAttrs.version}";
hash = "sha256-rrk+FSv1bGL0D1lrIOsQu2AT7cw2T4lkDiCnzil5fpg=";
};
strictDeps = true;
nativeBuildInputs = [
python3
];
@@ -31,16 +33,28 @@ stdenv.mkDerivation rec {
xz
];
cxx = if stdenv.cc.isClang then "clang++" else "g++";
cc = if stdenv.cc.isClang then "clang" else "gcc";
buildPhase = "make prefix=$out SHELL=${stdenv.shell} CXX=${cxx} CC=${cc} -j $NIX_BUILD_CORES";
installPhase = "make prefix=$out SHELL=${stdenv.shell} CXX=${cxx} CC=${cc} install";
enableParallelBuilding = true;
makeFlags = [
"prefix=${placeholder "out"}"
# The Makefiles hardcode `CC = gcc` and `CXX = g++`.
"CC=${stdenv.cc.targetPrefix}cc"
"CXX=${stdenv.cc.targetPrefix}c++"
];
nativeInstallCheckInputs = [
versionCheckHook
];
doInstallCheck = true;
meta = {
description = "Powerful toolset for genome arithmetic";
license = lib.licenses.gpl2;
homepage = "https://bedtools.readthedocs.io/en/latest/";
downloadPage = "https://github.com/arq5x/bedtools2";
changelog = "https://github.com/arq5x/bedtools2/releases/tag/${finalAttrs.src.tag}";
license = lib.licenses.mit;
mainProgram = "bedtools";
maintainers = with lib.maintainers; [ jbedo ];
platforms = lib.platforms.unix;
};
}
})

View File

@@ -3,7 +3,7 @@
fetchFromGitHub,
rustPlatform,
fetchPnpmDeps,
pnpm,
pnpm_11,
pnpmConfigHook,
nodejs,
openssl,
@@ -11,6 +11,9 @@
versionCheckHook,
nix-update-script,
}:
let
pnpm = pnpm_11;
in
rustPlatform.buildRustPackage (finalAttrs: {
pname = "bichon";
version = "2.0.3";
@@ -27,6 +30,7 @@ rustPlatform.buildRustPackage (finalAttrs: {
pnpmDeps = fetchPnpmDeps {
inherit (finalAttrs) pname version src;
inherit pnpm;
sourceRoot = "${finalAttrs.src.name}/web";
fetcherVersion = 4;
hash = "sha256-Ax8z1sjt8v6XOenhw7eRuEEo0huPv9fbcfzqc8RxJEc=";

View File

@@ -26,7 +26,7 @@
}:
let
version = "2.1.12";
version = "2.1.13";
jdk = zulu25.override { enableJavaFX = true; };
@@ -77,7 +77,7 @@ stdenv.mkDerivation (finalAttrs: {
# nixpkgs-update: no auto update
src = fetchurl {
url = "https://github.com/bisq-network/bisq2/releases/download/v${version}/Bisq-${version}.deb";
hash = "sha256-oLNvCc52lkp/efh7ehnV/0JjkY5+oKv0A2Dj0xtBK7Y=";
hash = "sha256-B708w9aC5ERXCE1QnIMPkvl8clJbhyKW7+GC7Fdkyno=";
# Verify the upstream Debian package prior to extraction.
# See https://bisq.wiki/Bisq_2#Installation
@@ -102,7 +102,7 @@ stdenv.mkDerivation (finalAttrs: {
signature = fetchurl {
url = "https://github.com/bisq-network/bisq2/releases/download/v${version}/Bisq-${version}.deb.asc";
hash = "sha256-dydNfzk8EMUPGP9W6GI5H0iZA+SCP9PHw+RbWCmMlTM=";
hash = "sha256-8FQ/HVWYENCbqtG4MD40QF6eQp3iUyqPNfZkRMAUc2A=";
};
nativeBuildInputs = [

View File

@@ -119,12 +119,12 @@ in
stdenv'.mkDerivation (finalAttrs: {
pname = "blender";
version = "5.2.1";
version = "5.2.2";
src = fetchzip {
name = "source";
url = "https://download.blender.org/source/blender-${finalAttrs.version}.tar.xz";
hash = "sha256-LXdJZDJoO9/yjkxn6qT42jv0YRpiwCiIWWGKubs3VLI=";
hash = "sha256-r4XT6ZoVwMXieauP5jOC0DdfNOilTmkGu8JPMAFjuDs=";
};
patches = [

View File

@@ -23,13 +23,13 @@
stdenv.mkDerivation rec {
pname = "bpftrace";
version = "0.26.1";
version = "0.27.0";
src = fetchFromGitHub {
owner = "bpftrace";
repo = "bpftrace";
rev = "v${version}";
hash = "sha256-h3gFnQq48oM5uK07xrykOCSJxhr6dqcyVUDoIKIRREY=";
hash = "sha256-wYDSx2WngWS4Ucj82hLO0G46tiXhqskhMjmv7NuUVfw=";
};
buildInputs = with llvmPackages; [

View File

@@ -29,7 +29,7 @@
qt6,
stepcode,
tcl,
tinygltf,
tinygltf_2,
tk,
zlib,
@@ -187,12 +187,21 @@ stdenv.mkDerivation (finalAttrs: {
build/bext/tktable/tktable/CMake/FindTCL.cmake \
build/bext/tkhtml/tkhtml/CMake/FindTCL.cmake
''
# remove a failing test
# remove failing tests
+ lib.optionalString stdenv.hostPlatform.isAarch64 ''
substituteInPlace src/libbu/tests/CMakeLists.txt \
--replace-fail \
"brlcad_add_test(NAME bu_color_to_rgb_floats_1 COMMAND bu_test test_color 4 192,78,214)" \
""
''
# This test opens 16k mapped files from every CPU, each open being a linear scan
# under one global semaphore, so its runtime explodes on many-core machines and
# blows past ctest's 1500s default timeout on our 80-core aarch64 builders.
+ lib.optionalString stdenv.hostPlatform.isAarch64 ''
substituteInPlace src/libbu/tests/CMakeLists.txt \
--replace-fail \
"brlcad_add_test(NAME bu_mappedfile_parallel_16384 COMMAND bu_test test_mappedfile 2 16384)" \
""
'';
nativeBuildInputs = [
@@ -224,7 +233,7 @@ stdenv.mkDerivation (finalAttrs: {
pugixml
stepcode
tcl
tinygltf
tinygltf_2
tk
zlib
]

View File

@@ -6,16 +6,16 @@
buildGoModule (finalAttrs: {
pname = "brook";
version = "20240606";
version = "20270101";
src = fetchFromGitHub {
owner = "txthinking";
repo = "brook";
rev = "v${finalAttrs.version}";
sha256 = "sha256-rfCqYI0T/nbK+rlPGl5orLo3qHKITesdFNtXc/ECATA=";
sha256 = "sha256-OIuEJFGOUkvHjxI4FPKWU65VFvgXG0+pu9giGJXYS0w=";
};
vendorHash = "sha256-dYiifLUOq6RKAVSXuoGlok9Jp8jHmbXN/EjQeQpoqWw=";
vendorHash = "sha256-974jdNwpQbdTbYjY/6KaicwNclizeIQXfyMZI3v/9aA=";
meta = {
homepage = "https://github.com/txthinking/brook";

View File

@@ -6,6 +6,7 @@
pkg-config,
openssl,
nix-update-script,
stdenv, # for meta.broken
}:
let
# That is from cargoDeps/risc0-circuit-recursion/build.rs
@@ -44,6 +45,8 @@ rustPlatform.buildRustPackage (finalAttrs: {
passthru.updateScript = nix-update-script { };
meta = {
# last successful hydra build on darwin was in 2024
broken = stdenv.hostPlatform.isDarwin;
description = "Cargo extension to help create, manage, and test RISC Zero projects";
mainProgram = "cargo-risczero";
homepage = "https://risczero.com";

View File

@@ -61,6 +61,8 @@ rustPlatform.buildRustPackage (finalAttrs: {
};
meta = {
# last successful hydra build on darwin was in 2024
broken = stdenv.hostPlatform.isDarwin;
description = "GUI for Cargo";
mainProgram = "cargo-ui";
homepage = "https://github.com/slint-ui/cargo-ui";

Some files were not shown because too many files have changed in this diff Show More