Watch
1
0
Fork
You've already forked souveraine-lens
0

package: point Lens provenance at Forge

Embed the anonymous source location in both package arches. CI now rejects package metadata that drifts back to a non-public URL.
This commit is contained in:
Fimeg 2026-08-25 20:59:52 -04:00
commit 905318a29d
2 changed files with 5 additions and 1 deletions

View file

@ -161,8 +161,10 @@ jobs:
test -n "$PKG"
NAME=$(bsdtar -xOf "$PKG" .PKGINFO | awk '$1 == "pkgname" { print $3; exit }')
ARCH=$(bsdtar -xOf "$PKG" .PKGINFO | awk '$1 == "arch" { print $3; exit }')
URL=$(bsdtar -xOf "$PKG" .PKGINFO | awk '$1 == "url" { print $3; exit }')
test "$NAME" = souveraine-lens
test "$ARCH" = x86_64
test "$URL" = https://forge.caseytunturi.com/Fimeg/souveraine-lens
python3 "$CONTRACT/tools/validate-distribution.py" \
"$CONTRACT/distribution/manifest.toml" \
--producer souveraine-lens \
@ -287,8 +289,10 @@ jobs:
test -n "$PKG"
NAME=$(bsdtar -xOf "$PKG" .PKGINFO | awk '$1 == "pkgname" { print $3; exit }')
ARCH=$(bsdtar -xOf "$PKG" .PKGINFO | awk '$1 == "arch" { print $3; exit }')
URL=$(bsdtar -xOf "$PKG" .PKGINFO | awk '$1 == "url" { print $3; exit }')
test "$NAME" = souveraine-lens
test "$ARCH" = aarch64
test "$URL" = https://forge.caseytunturi.com/Fimeg/souveraine-lens
python3 "$CONTRACT/tools/validate-distribution.py" \
"$CONTRACT/distribution/manifest.toml" \
--producer souveraine-lens \

View file

@ -9,7 +9,7 @@ pkgver="${LENS_PKGVER:?CI must set LENS_PKGVER}"
pkgrel=1
pkgdesc="A wry mind-graph lens over a git-backed markdown vault"
arch=('x86_64' 'aarch64')
url="https://gitea.wiuf.net/Fimeg/souveraine-lens"
url="https://forge.caseytunturi.com/Fimeg/souveraine-lens"
license=('AGPL-3.0-or-later')
# The wry host links the system webview and GTK; the runtime needs what the
# build links. webkit2gtk-4.1 and gtk3 pull the windowing stack they need.