1162 Commits
Author SHA1 Message Date
Ryan HughesandGitHub 6774df1001 Merge pull request #259 from omacom/auto/sync-upstream
chore: sync upstream releases
2026-09-01 10:38:15 -04:00
Ryan HughesandGitHub 8550bd3124 Merge pull request #258 from omacom/auto/sync-aur
chore: sync AUR packages
2026-09-01 10:38:04 -04:00
dhhandgithub-actions[bot] 1bf35283bc chore: sync upstream releases 2026-09-01 11:48:49 +00:00
ryanrhughesandgithub-actions[bot] a99c58d282 chore: sync AUR packages 2026-09-01 11:19:17 +00:00
Ryan HughesandGitHub a3d150e2b0 Merge pull request #253 from omacom/add-link-studio-opr
Add Link Studio to the fast ring
2026-09-01 02:01:09 -04:00
Ryan Hughes 2fad766013 Add Link Studio to the fast ring
Package Link Studio 1.0.2 with its AUR-only MediaPipe and sounddevice dependencies. Wire Link Studio to GitHub release checksums, keep all three packages on the fast ring, and make MediaPipe's Bazel bootstrap a checksummed makepkg source.
2026-09-01 01:55:23 -04:00
Ryan HughesandGitHub c6e34f7949 Merge pull request #252 from omacom/add-omakade-opr
Add Omakade to the fast ring
2026-09-01 01:51:10 -04:00
Ryan Hughes a42235e1a5 Add Omakade to the fast ring
Build the upstream 1.2.0 source release for x86_64 and follow stable GitHub releases through the published SHA256SUMS manifest.
2026-09-01 01:25:44 -04:00
Ryan HughesandGitHub 899d5030ce Merge pull request #231 from omacom/auto/sync-upstream
chore: sync upstream releases
2026-09-01 01:24:52 -04:00
Ryan HughesandGitHub eace5f13a9 Merge pull request #230 from omacom/auto/sync-aur
chore: sync AUR packages
2026-09-01 01:24:29 -04:00
Ryan HughesandGitHub 9995058806 Merge pull request #235 from jethrojones/add-omapresent-package
Add omapresent Markdown presentation package
2026-09-01 01:22:08 -04:00
Ryan Hughes e934aa9ee2 Mark omapresent for fast release ring 2026-09-01 01:21:34 -04:00
dhhandgithub-actions[bot] 68bdaff26e chore: sync upstream releases 2026-09-01 05:20:42 +00:00
ryanrhughesandgithub-actions[bot] 02e8df179e chore: sync AUR packages 2026-09-01 04:05:40 +00:00
Jethro Jones e5fe2690ce Update omapresent to 0.1.3 2026-08-31 20:23:13 -07:00
Ryan Hughes 28a4cfc662 Make release publication fail closed 2026-08-30 23:49:27 -04:00
Ryan Hughes 246eea9620 Fix Hermes Desktop keyring detection on Hyprland
Default Electron to the gnome-libsecret password store so Hermes can use GNOME Keyring for secure remote tokens. Declare libsecret as a runtime dependency.
2026-08-30 23:49:02 -04:00
Ryan Hughes 4c41157163 Release omarchy 4.0.2 2026-08-30 23:22:02 -04:00
Jethro Jones 3b96ebad44 Update omapresent to 0.1.2 2026-08-30 15:48:28 -07:00
Ryan Hughes 8bfa054676 Cut the rc ISO under its numbered candidate version
cmd_rc handed maybe_iso the bare train version, so omarchy-iso-release
named every candidate omarchy-X.Y.Z-rc.iso — rc2 uploaded over rc1's
URL. Pass the pinned rcN version instead; paired with omarchy-iso's
f9be60b, the artifact becomes omarchy-4.0.2rc2.iso. The ship path
keeps passing the final version.
2026-08-30 17:15:52 -04:00
Ryan Hughes cb84ec0e69 Pin omarchy 4.0.2rc2 on master so edge carries it
Edge is the channel the 4.0.2 RC ISOs point pacman at until the rc-channel
migration lands, but edge only carried omarchy 4.0.1 — older than the
installed 4.0.2rc1, so those installs never saw an upgrade. Bumping master's
pin lets the normal edge pipeline build and publish 4.0.2rc2, whose migration
repoints [omarchy] at the rc channel.

Stable is unaffected: pinned packages never build for stable
(package_builds_for_mirror), it only receives them via the rc->stable advance
at ship time.

(cherry picked from rc-branch pin commit 11767d6)
2026-08-30 16:26:37 -04:00
Ryan Hughes 82b28bb6f3 Bust the CDN cache when reading published channel dbs
pkgs.omarchy.org sits behind Cloudflare, and right after a sync the
plain db URL keeps serving the previous file from the edge cache
(observed: a cache HIT with age 900s+ returning the pre-release db).
That made status report the old version, wait_for_published poll a
frozen file for its full timeout, and would let RC auto-numbering
count from last release's versions. A unique query string per fetch
skips the cached entry.
2026-08-30 13:35:44 -04:00
Ryan Hughes bde81c757c Forward OMARCHY_RC_PINS into the build container
package_builds_for_mirror gates pinned packages' rc builds on
OMARCHY_RC_PINS, but that check runs inside the container via
build.sh, and docker run only forwarded ARCH/MIRROR/PACKAGES —
so the rc trigger's pinned builds were always skipped as 'not
configured for direct rc builds'.
2026-08-30 13:27:32 -04:00
Ryan Hughes 00dd64db61 Accept multiple package names in bin/release --package
The rc trigger passes '--package omarchy omarchy-settings', and bin/build
already consumes every name up to the next --option, but bin/release only
took one — the second name fell through to 'Unknown option' and the
release exited before building anything. Parse greedily, like bin/build.
2026-08-30 13:25:13 -04:00
Ryan HughesandGitHub 4a87a738b2 Number asdcontrol's sudoers policy and add it to the fast ring (#243)
* Use a numbered asdcontrol sudoers priority

* Add asdcontrol to the fast ring
2026-08-30 13:02:46 -04:00
Ryan HughesandGitHub 30d03c4d26 Scope asdcontrol's passwordless sudo grant (#242)
Ship the least-privilege rule with asdcontrol so authorization follows the package lifecycle. Install it after older broad rules for safe staggered upgrades.
2026-08-30 12:59:21 -04:00
Ryan Hughes cf39173553 Revert "Add hey-cli to the fast ring"
This reverts commit 3bfc267a0e.
2026-08-29 13:36:56 -04:00
Ryan Hughes 3bfc267a0e Add hey-cli to the fast ring 2026-08-29 12:09:48 -04:00
Ryan HughesandGitHub 6daa7c90e4 Stage CUPS authorization as settings override (#237) 2026-08-29 02:19:29 -04:00
Jethro JonesandClaude Opus 5 63b57a773b Update omapresent to 0.1.1
Picks up the audience-window fix released in v0.1.1: the audience view is now
an independent native Wayland top-level, so a compositor or share portal can
offer it on its own instead of only exposing the editor window. Without it,
screen sharing a deck on a call does not work correctly.

pkgver carries the source URL, which interpolates it, so the package now builds
the immutable v0.1.1 tag archive. The checksum is that archive's sha256.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01HzjoHuTSiuzFsMuJwnuQ7c
2026-08-28 20:52:28 -07:00
Ryan Hughes 391b5a201f t3code-patched-bin: 0.0.35-5, rebuilt from v0.0.35-omarchy.5 2026-08-28 22:33:11 -04:00
Ryan HughesandGitHub 4776db7f31 Merge pull request #213 from jeremydixon22/fix/asusctl-6.4.0
Update asusctl to 6.4.0
2026-08-28 18:31:57 -04:00
Ryan Hughes f48d528ca4 t3code-patched-bin 0.0.35-4: rebuild after review
Same upstream release, so only pkgrel moves. Built from v0.0.35-omarchy.4,
which carries the fixes from nine rounds of review on the upstream PR: the
CLI no longer overwrites an unreadable settings.json, setting a
single-appearance theme actually switches the client, reconnects no longer
flash published themes back to stock, and already-shipped clients keep
their config subscription instead of losing it to an unknown event.
2026-08-28 17:46:51 -04:00
Jethro Jones 86d5dd3035 Add omapresent Markdown presentation package 2026-08-28 14:01:18 -07:00
Ryan Hughes a8c9e2982e Stop pick from hiding long-lived PRs behind a creation-ordered window
`gh pr list` orders by creation date, so `--limit 30` cut the candidate set by
when PRs were opened, not when they merged. The `sort_by(.mergedAt)` that
followed only reordered whatever survived that cut. A PR opened before the
window but merged inside it — exactly the kind a release branch still needs —
never reached the already-on-branch check at all. #7649 and #7709 were both
missing from v4-0-2's list for this reason.

The window is now bounded by the branch point instead of a count: pull a wide
page and keep what merged after the merge-base's commit date, since anything
merged into the dev branch before the release branch left it is already there
by ancestry. v4-0-2 went from 11 candidates to 31.

Widening it surfaced a second gap. A change re-applied by hand carries neither
a PR number nor a cherry-pick trailer, so already_on_branch could not see it
and offered it again (#6939, applied as 33d7363c). It now also compares the PR
title against the branch's subjects, with any trailing "(#N)" stripped.
2026-08-28 15:13:58 -04:00
Ryan Hughes f84c89d8b3 t3code-patched-bin: record the full artifact-shipping recipe
Comment-only. The .env requirement and the fact that only a PKGBUILD
version change triggers the build server both bit us once each; the
recipe now lives where the next rebuild starts.
2026-08-28 01:32:02 -04:00
Ryan Hughes dd8fd2fed7 t3code-patched-bin 0.0.35-3: bake T3 Connect public config
The r2 artifact was built without the public Connect configuration official
artifacts carry (relay URL, Clerk publishable key, CLI OAuth client id), so
Connect prompted for login with no way to log in. Same code, rebuilt with
the configuration recovered from the published npm t3 package.
2026-08-28 01:27:55 -04:00
Ryan Hughes 267dbdefaa t3code-patched-bin 0.0.35-2: post-review rebuild, fast ring
Rebuilt from v0.0.35-omarchy.2 of the environment-theme branch: the stream
event is capability-gated so old clients keep their config subscription,
republish dedupe is structural, the connect stream is gap-free, default
adoption is scoped per environment and keyed on the set generation, and
reserved theme ids cannot be published over. Joins the fast ring like
t3code-bin so patch rebuilds reach machines quickly.
2026-08-28 01:07:37 -04:00
Ryan Hughes 0fb1c09041 t3code-patched-bin: T3 Code with the environment-theme patches
Built from the environment-theme branch of ryanrhughes/t3code (tag
v0.0.35-omarchy.1) until upstream ships it: the app follows themes the
machine publishes into its state directory -- Omarchy retints it live --
and t3 theme set works. Same packaging as t3code-bin, conflicts with it,
and the next upstream release supersedes it after a rebase.
2026-08-27 23:55:15 -04:00
Ryan Hughes 273dd810da t3code-bin: ship the bundled server CLI as /usr/bin/t3
The desktop bundle already contains the full server -- the same entrypoint
npm's t3 package runs -- so a launcher that starts it through the bundled
Electron as Node puts the CLI on PATH without a second runtime. Upstream
only distributes the CLI via npm, which Omarchy's install scripting cannot
assume.
2026-08-27 23:55:15 -04:00
Ryan HughesandGitHub 01a95d9c28 Merge pull request #217 from fvdb/update-grok-bot-0.29.0
Update grok-bot to 0.29.0
2026-08-27 23:27:32 -04:00
Ryan HughesandGitHub 02d0c4ccd1 Merge pull request #225 from omacom/auto/sync-upstream
chore: sync upstream releases
2026-08-27 23:27:03 -04:00
Ryan HughesandGitHub 9ebab47ed4 Merge pull request #224 from omacom/auto/sync-aur
chore: sync AUR packages
2026-08-27 23:26:50 -04:00
dhhandgithub-actions[bot] 26ad901df7 chore: sync upstream releases 2026-08-27 22:26:09 +00:00
ryanrhughesandgithub-actions[bot] 84226bd3d1 chore: sync AUR packages 2026-08-27 21:58:26 +00:00
Ryan Hughes dbb5e72051 Build fast-ring for rc as rc, instead of copying stable's artifacts
The rc channel's Arch base can sit anywhere between stable's snapshot and
edge's, so a package built against stable's libraries is not necessarily
correct for rc. Copying stable's fast-ring artifacts into rc therefore shipped
possibly-mislinked packages to RC testers. Fast-ring packages now build
natively for all three channels, each in its own image against its own base
mirror, and the stable release's replication step is gone.

That required separating 'may be built here' from 'whose version wins'. The
release pair is now marked "pinned": its version is set per release on the rc
branch, so it builds for rc only from that branch's worktree
(OMARCHY_RC_PINS=1, set by omarchy-release rc) — master's shipped pins can
never overwrite an in-flight RC, even though check-versions now discovers rc
work like it does for edge and stable.
2026-08-27 12:39:29 -04:00
Ryan Hughes 9fd75fc3ba Report the stable publish before the rc parity copy, and quiet the copy
The fast-ring replication announced itself before the release that triggered
it, so chat read as though an rc job had run on its own — the reverse of what
happened. The publish report now fires first, and the replication says only
how many packages were kept in parity: the release report immediately above it
already lists them by name.
2026-08-27 12:21:41 -04:00
David Heinemeier HanssonandGitHub 8dedb1d85c Merge pull request #219 from omacom-io/aether-4.29.6
Update aether to 4.29.6
2026-08-27 17:57:06 +02:00
OmabotandClaude Opus 5 b7c51f84d4 Update aether to 4.29.6
Synced from the AUR at 04592d5. Two upstream releases land together: 4.29.5
hardened the aether protocol imports and moved the repository links from
bjarneo to omacom-io, which is why the url and every source line change here
as well; 4.29.6 disables WebView GPU acceleration on Linux. The packaging
itself is untouched between the two -- only pkgver and the checksums differ --
so taking HEAD rather than pinning 4.29.5 costs nothing and carries the
hardening either way.

aether is fast ring, so this reaches stable without an edge-to-stable
migration once it is built for that mirror.

Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com>
2026-08-27 15:13:19 +00:00
Frank van den Brink 01226e6e66 Update grok-bot to 0.29.0
Pin the official Linux .deb to Cursor stable 0.29.0 (commit f0e5bfce).
Binary, icons, and grokbot:// handler are unchanged from 0.24.0; keep the
Wayland wrapper and /usr/bin/sand compat symlink.

Linux still has no update feed. Leave pinning to update-pkgver.sh.
2026-08-27 17:10:00 +02:00