Files
omarchy-pkgs/bin
Ryan Hughes 5777573a84 Harden the provider per Momus review and prove it with offline fixtures
bin/sync-upstream self-test swaps the two network fetches in
helpers/upstream-github.sh for fixture readers and runs the production code
paths: fallback past a quarantined release, draft/prerelease filtering, the
deliberate bypass, unchanged-version and all-quarantined no-update paths,
unusable tags/timestamps and missing checksums failing the sync, {tag} and
{pkgver} asset templates with ./ and * manifest prefixes across both
architectures, the min_release_age backstop verdicts (now a testable
release_age_status function), the duration parser, and manifest validation.

Also fixes from the review: the duration parser forces base-10 arithmetic
(leading zeros no longer parse as octal) and bounds values to nine digits so
no suffix can overflow; jq // treating false as absent can no longer let
"min_release_age": false or "upstream": false slip through as unset; the
release feed page grew to the API maximum of 100 with the bounded search
documented; and the README package-metadata section documents the upstream
block, min_release_age, the bypass, and provider-versus-hook exclusivity.
2026-08-24 20:07:10 -04:00
..
2025-12-13 19:15:34 -05:00
2026-07-13 19:55:23 -04:00
2026-07-13 19:55:23 -04:00
2026-01-10 20:36:21 -05:00
2026-07-13 19:55:23 -04:00
2026-08-14 11:08:39 -04:00
2026-05-08 01:04:52 -04:00
2026-05-08 01:04:52 -04:00
2025-11-10 11:03:39 -05:00
2025-11-10 11:03:39 -05:00
2025-11-10 11:03:39 -05:00