Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

python312Packages.lib4sbom: 0.8.1 -> 0.8.2 #392305

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

r-ryantm
Copy link
Contributor

Automatic update generated by nixpkgs-update tools. This update was made based on information from passthru.updateScript.

meta.description for python312Packages.lib4sbom is: Library to ingest and generate SBOMs

meta.homepage for python312Packages.lib4sbom is: https://github.com/anthonyharrison/lib4sbom

meta.changelog for python312Packages.lib4sbom is: https://github.com/anthonyharrison/lib4sbom/releases/tag/v0.8.2

Updates performed
  • Ran passthru.UpdateScript
To inspect upstream changes
Impact

Checks done


  • built on NixOS
  • The tests defined in passthru.tests, if any, passed
  • found 0.8.2 with grep in /nix/store/9gi646y2ws3lvf0bpzmvxqyn91kbql09-python3.12-lib4sbom-0.8.2
  • found 0.8.2 in filename of file in /nix/store/9gi646y2ws3lvf0bpzmvxqyn91kbql09-python3.12-lib4sbom-0.8.2

Rebuild report (if merged into master) (click to expand)
11 total rebuild path(s)

11 package rebuild(s)

First fifty rebuilds by attrpath

cve-bin-tool
python312Packages.lib4sbom
python312Packages.sbom2dot
python312Packages.sbom4files
python313Packages.lib4sbom
python313Packages.sbom2dot
python313Packages.sbom4files
sbom2dot
sbom4files
sbom4python
Instructions to test this update (click to expand)

Either download from the cache:

nix-store -r /nix/store/9gi646y2ws3lvf0bpzmvxqyn91kbql09-python3.12-lib4sbom-0.8.2 \
  --option binary-caches 'https://cache.nixos.org/ https://nixpkgs-update-cache.nix-community.org/' \
  --option trusted-public-keys '
  nixpkgs-update-cache.nix-community.org-1:U8d6wiQecHUPJFSqHN9GSSmNkmdiFW7GW7WNAnHW0SM=
  cache.nixos.org-1:6NCHdD59X431o0gWypbMrAURkbJ16ZPMQFGspcDShjY=
  '

(The nixpkgs-update cache is only trusted for this store-path realization.)
For the cached download to work, your user must be in the trusted-users list or you can use sudo since root is effectively trusted.

Or, build yourself:

nix-build -A python312Packages.lib4sbom https://github.com/r-ryantm/nixpkgs/archive/ecb6a25146dbca911b9d76b02548953c3f473ba1.tar.gz

Or:

nix build github:r-ryantm/nixpkgs/ecb6a25146dbca911b9d76b02548953c3f473ba1#python312Packages.lib4sbom

After you've downloaded or built it, look at the files and if there are any, run the binaries:

ls -la /nix/store/9gi646y2ws3lvf0bpzmvxqyn91kbql09-python3.12-lib4sbom-0.8.2
ls -la /nix/store/9gi646y2ws3lvf0bpzmvxqyn91kbql09-python3.12-lib4sbom-0.8.2/bin


Pre-merge build results

We have automatically built all packages that will get rebuilt due to
this change.

This gives evidence on whether the upgrade will break dependent packages.
Note sometimes packages show up as failed to build independent of the
change, simply because they are already broken on the target branch.

nixpkgs-review result

Generated using nixpkgs-review.

Command: nixpkgs-review


x86_64-linux

✅ 16 packages built:
  • cve-bin-tool
  • cve-bin-tool.dist
  • python312Packages.lib4sbom
  • python312Packages.lib4sbom.dist
  • sbom2dot (python312Packages.sbom2dot)
  • sbom2dot.dist (python312Packages.sbom2dot.dist)
  • sbom4files (python312Packages.sbom4files)
  • sbom4files.dist (python312Packages.sbom4files.dist)
  • python313Packages.lib4sbom
  • python313Packages.lib4sbom.dist
  • python313Packages.sbom2dot
  • python313Packages.sbom2dot.dist
  • python313Packages.sbom4files
  • python313Packages.sbom4files.dist
  • sbom4python
  • sbom4python.dist

Maintainer pings

cc @teatwig for testing.

Tip

As a maintainer, if your package is located under pkgs/by-name/*, you can comment @NixOS/nixpkgs-merge-bot merge to automatically merge this update using the nixpkgs-merge-bot.


Add a 👍 reaction to pull requests you find important.

@teatwig
Copy link
Member

teatwig commented Mar 25, 2025

See #369188

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants