lol

nixpkgs-review: 2.6.4 -> 2.7.0

+18 -6
+18 -6
pkgs/tools/package-management/nixpkgs-review/default.nix
··· 1 1 { lib 2 2 , python3 3 3 , fetchFromGitHub 4 - , nix 4 + 5 + , bubblewrap 6 + , cacert 5 7 , git 8 + , nix 9 + 10 + , withSandboxSupport ? false 6 11 }: 7 12 8 13 python3.pkgs.buildPythonApplication rec { 9 14 pname = "nixpkgs-review"; 10 - version = "2.6.4"; 15 + version = "2.7.0"; 11 16 12 17 src = fetchFromGitHub { 13 18 owner = "Mic92"; 14 19 repo = "nixpkgs-review"; 15 20 rev = version; 16 - sha256 = "sha256-6vKMaCTilPXd8K3AuLqtYInVyyFhdun0o9cX1WRMmWo="; 21 + sha256 = "sha256-hGOcLrVPb+bSNA72ZfKE9Mjm2dr/qnuaCkjveHXPcws="; 17 22 }; 18 23 19 - makeWrapperArgs = [ 20 - "--prefix" "PATH" ":" "${lib.makeBinPath [ nix git ]}" 21 - ]; 24 + makeWrapperArgs = 25 + let 26 + binPath = [ nix git ] ++ lib.optional withSandboxSupport bubblewrap; 27 + in 28 + [ 29 + "--prefix PATH : ${lib.makeBinPath binPath}" 30 + "--set NIX_SSL_CERT_FILE ${cacert}/etc/ssl/certs/ca-bundle.crt" 31 + # we don't have any runtime deps but nix-review shells might inject unwanted dependencies 32 + "--unset PYTHONPATH" 33 + ]; 22 34 23 35 doCheck = false; 24 36