chore(packages): bump pins to current upstream releases

Refresh every package pin so the overlay stops carrying versions upstream
has moved past, and repair the pins where an automated bump had produced a
version that no longer resolves:

- graphify 0.9.61 -> 1.0.0 and back to tag tracking: the branch-tracking
  update script generated v0.9.77-unstable-<date> for a rev = "v${version}"
  src, a tag that never existed
- radar 1.13.1 -> 1.16.2 (upstream retagged its releases as k8s-ui-v*)
- llama-cpp b9645 -> b11439
- hipengine 0.5.0 -> 0.6.1, traycer 1.3.0 -> 1.4.2, freetoken 0.1.2 -> 0.1.3
- awg-tool 0.4.0, freebuff 0.2.19, kubernetes-mcp-server 0.0.67,
  marmel 0-unstable-2026-10-05, open-code-review 1.12.12,
  ds4 0-unstable-2026-09-20
- version-string normalisation for the branch-tracked packages already at
  their newest commit (g3, haivemind, shardr, skillsmcp)

Every changed src hash was re-fetched and verified. omniroute stays at
3.8.50: 3.8.51 changes its npm lockfile, so its npmDepsHash would have to
be recomputed before the bump is usable.

🤖 Generated with Codebuff
Co-Authored-By: Codebuff <noreply@codebuff.com>
This commit is contained in:
2026-10-06 16:46:26 +03:00
parent 4fe8f68e9b
commit 6013b17aad
16 changed files with 40 additions and 41 deletions
+3 -3
View File
@@ -8,13 +8,13 @@
rustPlatform.buildRustPackage rec { rustPlatform.buildRustPackage rec {
pname = "awg-tool"; pname = "awg-tool";
version = "0.3.0"; version = "0.4.0";
src = fetchFromGitHub { src = fetchFromGitHub {
owner = "Vadim-Khristenko"; owner = "Vadim-Khristenko";
repo = "awg-containers-and-tools"; repo = "awg-containers-and-tools";
rev = "v${version}"; rev = "v${version}";
hash = "sha256-IRi2LPTDLT6qfuolCUHSJWaXTg5pt/kqVlosxqCMQDs="; hash = "sha256-ggQjlHxNY3uXdLkE3CsSjsijFQScaJyCMhaXwASARSg=";
}; };
# awg-core builds ssh2 with vendored-openssl, which compiles libssh2 # awg-core builds ssh2 with vendored-openssl, which compiles libssh2
@@ -24,7 +24,7 @@ rustPlatform.buildRustPackage rec {
perl perl
]; ];
cargoHash = "sha256-7sDpdjvA3kAHtwQ2qmpRPQywmyQBXZzM2ClfLKbGoKc="; cargoHash = "sha256-2Vh9DXn6qdUT6wiITDID09j1iqpTHkZt/mpjAlYFA60=";
# Upstream tests exercise Docker/SSH targets; unit tests are already # Upstream tests exercise Docker/SSH targets; unit tests are already
# covered by the upstream CI before a release is cut. # covered by the upstream CI before a release is cut.
+3 -3
View File
@@ -9,13 +9,13 @@
stdenv.mkDerivation { stdenv.mkDerivation {
pname = "ds4"; pname = "ds4";
version = "0-unstable-2026-09-12"; version = "0-unstable-2026-09-20";
src = fetchFromGitHub { src = fetchFromGitHub {
owner = "antirez"; owner = "antirez";
repo = "ds4"; repo = "ds4";
rev = "bd66c402070042bf0a79ad6ece8242de4c93680c"; rev = "0aaea5a238fb41a35106a551e73c8409dfb751ac";
hash = "sha256-F/MKv3/0Oj8DLa+q6jMtv0wFDgUvii+Xo2f1dPBDg6A="; hash = "sha256-Bo/td1HwVjw6bwz3BDwTP+ZSudkVFCo2aIVK4axvmXg=";
}; };
nativeBuildInputs = [ nativeBuildInputs = [
+4 -4
View File
@@ -9,11 +9,11 @@
}: }:
let let
version = "0.0.174"; version = "0.2.19";
freebuffSrc = fetchurl { freebuffSrc = fetchurl {
url = "https://registry.npmjs.org/freebuff/-/freebuff-${version}.tgz"; url = "https://registry.npmjs.org/freebuff/-/freebuff-${version}.tgz";
hash = "sha256-o767MqjDbhiu+Zy3Jc/43kBNIgLVLEgqC7D3GwtU0hg="; hash = "sha256-vIypYxwCuA/PKpldhwuFVNqwtm4UXZM6xInKZ5A+u9w=";
}; };
pkgTar = fetchurl { pkgTar = fetchurl {
@@ -48,14 +48,14 @@ let
binarySrc = fetchurl { binarySrc = fetchurl {
url = "https://github.com/CodebuffAI/codebuff-community/releases/download/freebuff-v${version}/freebuff-linux-x64.tar.gz"; url = "https://github.com/CodebuffAI/codebuff-community/releases/download/freebuff-v${version}/freebuff-linux-x64.tar.gz";
hash = "sha256-W/+lPhdHxq0a5TWY/JodAuP2hLpCGlLU7E8SoNe+OYA="; hash = "sha256-8EfFlhc6k0fEDws3w4kw1rIPQr5RXZHtekjxwouWW7Q=";
}; };
in in
stdenv.mkDerivation rec { stdenv.mkDerivation rec {
pname = "freebuff"; pname = "freebuff";
version = "0.0.174"; version = "0.2.19";
src = freebuffSrc; src = freebuffSrc;
+2 -2
View File
@@ -81,14 +81,14 @@ let
in in
py.buildPythonApplication (finalAttrs: { py.buildPythonApplication (finalAttrs: {
pname = "freetoken"; pname = "freetoken";
version = "0.1.2"; version = "0.1.3";
pyproject = true; pyproject = true;
src = fetchFromGitHub { src = fetchFromGitHub {
owner = "FlashML-org"; owner = "FlashML-org";
repo = "FreeToken"; repo = "FreeToken";
tag = "v${finalAttrs.version}"; tag = "v${finalAttrs.version}";
hash = "sha256-0MhuubuTjNvtQZxisC2cg1dJeR+A6wZ901H5FRv+l+c="; hash = "sha256-59itjnwDr4P7I/ZLIbkNw9/8CCPvTP7yNWl9ogBnZ3o=";
}; };
# setup.py imports torch.utils.cpp_extension at build time and compiles two # setup.py imports torch.utils.cpp_extension at build time and compiles two
+1 -1
View File
@@ -16,7 +16,7 @@ rustPlatform.buildRustPackage rec {
# Upstream has no git tags or releases; pin main and let nix-update # Upstream has no git tags or releases; pin main and let nix-update
# track the branch. Version shape matches nix-update --version=branch=main # track the branch. Version shape matches nix-update --version=branch=main
# for a tagless repository (package version is 0.1.0 upstream). # for a tagless repository (package version is 0.1.0 upstream).
version = "0.1.0-unstable-2026-09-06"; version = "0-unstable-2026-09-06";
src = fetchFromGitHub { src = fetchFromGitHub {
owner = "dhanji"; owner = "dhanji";
+3 -4
View File
@@ -6,14 +6,14 @@
python3Packages.buildPythonApplication rec { python3Packages.buildPythonApplication rec {
pname = "graphify"; pname = "graphify";
version = "0.9.61"; version = "1.0.0";
pyproject = true; pyproject = true;
src = fetchFromGitHub { src = fetchFromGitHub {
owner = "safishamsi"; owner = "Graphify-Labs";
repo = "graphify"; repo = "graphify";
rev = "v${version}"; rev = "v${version}";
hash = "sha256-9AEbHmqqZv/fBioUMNv60KAb/FpvWpwC6QhGSdBxISs="; hash = "sha256-YPiQChaoX64XBFORI5CmKe/LX0ECu1cYZWElGD7X2eA=";
}; };
build-system = with python3Packages; [ build-system = with python3Packages; [
@@ -77,7 +77,6 @@ python3Packages.buildPythonApplication rec {
"nix-update" "nix-update"
"--flake" "--flake"
".#graphify" ".#graphify"
"--version=branch=main"
]; ];
}; };
+1 -1
View File
@@ -6,7 +6,7 @@
python3Packages.buildPythonApplication rec { python3Packages.buildPythonApplication rec {
pname = "haivemind"; pname = "haivemind";
version = "0.1.0"; version = "0-unstable-2026-07-01";
pyproject = true; pyproject = true;
src = fetchFromGitHub { src = fetchFromGitHub {
+2 -2
View File
@@ -6,14 +6,14 @@
python3Packages.buildPythonApplication rec { python3Packages.buildPythonApplication rec {
pname = "hipengine"; pname = "hipengine";
version = "0.5.0"; version = "0.6.1";
pyproject = true; pyproject = true;
src = fetchFromGitHub { src = fetchFromGitHub {
owner = "shisa-ai"; owner = "shisa-ai";
repo = "hipEngine"; repo = "hipEngine";
rev = "v${version}"; rev = "v${version}";
hash = "sha256-xjVpdr2avDKA2IoXA9W5Q/c6cT+G/BxrTDzjP5Tm+3Y="; hash = "sha256-7FQZuExTTqcMKZkCRzLC5nYLpGytswhEsBTUliQqoTI=";
}; };
build-system = with python3Packages; [ build-system = with python3Packages; [
+3 -3
View File
@@ -6,16 +6,16 @@
buildGoModule rec { buildGoModule rec {
pname = "kubernetes-mcp-server"; pname = "kubernetes-mcp-server";
version = "0.0.66"; version = "0.0.67";
src = fetchFromGitHub { src = fetchFromGitHub {
owner = "containers"; owner = "containers";
repo = "kubernetes-mcp-server"; repo = "kubernetes-mcp-server";
rev = "v${version}"; rev = "v${version}";
hash = "sha256-vnJxSCfnpvOZJXQpKrCAW4QKt5R2PJDYQevA7O1uXZg="; hash = "sha256-rejF9JsszB3ZirZhoK1VDbCH/P0Xzmh4TJw5j+okj+M=";
}; };
vendorHash = "sha256-gbqoT4X+wVOEktHm7jaAH9vHrUBrYgR8OjyFz1ljP6k="; vendorHash = "sha256-TSB2jAWh2PlDHpvzA/rrBbjaR8sgyjivDO0vsbcuvgg=";
env.CGO_ENABLED = 0; env.CGO_ENABLED = 0;
+2 -2
View File
@@ -18,7 +18,7 @@ let
# Upstream release tag. Bump with: # Upstream release tag. Bump with:
# nix flake prefetch github:ggml-org/llama.cpp/b<NNNN> # nix flake prefetch github:ggml-org/llama.cpp/b<NNNN>
# then update buildNumber and the src hash. # then update buildNumber and the src hash.
buildNumber = "9645"; buildNumber = "11439";
# HIP flags from the llm-engine.nix bring-up config. The -I paths for # HIP flags from the llm-engine.nix bring-up config. The -I paths for
# hipBLASLt/rocWMMA are dropped because this tag's HIP backend links # hipBLASLt/rocWMMA are dropped because this tag's HIP backend links
@@ -51,7 +51,7 @@ in
repo = "llama.cpp"; repo = "llama.cpp";
tag = "b${buildNumber}"; tag = "b${buildNumber}";
# Tarball hash (this tag has no submodules). # Tarball hash (this tag has no submodules).
hash = "sha256-ntRwfI2/yVqi3QjQfO0ZajMFSD8r/6XPiuy0X2BhwVk="; hash = "sha256-9KUkThRm+kvYOguP08JOPtjQjtDsDqgh1e50NdR0V5I=";
}; };
# The embedded web UI is disabled via cmakeFlags, so none of the npm # The embedded web UI is disabled via cmakeFlags, so none of the npm
+4 -4
View File
@@ -10,16 +10,16 @@ rustPlatform.buildRustPackage rec {
# Upstream publishes no git tags or releases, so this is pinned to a commit. # Upstream publishes no git tags or releases, so this is pinned to a commit.
# The version shape matches what `nix-update --version=branch=main` generates # The version shape matches what `nix-update --version=branch=main` generates
# for a tagless repository. # for a tagless repository.
version = "unstable-2026-09-13"; version = "0-unstable-2026-10-05";
src = fetchFromGitHub { src = fetchFromGitHub {
owner = "Na1w"; owner = "Na1w";
repo = "marmel"; repo = "marmel";
rev = "fd551ae3198d427b0f0df3429f88764c49095b23"; rev = "31f4e90553655b664c4bdb6839ddb92c21b144cf";
hash = "sha256-nghvUF0EdqTGWT6GMG5oW1iK76r9vgvYeUj98hNraIo="; hash = "sha256-D8/bRBp+Wq5RTsGxMeIgl0pORmU4Ev5D5X9BnHIB1Rs=";
}; };
cargoHash = "sha256-sUSsxcj4m4uJ28RKdJWKsb+MlVW6GkWjZdhKPFKlE/Y="; cargoHash = "sha256-etqW3xcxkiNfkiPxl/Emt5pQCkNnoIhHFkX0Zqfs4rc=";
nativeCheckInputs = [ cacert ]; nativeCheckInputs = [ cacert ];
+2 -2
View File
@@ -7,13 +7,13 @@
buildGoModule rec { buildGoModule rec {
pname = "open-code-review"; pname = "open-code-review";
version = "1.12.9"; version = "1.12.12";
src = fetchFromGitHub { src = fetchFromGitHub {
owner = "alibaba"; owner = "alibaba";
repo = "open-code-review"; repo = "open-code-review";
rev = "v${version}"; rev = "v${version}";
hash = "sha256-g/l4Ezv1YJYjRNI2DU5WgkaPvYp+/SC3yL+HEl/8kFI="; hash = "sha256-U8C1LdO+6QQKDStitCDVypdNq5IkRgBlPbH4udpXLRM=";
}; };
vendorHash = "sha256-f5Ty22wicf1J8+RKnHYcEO7flWn9gkWQODlfunn23EA="; vendorHash = "sha256-f5Ty22wicf1J8+RKnHYcEO7flWn9gkWQODlfunn23EA=";
+6 -6
View File
@@ -6,13 +6,13 @@
}: }:
let let
version = "1.13.1"; version = "1.16.2";
src = fetchFromGitHub { src = fetchFromGitHub {
owner = "skyhook-io"; owner = "skyhook-io";
repo = "radar"; repo = "radar";
rev = "v${version}"; rev = "k8s-ui-v${version}";
hash = "sha256-jRcX7wv+uHxH2hoYSoLEjcVnuRGAnrTt4tbwZozDb7Y="; hash = "sha256-OrG628fEXVRwH3W4EBUBeqzFUyp12m3Xt4qTC5r5kVE=";
}; };
# Build the frontend as a separate derivation. # Build the frontend as a separate derivation.
@@ -26,7 +26,7 @@ let
# Upstream lockfile ships complete resolved/integrity fields for all # Upstream lockfile ships complete resolved/integrity fields for all
# packages since v1.9.x, so no lockfile patching is needed anymore. # packages since v1.9.x, so no lockfile patching is needed anymore.
npmDepsHash = "sha256-TuSBPGktl6s1adHWbP81+TOEZufo5y2gwiUnfiaLoOc="; npmDepsHash = "sha256-1wznZuUbDKQlqJZpuNU+s7l24OY9981ak66HroXUtLk=";
npmDepsFetcherVersion = 2; npmDepsFetcherVersion = 2;
makeCacheWritable = true; makeCacheWritable = true;
@@ -54,7 +54,7 @@ buildGoModule {
pname = "radar"; pname = "radar";
inherit version src; inherit version src;
vendorHash = "sha256-sFlj1sE+ciXQauReWm3mLQZK21lqTaU4cAj06flpx30="; vendorHash = "sha256-4xkFqa0hWN57bjfA0bgO8mcCsk3iVW45F8RJQnS2nm0=";
# Copy pre-built frontend assets before Go compilation for go:embed # Copy pre-built frontend assets before Go compilation for go:embed
preBuild = '' preBuild = ''
@@ -91,7 +91,7 @@ buildGoModule {
meta = with lib; { meta = with lib; {
description = "Modern Kubernetes visibility — topology, event timeline, service traffic, resource browsing, Helm management, and GitOps support"; description = "Modern Kubernetes visibility — topology, event timeline, service traffic, resource browsing, Helm management, and GitOps support";
homepage = "https://github.com/skyhook-io/radar"; homepage = "https://github.com/skyhook-io/radar";
changelog = "https://github.com/skyhook-io/radar/releases/tag/v${version}"; changelog = "https://github.com/skyhook-io/radar/releases/tag/k8s-ui-v${version}";
license = licenses.asl20; license = licenses.asl20;
mainProgram = "radar"; mainProgram = "radar";
platforms = platforms.linux; platforms = platforms.linux;
+1 -1
View File
@@ -8,7 +8,7 @@ buildGoModule rec {
pname = "shardr"; pname = "shardr";
# Pinned to a commit: upstream has no tagged source releases, only # Pinned to a commit: upstream has no tagged source releases, only
# prebuilt "shardr-runner" bundles. # prebuilt "shardr-runner" bundles.
version = "0.1.0+unstable"; version = "0-unstable-2026-10-02";
src = fetchFromGitHub { src = fetchFromGitHub {
owner = "Cyb3rDudu"; owner = "Cyb3rDudu";
+1 -1
View File
@@ -8,7 +8,7 @@ python3Packages.buildPythonApplication {
pname = "skillsmcp"; pname = "skillsmcp";
# Pinned to a commit rather than a release tag because upstream # Pinned to a commit rather than a release tag because upstream
# has not yet published a tagged release containing all features. # has not yet published a tagged release containing all features.
version = "0.2.0+unstable"; version = "0-unstable-2026-04-08";
pyproject = true; pyproject = true;
src = fetchFromGitHub { src = fetchFromGitHub {
+2 -2
View File
@@ -5,10 +5,10 @@
}: }:
let let
version = "1.3.0"; version = "1.4.2";
src = fetchurl { src = fetchurl {
url = "https://github.com/traycerai/traycer/releases/download/desktop-v${version}/traycer-desktop-linux-x86_64.AppImage"; url = "https://github.com/traycerai/traycer/releases/download/desktop-v${version}/traycer-desktop-linux-x86_64.AppImage";
hash = "sha256-iDpbpDpd0OeRGTKwUVRYiIpRSltnAIb59W+yIfH8HFU="; hash = "sha256-OIJ2e+BAomg3Fq7zaxlVi5o8hpDECaVUYsPpLiYib1I=";
}; };
appimageContents = appimageTools.extractType2 { appimageContents = appimageTools.extractType2 {
pname = "traycer"; pname = "traycer";