Conversation
Assisted-by: Replit
Assisted-by: Replit
rahultee
marked this pull request as ready for review
October 6, 2026 00:02
rahultee
requested review from
airportyh and
vlinkz
and removed request for
a team
October 6, 2026 00:02
Assisted-by: Replit
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Why
Add an OCI image for the full nixmodules bundle, so it can be distributed without a shared disk. Keep the same module paths and contents.
What changed
bundle-oci, an OCI layout containing one uncompressed EROFS layer./etc/nixmodulesmetadata and preserve store paths, file contents, links, permissions, and UID/GID 11000.bundle-oci.copyTo, a small Skopeo wrapper that preserves digests and accepts authentication and digest-file options. No publishing-time image rewriting.Test plan
Passed locally:
copyTowith--authfileand--digestfile. Every blob and the manifest digest stayed unchanged. The wrapper closure retains the exact image.The normal flake checks did not finish while fetching and evaluating historical module inputs. The separate small fixture passed. The full production bundle, registry publication, containerd 2.1-specific integration, and DAX behavior were not tested here. See the PR checks for current CI status.
Rollout
This PR only adds a build output. It does not publish an image or change any running workload. Consumers must support native EROFS layers, with the EROFS unpack tools and differ configured.
Safe to revert: the existing disk and per-module OCI outputs are unchanged.
~ written by ⠕ Replit