[Guix packaging] dNetHack #331

Open
opened 2026-08-24 17:29:11 +00:00 by htayj · 1 comment
htayj commented 2026-08-24 17:29:11 +00:00 (Migrated from github.com)

Candidate

Scope

Package the independently playable roguelike variant from source. The canonical repository, latest stable release, source hash, complete dependency closure, and relationship to parent games or sibling forks must be established before implementation. Do not substitute an opaque prebuilt binary.

Research checklist

  • Identify the canonical maintained source repository and immutable release/commit.
  • Verify the exact FOSS license for code and every installed font, tile, sound, map, documentation, and bundled dependency.
  • Check GNU Guix and the channel audit set for an equivalent same-upstream package.
  • Determine the offline build system and source closure, including submodules or language registries.
  • Identify updater, telemetry, runtime download, mutable-state, and network behavior that needs Guix integration.

Acceptance checks

  • guix lint -L . <package> has no package-specific findings.
  • guix build -L . --no-grafts <package> succeeds without network access or opaque binaries.
  • Upstream tests run where available, and guix build -L . --no-grafts --check <package> verifies reproducibility.
  • A fresh HOME/XDG smoke test starts a real local game, exercises meaningful gameplay or save/load behavior, and proves no store writes.
  • Installed license and third-party notices cover the shipped closure and assets.

Imported from GitHub issue/PR. Originally posted by htayj on 2026-08-24T17:29:11Z.

## Candidate - Project: dNetHack - Candidate upstream/homepage: https://github.com/Chris-plus-alphanumericgibberish/dNAO - Discovery evidence: [Variant catalogs](https://www.roguebasin.com/index.php/NetHack#Variants) - Reported license: NetHack General Public License - License status: reported free license; verify exact terms and asset coverage against the pinned upstream source ## Scope Package the independently playable roguelike variant from source. The canonical repository, latest stable release, source hash, complete dependency closure, and relationship to parent games or sibling forks must be established before implementation. Do not substitute an opaque prebuilt binary. ## Research checklist - Identify the canonical maintained source repository and immutable release/commit. - Verify the exact FOSS license for code and every installed font, tile, sound, map, documentation, and bundled dependency. - Check GNU Guix and the channel audit set for an equivalent same-upstream package. - Determine the offline build system and source closure, including submodules or language registries. - Identify updater, telemetry, runtime download, mutable-state, and network behavior that needs Guix integration. ## Acceptance checks - `guix lint -L . <package>` has no package-specific findings. - `guix build -L . --no-grafts <package>` succeeds without network access or opaque binaries. - Upstream tests run where available, and `guix build -L . --no-grafts --check <package>` verifies reproducibility. - A fresh HOME/XDG smoke test starts a real local game, exercises meaningful gameplay or save/load behavior, and proves no store writes. - Installed license and third-party notices cover the shipped closure and assets. --- Imported from [GitHub issue/PR](https://github.com/htayj/guix-channel/issues/331). Originally posted by [htayj](https://github.com/htayj) on 2026-08-24T17:29:11Z.
htayj commented 2026-09-02 23:09:44 +00:00 (Migrated from github.com)

Goocastle recorded disposition: implementation-ready.

Created implementation ticket: #679.

Package the ordinary dNetHack variant as Guix package dnethack from the canonical maintained repository https://github.com/Chris-plus-alphanumericgibberish/dNAO, stable branch compat-3.26.0, fixed commit a6f0a1c43e66f4fb1bcac34d7d9709706682ec19 (2026-05-28 18:03:32 UTC), internal version 3.26.0, Guix recursive source hash 0lakz0czfkymnnb64q7yjvm3r3yfj3xqbylrha3cpc2ix07x0cvj. The only upstream tag is the older v3.21.3.1; the default/current stable branch is the materially newer 3.26.0 line. Upstream README and GNUmakefile establish a Unix source build: make all compiles the C tty/curses game and recover utility, regenerates yacc/flex products, generates dat/nhdat from the repository's maps/data, and links only pkg-config --libs ncursesw plus -lm; git submodule status is empty and there is no language registry or runtime download. This phase was explicitly daemonless, so no guix build or upstream compile was attempted and this is not package proof. Implement with gnu-build-system, no configure phase, serialized generation/build if needed, native bison/flex/pkg-config plus the standard GCC toolchain, and ncurses (including the tinfo linkage as exposed by the Guix ncurses package); use bash-minimal/coreutils-minimal only for the launcher. Do not run upstream make install: install the built executable as libexec data, nhdat and the NGPL notice under share/dnethack, and retained upstream documentation under share/doc/dnethack. Override the makefile's Git description with the fixed revision and patch util/makedefs.c's wall-clock time() input to the pinned commit epoch 1779991412 so generated date/verinfo/data and --check are reproducible. Upstream README at the pinned source says dNetHack is under the NetHack General Public License; dat/license contains the exact grant and generated map/data source files carry the same NetHack redistribution notice. The Unix target installs no fonts, graphical tiles, sound samples, or submodules; util/MacroMagicMarker.py is separately MIT-licensed but is not an installed runtime origin. Retain dat/license, README, Guidebook.txt, and relevant man/documentation notices. The local channel audit found no dNetHack/dNAO package or same-upstream module; acehack is a separate historical variant and is not a duplicate. The wrapper named dnethack must create a per-invocation private playground, expose immutable nhdat/license from the store by symlink, keep saves, locks, scores, logs, dumps, panic/hangup and other mutable files under $XDG_DATA_HOME/dnethack (falling back to HOME), set HACKDIR/NETHACKDIR to that playground, and never write the store. Disable the compiled Unix MAIL feature or otherwise bind mailbox checks to private state, leave the upstream shell escape disabled, and do not invoke updater, telemetry, network, or runtime-download behavior (static inspection found none). For the isolated proof, the wrapper's --guix-smoke mode must run the real tty/curses executable twice in a fresh temporary playground: start a fully specified discovery character with -X -n -u goocastle-tourist-human-neutral-male, perform a movement/rest command and save/confirm, relaunch the same character, confirm restoration, quit/confirm, assert the save/load and mutable-file checks, then print the standalone marker dnethack guix smoke passed. The host runtime proof must call only the reviewed dnethack --guix-smoke contract under a fresh HOME/XDG environment via bounded PTY validation and verify the screenshot and absence of store writes; later delivery must also run upstream tests where available, guix lint, offline no-grafts build, and reproducibility check.


Imported from GitHub comment. Originally posted by htayj on 2026-09-02T23:09:44Z.

<!-- goocastle-disposition:sequential-reviewer:331:1:implementation-ready --> Goocastle recorded disposition: implementation-ready. Created implementation ticket: #679. Package the ordinary dNetHack variant as Guix package `dnethack` from the canonical maintained repository https://github.com/Chris-plus-alphanumericgibberish/dNAO, stable branch `compat-3.26.0`, fixed commit `a6f0a1c43e66f4fb1bcac34d7d9709706682ec19` (2026-05-28 18:03:32 UTC), internal version 3.26.0, Guix recursive source hash `0lakz0czfkymnnb64q7yjvm3r3yfj3xqbylrha3cpc2ix07x0cvj`. The only upstream tag is the older v3.21.3.1; the default/current stable branch is the materially newer 3.26.0 line. Upstream README and GNUmakefile establish a Unix source build: `make all` compiles the C tty/curses game and recover utility, regenerates yacc/flex products, generates `dat/nhdat` from the repository's maps/data, and links only `pkg-config --libs ncursesw` plus `-lm`; `git submodule status` is empty and there is no language registry or runtime download. This phase was explicitly daemonless, so no guix build or upstream compile was attempted and this is not package proof. Implement with `gnu-build-system`, no configure phase, serialized generation/build if needed, native bison/flex/pkg-config plus the standard GCC toolchain, and ncurses (including the tinfo linkage as exposed by the Guix ncurses package); use bash-minimal/coreutils-minimal only for the launcher. Do not run upstream `make install`: install the built executable as libexec data, `nhdat` and the NGPL notice under `share/dnethack`, and retained upstream documentation under `share/doc/dnethack`. Override the makefile's Git description with the fixed revision and patch `util/makedefs.c`'s wall-clock `time()` input to the pinned commit epoch `1779991412` so generated date/verinfo/data and `--check` are reproducible. Upstream README at the pinned source says dNetHack is under the NetHack General Public License; `dat/license` contains the exact grant and generated map/data source files carry the same NetHack redistribution notice. The Unix target installs no fonts, graphical tiles, sound samples, or submodules; `util/MacroMagicMarker.py` is separately MIT-licensed but is not an installed runtime origin. Retain `dat/license`, README, Guidebook.txt, and relevant man/documentation notices. The local channel audit found no dNetHack/dNAO package or same-upstream module; `acehack` is a separate historical variant and is not a duplicate. The wrapper named `dnethack` must create a per-invocation private playground, expose immutable `nhdat`/license from the store by symlink, keep saves, locks, scores, logs, dumps, panic/hangup and other mutable files under `$XDG_DATA_HOME/dnethack` (falling back to HOME), set HACKDIR/NETHACKDIR to that playground, and never write the store. Disable the compiled Unix MAIL feature or otherwise bind mailbox checks to private state, leave the upstream shell escape disabled, and do not invoke updater, telemetry, network, or runtime-download behavior (static inspection found none). For the isolated proof, the wrapper's `--guix-smoke` mode must run the real tty/curses executable twice in a fresh temporary playground: start a fully specified discovery character with `-X -n -u goocastle-tourist-human-neutral-male`, perform a movement/rest command and save/confirm, relaunch the same character, confirm restoration, quit/confirm, assert the save/load and mutable-file checks, then print the standalone marker `dnethack guix smoke passed`. The host runtime proof must call only the reviewed `dnethack --guix-smoke` contract under a fresh HOME/XDG environment via bounded PTY validation and verify the screenshot and absence of store writes; later delivery must also run upstream tests where available, guix lint, offline no-grafts build, and reproducibility check. --- Imported from [GitHub comment](https://github.com/htayj/guix-channel/issues/331#issuecomment-5517684966). Originally posted by [htayj](https://github.com/htayj) on 2026-09-02T23:09:44Z.
Sign in to join this conversation.
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference
tay/guix-channel#331
No description provided.