[Guix packaging] SporkHack #525

Open
opened 2026-08-24 17:33:51 +00:00 by htayj · 1 comment
htayj commented 2026-08-24 17:33:51 +00:00 (Migrated from github.com)

Candidate

  • Project: SporkHack
  • Candidate upstream/homepage: http://sporkhack.com/
  • Discovery evidence: IRLDb
  • Reported license: OpenContent License // NetHack GPL
  • License status: needs authoritative upstream verification before packaging
  • Catalog note: IRLDb status: beta.

Scope

Package the independently playable roguelike from source. The canonical repository, latest stable release, source hash, complete dependency closure, and relationship to parent games or sibling forks must be established before implementation. Do not substitute an opaque prebuilt binary.

Research checklist

  • Identify the canonical maintained source repository and immutable release/commit.
  • Verify the exact FOSS license for code and every installed font, tile, sound, map, documentation, and bundled dependency.
  • Check GNU Guix and the channel audit set for an equivalent same-upstream package.
  • Determine the offline build system and source closure, including submodules or language registries.
  • Identify updater, telemetry, runtime download, mutable-state, and network behavior that needs Guix integration.

Acceptance checks

  • guix lint -L . <package> has no package-specific findings.
  • guix build -L . --no-grafts <package> succeeds without network access or opaque binaries.
  • Upstream tests run where available, and guix build -L . --no-grafts --check <package> verifies reproducibility.
  • A fresh HOME/XDG smoke test starts a real local game, exercises meaningful gameplay or save/load behavior, and proves no store writes.
  • Installed license and third-party notices cover the shipped closure and assets.

Imported from GitHub issue/PR. Originally posted by htayj on 2026-08-24T17:33:51Z.

## Candidate - Project: SporkHack - Candidate upstream/homepage: http://sporkhack.com/ - Discovery evidence: [IRLDb](https://forums.roguetemple.com/irldb/index.php?i=47e013c) - Reported license: OpenContent License // NetHack [[GPL]] - License status: needs authoritative upstream verification before packaging - Catalog note: IRLDb status: beta. ## Scope Package the independently playable roguelike from source. The canonical repository, latest stable release, source hash, complete dependency closure, and relationship to parent games or sibling forks must be established before implementation. Do not substitute an opaque prebuilt binary. ## Research checklist - Identify the canonical maintained source repository and immutable release/commit. - Verify the exact FOSS license for code and every installed font, tile, sound, map, documentation, and bundled dependency. - Check GNU Guix and the channel audit set for an equivalent same-upstream package. - Determine the offline build system and source closure, including submodules or language registries. - Identify updater, telemetry, runtime download, mutable-state, and network behavior that needs Guix integration. ## Acceptance checks - `guix lint -L . <package>` has no package-specific findings. - `guix build -L . --no-grafts <package>` succeeds without network access or opaque binaries. - Upstream tests run where available, and `guix build -L . --no-grafts --check <package>` verifies reproducibility. - A fresh HOME/XDG smoke test starts a real local game, exercises meaningful gameplay or save/load behavior, and proves no store writes. - Installed license and third-party notices cover the shipped closure and assets. --- Imported from [GitHub issue/PR](https://github.com/htayj/guix-channel/issues/525). Originally posted by [htayj](https://github.com/htayj) on 2026-08-24T17:33:51Z.
htayj commented 2026-09-12 22:36:14 +00:00 (Migrated from github.com)

Goocastle recorded disposition: blocked.

Canonical upstream is https://github.com/k21971/SporkHack (master, no tags), fixed at commit 4ed114fc29b9d03f9b2857c730afd9563513ddad; its codeload archive SHA-256 is 26ff9a80a8309f3c471506e5c9bdf2688dfd9ced48cebca1ea483ee7f88cc79a. The local channel has no SporkHack package or reference. At that exact revision GitHub reports no repository license and there is no top-level LICENSE; the only license file is dat/license, titled NetHack General Public License and written for NetHack. It does not clearly identify a grant for the SporkHack-specific code/data contributions. The bundled sound README says the AIFFs came mostly from Roland's S-750 sample library and merely says there should be no copyright; that is not authoritative redistribution evidence for an installed asset origin. The old Unix metadata makes a source build plausible with make, gcc, ncurses, bison and flex, but hardcodes a mutable /sporkhack-0.7.0/var tree for saves, records and logs; Guix integration would need a wrapper and writable XDG/HOME state. The host Guix daemon is unavailable, so no build proof was attempted. Unblock only after upstream provides a clear redistribution grant and provenance for the SporkHack-specific changes and every shipped asset/origin (or a precisely reduced asset set with complete evidence), and the delivery brief defines a deterministic meaningful smoke invocation through the package wrapper; then the fixed revision, source hash, tty dependency set, wrapper state directories and isolated save/load proof can be implemented.


Imported from GitHub comment. Originally posted by htayj on 2026-09-12T22:36:14Z.

<!-- goocastle-disposition:sequential-reviewer:525:1:blocked --> Goocastle recorded disposition: blocked. Canonical upstream is https://github.com/k21971/SporkHack (master, no tags), fixed at commit 4ed114fc29b9d03f9b2857c730afd9563513ddad; its codeload archive SHA-256 is 26ff9a80a8309f3c471506e5c9bdf2688dfd9ced48cebca1ea483ee7f88cc79a. The local channel has no SporkHack package or reference. At that exact revision GitHub reports no repository license and there is no top-level LICENSE; the only license file is dat/license, titled NetHack General Public License and written for NetHack. It does not clearly identify a grant for the SporkHack-specific code/data contributions. The bundled sound README says the AIFFs came mostly from Roland's S-750 sample library and merely says there should be no copyright; that is not authoritative redistribution evidence for an installed asset origin. The old Unix metadata makes a source build plausible with make, gcc, ncurses, bison and flex, but hardcodes a mutable /sporkhack-0.7.0/var tree for saves, records and logs; Guix integration would need a wrapper and writable XDG/HOME state. The host Guix daemon is unavailable, so no build proof was attempted. Unblock only after upstream provides a clear redistribution grant and provenance for the SporkHack-specific changes and every shipped asset/origin (or a precisely reduced asset set with complete evidence), and the delivery brief defines a deterministic meaningful smoke invocation through the package wrapper; then the fixed revision, source hash, tty dependency set, wrapper state directories and isolated save/load proof can be implemented. --- Imported from [GitHub comment](https://github.com/htayj/guix-channel/issues/525#issuecomment-5649147904). Originally posted by [htayj](https://github.com/htayj) on 2026-09-12T22:36:14Z.
Sign in to join this conversation.
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference
tay/guix-channel#525
No description provided.