[Guix packaging] Zangband #596

Open
opened 2026-08-24 17:35:33 +00:00 by htayj · 1 comment
htayj commented 2026-08-24 17:35:33 +00:00 (Migrated from github.com)

Candidate

Scope

Package the independently playable roguelike from source. The canonical repository, latest stable release, source hash, complete dependency closure, and relationship to parent games or sibling forks must be established before implementation. Do not substitute an opaque prebuilt binary.

Research checklist

  • Identify the canonical maintained source repository and immutable release/commit.
  • Verify the exact FOSS license for code and every installed font, tile, sound, map, documentation, and bundled dependency.
  • Check GNU Guix and the channel audit set for an equivalent same-upstream package.
  • Determine the offline build system and source closure, including submodules or language registries.
  • Identify updater, telemetry, runtime download, mutable-state, and network behavior that needs Guix integration.

Acceptance checks

  • guix lint -L . <package> has no package-specific findings.
  • guix build -L . --no-grafts <package> succeeds without network access or opaque binaries.
  • Upstream tests run where available, and guix build -L . --no-grafts --check <package> verifies reproducibility.
  • A fresh HOME/XDG smoke test starts a real local game, exercises meaningful gameplay or save/load behavior, and proves no store writes.
  • Installed license and third-party notices cover the shipped closure and assets.

Imported from GitHub issue/PR. Originally posted by htayj on 2026-08-24T17:35:33Z.

## Candidate - Project: Zangband - Candidate upstream/homepage: https://github.com/angband-plus/zangband - Discovery evidence: [RogueBasin](https://www.roguebasin.com/index.php/Category:Open_source) - Reported license: NOASSERTION - License status: needs authoritative upstream verification before packaging ## Scope Package the independently playable roguelike from source. The canonical repository, latest stable release, source hash, complete dependency closure, and relationship to parent games or sibling forks must be established before implementation. Do not substitute an opaque prebuilt binary. ## Research checklist - Identify the canonical maintained source repository and immutable release/commit. - Verify the exact FOSS license for code and every installed font, tile, sound, map, documentation, and bundled dependency. - Check GNU Guix and the channel audit set for an equivalent same-upstream package. - Determine the offline build system and source closure, including submodules or language registries. - Identify updater, telemetry, runtime download, mutable-state, and network behavior that needs Guix integration. ## Acceptance checks - `guix lint -L . <package>` has no package-specific findings. - `guix build -L . --no-grafts <package>` succeeds without network access or opaque binaries. - Upstream tests run where available, and `guix build -L . --no-grafts --check <package>` verifies reproducibility. - A fresh HOME/XDG smoke test starts a real local game, exercises meaningful gameplay or save/load behavior, and proves no store writes. - Installed license and third-party notices cover the shipped closure and assets. --- Imported from [GitHub issue/PR](https://github.com/htayj/guix-channel/issues/596). Originally posted by [htayj](https://github.com/htayj) on 2026-08-24T17:35:33Z.
Owner

Goocastle recorded disposition: blocked.

Blocked by unresolvable candidate source provenance. The local channel contains no zangband package reference or package module, so this is not a duplicate delivery. Anonymous access to the issue-named candidate https://github.com/angband-plus/zangband failed: git ls-remote requested authentication, while both the repository endpoint and its releases/latest GitHub API endpoint returned HTTP 404; no Wayback snapshot was available. The candidate URL therefore supplies no fixed revision or published source hash. A SourceForge project page named ZAngband exists and offers only a latest/download link in the inspected page, but it does not establish that project as the canonical maintained source repository, an immutable release, its complete code and asset licenses, source closure, or build metadata. Without those authoritative facts, a legal and source-buildable Guix package cannot be specified safely. Unblock by providing an accessible canonical repository or published source archive at an exact immutable tag/revision, together with license evidence for code and every installed asset or bundled dependency and its offline build metadata; research may then resume from that fixed origin.

<!-- goocastle-disposition:sequential-reviewer:596:1:blocked --> Goocastle recorded disposition: blocked. Blocked by unresolvable candidate source provenance. The local channel contains no zangband package reference or package module, so this is not a duplicate delivery. Anonymous access to the issue-named candidate https://github.com/angband-plus/zangband failed: git ls-remote requested authentication, while both the repository endpoint and its releases/latest GitHub API endpoint returned HTTP 404; no Wayback snapshot was available. The candidate URL therefore supplies no fixed revision or published source hash. A SourceForge project page named ZAngband exists and offers only a latest/download link in the inspected page, but it does not establish that project as the canonical maintained source repository, an immutable release, its complete code and asset licenses, source closure, or build metadata. Without those authoritative facts, a legal and source-buildable Guix package cannot be specified safely. Unblock by providing an accessible canonical repository or published source archive at an exact immutable tag/revision, together with license evidence for code and every installed asset or bundled dependency and its offline build metadata; research may then resume from that fixed origin.
Sign in to join this conversation.
No milestone
No project
No assignees
2 participants
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference
tay/guix-channel#596
No description provided.