Skip to content

Release 0.6.15 - #32

Merged
O6lvl4 merged 3 commits into
mainfrom
develop
Sep 26, 2026
Merged

O6lvl4 merged 3 commits into
mainfrom
develop

Conversation

@O6lvl4

@O6lvl4 O6lvl4 commented Sep 26, 2026

Copy link
Copy Markdown
Contributor
  • A .deb per release (amd64, arm64): /usr/bin/porta, and on Ubuntu 23.10+ a postinst that loads the AppArmor profile giving porta its namespaces; removing the package takes the profile away. Listed in the signed checksums and attested; CI and the release's verify job install it and see the namespaces.
  • The footer test tells the unified log's lag from a missed refusal; CI no longer cancels one platform when the other fails.

🤖 Generated with Claude Code

O6lvl4 and others added 3 commits September 26, 2026 11:04
On Ubuntu 23.10 and later porta needs an AppArmor profile to give a command
its own namespaces, and with the tarball that was a manual step. Each
release now carries porta_<version>_<arch>.deb for amd64 and arm64: its
postinst writes and loads /etc/apparmor.d/usr.bin.porta, granting userns to
/usr/bin/porta alone, where the host restricts user namespaces and its
AppArmor can read the rule; the postrm takes it away. The packages are in
the signed checksums and attested, and CI and the release's verify job
install one, see the namespaces, and remove it.

Co-Authored-By: Claude Opus 5.5 (1M context) <noreply@anthropic.com>
…rms finish

On a busy macOS runner the log can hold a refusal back past every retry,
and the footer test failed the run for the log's lag; the Ubuntu job was
then cancelled with it. The test now asks the log itself: a record it does
not hold yet is left unverified and said so, a record it holds must reach
the footer. CI no longer cancels one platform when the other fails.

Co-Authored-By: Claude Opus 5.5 (1M context) <noreply@anthropic.com>
Co-Authored-By: Claude Opus 5.5 (1M context) <noreply@anthropic.com>
@O6lvl4
O6lvl4 merged commit 28b229b into main Sep 26, 2026
8 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant