Personal Homebrew tap.
openbao-authorizer— human approval of OpenBao access requests, with thebao-credclient (prebuilt binaries for Linux and macOS)oo7— D-Bus Secret Service provider (org.freedesktop.secrets), a headless replacement for gnome-keyring
brew tap xtruder/tap
brew install openbao-authorizer
brew install oo7oo7 ships a pre-built bottle for x86_64_linux, so brew install downloads and
pours it. Source is the fallback for any platform without a bottle.
Renovate opens PRs for new upstream releases (renovate.json; check it with
make validate). On every PR that touches Formula/:
- Checksums downloads each
urland compares it with itssha256. - Bottle builds bottles for formulae that have a
bottle doblock (oo7) on Ubuntu 22.04, runsbrew test, uploads them to the<formula>-<version>release and pushes the new bottle block to the PR branch. Merge after that commit appears.
openbao-authorizer installs prebuilt release binaries and has no bottle.
To rebuild a bottle by hand, run the Bottle workflow with the formula name:
gh workflow run bottle.yml -R xtruder/homebrew-tap -f formula=oo7Bottle releases are tagged <formula>-<version> so formulae never collide.
Version comes from the url; don't add a version line, because Renovate only
rewrites url and sha256.
--build-bottleis onbrew install, notbrew reinstall, and--forcedoesn't override "already installed" — uninstall first.- Prerelease bottles:
brew bottleemitsoo7--<ver>…(double dash) butbrew installwantsoo7-<ver>…(single dash); rename the asset to single dash. root_urlmust include the release tag (…/releases/download/oo7-<ver>), because Homebrew builds the URL asroot_url + "/" + filename.- Linux bottles inherit the builder's glibc — build on the oldest glibc you want to support (e.g. Ubuntu LTS, not the newest Fedora).