add auto-update workflow via nix-update

Weekly GitHub Action that opens a PR when new releases are available.
Also bumps github-recon 1.5.3 → 1.5.6.
This commit is contained in:
Hadi
2026-06-08 14:15:49 +02:00
parent 4fbd5d965e
commit 3a34128766
2 changed files with 51 additions and 2 deletions
+49
View File
@@ -0,0 +1,49 @@
name: Update packages
on:
schedule:
- cron: '0 6 * * 1'
workflow_dispatch:
permissions:
contents: write
pull-requests: write
jobs:
update:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@v4
- uses: cachix/install-nix-action@v31
with:
extra_nix_config: |
experimental-features = nix-command flakes
access-tokens = github.com=${{ secrets.GITHUB_TOKEN }}
- name: Update packages
run: |
python_pkgs=(toutatis ignorant ghunt user-scanner)
go_pkgs=(github-recon gravatar-recon spilltea usbguard-tui jwt-tui)
for pkg in "${python_pkgs[@]}"; do
echo "==> $pkg"
nix run nixpkgs#nix-update -- --flake "$pkg" || true
done
for pkg in "${go_pkgs[@]}"; do
echo "==> $pkg"
nix run nixpkgs#nix-update -- --flake --build "$pkg" || true
done
- uses: peter-evans/create-pull-request@v7
with:
token: ${{ secrets.GITHUB_TOKEN }}
commit-message: "auto-update: bump package versions"
title: "Auto-update packages"
body: |
Automated package updates via `nix-update`.
Check individual diffs to see what changed.
branch: auto-update
delete-branch: true
+2 -2
View File
@@ -5,13 +5,13 @@
}: }:
buildGoModule rec { buildGoModule rec {
pname = "github-recon"; pname = "github-recon";
version = "1.5.3"; version = "1.5.6";
src = fetchFromGitHub { src = fetchFromGitHub {
owner = "anotherhadi"; owner = "anotherhadi";
repo = "github-recon"; repo = "github-recon";
rev = "v${version}"; rev = "v${version}";
hash = "sha256-oHzXuxf4sikMcR+rB/1QZQytoNpFt9ZLMohWO4ZbK+0="; hash = "sha256-5kbHFRfJpUk8qnfPxy6Ca65DtYOuI6Z8nwZiUWEK5dM=";
}; };
vendorHash = "sha256-AD0h0k2n8gPqSBz5qqb0ZON/jWiSEWpeO97xR7cYSy8="; vendorHash = "sha256-AD0h0k2n8gPqSBz5qqb0ZON/jWiSEWpeO97xR7cYSy8=";