Skip to content

Discover and update sudo integrations in existing VMs - #193

Open
Fail-Safe wants to merge 2 commits into
omacom:mainfrom
Fail-Safe:codex/integration-upstream-review
Open

Fail-Safe wants to merge 2 commits into
omacom:mainfrom
Fail-Safe:codex/integration-upstream-review

Conversation

@Fail-Safe

@Fail-Safe Fail-Safe commented Sep 11, 2026

Copy link
Copy Markdown
Contributor

Updating the Mac app preserves an existing VM but does not install newly bundled guest integration support. This adds launch-time discovery and a user-approved installation and repair flow, initially delivering the sudo Touch ID integration already present on main.

Scope

Validation of this revision

  • Full make test passed, including guest tests, 274 native tests, and launcher/network/storage shell checks. The final native regression rerun also passed all 274 tests.
  • Built the app against the published v0.4.0 guest and runtime payloads. Strict code-signing checks and macOS 15 compatibility checks passed for all 21 Mach-O images.
  • Booted a separate cloned existing VM through the rebuilt launcher. Cancellation left the installer state and menu unchanged; installation enabled reporting and produced a matching current bundle status in the native cache.
  • Simulated interrupted progress after a verified component; retry retained the verified sudo component and completed. A modified installed file reported repair and was reinstalled and reverified. The final guard also allowed repair of a damaged installed bundle with a matching inventory, while retaining protection for additional integrations.
  • Reboot retained active reporting and current component status. Custom menu content survived; package configuration and sudo PAM content matched the original fixture before and after reboot.
  • Tests cover corrupted/unlisted files, symlinks, menu preservation, incomplete status, interactive acknowledgement, and refusing a smaller bundle over additional installed support.

Remaining release qualification

A source factory-guest build was attempted using the unchanged upstream lock. It stopped because seven currently available repository packages differ from that lock. This refresh deliberately leaves lock maintenance separate. A fully rebuilt factory image and first-boot bootstrap check remain a release qualification step after the upstream lock is refreshed.

The runtime check used an existing disposable guest with an unpaired test account; it did not repeat physical Touch ID authorization or graphical shell menu interaction. The historical screenshots below illustrate the earlier development flow. No claim of byte-identical validation from that broader draft is carried forward.

Status remains advisory. No automatic pairing, guest kernel/graphics upgrade, or transactional rollback guarantee for arbitrary PAM/systemd effects.

Historical visual walkthrough

These six retained screenshots are from the earlier broader draft. Wording and component lists have since been narrowed to sudo Touch ID; clock, compatibility repair, and 1Password options shown in historical images are outside this revision.

Discover available integrations

Try Omarchy integration discovery prompt over the Omarchy desktop

Review setup instructions

Review VM integrations dialog with setup instructions and a copyable command

Check integration status

Mac menu showing current integrations, optional Touch ID setup, and the review action

Find integrations inside Omarchy

Omarchy Setup menu with Try Omarchy Integrations selected
Guest setup and installation results

Choose an integration action (historical component list)

Try Omarchy Integrations terminal guide showing component status and available actions

Review installation results (historical component list)

Successful integration installation with retained backup locations and a press Enter to close prompt

@Fail-Safe
Fail-Safe force-pushed the codex/integration-upstream-review branch from 8d5fedc to 138edb2 Compare September 14, 2026 20:24
@Fail-Safe Fail-Safe changed the title [feat] Discover and update integrations in existing VMs Discover and update sudo integrations in existing VMs Sep 14, 2026
@Fail-Safe
Fail-Safe marked this pull request as ready for review September 14, 2026 20:32
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant