50 lines
1.7 KiB
Bash
50 lines
1.7 KiB
Bash
# face-unlock-bin - the Arch build of face-unlock
|
|
# (https://github.com/LoonixTools/face-unlock), made by upstream's release
|
|
# workflow: the same program as the face-unlock package, with OpenCV linked in
|
|
# statically, so an OpenCV update on Arch does not break it.
|
|
#
|
|
# Not every release has the tarball (2.0.0 and older do not), so the newest
|
|
# release that has it is tracked, not /releases/latest. The checksum is the
|
|
# digest GitHub keeps for every release asset.
|
|
|
|
UPSTREAM_REPO="LoonixTools/face-unlock"
|
|
|
|
# newest published release with an Arch tarball, as its tag
|
|
latest_tag() {
|
|
gh api "repos/$UPSTREAM_REPO/releases?per_page=30" \
|
|
--jq '[.[] | select((.draft or .prerelease) | not)
|
|
| select(any(.assets[]; .name | endswith("-arch-x86_64.tar.zst")))]
|
|
| first | .tag_name // empty'
|
|
}
|
|
|
|
# Kept off the AUR until a release has the tarball: until then the PKGBUILD
|
|
# has nothing to point at. The run that finds the first one updates the
|
|
# PKGBUILD and test-builds it before anything is pushed.
|
|
AUR_PUBLISH=false
|
|
if [[ -n "$(latest_tag)" ]]; then
|
|
AUR_PUBLISH=true
|
|
fi
|
|
|
|
latest_version() {
|
|
local tag
|
|
tag="$(latest_tag)"
|
|
[[ -n "$tag" ]] || return 75
|
|
echo "${tag#v}"
|
|
}
|
|
|
|
# refresh_checksums <version> <pkgbuild-path>
|
|
refresh_checksums() {
|
|
local ver="$1" pkgbuild="$2"
|
|
local name="face-unlock-$ver-arch-x86_64.tar.zst" sha
|
|
|
|
sha="$(gh api "repos/$UPSTREAM_REPO/releases/tags/v$ver" \
|
|
--jq ".assets[] | select(.name == \"$name\") | .digest // empty" \
|
|
| sed -n 's/^sha256://p')"
|
|
if [[ ! "$sha" =~ ^[0-9a-f]{64}$ ]]; then
|
|
sha="$(curl -sfL "https://github.com/$UPSTREAM_REPO/releases/download/v$ver/$name" \
|
|
| sha256sum | cut -d' ' -f1)"
|
|
fi
|
|
|
|
sed -i "s|^sha256sums=.*|sha256sums=('$sha')|" "$pkgbuild"
|
|
}
|