omarchy-pool
v0.0.186
Sign in

For everyone

The pipeline, as it runs right now

What is being verified, promoted and checked for you this very minute; how fast maintainers decide; who is building what, and what it costs. The same page for users, contributors and maintainers — only which buttons are live differs.

checking…

Every three hours: packages are verified and promoted, five security feeds are matched against what every ring serves, and a confident fix does not wait for the soak.

Arch LinuxArch Linux ARMOmarchy OPR · edgeAsahiFactoryPoolverified today: …stored once: …every 3 h≤ 3 hedgefollows upstreampacman + ABI+ securityrctested, both archestwo green checks≈ 6 hstablewhat you runfast-track: a confident fix in edge skips the soakArch Security TrackerDebian Security TrackerOSV · Go modules, cratesCISA KEV · exploitedEPSS · likelihoodSecurity scanadvisories known: …open in stable: …every 3 h, every ringmatches open advisories against what each ring serves
Green marks are packages on their way to stable; amber marks are advisories being matched against each ring. The dashed arc is the fast-track. The numbers are the pool's own.
livethe journal, as it happens · every 20 s
loading…

Nothing here is a promise: every line links to the run that produced it, and every decision carries a name. The whole journal →

How fast new packages arrive and how fast maintainers decide. A wait is a queue, not a verdict.

Decisions per week 8 weeks

what maintainers approved and what they sent back

Arrivals vs decisions 8 weeks

packages registered, packages decided — the gap is the queue

Who is deciding on the record

decisions per maintainer

Operations

read-only — approving and rolling back need the maintainer role

One brain queues, workers claim with a lease, objects land on R2, rings are rendered and signed. Live numbers on the mechanism.

UpstreamArch · ARM · OPR · Asahisynced …sync jobsBrainCloudflare Worker · index in D1schedules sync · promote · healthsecurity · trial · gc · buildssigns databases and factory packagesAPI …index ↔ objectsPool · R2each package stored oncerendered, signedRingspacman DBs, both archesedge · rc · stableserved to every pacman -Syujob queueclaim · reportclaim · reportclaim · reportPool workersthe project's host · trustedReview workersrebuilds + audits · agent via a proxyCommunity workersa broker + a builder, anyone'sGitHubOAuth · MAINTAINERS.tomlreleases · worker imagewho may approve
Every job runs on a registered worker. Contributors' builds are evidence; the review worker builds again what a maintainer asks for, and approve publishes that build. A lease that expires puts the task back in the queue. Every worker, by kind →

Evidence, not packages. Build by the project queues a rebuild on the review worker; approve publishes the project's build; reject sends a note back.

#PackageArchBuilt byEvidenceAuditWaitingDecision

Pool jobs 7 days

sync, promote, health, security, gc: done, failed, waiting

Promotions 14 days

edge → rc and rc → stable: promoted, blocked by a check, rolled back

Health 14 days

worst result per day, per ring and architecture

Imports per day 14 days

packages brought into the pool by the sync runs

Sync throughput last runs

MB/s per sync run, one worker each

Factory builds 14 days

staged, published, failed

Build tasks

leased first, then queued, then the most recent finished; three attempts, then failed
#PackageArchStatusReasonWorkerTookResult

Requested packages

Request one →

Every package a contributor asked for — each request written once to the record and signed by the pool — and where it stands.

PackageProjectOwnerArchesVersion · licenceStageDetailUpdated
StatusWhatRingSource / archSummaryTookWhen

Cost, in the open

Cloudflare, estimated every three hours from its analytics

D1 rows read and written are most of the bill. Estimated every three hours; the report warns from US$ , the guard pauses the jobs that write at US$ , the cap is US$ ; the daily report says why.

this month
projected