2023-08-21 23:44:00 +02:00
What is this?

This repo is the tooling and automation to generate the reports at, a website which tracks how reproducible the NixOS package builds are.

See for information about why reproducible builds matter, other projects involved in the effort, and also a collection of tools and other information about reproducible builds.

How can I run this?

If you want to run it yourself, check out ./ It will need minor modifications (the rsync line) to complete successfully.

You may need to run -f ~/.cache/sbomnix/cpes.csv manually periodically