Skip to content

fix(bootstrap): trust the declared OpenCode tap - #4

Merged
Attamusc merged 1 commit into
mainfrom
fix-macos-homebrew-trust
Aug 8, 2026
Merged

Attamusc merged 1 commit into
mainfrom
fix-macos-homebrew-trust

Conversation

@Attamusc

@Attamusc Attamusc commented Aug 8, 2026

Copy link
Copy Markdown
Owner

Summary

  • trust the committed anomalyco/tap source before Brew Bundle loads OpenCode
  • keep the trust decision scoped to the one non-official tap already declared in the Brewfile
  • enforce trust-before-bundle ordering in the portability contract

Why

The approved macOS rollout stopped before managed files were applied because current Homebrew refuses to load anomalyco/tap/opencode from an untrusted tap.

Verification

  • reproduced the Homebrew refusal during the real macOS apply
  • verified brew trust --tap anomalyco/tap writes the supported narrow trust entry using an isolated XDG_CONFIG_HOME
  • scripts/check-portability.sh passes
  • protected ignored state, machine-local mise config, and the three protected tracked modifications remain unchanged

Explicitly trust the anomalyco/tap Homebrew source before Brew Bundle loads its OpenCode formula. Current Homebrew rejects non-official formulae until the tap is recorded in its trust configuration.

Keep the trust decision narrow to the one vendor tap already declared in the shared Brewfile, and enforce ordering in the portability contract.
@Attamusc
Attamusc merged commit 278168d into main Aug 8, 2026
1 check passed
@Attamusc
Attamusc deleted the fix-macos-homebrew-trust branch August 10, 2026 11:52
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant