Conversation
Fail-Safe
force-pushed
the
codex/integration-upstream-review
branch
from
September 14, 2026 20:24
8d5fedc to
138edb2
Compare
Fail-Safe
marked this pull request as ready for review
September 14, 2026 20:32
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Updating the Mac app preserves an existing VM but does not install newly bundled guest integration support. This adds launch-time discovery and a user-approved installation and repair flow, initially delivering the sudo Touch ID integration already present on main.
Scope
7c7acee); no dependency on [feat] Add Touch ID unlock for guest 1Password #182, [fix] Recover guest clock after Mac sleep #184, [fix] Repair update holds in existing guests #185, or [fix] Refresh the factory lock for available ARM packages #192.Validation of this revision
make testpassed, including guest tests, 274 native tests, and launcher/network/storage shell checks. The final native regression rerun also passed all 274 tests.Remaining release qualification
A source factory-guest build was attempted using the unchanged upstream lock. It stopped because seven currently available repository packages differ from that lock. This refresh deliberately leaves lock maintenance separate. A fully rebuilt factory image and first-boot bootstrap check remain a release qualification step after the upstream lock is refreshed.
The runtime check used an existing disposable guest with an unpaired test account; it did not repeat physical Touch ID authorization or graphical shell menu interaction. The historical screenshots below illustrate the earlier development flow. No claim of byte-identical validation from that broader draft is carried forward.
Status remains advisory. No automatic pairing, guest kernel/graphics upgrade, or transactional rollback guarantee for arbitrary PAM/systemd effects.
Historical visual walkthrough
These six retained screenshots are from the earlier broader draft. Wording and component lists have since been narrowed to sudo Touch ID; clock, compatibility repair, and 1Password options shown in historical images are outside this revision.
Discover available integrations
Review setup instructions
Check integration status
Find integrations inside Omarchy
Guest setup and installation results
Choose an integration action (historical component list)
Review installation results (historical component list)