cat 2f70bd20d1
Test / Hakurei (legacy) (push) Successful in 3m35s
Test / Hakurei (legacy with race instrument) (push) Successful in 6m0s
Test / Sandbox (with race instrument) (push) Successful in 1m5s
Test / ShareFS (push) Successful in 3m8s
Test / Create distribution (push) Successful in 21s
Test / Create distribution (with race instrument) (push) Successful in 20s
Test / Sandbox (push) Successful in 1m54s
internal/workflows: fetch distribution artifact
This is cleaner than contacting the cmd/mbf CI service on every run,
although also slightly slower in some cases.

Signed-off-by: Ophestra <cat@gensokyo.uk>
2026-10-07 00:49:55 +09:00
2026-10-06 22:15:54 +09:00
2026-09-15 18:42:24 +09:00
2026-06-20 00:20:31 +09:00
2026-08-25 14:53:29 +09:00
2026-06-08 14:58:24 +09:00
2026-10-03 16:16:37 +09:00
2026-06-08 14:58:24 +09:00
2026-10-03 16:16:37 +09:00
2026-05-10 04:15:07 +09:00
2026-08-20 19:05:29 +09:00
2026-09-12 20:40:43 +09:00
2026-05-10 04:15:07 +09:00

Yukari

Hakurei is a tool for running sandboxed desktop applications as dedicated subordinate users on the Linux kernel. It implements the application container of planterette (WIP), a self-contained Android-like package manager with modern security features.

Interaction with hakurei happens entirely through structures described by package hst. No native API is available due to internal details of uid isolation.

Our canonical Git repository is located at https://src.rosa.moe/hakurei. There is a mirror of the repository https://git.gensokyo.uk/rosa/hakurei.

Notable Packages

Package container is general purpose container tooling. It is used by the hakurei shim process running as the target subordinate user to set up the application container. It has a single dependency, libseccomp, to create BPF programs for the system call filter.

Package pkg provides infrastructure for hermetic builds. This replaces the legacy nix-based testing framework and serves as the build system of Rosa OS, currently developed under package internal/rosa.

Dependencies

container depends on:

cmd/hakurei depends on:

cmd/sharefs depends on:

  • fuse to implement the filesystem.

New dependencies will generally not be added. Patches adding new dependencies are very likely to be rejected.

S
Description
Low-level userspace tooling for Rosa OS.
https://hakurei.app/
Readme MIT
11 MiB
v0.4.8
Latest
2026-08-30 19:18:03 +09:00
Languages
Go 90.8%
Azalea 5.3%
C 1.4%
Nix 1.3%
Python 0.5%
Other 0.5%