GSoC 2026: Contributing to "Progress towards reproducible builds"

10 views
Skip to first unread message

ehourdebaigt

unread,
Mar 10, 2026, 7:10:33 AM (7 days ago) Mar 10
to qubes-devel
Hello all,

I'm Étienne, I hold a bachelor's in Computer Engineering and I am completing a master's in Computer Security. My background is mostly in cybersecurity and privacy, and I have a hands-on sysadmin experience.

I'm interested in the reproducible builds GSoC project. I've been recently experimenting with Qubes and qubes-builderv2 to get a working test environment and I've been reading the blog posts on build reproducibility and the thread in issue #816. I've also been looking at the qubes-infrastructure repo.

I understand that kind of work only makes sense once the builder itself builds reproducibly. Has there been any audit of which components already build reproducibly or is establishing that baseline part of the work? I'm trying to understand what ground has already been covered so that I can scope my proposal.

Looking forward to collaborating with you!

Cheers,
-Étienne

Marek Marczykowski-Górecki

unread,
Mar 15, 2026, 9:17:25 PM (2 days ago) Mar 15
to ehourdebaigt, qubes-devel, Frédéric Pierret
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

On Tue, Mar 10, 2026 at 02:40:04AM -0700, 'ehourdebaigt' via qubes-devel wrote:
> Hello all,

Hello!
We have a CI that checks for a basic reproducibility, you can see the
results at https://qubesos.gitlab.io/qubes-g2g-report/
Components with "failure" reproducible badge are interesting to take
care of.

- --
Best Regards,
Marek Marczykowski-Górecki
Invisible Things Lab
-----BEGIN PGP SIGNATURE-----

iQEzBAEBCAAdFiEEhrpukzGPukRmQqkK24/THMrX1ywFAmm3Wh8ACgkQ24/THMrX
1yzndQf/VoNq+q4w4ZuMXZOvcie5QsNVIHUem8kEW81U3oFyACZjRk6/r0nEWmJ/
FqJ6XAHQzYarMScBqXNJtkISRQ/rVt0LI38uLcmYRI6wYVNho7Bqo5vqBt5CBqSw
Wlds/R95Cc3IJmYayvDtQKUOxAY84OH+TwAqMv+7gBECp0ATg7k6wjBlEi5sP0ta
cVk/sb3hj/COLTYKS0GA3I3qor+0639wdXYDbOuzPsSDFZFyE7ZJYCE7C/EcnaXY
RSlKS0p0mkAbJ1jR/Dn09UxQhPnzgv5O0UuXb6P04pf8jUuilKWmIedpiQtYS0fE
kvkk1kZrOGjoEcXoxKTp42MkDb5dng==
=NMCh
-----END PGP SIGNATURE-----
Reply all
Reply to author
Forward
0 new messages