Determinate Systems blog
npub1984lukzysqglev8m47vd57xdzh5ktqn6jkfv6u3ac82ewh6f6t8svp3tgn@drss.io
News, releases, deep dives, and how-tos from the Determinate Systems team.
Follow into
The EU Cyber Resilience Act is coming, and Determinate is the missing link in your supply chain
Save into
13 Aug 2026
The CRA will take effect in two stages, with reporting obligations beginning on September 11, 2026. Compliance is likely to be a hurdle for many enterprises, but we're confident that Nix and
Changelog: faster evaluation and FedRAMP cache keys
Save into
5 Aug 2026
Determinate Nix 3.21.9 makes evaluation measurably faster by reusing fetcher cache results, and teaches Determinate Nixd to pick the right trusted cache keys when you point it at FlakeHub's FedRAMP
Introducing FlakeAudit, a CLI for evaluating CycloneDX SBOMs against custom policies
Save into
3 Aug 2026
It's the Rust-native, Nix-aware companion to FlakeBOM that turns SBOMs from a report on what exists on a system into something you can act on
Changelog: FlakeHub Cache edge routing and reliability improvements
Save into
29 Jul 2026
Determinate Nixd now routes FlakeHub Cache requests to the nearest cache node, making substitution faster for most users, especially those outside the United States
Changelog: Determinate Nix 3.21.7
Save into
17 Jul 2026
An all-and-sundry batch of performance work, a faster \`nix copy\`, multi-threaded store optimization, and speedier binary caches, remote stores, and parallel evaluation, plus some changes to
FlakeHub now has FedRAMP High Authorization
Save into
15 Jul 2026
FlakeHub, our platform providing secure Nix binary caching, private flakes, and more, is now FedRAMP High authorized (Certification Class D under FedRAMP's 2026 Consolidated Rules) listed in the
An interface change for flake schemas
Save into
18 Jun 2026
We're introducing an \`exportedSchemas\` output to provide a more intuitive experience.
Introducing Nixpkgs cooldowns
Save into
15 Jun 2026
Making package cooldowns for Nixpkgs available to all Determinate users by default
Announcing Determinate Secure Packages 26.05
Save into
12 Jun 2026
Make this your most confident and secure Nixpkgs upgrade yet
Introducing FlakeBOM, a CLI for generating SBOMs from Nix flakes
Save into
11 Jun 2026
It's lightning fast, it provides comprehensive metadata coverage, and it's the perfect complement to Determinate Secure Packages
Finally, a secure Nixpkgs for the enterprise: an update on Determinate Secure Packages
Save into
9 Jun 2026
Checking in on the current state of our supply chain efforts and an initial glance at FlakeBOM
Nix is set to revolutionize the software supply chain
Save into
26 May 2026
Nix isn't a magical solution to \*all* supply chain woes but it does offer our industry a fighting chance
Changelog: Determinate Nix 3.21.0
Save into
25 May 2026
Support for CNSA algorithms, a new \`nix serve\` command, \`fetchTarball\` is now lazy, and more.
Changelog: Determinate Nix 3.20.0 (and a few others)
Save into
8 May 2026
Vital security patches plus some other fun stuff
Sentry crash reports for Determinate Nix
Save into
6 May 2026
Determinate Nix now uploads crash reports to Sentry, enabling Determinate Systems to catch and fix bugs long before they reach your critical systems.
Long-term support for Determinate Secure Packages 25.11
Save into
30 Apr 2026
Determinate Secure Packages 25.11 is now generally available, with security maintenance committed through May 2028.
The Nix moment
Save into
27 Apr 2026
The stars are aligning in unmistakable ways for Nix and we are leading the charge.
Changelog: Determinate Nix 3.17.3
Save into
7 Apr 2026
An important security update plus some improvements
Support for AWS GovCloud and European Sovereign Cloud
Save into
10 Mar 2026
NixOS AMIs for Determinate are now available in AWS GovCloud and AWS European Sovereign Cloud, providing a better option for teams with strict data residency and regulatory requirements
Extensible flake outputs with flake schemas
Save into
6 Mar 2026
Determinate Nix now enables you to declare custom flake output types, making flakes more flexible and introspectable than ever
A new chapter for the Nix language, courtesy of WebAssembly
Save into
5 Mar 2026
Determinate Nix now supports Wasm functions in Nix expressions, bringing a range of new possibilities to the Nix ecosystem
Determinate is the future of Nix today: Wasm, provenance, and flake schemas
Save into
4 Mar 2026
This updates we're shipping this week are making Determinate Nix a different beast entirely
Changelog: Google Cloud Platform auth, parallel eval unleashed, and more
Save into
3 Mar 2026
Unlimited parallel evaluation cores by default, support for authenticating to FlakeHub from Google Cloud Platform, and the usual bevy of fixes and adjustments.
Changelog: a more powerful nix-darwin module and more
Save into
28 Jan 2026
Improvements to nix-darwin, nix-eval-jobs compatibility with Determinate Nix, and some other fun stuff
Introducing Determinate Secure Packages
Save into
13 Jan 2026
A secure, signed, SLA-backed variant of Nixpkgs for teams who can't afford supply chain risk
Changelog: new year, new Determinate Nix
Save into
6 Jan 2026
\`fetchTree\` improvements and a new \`builtins.filterAttrs\` function
Changelog: a new command for visualizing active Nix builds and much more
Save into
10 Dec 2025
A new \`nix ps\` command, some prettier output, some flake registry improvements, and other goodies
Changelog: a whole bevy of small improvements for Determinate Nix
Save into
21 Nov 2025
We bid adieu to Intel Macs and deliver some solid developer experience improvements
Nix flakes explained: what they solve, why they matter, and the future
Save into
19 Nov 2025
Nix flakes are a powerful way to manage inputs and outputs in Nix, designed to bring determinism, reproducibility, and discoverability to the ecosystem.
Changelog: introducing `nix nario`
Save into
31 Oct 2025
A fresh new take on distributing software with Nix
Determinate Nix: the recent past and the shining future
Save into
23 Sep 2025
Taking a step back to survey the many recent changes in Determinate Nix and to look ahead to much more on the way.
Dropping upstream Nix from Determinate Nix Installer
Save into
10 Sep 2025
Focusing on our core strength: delivering the best Nix experience we can
Parallel evaluation comes to Determinate Nix
Save into
5 Sep 2025
Parallel evaluation drastically cuts evaluation time and improves import-from-derivation (IFD) performance.
Changelog: build-time flake inputs and unauthenticated upgrades
Save into
27 Aug 2025
Determinate Nix introduces a new type of flake input for sources and \`determinate-nixd upgrade\` now works without logging in.
Changelog: Determinate now has a nix-darwin module, plus loads of performance perks
Save into
22 Aug 2025
Loads of UX and performance improvements in Determinate Nix, plus a nix-darwin module
Changelog: a native Linux builder for macOS
Save into
5 Aug 2025
A major advance for macOS users and for Nix in cross-platform contexts
Changelog: Determinate Nix 3.8.1 with important security updates
Save into
12 Jul 2025
Nix users on macOS should upgrade to Determinate Nix 3.8.1 as soon as possible.
Changelog: a faster `nix flake check`, improved flake locks, and lazy trees rolled out to 20% of users
Save into
11 Jul 2025
Determinate Nix 3.8.0 (based on Nix 2.30) cuts minutes from CI runs, fixes a bug involving flake inputs, and rolls out lazy trees to more users.
Changelog: faster CI, deep flake overrides, and a better `nix store delete` in Determinate Nix 3.7.0
Save into
4 Jul 2025
Performance and UX improvements across the board, plus lazy-trees rolling out to some users.
Changelog: lazy trees and security improvements
Save into
24 Jun 2025
Lazy trees are ready to roll out, and an improvement to the sandboxing security.
FlakeHub now supports Semaphore CI
Save into
19 Jun 2025
Adding a powerful, feature-rich, open source CI/CD system to our roster
Changelog: macOS Tahoe, lazy trees, and docs in Determinate Nix 3.6.6
Save into
18 Jun 2025
Support for macOS Tahoe and nearing general availability for lazy trees
Changelog: docs, diagnostics, and resilience improvements
Save into
5 Jun 2025
Shell auto-completion scripts for Determinate Nixd, improved installation and garbage collection, more intelligible log messages, and more.
Changelog: improved support for self-hosted GitHub Actions runners
Save into
29 May 2025
Our \`determinate-nix-action\` now succeeds on many more self-hosted environments, including Kubernetes-backed CI environments.
Changelog: introducing lazy trees
Save into
15 May 2025
This long-awaited feature makes Nix and flakes dramatically more efficient in a wide range of scenarios
Changelog: deprecating channels and indirect flake references
Save into
6 May 2025
When it comes to sub-optimal constructs, less really is more