FreeBSD/ports 14918cf — www/pocketbase Makefile distinfo

www/pocketbase: Update 0.40.4 to 0.40.5

Changes:
- Minor improvements for the JSVM migration error handling
- Updated modernc.org/sqlite to 1.60.1
- Bumped the min Go GitHub action version to 1.27.2

Full list of changes:
https://github.com/pocketbase/pocketbase/releases/tag/v0.40.5

Switch MAINTAINER to my FreeBSD.org address.

Approved by:    jrm (mentor)
Differential Revision:  https://reviews.freebsd.org/D60609
DeltaFile
+5-5www/pocketbase/distinfo
+2-3www/pocketbase/Makefile
+7-82 files

NetBSD/pkgsrc vTX7Ajt — doc TODO CHANGES-2026

   Updated lang/zig, x11/wxGTK32
VersionDeltaFile
1.6865+3-1doc/CHANGES-2026
1.28124+1-2doc/TODO
+4-32 files

NetBSD/pkgsrc B5VIfrz — x11/wxGTK32 distinfo Makefile

   wxGTK32: updated to 3.2.12

   3.2.12: (released 2026-10-10)

   All:

   - Update Unicode mapping tables to current versions (Scott Talbert).
   - Add wxPATH_RMDIR_PARENTS flag to wxFileName::Rmdir().

   All (GUI):

   - Handle mouse capture loss when using wxContextHelp (Richard Thomson).
   - Always recognize common file types in wxHTML (Richard Thomson).
   - Respect background colour when printing in wxHTML (Richard Thomson).
   - Fix handling of image map coordinates in wxHTML (Richard Thomson).
   - Don't show modal HTML help window for not found topic (Richard Thomson).
   - Recognize "Dstrok" as an entity in wxHTML (Richard Thomson).
   - Fix XRC unknown-control size hints after attaching (Richard Thomson).
   - Fix handling spacing in wxGridBagSizer (Richard Thomson).

    [21 lines not shown]
VersionDeltaFile
1.77+7-7x11/wxGTK32/Makefile
1.23+4-4x11/wxGTK32/distinfo
+11-112 files

NetBSD/pkgsrc uKiSfBF — lang/zig Makefile distinfo, lang/zig/patches patch-CMakeLists.txt patch-build.zig

   zig: updated to 0.17.0

   0.17.0

   Notable changes:

   aarch64-openbsd is now tested natively in Zig's CI, ensuring high-quality support going forward.
   aarch64-freebsd and aarch64-netbsd CI jobs now run on pull requests too, in addition to master pushes.
   An LLVM bug that broke most aarch64-windows binaries, including the Zig Compiler, has been worked around.
   The Zig Compiler now applies mandatory code hardening techniques when targeting aarch64-openbsd so that the resulting binaries actually work.
   Zig now provides stack traces on crashes and failed assertions on 32-bit ARM. Some work still remains for Thumb-only targets.
   Zig now provides stack traces on crashes and failed assertions on SPARC.
   Zig now handles pointer authentication opcodes when doing stack unwinding on AArch64.
   Support for the loongarch32-linux-gnu[sf] targets has been added.
   Zig now has generally usable support for 64-bit SPARC, and especially sparc64-linux. This is largely thanks to Zig's new ELF linker which now has better support for this target than LLD.
   The Zig Standard Library has been ported to the x32 and N32 ABIs on x86-64 and 64-bit MIPS, respectively. These are niche ILP32 ABIs that allow using the 64-bit instruction set while only having 32-bit pointers - the idea being to trade available address space for lower memory usage and better cache utilization.
   Target information has been added for some game consoles: aarch64-switch, arm-gba, mipsel-psx, and powerpc-wiiu
   Very early xtensa-linux support has been added to Zig. Note that, for now, this support can only be exercised via the C backend or the experimental LLVM backend.
   The Zig Standard Library now has support for arc[eb]-linux, csky-linux, and m88k-openbsd when using the C backend.

    [18 lines not shown]
VersionDeltaFile
1.18+440-480lang/zig/PLIST
1.1+15-0lang/zig/patches/patch-build.zig
1.23+6-5lang/zig/distinfo
1.8+4-4lang/zig/patches/patch-CMakeLists.txt
1.54+2-2lang/zig/Makefile
+467-4915 files

FreeBSD/ports 2bdaa11 — sysutils/glow Makefile distinfo

sysutils/glow: Update to 3.0.0

ChangeLog:
https://github.com/charmbracelet/glow/releases/tag/v3.0.0
DeltaFile
+5-5sysutils/glow/distinfo
+3-4sysutils/glow/Makefile
+8-92 files

LLVM/project 67e37a9 — flang/lib/Lower/OpenMP ClauseProcessor.cpp, flang/test/Lower/OpenMP affinity-part-refs.f90 depend-iterator.f90

Simplify iterator lowering and trim duplicate tests

Use capture-only iterator callbacks and bind induction variables as block
arguments are created, eliminating the temporary induction-value vector.

Remove unused-iterator HLFIR cases covered by the per-locator and LLVM
checks. Reduce repeated stride diagnostics and remove unused declarations
from the positive AFFINITY tests.
DeltaFile
+0-35flang/test/Lower/OpenMP/task-affinity.f90
+13-20flang/lib/Lower/OpenMP/ClauseProcessor.cpp
+0-32flang/test/Lower/OpenMP/depend-iterator.f90
+2-28flang/test/Semantics/OpenMP/substring-strides.f90
+6-16flang/test/Lower/OpenMP/affinity-part-refs.f90
+0-9flang/test/Semantics/OpenMP/affinity-part-refs.f90
+21-1406 files

LLVM/project e2ce52c — llvm/test/CodeGen/AMDGPU anti-hints-trans-src0.gfx1250.mir anti-hints-multi-hazard.gfx1250.mir

Addressed review, added tests detail
DeltaFile
+234-0llvm/test/CodeGen/AMDGPU/anti-hints-wmma-waw.gfx1250.mir
+209-0llvm/test/CodeGen/AMDGPU/anti-hints-wmma-war.gfx1250.mir
+69-0llvm/test/CodeGen/AMDGPU/anti-hints-addr-xcnt.gfx1250.mir
+55-5llvm/test/CodeGen/AMDGPU/anti-hints-multi-rule.gfx1250.mir
+58-0llvm/test/CodeGen/AMDGPU/anti-hints-multi-hazard.gfx1250.mir
+49-0llvm/test/CodeGen/AMDGPU/anti-hints-trans-src0.gfx1250.mir
+674-52 files not shown
+733-58 files

FreeBSD/src 9f04320 — libexec/rc safe_eval.sh

safe_eval.sh fix description of safe_set_var returns.

The description was out of sync wrt return values.
1. invalid var
2. invalid val
3. var not in allowed list
DeltaFile
+4-4libexec/rc/safe_eval.sh
+4-41 files

HardenedBSD/src 4fa5b52 — libexec/rc safe_eval.sh, share/misc committers-ports.dot

Merge remote-tracking branch 'rad/hardened/current/master' into hardened/current/pledge
DeltaFile
+56-1libexec/rc/safe_eval.sh
+3-0share/misc/committers-ports.dot
+59-12 files

HardenedBSD/src a628f32 — libexec/rc safe_eval.sh, share/misc committers-ports.dot

Merge branch 'freebsd/current/main' into hardened/current/master
DeltaFile
+56-1libexec/rc/safe_eval.sh
+3-0share/misc/committers-ports.dot
+59-12 files

HardenedBSD/ports ae2bad8 — databases/py-lancedb Makefile distinfo, graphics/gpxsee pkg-plist

Merge branch 'freebsd/main' into hardenedbsd/main
DeltaFile
+13,053-0www/remark42/files/packagejsons/pnpm-lock.yaml
+839-769databases/py-lancedb/distinfo
+434-395databases/py-lancedb/Makefile
+0-182graphics/gpxsee/pkg-plist
+179-0www/remark42/files/packagejsons/package.json
+35-43www/remark42/Makefile
+14,540-1,389175 files not shown
+15,105-1,918181 files

LLVM/project d229e35 — llvm/test/CodeGen/AMDGPU mul.ll amdgcn.bitcast.1024bit.ll

Merge remote-tracking branch 'upstream/main' into users/mssefat/anti-hints-pr5-amdgpu-pre-ra-coexec-anti-hint
DeltaFile
+32,088-15,710llvm/test/CodeGen/AMDGPU/frem.ll
+5,761-3,731llvm/test/CodeGen/AMDGPU/srem.ll
+6,118-2,908llvm/test/CodeGen/AMDGPU/clmul.ll
+1,502-5,317llvm/test/CodeGen/AMDGPU/fcanonicalize.ll
+2,824-2,824llvm/test/CodeGen/AMDGPU/amdgcn.bitcast.1024bit.ll
+1,327-1,552llvm/test/CodeGen/AMDGPU/mul.ll
+49,620-32,0421,443 files not shown
+113,961-70,5011,449 files

LLVM/project 1abc2f0 — llvm/lib/Target/AMDGPU SIISelLowering.cpp AMDGPUInstructionSelector.cpp, llvm/lib/Target/AMDGPU/Utils AMDGPUBaseInfo.h AMDGPUBaseInfo.cpp

[AMDGPU] Use 8-bit barrier member count on GFX13 (#230884)

GFX13 widens the barrier member count in M0 to 8 bits.
DeltaFile
+137-0llvm/test/CodeGen/AMDGPU/s-barrier-member-count.ll
+9-0llvm/lib/Target/AMDGPU/Utils/AMDGPUBaseInfo.cpp
+4-2llvm/lib/Target/AMDGPU/SIISelLowering.cpp
+4-2llvm/lib/Target/AMDGPU/AMDGPUInstructionSelector.cpp
+3-0llvm/lib/Target/AMDGPU/Utils/AMDGPUBaseInfo.h
+157-45 files

NetBSD/pkgsrc 9ZLeIF4 — doc CHANGES-2026

   Updated parallel/pocl, parallel/spirv-llvm-translator
VersionDeltaFile
1.6864+3-1doc/CHANGES-2026
+3-11 files

NetBSD/pkgsrc z58byey — parallel/spirv-llvm-translator PLIST Makefile

   spirv-llvm-translator: updated to 22.1.7

   22.1.7
   https://github.com/KhronosGroup/SPIRV-LLVM-Translator/compare/v22.1.6...v22.1.7
VersionDeltaFile
1.17+4-4parallel/spirv-llvm-translator/distinfo
1.13+2-2parallel/spirv-llvm-translator/PLIST
1.19+2-2parallel/spirv-llvm-translator/Makefile
+8-83 files

NetBSD/pkgsrc IF0h6qR — parallel/pocl Makefile distinfo, parallel/pocl/patches patch-CMakeLists.txt

   pocl: updated to 7.2

   7.2

   Highlights

   Support for LLVM version up to 22 with CUDA and LevelZero devices
   Support for LLVM version 22 & 23 with CPU device
   Minimum supported LLVM version raised to 18
   Official OpenCL 3.0 conformance achieved using OpenCL-CTS tag v2026-03-25-00, with the CPU device running on RISCV and x86-64 CPUs.
   CPU driver gained support of a few new extensions: cl_khr_extended_bit_ops, cl_khr_device_uuid,
   cl_khr_suggested_local_work_size, cl_khr_integer_dot_product, cl_khr_kernel_clock, cl_khr_spirv_linkonce_odr,
   cl_khr_spirv_no_integer_wrap_decoration ; additionally, support for program-scope variables has been re-enabled.
VersionDeltaFile
1.15+5-5parallel/pocl/distinfo
1.31+5-3parallel/pocl/Makefile
1.7+1-1parallel/pocl/patches/patch-CMakeLists.txt
+11-93 files

NetBSD/pkgsrc BJtoXwR — doc CHANGES-2026

   Updated math/py-numpy, math/py-numba
VersionDeltaFile
1.6863+3-1doc/CHANGES-2026
+3-11 files

NetBSD/pkgsrc JiG0d3r — math/py-numba Makefile distinfo

   py-numba: updated to 0.68.0

   0.68.0

   This is a major Numba release. Numba now supports Python 3.15. This release
   also expands Windows ARM64 conda packages and wheels from Python 3.12 through
   3.14. Linux x86_64 and aarch64 wheels are now tagged to be compatible with
   GLIBC >= 2.27.
VersionDeltaFile
1.23+59-8math/py-numba/PLIST
1.30+4-4math/py-numba/distinfo
1.43+3-3math/py-numba/Makefile
+66-153 files

FreeBSD/src 475e3bc — libexec/rc safe_eval.sh

safe_eval.sh: add safe_set_var

Get the log message right!
Fix default allowed chars (untabify clobbered TAB)
Add a couple more : messages to help debugging.
DeltaFile
+11-4libexec/rc/safe_eval.sh
+11-41 files

HardenedBSD/src 475e3bc — libexec/rc safe_eval.sh

safe_eval.sh: add safe_set_var

Get the log message right!
Fix default allowed chars (untabify clobbered TAB)
Add a couple more : messages to help debugging.
DeltaFile
+11-4libexec/rc/safe_eval.sh
+11-41 files

NetBSD/pkgsrc x1Nvupk — math/py-numpy Makefile distinfo

   py-numpy: updated to 2.5.4

   2.5.4

   MAINT: Prepare 2.5.x for further development
   BUG: Reset an unrepresentable fill_value on a dtype change
   BLD: work around MSVC 19.51 bug
   BUG: fix np.strings.replace truncating old/new to a's
   BUG: fix _ureduce reshape when a kept axis has size 0
   BUG: fix two possible crashes in the ufunc.accumulate implementation...
   BUG: Reset an inherited fill_value in MaskedArray.__new__ as...
   ENH: Improvements and fixes for stringdtype hashing
   CI: increase ppc64le timeout to match other timeouts
   BUG: fix memory leak in legacy ArrayMethod wrapper code
   BUG: check for non-finite input before calling gesdd/gelsd and...
   BUG: fix segfault in as_arrays() on self-referencing pyscalars
   TYP: Various typing improvements.
   BUG: Fix canonicalization/promotion of nested subarray types...
   MAINT: Update vendored-meson to match main.

    [2 lines not shown]
VersionDeltaFile
1.122+4-4math/py-numpy/distinfo
1.159+2-2math/py-numpy/Makefile
+6-62 files

HardenedBSD/ports 8b79ada — archivers/archmerge distinfo, archivers/grzip distinfo

*/*: Refresh checksums for on the fly archives on codeberg.org

See https://codeberg.org/Codeberg/Community/issues/2861

Approved by:    blanket
DeltaFile
+5-5x11/ly/distinfo
+3-3benchmarks/ttcp/distinfo
+3-3audio/libid3tag/distinfo
+3-3archivers/libcabinet/distinfo
+3-3archivers/grzip/distinfo
+3-3archivers/archmerge/distinfo
+20-2038 files not shown
+130-13044 files

FreeBSD/ports 8b79ada — x11-wm/durden distinfo, x11/arcan-trayicon distinfo

*/*: Refresh checksums for on the fly archives on codeberg.org

See https://codeberg.org/Codeberg/Community/issues/2861

Approved by:    blanket
DeltaFile
+5-5x11/ly/distinfo
+3-3x11/xvt/distinfo
+3-3x11/wmenu/distinfo
+3-3x11/fnott/distinfo
+3-3x11/arcan-trayicon/distinfo
+3-3x11-wm/durden/distinfo
+20-2038 files not shown
+130-13044 files

NetBSD/pkgsrc RDhfBtB — lang/nodejs distinfo, lang/nodejs/patches patch-configure

   lang/nodejs: Fix build with lang/python315
VersionDeltaFile
1.6+9-9lang/nodejs/patches/patch-configure
1.334+2-1lang/nodejs/distinfo
+11-102 files

FreeNAS/freenas 5d0bb9e — src/middlewared/middlewared/api/v28_0_0 pool_dataset.py, src/middlewared/middlewared/plugins/pool_ dataset_encryption.py

Keep zettarepl's encrypted record call working on targets

## Problem
Replication sources call `pool.dataset.insert_or_update_encrypted_record` over midclt on the target to store the target dataset's key. That private method was removed when encryption moved to `zfs.resource.encryption`, so replicating to a target on this version would fail after the stream was received and leave the encrypted dataset without a stored key, meaning it would not unlock on reboot.

## Solution
Restored the private method on `pool.dataset` with its original payload, forwarding to `zfs.resource.encryption.store_key`. Also trimmed encryption docstrings that repeated the API model field descriptions and corrected which supplied keys get stored on unlock.
DeltaFile
+7-13src/middlewared/middlewared/plugins/zfs/encryption_service.py
+16-1src/middlewared/middlewared/plugins/pool_/dataset_encryption.py
+17-0src/middlewared/middlewared/api/v28_0_0/pool_dataset.py
+0-1src/middlewared/middlewared/plugins/zfs/encryption_info.py
+40-154 files

FreeNAS/freenas 198c188 — src/middlewared/middlewared/plugins/pool_ dataset_query_utils.py, src/middlewared/middlewared/plugins/zfs create_rules.py encryption_keys.py

Unlock zfs resources through typed models

## Problem
Internal callers (failover, boot import, KMIP) started a private dict-based unlock job with its own private models, and results were read with dict indexing. Changing a key from a pipe also rejected valid keys with a leading zero, and change_key accepted keys and passphrases that ZFS would later refuse.

## Solution
- **Unlock**: `zfs.resource.encryption.unlock` gains `start_attachments`, and internal callers start the public job with `ZFSResourceEncryptionUnlockArgsData` and read the returned entry by attribute. `unlock_impl` is now the non-job implementation that takes the model and unwraps secrets once; pool.dataset.unlock calls it directly since it already holds the same job lock.
- **Change key**: the key must be 64 hex characters and a passphrase 8 to 512 characters; a key read from the input pipe is matched as hex text instead of round-tripped through int.
- **Cleanup**: shared `secret_value`/`ancestor_chain` and `is_internal_dataset_name` live in one place each, store_key receives the lowercase ZFS key format while hook payloads are uppercase, and the sync_keys failure is logged with its traceback.
DeltaFile
+27-42src/middlewared/middlewared/plugins/zfs/encryption_lock.py
+9-30src/middlewared/middlewared/plugins/zfs/encryption_service.py
+33-0src/middlewared/middlewared/pytest/unit/plugins/zfs/test_read_hex_key_from_pipe.py
+3-27src/middlewared/middlewared/plugins/pool_/dataset_query_utils.py
+10-20src/middlewared/middlewared/plugins/zfs/encryption_keys.py
+5-17src/middlewared/middlewared/plugins/zfs/create_rules.py
+87-13615 files not shown
+178-18121 files

FreeNAS/freenas 5c9c6af — src/middlewared/middlewared/plugins/pool_ dataset_encryption_operations.py dataset_encryption.py, src/middlewared/middlewared/plugins/zfs encryption_service.py encryption_lock.py

Move dataset encryption to zfs.resource.encryption

## Problem
Dataset encryption still lived in the `pool.dataset` namespace even though `zfs.resource` is now the dataset API, and zr's own create path had to call back into `pool.dataset.insert_or_update_encrypted_record` to record keys.

## Solution
- **New `zfs.resource.encryption` sub-service** owning lock, unlock, unlock_summary, export_key, export_keys, export_replication_keys, change_key and inherit, with zr conventions (`path`, lowercase enums, `Secret` keys, `ZFS_RESOURCE_*` roles, audit). Public methods delegate to private `*_impl` methods for thread local storage, as the rest of zr does, and everything is synchronous except starting attachment delegates, whose API is async.
- **Private methods moved and renamed** (store_key, delete_keys, stored_keys, sync_keys, encryption_roots, encryption_state, replication_keys, encryption_root_mapping, unlock_impl), together with the `storage_encrypteddataset` model. Every internal caller (failover, pool create/import/export, KMIP, replication, zfs events, zr create) now calls zr directly; no `pool.dataset` alias is left.
- **`pool.dataset` encryption methods are thin shims** keeping their models, roles and pipes. They call the zr `*_impl` methods through the namespace with their own job, so no nested jobs are created, and they share zr's job locks so both APIs serialize on the same dataset. Error messages are unchanged; validation attributes now follow zr names.
- `unlock_impl` has a private Secret-typed accepts model so passphrases handed over by failover stay redacted in job listings.
- Hook names and payloads, including the uppercase key formats failover relies on, are unchanged, and nothing renamed is called across HA controllers.
DeltaFile
+433-0src/middlewared/middlewared/plugins/zfs/encryption_lock.py
+0-416src/middlewared/middlewared/plugins/pool_/dataset_encryption_lock.py
+0-405src/middlewared/middlewared/plugins/pool_/dataset_encryption_info.py
+354-0src/middlewared/middlewared/plugins/zfs/encryption_service.py
+322-0src/middlewared/middlewared/plugins/pool_/dataset_encryption.py
+0-271src/middlewared/middlewared/plugins/pool_/dataset_encryption_operations.py
+1,109-1,09225 files not shown
+2,072-1,25531 files

FreeNAS/freenas 55555aa — src/middlewared/middlewared/plugins/pool_ dataset_encryption.py, src/middlewared/middlewared/plugins/zfs encryption_job_locks.py encryption_ops.py

Tidy dataset encryption naming and readability

## Problem
The encryption move left `zfs_resource` wording on the `pool.dataset` side (shared job lock names, the `zr_args` helper, "compatibility wrapper" docstring lines, a `PoolDataset` message raised from zr), and a lot of the moved logic was dense comprehension and `filter`/lambda one-liners that were hard to read.

## Solution
- Job lock names live once in `plugins/zfs/encryption_job_locks.py` with neutral `dataset_encryption_*` names, used by both `pool.dataset` shims and `zfs.resource.encryption`, so both APIs still serialize on the same lock per dataset.
- Shims build zr arguments with the existing `validate_model` instead of a local helper, and their docstrings no longer describe the wrapping.
- zr raises "Dataset {path} does not exist", and the key table model is renamed `EncryptedDatasetModel` (table unchanged).
- Comprehensions, generator expressions, `filter`/`map` lambdas and inline ternaries in the encryption code are plain loops and `if` blocks, with behaviour unchanged.
DeltaFile
+64-73src/middlewared/middlewared/plugins/pool_/dataset_encryption.py
+56-34src/middlewared/middlewared/plugins/zfs/encryption_lock.py
+44-26src/middlewared/middlewared/plugins/zfs/encryption_keys.py
+35-22src/middlewared/middlewared/plugins/zfs/encryption_info.py
+29-25src/middlewared/middlewared/plugins/zfs/encryption_ops.py
+29-0src/middlewared/middlewared/plugins/zfs/encryption_job_locks.py
+257-1803 files not shown
+282-1949 files

FreeNAS/freenas 34851dc — src/middlewared/middlewared/api/v28_0_0 pool_dataset.py, src/middlewared/middlewared/plugins/pool_ dataset_encryption.py

Type check pool.dataset encryption shims

## Context
The pool.dataset encryption methods are new code in this branch but were declared without annotation checks, so their bodies worked on raw dicts while the zfs.resource.encryption methods they wrap are type-safe.

## Solution
All shims now use `check_annotations=True` with signatures matching their models and attribute access in the bodies. Secrets are handed to the zfs.resource models as `Secret` objects rather than dumped, and keys or passphrases left out by the caller are passed as None. The option and result sub-models are exported from the API package so the shims can annotate with them. Wire arguments, results and errors are unchanged.
DeltaFile
+75-42src/middlewared/middlewared/plugins/pool_/dataset_encryption.py
+3-1src/middlewared/middlewared/api/v28_0_0/pool_dataset.py
+78-432 files

NetBSD/pkgsrc cFqWLRB — doc CHANGES-2026

   Updated devel/ccls, devel/include-what-you-use, devel/woboq_codebrowser, devel/py-llvmlite
VersionDeltaFile
1.6862+5-1doc/CHANGES-2026
+5-11 files