Ships data and metadata that other packages consume but which changes on a faster cadence than the code packages themselves, such as pinned known-good version numbers and bundled signing keys.
Carrying this metadata in its own minimal, dependency-light package lets it be updated and migrated between distribution suites independently of the heavier code packages that would otherwise hold back such updates.
Each consumer gets its own namespaced subdirectory under
/usr/share/dist-system-metadata/, so the package is extensible to further
consumers beyond its initial tb-updater use case.
1. Download the APT Signing Key.
wget https://www.kicksecure.com/keys/derivative.asc
Users can check the Signing Key for better security.
2. Add the APT Signing Key.
sudo cp ~/derivative.asc /usr/share/keyrings/derivative.asc
3. Add the derivative repository.
echo "deb [signed-by=/usr/share/keyrings/derivative.asc] https://deb.kicksecure.com trixie main contrib non-free" | sudo tee /etc/apt/sources.list.d/derivative.list
4. Update your package lists.
sudo apt-get update
5. Install dist-system-metadata.
sudo apt-get install dist-system-metadata
Can be build using standard Debian package build tools such as:
dpkg-buildpackage -b
See instructions.
NOTE: Replace generic-package with the actual name of this package dist-system-metadata.
- A) easy, OR
- B) including verifying software signatures
dist-system-metadata requires donations to stay alive!