It should be similar to the one Léo did here: https://github.com/formalsec/smtml/blob/main/.github/workflows/build-nix.yml See if there is a way to specify devDependencies in nix for opam-publish and git-cliff