@gefjon is working on a new Nix flake. We would like CI to `nix flake check` it. The easiest path to this is probably to run on a normal github runner, but use a Nix docker container.