Skip to content

Publish only the two desktop installers - #47

Merged
oshtz merged 1 commit into
mainfrom
codex/two-installer-releases
Sep 9, 2026
Merged

oshtz merged 1 commit into
mainfrom
codex/two-installer-releases

Conversation

@oshtz

@oshtz oshtz commented Sep 9, 2026

Copy link
Copy Markdown
Owner

Releases now expose only the unsigned Windows installer and signed/notarized macOS DMG. Integrations remain bundled, and the pinned corresponding 7-Zip source and existing notices are included inside both installers.

The updater verifies GitHub asset size and SHA-256 metadata instead of downloading separate checksum files. Candidate/publication checks require exactly two assets, verify their bytes against GitHub digests, and preserve both real-machine hash attestations. Private draft lookup uses release IDs; previous-installer downloads are authenticated, and a first release correctly handles the missing baseline.

Validation: 47 script contract tests, six focused updater tests, strict native-services Clippy, workflow PowerShell/Bash syntax checks, and a Windows packaging smoke that includes the pinned source passed. Full local pnpm release:check passed on Rust 1.98.0: workspace tests, strict lint, audits, and optimized app build. The final Windows installer also built successfully with the verified corresponding source included. Hosted platform CI must pass before merge. No live release, repository identity, or product version was changed.

@oshtz
oshtz merged commit 4c6893c into main Sep 9, 2026
7 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant