Repository navigation
feat(updates): restore signed in-app updates and release v0.4.2 - #21
Merged
Merged
Conversation
Add Software Updates settings with the actual app version, manual checks, persisted daily checks, and a release notes link. Use Sparkle's native download, Ed25519 verification, installation, and relaunch flow. Bundle a pinned, checksum-verified Sparkle framework and verify packaged updater configuration and signatures in CI. Sign and verify the appcast and update archive before release promotion, rejecting missing or tampered signatures. Document migration from v0.4.0/v0.4.1 and add signed-feed regression coverage. Native upgrade/relaunch and Chromium/WebKit settings and editor regressions were verified during implementation.
Align package, Cargo, and macOS bundle versions. Document updater migration and publish bilingual release notes; update the website download version and changelog.
Deploying floatick with
|
| Latest commit: |
80e0aaa
|
| Status: | ✅ Deploy successful! |
| Preview URL: | https://ed3492a3.floatick.pages.dev |
| Branch Preview URL: | https://release-0-4-2.floatick.pages.dev |
Use the version-specific release notes and an exact tag comparison when available. Avoid repeating the previous release PR in GitHub notes and the signed Sparkle feed when stable tags point to tested candidate commits.
This branch was successfully deployed
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Restore in-app updates in the Tauri client and release v0.4.2 (build 14). Settings now exposes the actual version, manual checks, persisted daily checks, and release notes. Sparkle handles download progress, signature verification, and confirmed installation/relaunch.
The previous public feed lacked signatures and the client did not bundle an updater. The release pipeline now verifies the bundled framework/configuration, signs and verifies the feed and DMG, and blocks unsigned or tampered artifacts. Public v0.4.0/v0.4.1 users need one manual installation; the local updater test build can upgrade through the signed feed.
Validation already completed during implementation:
Release candidate CI additionally builds both macOS architectures, verifies the packaged updater, and checks application startup. Includes bilingual release notes and website version/changelog updates.