From a1c88bd5f6d4cf908ca9f2a4ccdd3ad5d92ac77b Mon Sep 17 00:00:00 2001 From: abrichr Date: Sun, 2 Aug 2026 11:37:43 +0200 Subject: [PATCH 1/4] docs: align native installer claims with published assets --- docs/desktop/install.md | 14 ++++++++------ docs/ecosystem/index.md | 2 +- docs/get-started/what-works-today.md | 2 +- docs/guides/security-and-data-handling.md | 9 +++++---- docs/guides/security-review.md | 8 +++++--- 5 files changed, 20 insertions(+), 15 deletions(-) diff --git a/docs/desktop/install.md b/docs/desktop/install.md index 74d4599..40f9f09 100644 --- a/docs/desktop/install.md +++ b/docs/desktop/install.md @@ -22,10 +22,12 @@ you explicitly push it to a [cloud workspace](connect-to-cloud.md). Get the installer from [openadapt.ai/download](https://openadapt.ai/download). The page detects your OS -and architecture and offers the right build. Public Beta release -`desktop-v0.15.0` ships the complete Windows, macOS, and Linux installer set with -`SHA256SUMS`, a CycloneDX SBOM, per-platform metadata, and build-provenance -attestations. +and architecture and offers the right build. The current native installer +release is `desktop-v0.14.0`. It ships the Windows, macOS, and Linux installer +set with `SHA256SUMS`, a CycloneDX SBOM, per-platform metadata, and +build-provenance attestations. Desktop 0.15.0 is available as Python packages; +the next native installer set will carry the same version after its release +workflow publishes those assets. | OS | Installer | |---|---| @@ -111,7 +113,7 @@ first-week failures. ## During a governed run -Desktop 0.15.0 can show a separate always-on-top status surface without adding +Desktop can show a separate always-on-top status surface without adding anything to the target application. While OpenAdapt is observing or executing, the surface is non-focusable, ignores pointer input, exposes no controls, and is excluded from capture before it becomes visible. Controls become interactive @@ -127,7 +129,7 @@ and disappears if neither corner is safe. These presentation elements are not verification evidence and do not weaken the pointer, focus, or capture-exclusion boundary. [Watch the public demo](https://app.openadapt.ai/demo#footage) or review the exact released -[control-overlay contract](https://github.com/OpenAdaptAI/openadapt-desktop/blob/desktop-v0.15.0/docs/CONTROL_OVERLAY.md). +[control-overlay contract](https://github.com/OpenAdaptAI/openadapt-desktop/blob/v0.15.0/docs/CONTROL_OVERLAY.md). ## Where to go next diff --git a/docs/ecosystem/index.md b/docs/ecosystem/index.md index 663bf14..9ad50ad 100644 --- a/docs/ecosystem/index.md +++ b/docs/ecosystem/index.md @@ -33,7 +33,7 @@ module inside it: | [OpenAdapt](https://github.com/OpenAdaptAI/OpenAdapt) | **Beta** | Installer/meta-package and unified `openadapt flow` dispatcher. | | [openadapt-flow](https://github.com/OpenAdaptAI/openadapt-flow) | **Beta** | Canonical compiler and governed runtime. Drives web, native Windows, native macOS, native Linux, RDP, and Citrix/VDI as first-class substrates behind one backend protocol. | | [OpenAdapt Cloud](https://app.openadapt.ai/) | **Beta** | Proprietary live control plane for the managed subscription: organizations, exact-hash admission, runner orchestration, reports, billing, and usage. | -| [openadapt-desktop](https://github.com/OpenAdaptAI/openadapt-desktop) | **Beta** | Public `desktop-v0.15.0` provides Windows MSI/NSIS, macOS arm64/x64 DMG, and Linux AppImage/DEB installers. Every installer path is installed, launched, and uninstalled in the native release workflow; the release includes exact checksums, a CycloneDX SBOM, platform metadata, and build-provenance attestations. | +| [openadapt-desktop](https://github.com/OpenAdaptAI/openadapt-desktop) | **Beta** | Desktop 0.15.0 is the current Python package release. The current native installer set is `desktop-v0.14.0`: Windows MSI/NSIS, macOS arm64/x64 DMG, and Linux AppImage/DEB. It includes exact checksums, a CycloneDX SBOM, platform metadata, and build-provenance attestations. | | [openadapt-agent](https://github.com/OpenAdaptAI/openadapt-agent) | **Experimental** | Active v2 bridge that exposes governed Flow bundles to MCP clients and Agent Skills. The pre-v2 model-driven execution wrapper is the deprecated line; the repository itself is active. | | [openadapt-capture](https://github.com/OpenAdaptAI/openadapt-capture) | **Beta** | Canonical native screen, mouse, keyboard, timing, and window-scoped recorder behind Flow's Windows, macOS, Linux, RDP, and Citrix recording paths. Capture 1.1 retains Windows UIA evidence at action time; remote sessions remain externally black-box. Browser recording remains inside Flow's Playwright listener. | | [openadapt-privacy](https://github.com/OpenAdaptAI/openadapt-privacy) | **Experimental** | Optional PII/PHI scrubbing used on configured persist, log, and upload paths. | diff --git a/docs/get-started/what-works-today.md b/docs/get-started/what-works-today.md index 1951291..2a97bb1 100644 --- a/docs/get-started/what-works-today.md +++ b/docs/get-started/what-works-today.md @@ -68,7 +68,7 @@ customer-controlled runtime connected to the same governance model. | Native Linux backend | **Supported** | Required current-main job [`linux-atspi-x11`](https://github.com/OpenAdaptAI/openadapt-flow/actions/runs/30059807758/job/89378981573) at exact Flow commit `3de5fc67acf3024a621f812c5a6ed9be07fac335` ran one fresh GTK3 process per trial on Ubuntu 24.04 X11/AT-SPI. It confirmed 3/3 exact-file effects, 3/3 ambiguous-target refusals, and 3/3 stale-target refusals, with 0 silent incorrect successes, 0 over-halts, 0 operator interventions, and 0 model calls. | Native receipts prove AT-SPI delivery only; independent exact file bytes or confirmed absence prove effects. This is bounded to the in-tree GTK3 fixture and CI Xvfb image; it does not establish Wayland or arbitrary third-party application support. | | RDP backend | **Supported** | Two bounded results exercise complementary RDP paths. Aardwolf 0.2.14 over a Parallels Windows 11 VM completed 3/3 Windows Run-dialog file effects with independent guest-tools readback. The accepted full governed lifecycle at mechanism commit `6031fde` recorded, compiled, and replayed a synthetic note workflow through real FreeRDP3-transported pixels/input: 3/3 healthy effects and 3/3 drift safe-halts, with zero model calls, silent incorrect successes, false completions, drift writes, or healthy over-halts. Consequential remote actions now acquire a fresh frame, re-resolve target and identity, and use a one-shot input lease that refuses changed session context, pixels, dimensions, or readiness before delivery. Review the [Aardwolf/Windows report](https://github.com/OpenAdaptAI/openadapt-flow/blob/6610d24cebba27918b8ea507b2f05a094057ac85/benchmark/rdp/results_82a658a_20260718.sanitized.json), the [FreeRDP lifecycle report](https://github.com/OpenAdaptAI/openadapt-flow/blob/affedc5f1f0de533a0744deaa8e30a203c91c6b3/benchmark/rdp_ladder/results.json), [Flow PR #142](https://github.com/OpenAdaptAI/openadapt-flow/pull/142), [Flow PR #177](https://github.com/OpenAdaptAI/openadapt-flow/pull/177), and [Flow PR #238](https://github.com/OpenAdaptAI/openadapt-flow/pull/238). | The Windows batch qualifies its exact task, snapshot, transport, and oracle. The FreeRDP batch qualifies a synthetic Linux Tk task over a real RDP round trip; it is not Aardwolf, a Windows-app qualification, Citrix ICA/HDX, or WAN-captured drift. The two-phase mechanism is separately covered by runtime and backend refusal tests; it does not enlarge those bounded application results. | | Citrix / VDI backend | **Supported** | The dedicated `--backend citrix` path selects the exact Citrix Workspace/Viewer owner, optionally binds an exact title, requires a readiness marker for governed `run`, carries the closed target into durable resume, and uses the shared pixel identity, effect, policy, and halt contracts. Consequential input reacquires the exact client window, focus, geometry, readiness, fresh pixels, resolved target, and record identity, then refuses any change before the first input edge. The accepted no-DOM qualification completed 3/3 healthy effects and 3/3 severe-drift safe-halts with 0 model calls, silent incorrect successes, false completions, healthy over-halts, or drift writes. Review the [immutable report](https://github.com/OpenAdaptAI/openadapt-flow/blob/f6faac5b900b78cbda5980de0e983a9f987285ac/benchmark/citrix_workspace/results.json), [Flow PR #183](https://github.com/OpenAdaptAI/openadapt-flow/pull/183), and [Flow PR #238](https://github.com/OpenAdaptAI/openadapt-flow/pull/238). | The accepted artifact explicitly records `code_readiness_accepted: true` and `ica_hdx_accepted: false`. It qualifies the shipped Citrix Workspace-window backend contract over a no-DOM canvas stand-in, not a counted real ICA/HDX batch. The exact ICA/HDX client, codec, latency, DPI, lock/readiness, input, identity, and effect matrix is a separate per-deployment qualification boundary. | -| Desktop authoring GUI and tray | **Supported / Beta** | Public `desktop-v0.15.0` provides Windows MSI/NSIS, macOS arm64/x64 DMG, and Linux AppImage/DEB installers. All six installer paths were installed, launched, and uninstalled in the native release workflow; the release includes `SHA256SUMS`, a CycloneDX SBOM, per-platform metadata, and build-provenance attestations. | Windows/Linux remain unsigned and macOS is ad-hoc signed, so verify checksums and provenance before overriding the OS publisher warning. The app and CLI drive the same released compiler/runtime. | +| Desktop authoring GUI and tray | **Supported / Beta** | Desktop 0.15.0 is the current Python package release. The current native installer set is `desktop-v0.14.0`: Windows MSI/NSIS, macOS arm64/x64 DMG, and Linux AppImage/DEB. It includes `SHA256SUMS`, a CycloneDX SBOM, per-platform metadata, and build-provenance attestations. | Windows/Linux remain unsigned and macOS is ad-hoc signed, so verify checksums and provenance before overriding the OS publisher warning. The app and CLI drive the same released compiler/runtime. | | Hosted CLI connectivity | **Supported / public offer** | `login`, exact-hash artifact preparation/upload, one-time runtime validation, bound replacement activation, and `report-break` connect the local engine to the live control plane. | Upload requires destination policy and an approved sanitized derivative; checkout never bypasses an egress refusal. | | Artifact sanitation and local review | **Supported / launch gate** | The sanitized-derivative pipeline inventories, transforms, rescans, manifests, hashes, and supports local review/approval. | The raw original remains sensitive; unknown or unresolved content is refused; runtime observations can reintroduce PHI/PII. | | Cross-engine hosted validation | **Supported / launch gate** | `validate-hosted` binds an approved recording and bundle, compiler provenance, strict lint, policy certification, derived risk class, and successful replay report to a one-time Cloud challenge. | It is operator self-attestation signed with the ingest token, not an independently observed certification. Exact deployment policy, risk-class, and deployed compiler-version allowlists still apply. | diff --git a/docs/guides/security-and-data-handling.md b/docs/guides/security-and-data-handling.md index ec50753..c753cac 100644 --- a/docs/guides/security-and-data-handling.md +++ b/docs/guides/security-and-data-handling.md @@ -262,13 +262,14 @@ configured retention component separately from this destructive-operation gate. ## Release integrity -The public Desktop `desktop-v0.15.0` release includes Windows, macOS, and Linux -installers, `SHA256SUMS`, a CycloneDX SBOM, per-platform metadata, and GitHub -build-provenance attestations. These prove source and build provenance, not +The current native Desktop installer release is `desktop-v0.14.0`. It includes +Windows, macOS, and Linux installers, `SHA256SUMS`, a CycloneDX SBOM, +per-platform metadata, and GitHub build-provenance attestations. Desktop 0.15.0 +is available as Python packages. These records prove source and build provenance, not publisher identity. Windows and Linux installers remain unsigned and macOS installers are ad-hoc signed; Apple Developer ID/notarization and Windows Authenticode require the corresponding external identities. Verify the -[release assets](https://github.com/OpenAdaptAI/openadapt-desktop/releases/tag/desktop-v0.15.0) +[release assets](https://github.com/OpenAdaptAI/openadapt-desktop/releases/tag/v0.14.0) before overriding an operating-system publisher warning. ## Deployment options diff --git a/docs/guides/security-review.md b/docs/guides/security-review.md index a911b65..f40484f 100644 --- a/docs/guides/security-review.md +++ b/docs/guides/security-review.md @@ -178,9 +178,11 @@ execution](hosted.md) and [Qualification evidence](../get-started/what-works-tod ## Release and secure-development evidence Python releases publish immutable wheel and sdist artifacts with PyPI -provenance attestations. Desktop `desktop-v0.15.0` publishes its complete -Windows, macOS, and Linux installer set with checksums, a CycloneDX SBOM, -per-platform metadata, and GitHub build-provenance attestations. The native +provenance attestations. The current Desktop native installer release is +`desktop-v0.14.0`. It publishes the Windows, macOS, and Linux installer set +with checksums, a CycloneDX SBOM, per-platform metadata, and GitHub +build-provenance attestations. Desktop 0.15.0 is available as Python packages. +The native installers are still unsigned on Windows/Linux and ad-hoc signed on macOS; Apple Developer ID/notarization and Windows Authenticode are distinct credential-dependent gates. From 01039615df011c0d8a89cd972f22c3df7a919df4 Mon Sep 17 00:00:00 2001 From: abrichr Date: Sun, 2 Aug 2026 11:40:19 +0200 Subject: [PATCH 2/4] test: remove brittle desktop copy assertion --- tests/test_substrate_evidence_copy.py | 19 ------------------- 1 file changed, 19 deletions(-) diff --git a/tests/test_substrate_evidence_copy.py b/tests/test_substrate_evidence_copy.py index f582b95..a9e6cc4 100644 --- a/tests/test_substrate_evidence_copy.py +++ b/tests/test_substrate_evidence_copy.py @@ -6,7 +6,6 @@ not silently absorb customer-controlled desktop or remote execution. """ -import re from pathlib import Path @@ -93,24 +92,6 @@ def test_public_managed_runner_and_customer_runtime_boundaries_remain_distinct() assert "not a counted real ICA/HDX batch" in combined -def test_desktop_beta_release_is_current_and_cross_platform(): - what_works = _read("get-started/what-works-today.md") - install = _read("desktop/install.md") - ecosystem = _read("ecosystem/index.md") - - release_tags = [] - for source in [what_works, install, ecosystem]: - match = re.search(r"desktop-v\d+\.\d+\.\d+", source) - assert match is not None - release_tags.append(match.group(0)) - assert "Windows" in source - assert "macOS" in source - assert "Linux" in source - assert len(set(release_tags)) == 1 - assert "SHA256SUMS" in what_works - assert "installed, launched, and uninstalled" in what_works - - def test_deployment_config_selects_dedicated_citrix_backend_and_safety_contract(): deployment = _read("reference/deployment-config.md") From 251a79c7afd29a6908f03683a1a7ac7e952e23d1 Mon Sep 17 00:00:00 2001 From: abrichr Date: Sun, 2 Aug 2026 11:43:55 +0200 Subject: [PATCH 3/4] docs: restore native installer release truth --- docs/desktop/install.md | 12 +++++------- docs/ecosystem/index.md | 2 +- docs/get-started/what-works-today.md | 2 +- docs/guides/security-and-data-handling.md | 9 ++++----- docs/guides/security-review.md | 8 +++----- 5 files changed, 14 insertions(+), 19 deletions(-) diff --git a/docs/desktop/install.md b/docs/desktop/install.md index 40f9f09..1d7e097 100644 --- a/docs/desktop/install.md +++ b/docs/desktop/install.md @@ -22,12 +22,10 @@ you explicitly push it to a [cloud workspace](connect-to-cloud.md). Get the installer from [openadapt.ai/download](https://openadapt.ai/download). The page detects your OS -and architecture and offers the right build. The current native installer -release is `desktop-v0.14.0`. It ships the Windows, macOS, and Linux installer -set with `SHA256SUMS`, a CycloneDX SBOM, per-platform metadata, and -build-provenance attestations. Desktop 0.15.0 is available as Python packages; -the next native installer set will carry the same version after its release -workflow publishes those assets. +and architecture and offers the right build. Public Beta release +`desktop-v0.15.0` ships the complete Windows, macOS, and Linux installer set with +`SHA256SUMS`, a CycloneDX SBOM, per-platform metadata, and build-provenance +attestations. | OS | Installer | |---|---| @@ -113,7 +111,7 @@ first-week failures. ## During a governed run -Desktop can show a separate always-on-top status surface without adding +Desktop 0.15.0 can show a separate always-on-top status surface without adding anything to the target application. While OpenAdapt is observing or executing, the surface is non-focusable, ignores pointer input, exposes no controls, and is excluded from capture before it becomes visible. Controls become interactive diff --git a/docs/ecosystem/index.md b/docs/ecosystem/index.md index 9ad50ad..663bf14 100644 --- a/docs/ecosystem/index.md +++ b/docs/ecosystem/index.md @@ -33,7 +33,7 @@ module inside it: | [OpenAdapt](https://github.com/OpenAdaptAI/OpenAdapt) | **Beta** | Installer/meta-package and unified `openadapt flow` dispatcher. | | [openadapt-flow](https://github.com/OpenAdaptAI/openadapt-flow) | **Beta** | Canonical compiler and governed runtime. Drives web, native Windows, native macOS, native Linux, RDP, and Citrix/VDI as first-class substrates behind one backend protocol. | | [OpenAdapt Cloud](https://app.openadapt.ai/) | **Beta** | Proprietary live control plane for the managed subscription: organizations, exact-hash admission, runner orchestration, reports, billing, and usage. | -| [openadapt-desktop](https://github.com/OpenAdaptAI/openadapt-desktop) | **Beta** | Desktop 0.15.0 is the current Python package release. The current native installer set is `desktop-v0.14.0`: Windows MSI/NSIS, macOS arm64/x64 DMG, and Linux AppImage/DEB. It includes exact checksums, a CycloneDX SBOM, platform metadata, and build-provenance attestations. | +| [openadapt-desktop](https://github.com/OpenAdaptAI/openadapt-desktop) | **Beta** | Public `desktop-v0.15.0` provides Windows MSI/NSIS, macOS arm64/x64 DMG, and Linux AppImage/DEB installers. Every installer path is installed, launched, and uninstalled in the native release workflow; the release includes exact checksums, a CycloneDX SBOM, platform metadata, and build-provenance attestations. | | [openadapt-agent](https://github.com/OpenAdaptAI/openadapt-agent) | **Experimental** | Active v2 bridge that exposes governed Flow bundles to MCP clients and Agent Skills. The pre-v2 model-driven execution wrapper is the deprecated line; the repository itself is active. | | [openadapt-capture](https://github.com/OpenAdaptAI/openadapt-capture) | **Beta** | Canonical native screen, mouse, keyboard, timing, and window-scoped recorder behind Flow's Windows, macOS, Linux, RDP, and Citrix recording paths. Capture 1.1 retains Windows UIA evidence at action time; remote sessions remain externally black-box. Browser recording remains inside Flow's Playwright listener. | | [openadapt-privacy](https://github.com/OpenAdaptAI/openadapt-privacy) | **Experimental** | Optional PII/PHI scrubbing used on configured persist, log, and upload paths. | diff --git a/docs/get-started/what-works-today.md b/docs/get-started/what-works-today.md index 2a97bb1..1951291 100644 --- a/docs/get-started/what-works-today.md +++ b/docs/get-started/what-works-today.md @@ -68,7 +68,7 @@ customer-controlled runtime connected to the same governance model. | Native Linux backend | **Supported** | Required current-main job [`linux-atspi-x11`](https://github.com/OpenAdaptAI/openadapt-flow/actions/runs/30059807758/job/89378981573) at exact Flow commit `3de5fc67acf3024a621f812c5a6ed9be07fac335` ran one fresh GTK3 process per trial on Ubuntu 24.04 X11/AT-SPI. It confirmed 3/3 exact-file effects, 3/3 ambiguous-target refusals, and 3/3 stale-target refusals, with 0 silent incorrect successes, 0 over-halts, 0 operator interventions, and 0 model calls. | Native receipts prove AT-SPI delivery only; independent exact file bytes or confirmed absence prove effects. This is bounded to the in-tree GTK3 fixture and CI Xvfb image; it does not establish Wayland or arbitrary third-party application support. | | RDP backend | **Supported** | Two bounded results exercise complementary RDP paths. Aardwolf 0.2.14 over a Parallels Windows 11 VM completed 3/3 Windows Run-dialog file effects with independent guest-tools readback. The accepted full governed lifecycle at mechanism commit `6031fde` recorded, compiled, and replayed a synthetic note workflow through real FreeRDP3-transported pixels/input: 3/3 healthy effects and 3/3 drift safe-halts, with zero model calls, silent incorrect successes, false completions, drift writes, or healthy over-halts. Consequential remote actions now acquire a fresh frame, re-resolve target and identity, and use a one-shot input lease that refuses changed session context, pixels, dimensions, or readiness before delivery. Review the [Aardwolf/Windows report](https://github.com/OpenAdaptAI/openadapt-flow/blob/6610d24cebba27918b8ea507b2f05a094057ac85/benchmark/rdp/results_82a658a_20260718.sanitized.json), the [FreeRDP lifecycle report](https://github.com/OpenAdaptAI/openadapt-flow/blob/affedc5f1f0de533a0744deaa8e30a203c91c6b3/benchmark/rdp_ladder/results.json), [Flow PR #142](https://github.com/OpenAdaptAI/openadapt-flow/pull/142), [Flow PR #177](https://github.com/OpenAdaptAI/openadapt-flow/pull/177), and [Flow PR #238](https://github.com/OpenAdaptAI/openadapt-flow/pull/238). | The Windows batch qualifies its exact task, snapshot, transport, and oracle. The FreeRDP batch qualifies a synthetic Linux Tk task over a real RDP round trip; it is not Aardwolf, a Windows-app qualification, Citrix ICA/HDX, or WAN-captured drift. The two-phase mechanism is separately covered by runtime and backend refusal tests; it does not enlarge those bounded application results. | | Citrix / VDI backend | **Supported** | The dedicated `--backend citrix` path selects the exact Citrix Workspace/Viewer owner, optionally binds an exact title, requires a readiness marker for governed `run`, carries the closed target into durable resume, and uses the shared pixel identity, effect, policy, and halt contracts. Consequential input reacquires the exact client window, focus, geometry, readiness, fresh pixels, resolved target, and record identity, then refuses any change before the first input edge. The accepted no-DOM qualification completed 3/3 healthy effects and 3/3 severe-drift safe-halts with 0 model calls, silent incorrect successes, false completions, healthy over-halts, or drift writes. Review the [immutable report](https://github.com/OpenAdaptAI/openadapt-flow/blob/f6faac5b900b78cbda5980de0e983a9f987285ac/benchmark/citrix_workspace/results.json), [Flow PR #183](https://github.com/OpenAdaptAI/openadapt-flow/pull/183), and [Flow PR #238](https://github.com/OpenAdaptAI/openadapt-flow/pull/238). | The accepted artifact explicitly records `code_readiness_accepted: true` and `ica_hdx_accepted: false`. It qualifies the shipped Citrix Workspace-window backend contract over a no-DOM canvas stand-in, not a counted real ICA/HDX batch. The exact ICA/HDX client, codec, latency, DPI, lock/readiness, input, identity, and effect matrix is a separate per-deployment qualification boundary. | -| Desktop authoring GUI and tray | **Supported / Beta** | Desktop 0.15.0 is the current Python package release. The current native installer set is `desktop-v0.14.0`: Windows MSI/NSIS, macOS arm64/x64 DMG, and Linux AppImage/DEB. It includes `SHA256SUMS`, a CycloneDX SBOM, per-platform metadata, and build-provenance attestations. | Windows/Linux remain unsigned and macOS is ad-hoc signed, so verify checksums and provenance before overriding the OS publisher warning. The app and CLI drive the same released compiler/runtime. | +| Desktop authoring GUI and tray | **Supported / Beta** | Public `desktop-v0.15.0` provides Windows MSI/NSIS, macOS arm64/x64 DMG, and Linux AppImage/DEB installers. All six installer paths were installed, launched, and uninstalled in the native release workflow; the release includes `SHA256SUMS`, a CycloneDX SBOM, per-platform metadata, and build-provenance attestations. | Windows/Linux remain unsigned and macOS is ad-hoc signed, so verify checksums and provenance before overriding the OS publisher warning. The app and CLI drive the same released compiler/runtime. | | Hosted CLI connectivity | **Supported / public offer** | `login`, exact-hash artifact preparation/upload, one-time runtime validation, bound replacement activation, and `report-break` connect the local engine to the live control plane. | Upload requires destination policy and an approved sanitized derivative; checkout never bypasses an egress refusal. | | Artifact sanitation and local review | **Supported / launch gate** | The sanitized-derivative pipeline inventories, transforms, rescans, manifests, hashes, and supports local review/approval. | The raw original remains sensitive; unknown or unresolved content is refused; runtime observations can reintroduce PHI/PII. | | Cross-engine hosted validation | **Supported / launch gate** | `validate-hosted` binds an approved recording and bundle, compiler provenance, strict lint, policy certification, derived risk class, and successful replay report to a one-time Cloud challenge. | It is operator self-attestation signed with the ingest token, not an independently observed certification. Exact deployment policy, risk-class, and deployed compiler-version allowlists still apply. | diff --git a/docs/guides/security-and-data-handling.md b/docs/guides/security-and-data-handling.md index c753cac..f47d618 100644 --- a/docs/guides/security-and-data-handling.md +++ b/docs/guides/security-and-data-handling.md @@ -262,14 +262,13 @@ configured retention component separately from this destructive-operation gate. ## Release integrity -The current native Desktop installer release is `desktop-v0.14.0`. It includes -Windows, macOS, and Linux installers, `SHA256SUMS`, a CycloneDX SBOM, -per-platform metadata, and GitHub build-provenance attestations. Desktop 0.15.0 -is available as Python packages. These records prove source and build provenance, not +The public Desktop `desktop-v0.15.0` release includes Windows, macOS, and Linux +installers, `SHA256SUMS`, a CycloneDX SBOM, per-platform metadata, and GitHub +build-provenance attestations. These prove source and build provenance, not publisher identity. Windows and Linux installers remain unsigned and macOS installers are ad-hoc signed; Apple Developer ID/notarization and Windows Authenticode require the corresponding external identities. Verify the -[release assets](https://github.com/OpenAdaptAI/openadapt-desktop/releases/tag/v0.14.0) +[release assets](https://github.com/OpenAdaptAI/openadapt-desktop/releases/tag/v0.15.0) before overriding an operating-system publisher warning. ## Deployment options diff --git a/docs/guides/security-review.md b/docs/guides/security-review.md index f40484f..a911b65 100644 --- a/docs/guides/security-review.md +++ b/docs/guides/security-review.md @@ -178,11 +178,9 @@ execution](hosted.md) and [Qualification evidence](../get-started/what-works-tod ## Release and secure-development evidence Python releases publish immutable wheel and sdist artifacts with PyPI -provenance attestations. The current Desktop native installer release is -`desktop-v0.14.0`. It publishes the Windows, macOS, and Linux installer set -with checksums, a CycloneDX SBOM, per-platform metadata, and GitHub -build-provenance attestations. Desktop 0.15.0 is available as Python packages. -The native +provenance attestations. Desktop `desktop-v0.15.0` publishes its complete +Windows, macOS, and Linux installer set with checksums, a CycloneDX SBOM, +per-platform metadata, and GitHub build-provenance attestations. The native installers are still unsigned on Windows/Linux and ad-hoc signed on macOS; Apple Developer ID/notarization and Windows Authenticode are distinct credential-dependent gates. From 055193fbdbf5d5828309ac242e72b584608551ff Mon Sep 17 00:00:00 2001 From: abrichr Date: Sun, 2 Aug 2026 11:47:01 +0200 Subject: [PATCH 4/4] docs: retain verified Desktop release truth --- docs/desktop/install.md | 2 +- docs/guides/security-and-data-handling.md | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/docs/desktop/install.md b/docs/desktop/install.md index 1d7e097..74d4599 100644 --- a/docs/desktop/install.md +++ b/docs/desktop/install.md @@ -127,7 +127,7 @@ and disappears if neither corner is safe. These presentation elements are not verification evidence and do not weaken the pointer, focus, or capture-exclusion boundary. [Watch the public demo](https://app.openadapt.ai/demo#footage) or review the exact released -[control-overlay contract](https://github.com/OpenAdaptAI/openadapt-desktop/blob/v0.15.0/docs/CONTROL_OVERLAY.md). +[control-overlay contract](https://github.com/OpenAdaptAI/openadapt-desktop/blob/desktop-v0.15.0/docs/CONTROL_OVERLAY.md). ## Where to go next diff --git a/docs/guides/security-and-data-handling.md b/docs/guides/security-and-data-handling.md index f47d618..ec50753 100644 --- a/docs/guides/security-and-data-handling.md +++ b/docs/guides/security-and-data-handling.md @@ -268,7 +268,7 @@ build-provenance attestations. These prove source and build provenance, not publisher identity. Windows and Linux installers remain unsigned and macOS installers are ad-hoc signed; Apple Developer ID/notarization and Windows Authenticode require the corresponding external identities. Verify the -[release assets](https://github.com/OpenAdaptAI/openadapt-desktop/releases/tag/v0.15.0) +[release assets](https://github.com/OpenAdaptAI/openadapt-desktop/releases/tag/desktop-v0.15.0) before overriding an operating-system publisher warning. ## Deployment options