Skip to content

release: promote current RedactGuard dev baseline to main - #204

Merged
daniele21 merged 101 commits into
mainfrom
dev
Sep 7, 2026
Merged

release: promote current RedactGuard dev baseline to main#204
daniele21 merged 101 commits into
mainfrom
dev

Conversation

@daniele21

@daniele21 daniele21 commented Sep 6, 2026

Copy link
Copy Markdown
Owner

Release promotion

Promote the current pre-release dev baseline to stable main through the repository RELEASE path.

Exact candidate

  • current dev@12d20f05654df24a7a57bbf7e1671fed7933772f
  • live main@46fa7597757161e30624552d23cd805ddf0d4523
  • PR is mergeable and represents the stable-promotion delta.

Included state

  • repo-template-sw 0.11.0 product-engineering baseline plus RedactGuard Android/product-UI customizations;
  • public Harnex Consumer Android SDK 0.1.0-alpha.11;
  • signer-aware Harnex authorization and Consumer-first/Host-later recovery;
  • Settings Connect / Disconnect / Retry;
  • fail-closed PENDING and replacement-signer SIGNATURE_CHANGED semantics;
  • deterministic distinct-signer and Two-APK product/lifecycle/fault evidence.

Physical Play evidence and pre-release interpretation

The actual current Play Internal pair passes the physical first-party journey: RedactGuard-first, Harnex-later without reinstall, fail-closed Host absence, PENDING, exact authorization, Connect / Disconnect / Reconnect and representative production Consumer SDK/Binder/local-analysis execution.

The collected Play App Signing metadata reports the same current SHA-256 digest for Harnex and RedactGuard. The canonical runbook explicitly permits this same-signer first-party topology for the current pre-release stable repository promotion because the topology is recorded truthfully and signing identity is not used as a trust shortcut. Deterministic distinct-signer authorization evidence remains mandatory.

This physical run is not distinct-signer Play qualification. Before the first public release that depends on independently signed application distribution, or before claiming physical distinct-signer Play readiness, repeat the focused Play journey with distinct observed signing identities.

Automated RELEASE/FULL requirement

The documentation-budget fix moved dev to 12d20f0.... Merge only after exact-head/base RELEASE/FULL and other required checks are green against live main.

Broader LAS-07 ARM64/JNI/GGUF/resource, memory/thermal/OEM and other claim-specific physical evidence remain separate.

chore: sync release-closeout main back into dev
Integrate the validated LIA-80 cross-APK Activity persistence and terminal-state evidence into dev.
@daniele21
daniele21 deployed to play-internal September 7, 2026 12:23 — with GitHub Actions Active
* docs: redesign public README around product and evidence

* docs: make README image placeholders explicit
Align RedactGuard with the repo-template-sw 0.11.0 product-engineering model while preserving RedactGuard-specific Android, privacy, product-UI and current public README guidance.

Copy link
Copy Markdown
Owner Author

/preflight full

Copy link
Copy Markdown
Owner Author

/preflight auto

Copy link
Copy Markdown
Owner Author

/preflight full

Copy link
Copy Markdown
Owner Author

/preflight full

1 similar comment

Copy link
Copy Markdown
Owner Author

/preflight full

@daniele21
daniele21 marked this pull request as ready for review September 7, 2026 14:58
@daniele21
daniele21 merged commit 59a4a7a into main Sep 7, 2026
12 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant