README.md markdown
17 lines 819 B
Raw
sha256:0e9549ec7b463911bc08b7d586dc320b1ac9b1f5c943ee7e3865dcc6cb0f6f83 chore(governance): sync handover+roadmap to 84db8c8 (drift:… Human 1 day ago

Desktop release public keys (§QR.5.3 / §QR.6.3)

This directory holds public verifying material only for Linux detached signatures on .AppImage installers (minisign by default).

Allowed Forbidden
*.pub, *.minisign.pub, *.asc (public) Private keys, .p12, .pfx, .key, passphrases
This README Anything matching secret patterns

Private signing keys live only as GitHub Actions secrets (LINUX_SIGNING_KEY, optional LINUX_SIGNING_KEY_PASSWORD). Never commit private key material here.

Kit dogfood Apple notarization mode: App Store Connect API key preferred in CI when configured (APPLE_API_KEY + APPLE_API_KEY_ID + APPLE_API_ISSUER + APPLE_TEAM_ID); otherwise app-specific password mode (APPLE_ID + APPLE_APP_SPECIFIC_PASSWORD + APPLE_TEAM_ID).

File History 1 commit
sha256:6abcf1fa82a7a621ccbc945f19acdba5bc0db54569599404a1452fb4a096a199 fix(ISR): default require_independent_second_reviewer to require Human minor 1 day ago