Skip to content

Elevate 1.6.6

Choose a tag to compare

@github-actions github-actions released this 14 Sep 06:33
· 91 commits to main since this release

Fixed

  • macOS: the "Active now" section was missing from the panel since 1.6.3. The bulk profile
    deactivation change kept a copy of the rows in the view and filled it from a task that never ran
    inside the panel's lazy list, so the section stayed hidden even with roles active. The rows now
    come straight from the model, which also holds a just-deactivated row for the moment its icon
    confirms.
  • Windows: signing an account out, or changing the client id, now also clears its remembered
    deactivation errors and in-progress phases, so a stale "deactivation refused" message cannot
    reappear on a row after the same account is signed in again.

macOS

Signed with Developer ID and notarized.

Install with Homebrew (the fully qualified cask name is required: this tap is not a homebrew- named repository):

brew tap FrodeHus/elevate https://github.com/FrodeHus/elevate
brew trust frodehus/elevate
brew install --cask frodehus/elevate/elevate

The cask installs the pkg (Homebrew asks for your password), which also puts the elevate CLI on your PATH.

Or download Elevate-1.6.6.dmg below and drag Elevate to Applications. SHA-256: 021d66fcf390366895cd027d225be0b67710f3a6492c04a4f96e90c1fd18f265 The DMG is the app alone.

Windows

Download the MSI for your architecture below and run it. It installs for the current user (no admin rights) into %LOCALAPPDATA%\Programs\Elevate and needs the .NET 10 runtime: winget install Microsoft.DotNet.Runtime.10.

This build is not code-signed. Windows SmartScreen shows "Windows protected your PC" the first time you run the installer: choose More info, then Run anyway. Verify the download against the SHA-256 first with (Get-FileHash .\Elevate-1.6.6-x64.msi).Hash.

SHA-256:

  • x64: 8b4c7a96a935a4c49b5432dd99ea77a23a73a98e117a362b7a7be50a53b4d825
  • arm64: 833f4465d0d10fae74110376136c7d663ce11ea9dacd28f276b9ec4b3bc0804c

CLI (Linux, macOS, Windows)

One self-contained elevate binary per platform, no runtime to install.

macOS (Apple Silicon): the CLI is installed with the app by the Homebrew cask above or by Elevate-1.6.6.pkg, as /usr/local/bin/elevate. The elevate-cli formula is deprecated and will be removed in a later release; it still installs on Linux and Intel Macs:

brew install frodehus/elevate/elevate-cli

Windows: Elevate-1.6.6-x64.msi (or -arm64.msi) installs elevate.exe in a cli folder under the app and adds that folder to your PATH. Standalone: winget install Reothor.Elevate.CLI once the manifest is submitted; until then download elevate-cli-1.6.6-win-x64.zip (or -win-arm64.zip) below and put elevate.exe on your PATH.

Or download the archive for your platform below and unpack it anywhere on your PATH. Verify with sha256sum -c elevate-cli-1.6.6-checksums.txt. See cli/README.md.

elevate-audit (Linux, macOS, Windows)

The read-only companion that lists standing privileged access to move to PIM: brew install frodehus/elevate/elevate-audit, or winget install Reothor.Elevate.Audit once the manifest is submitted, or download elevate-audit-1.6.6-<platform> below and put elevate-audit on your PATH. Verify with sha256sum -c elevate-audit-1.6.6-checksums.txt. See docs/audit.md.

Enterprise

Elevate-1.6.6.pkg is a macOS installer package, and installs the elevate CLI (/usr/local/bin/elevate, Apple Silicon), signed with Developer ID Installer and notarized, for Jamf, Intune and sudo installer -pkg Elevate-1.6.6.pkg -target /. SHA-256: 9920cc27e4cf2d528b019f021fd8c452ab1c9858295d373ff0003ac5ab73ac00

Elevate-enterprise-kit-1.6.6.zip holds the managed configuration templates: the Elevate.admx/Elevate.adml policy definitions and a .reg file for Windows, a mobileconfig, an Intune preference file and a Jamf manifest for macOS, a managed.json template for the CLI, the worked example and keys.md, the key reference. SHA-256: 9e8cae2708c7ba8d1ffb167cc7c9e0dc789eccfee1952111cdec533a1ec86b6f

Deploying Elevate to a fleet starts at docs/enterprise/README.md.