Skip to content

Shadowfetch Linux 3.5.0 "Umbra" - Fire and Ice Workbench

Latest

Choose a tag to compare

@ShadowfetchLinux ShadowfetchLinux released this 28 Aug 10:36
· 3 commits to main since this release

Shadowfetch Linux 3.5.0 "Umbra" - Fire and Ice Workbench

Shadowfetch Linux 3.5.0 turns the Fire and Ice identity into a practical operating model for production work. Fire starts connected and throughput-oriented; Ice starts agent sessions with no network. The new Element Workbench creates private, consequence-aware environments for software, AI, operations, and creative work without silently adding a model, cloud account, credential, or publishing right.

What is new

  • Element Workbench: Software Studio, AI Lab, Production Ops, and Creative AI show storage, network, account, accelerator, and package consequences before one signed transaction creates a private project with agent rules, provenance, tests, runbooks, and receipts.
  • Firebreak agent boundaries: project-only writes, stripped known-secret variables, an element-aware network default, read-only system scope, and visible launch receipts.
  • Optional AI and coding tools: Buzz remains the consent-driven local-model workspace. Codex, Claude Code, Grok Build, and Cursor Agent are independent, digest-verified choices with their own native sign-in. No model weights or cloud credentials are bundled.
  • Recovery-safe changes: Phoenix and Fireproof wrap profile installation, updates, and recovery with checkpoints, simulation, explicit confirmation, failure receipts, and tested retry paths.
  • Refined Fire and Ice desktop: current menus, setup flow, Workbench surfaces, installer summaries, and 1366x768/1920x1080 layouts.

Tested release

  • Fresh hybrid BIOS Fire and UEFI Ice installations booted from disk.
  • All 15 required visual frames passed at 1366x768 and 1920x1080.
  • A 2,709-second concurrent stress run completed with zero failures, including 214 rootless-container cycles and 239 Workbench/health probes.
  • The signed APT repository contains 16 binary packages from 14 signed source packages.
  • The CycloneDX 1.5 SBOM records 3,350 components.
  • The reproducible QA bundle records 58 evidence inputs.

Download and verify

  • ISO: shadowfetch-3.5.0-amd64.iso
  • Size: 3980310528 bytes
  • SHA-256: 2af853b1f5dedfca17a7a63783f4c881e72e912f26082b10c07d45aafe57b995
  • Signing fingerprint: 8F13 CE15 35EE 1F4A 2916 A1F7 3C5C 900B 7BE8 0CA1
  • Exact tested source commit: d27e204b0dc929c57980a9cfb2a5541c0b39cbc3
  • Evidence bundle SHA-256: 69a57b09fc8c32369210ceef47290e9386c7b4c9033755a4ef66ba263aa8d009

Verification sidecars, the signing key, SBOM, package manifest, dossier, and QA evidence bundle are attached to this release and available from the official download page. Installation and signature instructions are on the verification page.

The dossier and release-facts-3.5.0.json intentionally preserve the prepublication evidence snapshot. publication-3.5.0.log records the final live publication state and is bound to the completed acceptance manifest by SHA-256.

Known boundaries

  • Secure Boot is not Microsoft-signed; disable Secure Boot or use the documented enrollment path.
  • VM validation covered Plasma, GLX, Vulkan initialization, and exact layouts through Mesa llvmpipe, not physical GPU performance.
  • No multi-gigabyte Buzz model download or inference run was repeated for 3.5.0; model acquisition remains an explicit post-install action.
  • Historical releases remain on Archive.org. No Archive.org mirror is claimed for 3.5.0.

Full details are in RELEASE-3.5.0.md.