Skip to content

Wildbloom Node 0.3.3 preview 2 — signed Mac installers

Pre-release
Pre-release

Choose a tag to compare

@TheCryptoDonkey TheCryptoDonkey released this 06 Oct 22:27

Wildbloom Node 0.3.3 preview.2 — signed Mac installers adds Developer ID signatures and Apple notarisation to the existing 0.3.3 Apple Silicon and Intel binaries. This is a manual-install preview, not a stable release or an automatic update.

  • Both apps and DMGs were accepted by Apple, stapled and independently verified. Gatekeeper accepted the final DMGs and contained apps on the development Apple Silicon Mac.
  • Desktop, daemon, Tor, libevent and both nested Tor transport helpers carry the expected Developer ID team, hardened runtime and secure timestamp.
  • Signing identity: Developer ID Application: Epona Solutions Ltd (2GLP954N6A).
  • SHA256SUMS identifies the exact downloads. macos-signing-evidence.json includes input/output hashes, all four Apple submission IDs, signing-tool provenance and the scope of package checks.

Choose aarch64-signed.dmg for Apple Silicon or x64-signed.dmg for Intel. Open the DMG and copy Wildbloom Node to Applications. Follow normal macOS verification; do not bypass an unexpected OS trust failure. The app waits for your transport choice on first launch. Keep backups of recovery receipts and keys.

The application binaries come from source 39e46f4d5802d8660ce1617956cf5ae9b6200e11, built in installer workflow 37460450117. The release tag deliberately points to that original build source. The signing tooling and evidence are a separate change; signing does not imply a rebuild from that change. Original build and Tor provenance remains in preview.1.

The signed Apple Silicon daemon's version and pool commands, plus its signed Tor runtime, executed successfully. Intel architecture and signatures were inspected on Apple Silicon; physical Intel execution was not tested. Clean-machine GUI startup, reboot, upgrade, uninstall and onion identity retention remain outstanding. These artifacts have no updater signatures. Hosted Apple CI credentials, Windows signing, physical multi-device recovery and independent security review remain open.

Windows and Linux installers remain unchanged in preview.1; Windows packages remain unsigned. The 0.3.3 features include private Windows owner state, desktop pool health checks, threshold recovery and explicitly authorised owner-side repair. Erasure coding protects availability within the selected threshold; retain recovery-key backups and independent storage placement.