Unsigned recipes for local / CI packaging. Authenticode and Apple notarization remain optional secrets (see Release workflow).
# From repo root after cargo build --release
.\scripts\packaging\windows-stage.ps1Produces dist/sentinel-browser-windows-x64/ with the exe + README snippet. Optional MSI: install WiX and run cargo install cargo-wix then cargo wix once a wix metadata section exists.
./scripts/packaging/linux-appdir.shStages an AppDir-style tree under dist/ with a dependency note for WebKitGTK 4.1. Convert to AppImage with appimagetool if installed.
./scripts/packaging/macos-app.shBuilds dist/Sentinel.app (unsigned). First open: right-click → Open, or:
xattr -dr com.apple.quarantine dist/Sentinel.appRelease workflow publishes SHA256SUMS next to binaries. In-app Update → Download asset + verify SHA256 checks that file when present.