rdmsm4x-changelog-20260903-0320-hyperfile-pr1-merged-mirrors-aligned-no-activation
rdmsm4x-changelog-20260903-0320-hyperfile-pr1-merged-mirrors-aligned-no-activation
Reconciled, validated, and normally merged HyperFile PR #1, aligning canonical and both configured mirrors while keeping the privileged helper entirely inactive.
Scope and commits
- Canonical project:
/Users/richh/dev/apps/HyperFile - Existing PR worktree:
/Users/richh/dev/_worktrees/hyperfile-p1-xpc-peer-validation-20260828 - Review-only integration worktree:
/Users/richh/dev/_worktrees/hyperfile-pr1-integration-20260903 - Recovery commits retained:
0964612a8fc8647b87e573dd8d1dd6abce84b11d,8ee1e035883c11e79e3d940d0c4cda01056004be - Current-main merge on PR branch:
917c55d444c179eddaac2fb6e8ddd41c67cc123a - GitHub merge:
926f384a2cc2dc9d423253b9ded66da78fa41137 - Ticket:
TASK-20260903-04
Verification
- XPC peer-validation tests: 2 executed, 0 failures.
- Unsigned universal2 macOS app Release build: succeeded; executable
x86_64 arm64. - Unsigned universal2 helper Release build: succeeded; executable
x86_64 arm64. - XcodeGen regeneration left
project.pbxprojSHA-256 unchanged atcf48f88f5bcf55c3aca9b4b3091f8dcd2e885617a32beeff128b4a3d30127bd9. git diff --check: passed.- Gitleaks scanned the two change commits: no leaks found.
- iOS Simulator build was attempted and failed on pre-existing
macOS-only APIs including
Process,homeDirectoryForCurrentUser, Finder tag APIs, and helper-manager references; none is changed by PR #1.
Repository and preservation evidence
- Canonical local
main,backup/main, direct private GitHubmain, and direct self-hostedfleet/mainall equal926f384a2cc2dc9d423253b9ded66da78fa41137. - The pre-existing untracked
Support/directory remains present; status digest before and after isfa9729a56dc72d7cdbdc572fcd6d2ff6dc643440e428cf5567b1c1d3acf0abb3. - No force push or published-history rewrite occurred.
Security and activation boundary
- Incoming XPC connections are rejected before interface/object export unless Security.framework validates the client PID against the expected client requirement.
- The current requirement pins an Apple Development certificate and therefore remains a development-only constraint until a Developer ID/distribution requirement is separately designed and validated.
- No signing, helper registration, installation, launch, live XPC operation, privileged operation, activation, or deployment occurred.
Undo and outstanding work
- Undo source integration with a normal revert of merge commit
926f384a2cc2dc9d423253b9ded66da78fa41137, followed by the same tests and builds; do not rewrite history. - Before release, define and test the distribution signing requirement, perform signed helper/app validation, and exercise authorized and unauthorized live XPC clients under a separately approved rollback plan.
- Repair the pre-existing iOS/macOS source-separation defects under a separate ticket and worktree.