Fleet changelogs · dev.ecs0.net
rdmsm4x-changelog-20260916-1856-ramdisk-developer-id-signed-notarized

rdmsm4x-changelog-20260916-1856-ramdisk-developer-id-signed-notarized

Delivered Developer ID signed, notarized, and stapled universal2 release of macOS-ramDisk-app application suite per DEC-20260909-03 and TASK-20260909-15.

Scope

What Changed & Why

  1. Pre-signing Test Verification:

    • Executed swift test across test suites: 27 / 27 tests passed (100.0%) across Milestone M1 Empirical Adversarial Challenge Suite (10 / 10), RAMDisk Modern Test Suite (11 / 11), and R3 Permissions & R5 Clean-Room Parity Test Suite (6 / 6).
  2. Universal2 Build Pipeline:

    • Authored canonical build.sh wrapping scripts/build_app.zsh.
    • Built dual-slice release binaries: arm64 slice targeting macOS 27.0, x86_64 slice targeting macOS 26.7.
    • Built ramdisk.app bundle and standalone CLI tool ramdisk.
    • Verified universal2 x86_64 arm64 architectures with lipo -archs across all executables (ramdisk.app/Contents/MacOS/ramdisk and standalone CLI ramdisk).
  3. Signing, Notarization & Stapling:

    • Performed signing on standalone CLI ramdisk and ramdisk.app bundle with Developer ID Application: east coast science, llc (ZU2882L4HT), hardened runtime, and trusted timestamp.
    • Submitted for notarization via ecs-notary profile, and stapled ramdisk.app via scripts/build_app.zsh --release / ecs_sign_notarize.zsh.
    • Notarization submission bc740644-2355-43be-9f22-4c3d9b1d6131 status: Accepted.
    • Gatekeeper verified spctl -a -vv -t exec -> source=Notarized Developer ID.
    • Stapler validated xcrun stapler validate -> The validate action worked!.
  4. Artifact Preservation & Release Evidence:

    • Created ramdisk.zip via ditto -c -k --keepParent build/ramdisk.app build/ramdisk.zip.
    • Preserved stapled ramdisk.app, ramdisk.zip, standalone CLI ramdisk, and RECEIPT.md under /Users/richh/dev/_handoff/ramdisk-signed-20260916/.
    • Committed build.sh and docs/release-evidence/RECEIPT.md at commit f2d7014 on main.
    • Pushed main to fleet (git.ecs0.net:git/apps/macOS-ramDisk-app.git), backup (https://github.com/richhdoty/rdmsm4x-dev-apps-macos-ramdisk-app.git), and origin (https://github.com/richhdoty/macOS-ramDisk-app.git).
    • Verified handoff directory contents via ls -la before cleanly removing worktree /Users/richh/dev/_worktrees/ramdisk-signed-task-20260909-15.

Exact Files Touched

Verification Evidence