Documented changes
45 typed entries
Verified contributors
Credits being verified. Attribution coverage is in progress.
Attribution coverage
attribution in progress; history inventory partial.
Install
Scope
Guard v3.0.0a43 is a preview release published 2026-08-09. Upstream documents: Guard 3.0.0a43 is an opt-in prerelease cut from [`5d18184`](https://github.com/hashgraph-online/hol-guard/commit/5d18184105b76c7c0451736969e4c05378784de5). Stable installations remain on the stable channel. **1 commit • 1 merged pull request • 1 contributor** since [Guard 3.0.0a42](https://github.com/hashgraph-online/hol-guard/releases/tag/alpha/v3.0.0a42). Its comparison base is alpha/v3.0.0a34. It includes 40 verified contribution deliveries with public evidence links. Attribution for this release is being verifie
Changes
Fixed
4- **release**: Decouple alpha publish from TestPyPI ([#2187](https://github.com/hashgraph-online/hol-guard/pull/2187)) Evidence for: **release**: Decouple alpha publish from TestPyPI ([#2187](https://github.com/hashgraph-online/hol-guard/pull/2187))
- make the TestPyPI alpha mirror explicitly optional Evidence for: make the TestPyPI alpha mirror explicitly optional
- allow the signed, reserved alpha artifact to publish directly to PyPI Evidence for: allow the signed, reserved alpha artifact to publish directly to PyPI
- ratchet the release workflow contract with focused tests Evidence for: ratchet the release workflow contract with focused tests
Other changes
41- Documented change: Guard 3.0.0a43 is an opt-in prerelease cut from [`5d18184`](https://github.com/hashgraph-online/hol-guard/commit/5d18184105b76c7c0451736969e4c05378784de5). Stable installations remain on the stable channel. **1 commit • 1 merged pull request • 1 contributor** since [Guard 3.0.0a42](https://github.com/hashgraph-online/hol-guard/releases/tag/alpha/v3.0.0a42). Evidence for: Documented change: Guard 3.0.0a43 is an opt-in prerelease cut from [`5d18184`](https://github.com/hashgraph-online/hol-guard/commit/5d18184105b76c7c0451736969e4c05378784de5). Stable installations remain on the stable channel. **1 commit • 1 merged pull request • 1 contributor** since [Guard 3.0.0a42](https://github.com/hashgraph-online/hol-guard/releases/tag/alpha/v3.0.0a42).
- Merged pull request #2110: fix(guard): restore Linux protection repair and dashboard actions Evidence for: Merged pull request #2110: fix(guard): restore Linux protection repair and dashboard actions
- Merged pull request #2149: fix(release): bind codesign certificate prefix (#2149) Evidence for: Merged pull request #2149: fix(release): bind codesign certificate prefix (#2149)
- Merged pull request #2114: fix(supply-chain): omit null lockfile hashes in cloud evaluate payload (#2114) Evidence for: Merged pull request #2114: fix(supply-chain): omit null lockfile hashes in cloud evaluate payload (#2114)
- Merged pull request #2182: test(ci): refresh release 3.0 suite ratchet Evidence for: Merged pull request #2182: test(ci): refresh release 3.0 suite ratchet
- Merged pull request #2156: fix(release): correct macOS signing certificate extraction (#2156) Evidence for: Merged pull request #2156: fix(release): correct macOS signing certificate extraction (#2156)
- Merged pull request #2144: fix(release): make Desktop Core feed macOS Bash 3 compatible (#2144) Evidence for: Merged pull request #2144: fix(release): make Desktop Core feed macOS Bash 3 compatible (#2144)
- Merged pull request #2181: test(ci): align release suite ratchet (#2181) Evidence for: Merged pull request #2181: test(ci): align release suite ratchet (#2181)
- Merged pull request #2174: feat: add privacy-safe local outcome receipts Evidence for: Merged pull request #2174: feat: add privacy-safe local outcome receipts
- Merged pull request #2185: fix(dashboard): prefer authenticator proof for extensions (#2185) Evidence for: Merged pull request #2185: fix(dashboard): prefer authenticator proof for extensions (#2185)
- Merged pull request #2162: fix(guard): allow verified TypeScript diagnostics (#2162) Evidence for: Merged pull request #2162: fix(guard): allow verified TypeScript diagnostics (#2162)
- Merged pull request #2083: chore(release): resolve main conflicts for 3.0 Evidence for: Merged pull request #2083: chore(release): resolve main conflicts for 3.0
- Merged pull request #2147: fix(ci): restore main release workflows (#2147) Evidence for: Merged pull request #2147: fix(ci): restore main release workflows (#2147)
- Direct commit 4c95c09f2b5d: build(dashboard): refresh extension control center bundle Evidence for: Direct commit 4c95c09f2b5d: build(dashboard): refresh extension control center bundle
- Merged pull request #2151: fix(release): verify CLI notarization result (#2151) Evidence for: Merged pull request #2151: fix(release): verify CLI notarization result (#2151)
- Merged pull request #2164: fix(dashboard): make protection repair converge (#2164) Evidence for: Merged pull request #2164: fix(dashboard): make protection repair converge (#2164)
- Merged pull request #2116: fix(guard): preserve Watch-only and release safeguards (#2116) Evidence for: Merged pull request #2116: fix(guard): preserve Watch-only and release safeguards (#2116)
- Merged pull request #2136: fix(update): quiet current Pi/OMP repair and harden Codex group permissions (#2136) Evidence for: Merged pull request #2136: fix(update): quiet current Pi/OMP repair and harden Codex group permissions (#2136)
- Merged pull request #2134: fix(hooks): allow verified non-sensitive patches (#2134) Evidence for: Merged pull request #2134: fix(hooks): allow verified non-sensitive patches (#2134)
- Merged pull request #2113: fix(update): preserve pipx venv identity on Linux (#2113) Evidence for: Merged pull request #2113: fix(update): preserve pipx venv identity on Linux (#2113)
- Merged pull request #2187: fix(release): decouple alpha publish from TestPyPI (#2187) Evidence for: Merged pull request #2187: fix(release): decouple alpha publish from TestPyPI (#2187)
- Merged pull request #2130: fix(protect): align watch-only approval authority (#2130) Evidence for: Merged pull request #2130: fix(protect): align watch-only approval authority (#2130)
- Merged pull request #2119: fix(supply-chain): stop repair loop after staged activation Evidence for: Merged pull request #2119: fix(supply-chain): stop repair loop after staged activation
- Merged pull request #2157: fix(release): validate CLI notarization without app assessment (#2157) Evidence for: Merged pull request #2157: fix(release): validate CLI notarization without app assessment (#2157)
- Merged pull request #2121: fix(release): restore Desktop Core alpha feed build Evidence for: Merged pull request #2121: fix(release): restore Desktop Core alpha feed build
- Merged pull request #2168: fix(guard): contain TypeScript positional inputs (#2168) Evidence for: Merged pull request #2168: fix(guard): contain TypeScript positional inputs (#2168)
- Direct commit 05d2d3e32f00: test(guard): refresh shim retry evidence Evidence for: Direct commit 05d2d3e32f00: test(guard): refresh shim retry evidence
- Merged pull request #2141: fix(release): align Desktop Core feed with Apple trust model (#2141) Evidence for: Merged pull request #2141: fix(release): align Desktop Core feed with Apple trust model (#2141)
- Merged pull request #2109: fix(guard): rebase portable project memory onto current main Evidence for: Merged pull request #2109: fix(guard): rebase portable project memory onto current main
- Merged pull request #2172: feat(guard): add extension control center details (#2172) Evidence for: Merged pull request #2172: feat(guard): add extension control center details (#2172)
- Merged pull request #2131: fix(update): report already-current instead of false repaired update (#2131) Evidence for: Merged pull request #2131: fix(update): report already-current instead of false repaired update (#2131)
- Direct commit e302f86ea2f4: build(dashboard): regenerate static assets Evidence for: Direct commit e302f86ea2f4: build(dashboard): regenerate static assets
- Merged pull request #2150: fix(release): bind signed Core to imported certificate (#2150) Evidence for: Merged pull request #2150: fix(release): bind signed Core to imported certificate (#2150)
- Merged pull request #2112: test(guard): close PR #2110 local-vault tamper coverage (#2112) Evidence for: Merged pull request #2112: test(guard): close PR #2110 local-vault tamper coverage (#2112)
- Direct commit 42b1a39f997b: fix(release): align Desktop Core feed with Apple trust model Evidence for: Direct commit 42b1a39f997b: fix(release): align Desktop Core feed with Apple trust model
- Merged pull request #2148: fix(guard): restore bounded package-shim store lock retry (#2148) Evidence for: Merged pull request #2148: fix(guard): restore bounded package-shim store lock retry (#2148)
- Merged pull request #2176: fix(guard): allow verified routine inspection operations (#2176) Evidence for: Merged pull request #2176: fix(guard): allow verified routine inspection operations (#2176)
- Merged pull request #2146: fix(release): verify exact Desktop Core signing certificate (#2146) Evidence for: Merged pull request #2146: fix(release): verify exact Desktop Core signing certificate (#2146)
- Direct commit 7d9f2f3e4897: build(dashboard): refresh generated assets Evidence for: Direct commit 7d9f2f3e4897: build(dashboard): refresh generated assets
- Merged pull request #2152: fix(release): resolve scanner package version independently (#2152) Evidence for: Merged pull request #2152: fix(release): resolve scanner package version independently (#2152)
- Merged pull request #2188: fix(guard): allow verified routine diagnostics (#2188) Evidence for: Merged pull request #2188: fix(guard): allow verified routine diagnostics (#2188)
Upgrade and compatibility
None documented.
Compare with the previous release
Predecessor on the same channel: alpha/v3.0.0a34
Verified contributors
Credits derive from public pull-request authorship, verified commit authorship, or verified co-authorship — never from thanks text or release metadata. Each distinct contributor is listed once; the evidence ledger paginates every published credit record.
Contributors
- @github-actions[bot]
Implementation · 5 credits
- @kantorcodes
Implementation · 35 credits
Evidence ledger40 credits
- @github-actions[bot]Source for github-actions[bot]
Implementation · Verified commit author
- @github-actions[bot]Source for github-actions[bot]
Implementation · Verified commit author
- @github-actions[bot]Source for github-actions[bot]
Implementation · Verified commit author
- @github-actions[bot]Source for github-actions[bot]
Implementation · Verified commit author
- @github-actions[bot]Source for github-actions[bot]
Implementation · Verified commit author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author
- @kantorcodesSource for kantorcodes
Implementation · Pull request author