Back to Localsend

Code signing policy

CODE_SIGNING.md

1.18.21.1 KB
Original Source

Code signing policy

Free code signing provided by SignPath.io, certificate by SignPath Foundation.

Official Windows release artifacts (portable ZIP, EXE installer, MSIX helper) are built automatically from the source code in the LocalSend repository using GitHub Actions (release workflow) and signed through SignPath. Every signing request is manually approved by an approver listed below.

Only binaries built by LocalSend are signed. Third-party binaries that are packaged with the app are distributed as provided by their upstream projects and do not receive the LocalSend signing operation.

Signed Windows files show SignPath Foundation as the publisher because the certificate belongs to the foundation, not to the LocalSend project.

Team roles

Privacy

LocalSend's privacy policy is available at localsend.org/privacy.