> ## Documentation Index
> Fetch the complete documentation index at: https://docs.fased.ai/llms.txt
> Use this file to discover all available pages before exploring further.

# macOS Release

# Fased macOS release (Sparkle)

Use this page when you are publishing signed macOS app artifacts. Sparkle
updates are a release-maintainer path, not the default public install flow while
the repo-backed installer remains primary.

Release builds must be Developer ID-signed, zipped, and published with a signed appcast entry.

## Prereqs

* Developer ID Application cert installed. Example:
  `Developer ID Application: <Developer Name> (<TEAMID>)`.

* Sparkle private key path set in the environment as `SPARKLE_PRIVATE_KEY_FILE`.
  The public key is baked into Info.plist. If it is missing, check `~/.profile`.

* Notary credentials for `xcrun notarytool` if you want Gatekeeper-safe DMG/zip
  distribution.
  * We use a Keychain profile named `fased-notary`, created from App Store Connect API key env vars in your shell profile:
    * `APP_STORE_CONNECT_API_KEY_P8`
    * `APP_STORE_CONNECT_KEY_ID`
    * `APP_STORE_CONNECT_ISSUER_ID`
    * `echo "$APP_STORE_CONNECT_API_KEY_P8" | sed 's/\\n/\n/g' > /tmp/fased-notary.p8`
    * Store the profile:

      ```bash theme={"theme":{"light":"min-light","dark":"min-dark"}}
      xcrun notarytool store-credentials "fased-notary" \
        --key /tmp/fased-notary.p8 \
        --key-id "$APP_STORE_CONNECT_KEY_ID" \
        --issuer "$APP_STORE_CONNECT_ISSUER_ID"
      ```

* `pnpm` deps installed (`pnpm install --config.node-linker=hoisted`).

* Sparkle tools are fetched automatically via SwiftPM at
  `apps/macos/.build/artifacts/sparkle/Sparkle/bin/`.

## Build & package

Notes:

* `APP_BUILD` maps to `CFBundleVersion`/`sparkle:version`; keep it numeric and
  monotonic. Avoid `-beta` here.
* Defaults to the current architecture (`$(uname -m)`). For release/universal
  builds, set `BUILD_ARCHS="arm64 x86_64"` or `BUILD_ARCHS=all`.
* Use `scripts/package-mac-dist.sh` for release artifacts. Use
  `scripts/package-mac-app.sh` for local/dev packaging.

```bash theme={"theme":{"light":"min-light","dark":"min-dark"}}
# From repo root; set release IDs so Sparkle feed is enabled.
# APP_BUILD must be numeric + monotonic for Sparkle compare.
BUNDLE_ID=ai.fased.mac \
APP_VERSION=2026.2.27 \
APP_BUILD="$(git rev-list --count HEAD)" \
BUILD_CONFIG=release \
SIGN_IDENTITY="Developer ID Application: <Developer Name> (<TEAMID>)" \
scripts/package-mac-app.sh

# Zip for distribution (includes resource forks for Sparkle delta support)
ditto -c -k --sequesterRsrc --keepParent dist/FasedAgent.app dist/FasedAgent-2026.2.27.zip

# Optional: also build a styled DMG for humans (drag to /Applications)
scripts/create-dmg.sh dist/FasedAgent.app dist/FasedAgent-2026.2.27.dmg

# Recommended: build + notarize/staple zip + DMG
# First, create a keychain profile once:
#   xcrun notarytool store-credentials "fased-notary" \
#     --apple-id "<apple-id>" --team-id "<team-id>" --password "<app-specific-password>"
NOTARIZE=1 NOTARYTOOL_PROFILE=fased-notary \
BUNDLE_ID=ai.fased.mac \
APP_VERSION=2026.2.27 \
APP_BUILD="$(git rev-list --count HEAD)" \
BUILD_CONFIG=release \
SIGN_IDENTITY="Developer ID Application: <Developer Name> (<TEAMID>)" \
scripts/package-mac-dist.sh

# Optional: ship dSYM alongside the release
ditto -c -k --keepParent apps/macos/.build/release/FasedAgent.app.dSYM dist/FasedAgent-2026.2.27.dSYM.zip
```

## Appcast entry

Use the release note generator so Sparkle renders formatted HTML notes:

```bash theme={"theme":{"light":"min-light","dark":"min-dark"}}
SPARKLE_PRIVATE_KEY_FILE=/path/to/ed25519-private-key \
scripts/make_appcast.sh \
  dist/FasedAgent-2026.2.27.zip \
  https://raw.githubusercontent.com/fased-ai/fased/main/appcast.xml
```

Generates HTML release notes from `CHANGELOG.md` using
[`scripts/changelog-to-html.sh`](https://github.com/fased-ai/fased/blob/main/scripts/changelog-to-html.sh)
and embeds them in the appcast entry. Commit the updated `appcast.xml` alongside
the release assets when publishing.

## Publish & verify

* Upload `FasedAgent-2026.2.27.zip` and
  `FasedAgent-2026.2.27.dSYM.zip` to the GitHub release for tag `v2026.2.27`.
* Ensure the raw appcast URL matches the baked feed:
  `https://raw.githubusercontent.com/fased-ai/fased/main/appcast.xml`.
* Sanity checks:
  * `curl -I https://raw.githubusercontent.com/fased-ai/fased/main/appcast.xml` returns 200.
  * `curl -I <enclosure url>` returns 200 after assets upload.
  * On a previous public build, run "Check for Updates..." from the About tab
    and verify Sparkle installs the new build cleanly.

Definition of done: signed app + appcast are published, update flow works from
an older installed version, and release assets are attached to the GitHub
release.
