v30
Changed
- Silence a compiler warning produced by Clang 10.
SHA-256 Checksum
f68406c3085ef902e85500e6c0b90e4c3f56347e5efffc0da7b6fb47803c8686
Checking Signatures
The release tarball can be checked with Signify itself, using the SHA256.sig
file and the following public key saved into a signifyportable.pub
file:
untrusted comment: Signify portable release signing public key
RWRQFCY809DUoWEHxWmoTNtxph6yUlWNsjfW54PqLI6S3dWfuZN4Ovj1
The signing key is also provided in the signifyportable.pub.asc
file, signed with the same PGP key as the tarball itself, which can be itself verified and extracted using:
gpg --verify -o signifyportable.pub signifyportable.pub.asc
In order to check the package signature with Signify, use the following command:
signify -C -p signifyportable.pub -x SHA256.sig