Skip to content

Release 1.1.0: clean-profile validation and Apple notarization #33

Description

@SiruGao

Release blocker checklist

This issue tracks the work that cannot be proven by compilation alone before Token Saver 1.1.0 can be published as a production macOS release.

Install and upgrade

  • Install the 1.1.0-rc.1 Apple Silicon candidate on a clean macOS user profile
  • Replace/update an existing Token Saver 1.0.5 installation without losing local workspace data
  • Confirm Dock, Launchpad, Finder, DMG, and app bundle use the approved Token Saver icon
  • Confirm the application opens after installation and after restart

Client matrix

  • Neither Claude Code nor Codex installed: clear no-client state, no configuration mutation
  • Claude Code only with Headroom available
  • Claude Code only with Headroom unavailable: RTK + Tool Result Isolation fallback
  • Codex only with Headroom available
  • Codex only with Headroom unavailable: Codex output-reduction fallback
  • Claude Code and Codex installed together

Real token-reduction evidence

  • Claude oversized supported tool result is reduced before the next model step
  • Claude full original result remains retrievable from the local vault
  • RTK preserves relevant failing-test and command diagnostics
  • Codex oversized Bash result is reduced before the next model step
  • Codex representative MCP result is reduced before the next model step
  • Codex first /hooks trust review is clear and persists for the unchanged hook
  • Headroom local savings ledger increases after real Claude Code and Codex traffic
  • No result is processed by two overlapping reduction engines
  • Comparable tasks still succeed without additional rework

Failure and rollback

  • Headroom installation failure restores fallback reducers
  • Headroom service recovers after application and system restart
  • Headroom removal restores previous Claude Code and Codex configuration
  • Disabling each built-in hook removes only Token Saver-owned configuration
  • A user disconnect remains disconnected on later launches
  • Storage or parsing failures fail open and do not block the agent

Privacy and provenance

  • Headroom traffic remains on a loopback endpoint
  • Headroom telemetry remains disabled in the managed runtime
  • Existing provider credentials continue to work and are not copied into Token Saver storage
  • Installed third-party versions and sources match the reviewed adapter pins

Production signing

  • Configure Apple Developer ID Application certificate in GitHub Actions
  • Configure Apple notarization credentials
  • Build a Developer ID signed and notarized final candidate
  • Verify Gatekeeper accepts the final package without manual security override
  • Verify Tauri updater signature and in-app update from 1.0.5

Production release remains blocked until this issue and docs/RELEASE_READINESS_1.1.0.md are complete.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions