View on GitHub

scrcpy-gui

👻 A simple & beautiful GUI application for scrcpy.

v2.4.0 Release verification

This record separates evidence collected before the tag from checks that run only on the tag workflow. A missing item is not inferred as passing.

Verified before tagging

Published tag workflow result

The v2.4.0 Release workflow completed successfully on macOS, Windows, and Linux. It:

  1. runs the complete test suite on the macOS, Windows, and Linux packaging jobs;
  2. downloads the checksum-pinned official scrcpy 4.1 bundle;
  3. builds every configured installer/archive;
  4. extracts the current-architecture archive on each host and executes its packaged scrcpy --version and adb version;
  5. uploads every package plus SHA256SUMS.txt;
  6. leaves Chocolatey Community publishing conditional on the real CHOCO_API_KEY secret.

The published Scrcpy GUI 2.4.0 release is neither a draft nor a prerelease. It contains four macOS files, five Windows files plus .nupkg, four Linux files, and one checksum manifest (15 assets total). All 14 package entries in SHA256SUMS.txt were matched against the corresponding uploaded asset digests. The optional Chocolatey Community step reported that CHOCO_API_KEY was not configured and correctly skipped the external push; issue #139 therefore remains open.

Published installer lifecycle result

The post-release v2.0.0-beta.6 → v2.4.0 installer lifecycle and startup run passed against downloaded GitHub Release assets:

Every current asset was matched to its published SHA256SUMS.txt entry before installation. Each installed package loaded its production file:// Renderer through the real Electron executable, then executed bundled scrcpy 4.1 and ADB 1.0.41. This is hosted-runner lifecycle/startup evidence, not a claim that interactive installer wording, signing reputation, or retained user preferences were manually reviewed.

Explicitly unverified in this release run

These gaps are release-note disclosures, not claims that the features fail. They are also not converted into support claims from fake-binary, parser, or CI packaging evidence.

Supply-chain note: v2.4.0 predates repository CodeQL, Release SBOM, and GitHub artifact-attestation enforcement. Those gates apply prospectively beginning with v2.4.1; this record does not retrofit provenance onto previously built assets.