This is a nightly release of Vibepollo and contains several bug fixes and may contain new features. Check the commit log for more information.
Windows installer · Linux (Arch x86_64)
Nightly Windows installers are unsigned and include self-signed gamepad components. They may cause false-positive antivirus alerts.
Source: ca9a972ffa9d
Since the preceding successfully published nightly Commit log
daily-2026-10-11: compare exact sources.
fix(ci): skip unchanged sources before nightly builds
ci(linux): qualify exact nightly packages and publication token
fix(nightly): include qualified Linux packages and collapsible commit notes
Adapt the source-first nightly correction. Require both platforms to pass, reserve the source tag before building, publish from the verified tag, and omit internal Linux recipes from user downloads.
ci(nightly): keep Linux qualification independent of token experiments
ci(nightly): publish qualified missing Linux packages with the workflow token
Mirror the source-first qualified Linux repair with exact identity, mandatory native/package gates and immutable Windows payload checks.
fix(nightly): surface installer downloads above verification files
fix(ci): resolve runner scratch path in the publication step
fix(nightly): verify modern CTest summaries and exact permitted skips
fix(nightly): verify the exact versioned Linux executable behind its symlink
Mirror the source-first exact executable target check and verified original Windows payload pins.
fix(nightly): keep release titles concise and dated
fix(installer): validate nightly gamepad trust before consent
Let intact self-signed gamepad packages reported as UnknownError reach strict independent signature and catalog verification before exact-certificate consent. Preserve inventory, version, rollback and post-consent Windows trust gates, and report display signature details.
Publish setup-only nightly downloads after verifying their exact qualified embedded MSI. Retain internal MSI artifacts and require fresh hosted installer qualification with coherent provenance.
Refs: Nonary/Vibepollo#594
Generated with [Codex](https://openai.com/codex/)
Model: GPT 6.1-Sol Medium
(cherry picked from commit 78fb1fdbccef23f3a73fe55436cbdac1d9ea4df5)
fix(installer): anchor daily file versions to the stable release
Daily builds fell back to each new HEAD timestamp, allowing a corrected
installer to carry a lower resource version than the already published build.
Use the reachable matching stable release tag for the daily series, so later
commits and following dates preserve monotonic file replacement.
Fail closed when the matching tag is missing. Keep clock rollback and 16-bit
revision overflow checks. Add real-timestamp regression fixtures and run them
before the hosted Windows build; the original emitter fails the new checks.
Refs: Nonary/Vibepollo#594
Generated with [Codex](https://openai.com/codex/)
Model: GPT 6.1-Sol Medium
(cherry picked from commit abe81ccabd608b915dae7c2f127b60d19480c54d)
fix(ci): fetch release anchors for daily Windows builds
Daily resource version ordering needs the matching stable tag and its reachable
history. The native job used a shallow tagless checkout, so the new fail-safe
correctly stopped the build before it could stamp a resetting file version.
Fetch full history and tags for daily builds. Preserve shallow checkouts for
other Windows lanes. Add a real shallow-clone regression that fails without
the anchor and succeeds after fetching history and tags.
Refs: Nonary/Vibepollo#594
Generated with [Codex](https://openai.com/codex/)
Model: GPT 6.1-Sol Medium
(cherry picked from commit 87d8da5b7faa36e9f38774d87afd75e824d29e5a)
fix(nightly): order post-stable builds and same-day revisions
Nightlies reused the released core, so SemVer and encoded MSI versions correctly treated them as downgrades. Target the next patch after the reachable stable release, retaining a fixed stable clock anchor and allowing its eventual final release to supersede nightlies.
Reserve immutable dated revisions only for changed source. Validate matching source/date/revision metadata in native and web updaters, preserve explicit channel opt-out, and test actual published identities plus equal/older and future-stable transitions. Verify the embedded MSI Upgrade table and rollback transaction instead of treating ProductCode order as MSI upgrade proof.
Generated with [Codex](https://openai.com/codex/)
Model: GPT 6.1-Sol Medium
(cherry picked from commit 51aebccabf0d7352ab38e9daa51d84375ab4c529)