Ghost FTP 0.0.6
Public compatibility release
Ghost FTP 0.0.6 is published from verified source commit 6994651.
Windows
- One universal Setup and one universal Portable package, each carrying x64, x86 and ARM64 payloads.
- Windows executables are explicitly unsigned in this compatibility publication. SHA256.txt and the exact source commit provide integrity evidence.
Linux
- Debian, Ubuntu and Fedora each include one universal Installer and one universal Portable bundle.
- Each bundle carries amd64, arm64 and i386 payloads.
Android
- Ghost-FTP-0.0.6-Android.apk is installable on Android 8.0+ (minSdk 26; targetSdk 35).
- Package id: app.ghostftp.client.
- The APK uses a one-time self-signed compatibility certificate because no protected production Android signing identity is configured.
- APK SHA-256: ab534de9ba7781826649a91de8fd8271c80768bc66a2ae8423dc9e07f5c6c5db
- Certificate SHA-256: f73f3a7ec5c4c08c48385d854690b0f33e8a4021bc5ef5dc6b24cdccfa83e8fa
- A later APK signed with a different production key cannot update this compatibility APK in place; uninstall/reinstall will be required.
- Android SFTP remains hidden until strict host-key verification/pinning is maintained end to end.
Browser helpers
- Chrome, Edge, Firefox and Opera packages are included with zero browser permissions and zero host permissions.
macOS
- macOS remains development/source-only until Developer ID Application signing and Apple notarization are available.
Integrity
- Source commit: 6994651
- Tag: ghostftp-v0.0.6
- Platform artifacts: 13
- Metadata files: 3
- Total public files: 16
- SHA256.txt covers every public file except itself.
What's Changed
- Start native macOS client with Windows parity contract by @bren-wp in #262
- Wire native macOS Quick Connect to shared engine by @bren-wp in #263
- Add native macOS file workspace and transfers by @bren-wp in #264
- Add guarded macOS file mutations by @bren-wp in #265
- Add guarded macOS remote permissions by @bren-wp in #266
- Add native macOS current-folder filters by @bren-wp in #267
- Fix cancellable macOS remote permissions batch by @bren-wp in #268
- Fix/macos remote permissions batch cancel 2 by @bren-wp in #269
- License version 0.0.5 by @bren-wp in #270
- feat: add guarded macOS remote edit by @bren-wp in #272
- test: enforce Android and browser privacy invariants by @bren-wp in #275
- chore: sync main into macOS recursive search by @bren-wp in #276
- feat: add bounded native macOS recursive search by @bren-wp in #274
- test: fuzz remote parsers and security validators by @bren-wp in #277
- chore: sync main into macOS directory compare by @bren-wp in #281
- ci: restrict release token permissions by @bren-wp in #278
- chore: sync release permission hardening into macOS directory compare by @bren-wp in #283
- ci: add pinned CodeQL Go analysis by @bren-wp in #282
- chore: sync CodeQL hardening into macOS directory compare by @bren-wp in #285
- docs: align security guide with 0.0.5 by @bren-wp in #280
- ci: add pinned govulncheck security scan by @bren-wp in #284
- chore: sync latest security hardening into macOS directory compare by @bren-wp in #287
- security: harden curl config quoting against control-character injection by @bren-wp in #288
- chore: sync curl config hardening into macOS directory compare by @bren-wp in #290
- security: require trusted Authenticode for public Windows releases by @bren-wp in #289
- chore: sync signed Windows release hardening into macOS directory compare by @bren-wp in #291
- feat: add guarded native macOS directory compare by @bren-wp in #279
- feat: add native macOS transfer queue parity by @bren-wp in #293
- security: strengthen SFTP first-contact verification guidance by @bren-wp in #294
- test: fuzz SFTP command and fingerprint security boundaries by @bren-wp in #295
- security: verify published release asset digests against exact workflow bundle by @bren-wp in #297
- Feature/macos site manager keychain complete by @bren-wp in #299
- fix: harden macOS saved FTP credential lifetime by @bren-wp in #302
- feat: complete native macOS application parity by @bren-wp in #304
- feat: prepare fail-closed macOS production distribution by @bren-wp in #305
- Harden Android FTP authentication error privacy by @bren-wp in #306
- Fail closed on unsigned public Windows releases by @bren-wp in #307
- Refresh Ghost FTP 0.0.5 documentation and product README by @bren-wp in #308
- Eliminate macOS Python source-prep SyntaxWarning by @bren-wp in #309
- Harden Android passive FTP reply validation by @bren-wp in #310
- Redact Android FTP server reply bodies after authentication by @bren-wp in #311
- Bind Windows transfer cancellation to active connection by @bren-wp in #312
- Add native ARM64 payloads to universal Windows packages by @bren-wp in #313
- Add Android file-management parity for FTP and FTPS by @bren-wp in #314
- Isolate Linux modal search and comparison input on current main by @bren-wp in #316
- Complete Android advanced file workspace parity by @bren-wp in #317
- Harden and package official Ghost FTP browser extensions by @bren-wp in #318
- Prepare Android production release signing contract by @bren-wp in #319
- Prepare and publish Ghost FTP 0.0.6 cross-platform release contract by @bren-wp in #320
- Harden Android MLSD remote entry validation by @bren-wp in #321
- Align Android production signing fingerprint contract by @bren-wp in #322
- Align platform audit scope with Ghost FTP 0.0.6 release contract by @bren-wp in #323
- Prepare Ghost FTP 0.0.6 universal distribution by @bren-wp in #325
- Modernize Ghost FTP proprietary license contract by @bren-wp in #326
- Align 0.0.6 engineering and website prompts with current platform contract by @bren-wp in #327
- Bind README to verified Ghost FTP 0.0.6 runtime media by @bren-wp in #328
- Add Ghost FTP web site and Web FTP for 0.0.6 by @bren-wp in #329
Full Changelog: ghostftp-v0.0.5...ghostftp-v0.0.6