Skip to content

Release ForgeSign 2.7 with simplified OTA install and signing fixes - #7

Open
Mesutcydev wants to merge 1 commit into
mainfrom
release/2.7
Open

Mesutcydev wants to merge 1 commit into
mainfrom
release/2.7

Conversation

@Mesutcydev

Copy link
Copy Markdown
Owner

Summary

  • Removes the paired-device (idevice/LocalDevVPN) install path. In 2.6 it was switched on by default (despite the release notes), preempted the proven OTA install whenever a pairing record and tunnel existed, and double-freed its session on the second install or cancel. Install is OTA-only again; the 24 MB idevice framework is gone.
  • Apple Account provisioning now only runs when the imported certificate and profiles cannot sign the IPA, so a working manual setup never waits on Apple's GSA 503s.
  • When only app extensions lack a matching profile, a Sign Without App Extensions button signs the app instead of dead-ending.
  • Apple sign-in failures now include Apple's actual response instead of a blanket "usually a temporary HTTP 503".
  • ForgeSign no longer registers for every .plist in the share sheet.
  • README and GitHub Pages downloads point to v2.7/ForgeSign-2.7.ipa.

Verification

  • 47 iOS simulator tests pass (23 tests for the removed transport were deleted; 2 added).
  • Release device build succeeds; ForgeSign-2.7.ipa passes package_ipa.py validate, unzip -t, and the 6 packaging-script tests.
  • Not verified on hardware: signing and OTA install of an IPA with an unprovisioned extension.

🤖 Generated with Claude Code

- Remove the paired-device (idevice/LocalDevVPN) install path, its Device
  Installation card and the vendored idevice framework. It was enabled
  despite being unvalidated, preempted the working OTA install, and
  double-freed its session on reuse. Install is OTA-only again.
- Only contact Apple Account provisioning when the imported certificate and
  profiles cannot sign the IPA.
- Offer "Sign Without App Extensions" when only extensions lack a profile.
- Show Apple's actual response on sign-in failures instead of a blanket 503.
- Stop claiming every .plist in the share sheet.
- Point the README and site downloads to v2.7.

Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant