One download for compatible Macs
The release is built as one universal DMG containing Apple Silicon and Intel code. You never need to choose a processor version.
Download status
The current universal DMG passed Apple security and clean-install checks on Apple Silicon and Intel Macs.
The release is built as one universal DMG containing Apple Silicon and Intel code. You never need to choose a processor version.
Developer ID, notarization, a stapled ticket, and Gatekeeper checks are required before the button activates. No security workaround is part of installation.
An installed qualified release checks for newer signed versions when it opens. Choose Update now or Later, or check manually in Settings.
How updates workThese machine-readable checks describe the exact public DMG. Device workflow, restore, and previous-version update testing are approved separately for each release.
| Check | Status | Why it matters |
|---|---|---|
| Complete public release metadata | Ready | Version, build, publication date, minimum macOS, and release notes must come from a public release. |
| One immutable universal DMG | Ready | HTTPS URL, exact byte size, and SHA-256 must describe one versioned DMG. |
| Universal binary inspection | Ready | Every executable must contain both arm64 and x86_64 slices. |
| Developer ID signature | Ready | Ad-hoc development signatures do not qualify. |
| Hardened runtime | Ready | The app and bundled executables must retain hardened runtime signing. |
| Apple notarization | Ready | Apple must accept the exact release artifact. |
| Stapled ticket | Ready | The notarization ticket must be attached and validate offline. |
| Gatekeeper assessment | Ready | macOS must accept the quarantined app through normal security checks. |
| Apple Silicon clean install | Ready | A clean Apple Silicon runner must mount, copy, assess, and launch it. |
| Intel clean install | Ready | A clean Intel runner must mount, copy, assess, and launch the same DMG. |
The same manifest controls every download button. A null universal URL means there is no qualified public file.