• v0.6.2 3c89a540d9

    Argand Site Registry v0.6.2
    Some checks failed
    Standalone registry checks / check (push) Has been cancelled
    Stable

    nicweyand released this 2026-09-22 13:09:41 +00:00 | 1 commits to main since this release

    Signed by nicweyand
    SSH key fingerprint: SHA256:2te+ycJIQON/Wo/dH6+ZkFSQ4HnHWpetV2azx9E65dQ

    Argand Site Registry v0.6.2 fixes the compact public-catalog runtime discovered
    while building the first real v0.6 Web Graph generation.

    • Retains the pinned Public Suffix List fact required by runtime normalization.
    • Exercises review-queue against the compact catalog in the release suite.
    • Preserves the full cold source history in authenticated external audit bundles.
    • Passes the complete Rust/Python/CLI/docs/consumer-parity suite and a clean
      RustSec audit.

    This patch includes v0.6.1's complete-graph compatibility fix. Route admission,
    review quorum, publisher signing, and activation remain fail-closed.

    Downloads
  • v0.6.1 3b6966c81a

    Argand Site Registry v0.6.1
    Some checks failed
    Standalone registry checks / check (push) Has been cancelled
    Stable

    nicweyand released this 2026-09-22 13:01:40 +00:00 | 2 commits to main since this release

    Signed by nicweyand
    SSH key fingerprint: SHA256:2te+ycJIQON/Wo/dH6+ZkFSQ4HnHWpetV2azx9E65dQ

    Argand Site Registry v0.6.1 is a compatibility patch for the public v0.6 Web
    Graph pipeline.

    • Streams and authenticates complete Common Crawl domain-rank releases.
    • Treats provider rows that are not DNS hostnames as non-candidates instead of
      aborting the entire graph import.
    • Preserves exact provider row coordinates for all retained observations.
    • Keeps schema and numeric corruption fail-closed.
    • Passed the complete Rust/Python/CLI/docs/consumer-parity suite and a clean
      RustSec audit.
    • Passed an actual 2.1 GB Common Crawl graph import: 38.10 seconds, 22,112 KiB
      peak RSS, zero swap, with 840 identity-backed domains retained.

    v0.6.1 does not weaken route admission. Web Graph evidence cannot create an
    entity, official-site assertion, reviewer vote, publisher signature, or redirect.

    Downloads
  • v0.6.0 3e0cc1bc50

    Argand Site Registry 0.6.0
    Some checks failed
    Standalone registry checks / check (push) Has been cancelled
    Stable

    nicweyand released this 2026-09-22 12:26:35 +00:00 | 3 commits to main since this release

    Signed by nicweyand
    SSH key fingerprint: SHA256:2te+ycJIQON/Wo/dH6+ZkFSQ4HnHWpetV2azx9E65dQ

    Argand Site Registry 0.6.0 adds authenticated Common Crawl domain Web Graph
    authority evidence to the public updater without allowing popularity to create or
    approve navigation routes.

    Highlights:

    • streams and validates the complete official six-column domain-rank object;
    • retains only registrable domains already asserted by imported public identity
      sources, binding the exact sorted-domain digest into the source identity;
    • preserves harmonic-centrality, PageRank, member-host counts, exact provider
      fields, source-line coordinates, rights metadata, and attribution;
    • orders scheduled imports so Wikidata/ROR/Curlie identity evidence is available
      before {candidate_domains} Web Graph acquisition;
    • adds fail-closed URL, schema, scope, gzip, provenance, safety, determinism, and
      resource tests;
    • updates Rustls to 0.23.45, remediating RUSTSEC-2026-0285.

    The focused 100,000-row benchmark retained one applicable row in 0.52 seconds of
    test time with 79,944 KiB peak RSS in the enclosing warm Cargo process. The full
    offline acceptance suite and networked RustSec audit passed. These are engineering
    gates, not a full-provider-object duration claim.

    Web Graph and Wikidata records remain evidence. Only authenticated review policy
    can authorize a redirect. Third-party consumers and Argand use this same public
    signed source release; there is no embedded Argand-only fork.

    Downloads
  • v0.5.0 3d3e08cdfd

    Argand Site Registry 0.5.0 and public signed catalog
    All checks were successful
    Standalone registry checks / check (push) Successful in 5m52s
    Stable

    nicweyand released this 2026-09-13 18:50:30 +00:00 | 5 commits to main since this release

    Signed by nicweyand
    SSH key fingerprint: SHA256:2te+ycJIQON/Wo/dH6+ZkFSQ4HnHWpetV2azx9E65dQ

    Argand Site Registry 0.5.0 and first public signed catalog

    This release publishes the Rust source for Site Registry v0.5.0 and the first
    public signed data generation. Site Registry is Argand Navigate's authoritative
    auto-route catalog; other applications can use the same policy-enforced resolver.

    The catalog asset contains the immutable SQLite generation, compact receipt,
    publisher signature, attribution and licensing files, disclosed policy, and public
    publisher/reviewer trust roots. The deterministic archive SHA-256 is:

    d878fa057397effa5dc729d2fa3a689c8edd1f4112ef1326dd6131b3fdeab63e

    Generation pin:

    ede14746da8817aafdf705dd88cfeabbe8d23e1991e43a304acd8eca9249b18a

    The catalog is deliberately conservative and currently small. It uses one disclosed
    automated evidence-gate reviewer group, not a human-review quorum, and abstains on
    conflicts or dangerous endpoint drift. Consumers must preserve typed abstentions and
    apply their own malware/content policy. See the bundled README and docs/CONSUMERS.md.

    Argand public beta deployed a collection- and content-policy-bound projection of
    this exact generation on September 20, 2026. Yahoo Mail, NBA, and Canva now use
    signed /yw/ handoffs. Facebook and other unresolved or corpus-ineligible routes
    remain ordinary search results; no safety or trust threshold was weakened.

    Downloads
  • v0.3.0 ac8282093d

    Argand Site Registry 0.3.0
    All checks were successful
    Standalone registry checks / check (push) Successful in 3m44s
    Stable

    nicweyand released this 2026-09-13 06:40:31 +00:00 | 11 commits to main since this release

    Signed by nicweyand
    SSH key fingerprint: SHA256:2te+ycJIQON/Wo/dH6+ZkFSQ4HnHWpetV2azx9E65dQ

    Argand Site Registry 0.3.0 closes the security and operational findings from the 0.2 review.

    • Queries use a private authenticated SQLite snapshot; source import and release signing operate on exact opened or sealed bytes.
    • Signed release verification and activation now require independent reviewer trust roots. OpenSSH validity epochs support reviewer-key retirement.
    • Imports and query/diff outputs have finite configurable resource bounds; Curlie descriptions remain redacted from typed diffs with attribution attached.
    • Identity reviews bind displayed entity metadata, CrUX output-only limits no longer change job IDs, and v3 activation can inspect pinned v1/v2 history for rollback safety.

    Compatibility: writer schema and derivation rules advance to version 3. activate requires --allowed-reviewers; Rust callers of release::verify_signed and release::activate must pass the reviewer trust file.

    Validation: 38 Rust tests, eight source-release tests, strict formatting/compiler/Clippy/rustdoc gates, native CLI/Rust/Python parity, RustSec audit, and isolated Forgejo Actions runs 4 and 5.

    Source release:

    • RELEASE.json SHA-256: 8083e44b632c84abc711915314130194bcd16de54d0e93d287a8b4b0acc2626e
    • RELEASE.json.sig SHA-256: f0304b400695b9b5c14e79712914a8b7744b8e59e8a457e30fda7f65a04e80d2
    • source.tar.gz SHA-256: e6db0b982cb3c04f2175936180f0a95f53dcf59bb097fd4d6b6c972a5ad0b669

    This release contains source code only. It acquires no provider data and promotes no destination registry.

    Downloads
  • v0.2.0 82b9d652a9

    Argand Site Registry 0.2.0
    All checks were successful
    Standalone registry checks / check (push) Successful in 3m54s
    Stable

    nicweyand released this 2026-09-13 05:31:21 +00:00 | 13 commits to main since this release

    Signed by nicweyand
    SSH key fingerprint: SHA256:2te+ycJIQON/Wo/dH6+ZkFSQ4HnHWpetV2azx9E65dQ

    Argand Site Registry 0.2.0 strengthens the standalone, evidence-backed entity-to-website registry for navigational search and regional destination resolution.

    Security and release integrity:

    • Opens authenticated generation bytes through an immutable file descriptor and rejects SQLite WAL/SHM sidecars, symlinks and unexpected generation files.
    • Requires SSH-authenticated exact reviewer decisions, preserves the signed proof bytes and re-verifies every decision before a dataset release can be signed.
    • Preserves revocation history during activation and reports review-only and revocation-only changes in typed diffs.
    • Keeps source assertions, popularity signals, reviewer decisions and crawler observations separate; observations never establish ownership on their own.

    Operator and consumer improvements:

    • Adds stable resolver outcomes for ambiguous identities, missing/expired reviews, region mismatches and destination ambiguity.
    • Adds exact entity lookup, URL/hostname/registrable-domain reverse lookup, source-separated popularity, redacted Curlie categories and registry history/statistics views.
    • Adds bounded JSONL evaluation with entity, URL and resolution-status judgments plus native p50/p95 latency.
    • Adds a publisher runbook, evaluation guide, isolated CI image and future crawler-evidence contract.

    Schema compatibility: version 0.2 uses database schema 2 and argand.site-rules/v2. Opening a version 1 store applies the append-only migration and preserves its history, but legacy unauthenticated decisions cannot authorize a new signed release. Start a reviewed version 2 store from pinned source snapshots and obtain fresh authenticated decisions.

    Validation: 32 Rust tests and eight Python packaging tests pass with strict formatting, compilation, Clippy, API documentation, shell checks, consumer parity and adversarial trust-boundary cases. Forgejo Actions run 3 passed final commit 82b9d652a98b1895bd44246c39b359d3aa412917 on the repository-scoped isolated runner, including byte-identical package creation and a full acceptance rerun from extracted source: https://git.argand.org/nicweyand/argand-site-registry/actions/runs/3

    Source receipt SHA-256: e5e416d687c7e1fba0c10310247ca5f6cbe8518c846294ace24d478c27e393c7.
    Archive SHA-256: e291493669da70080a2c537a9d54c0a2612595efded0351c8147cff2ee18ba6f.
    Source signature namespace: argand-site-registry-source.
    Signer identity: nicweyand.
    Signer key fingerprint: SHA256:2te+ycJIQON/Wo/dH6+ZkFSQ4HnHWpetV2azx9E65dQ.

    Authenticate the signer key independently, then follow docs/RELEASING.md. Code is AGPL-3.0-or-later. Provider data retains the separate terms documented in LICENSE_SOURCES.md. The attached source release contains no provider dataset, reviewer approval log or production signing key. Argand has not yet switched its embedded registry dependency to this release.

    Downloads
  • v0.1.0 0bcd4a2fc9

    nicweyand released this 2026-09-13 01:49:26 +00:00 | 16 commits to main since this release

    Signed by nicweyand
    SSH key fingerprint: SHA256:2te+ycJIQON/Wo/dH6+ZkFSQ4HnHWpetV2azx9E65dQ

    Initial standalone source release of Argand Site Registry: a Rust library and CLI for evidence-backed entity/website identity and regional resolution.

    Includes all five source adapters, provenance-preserving SQLite generations, explicit expiring reviews, signed dataset activation and revocation-aware rollback; standalone build metadata, Rust/Python examples, contribution and trust policies, and deterministic source packaging.

    Validated on Linux with Rust 1.98.1: 23 Rust tests, eight source-release tests, strict Clippy and documentation checks, all-source native fixtures, and native/Rust/Python consumer parity. Full acceptance also passed on an extracted source archive outside the Git checkout and developer Cargo configuration. The final change after that run is documentation only.

    Source commit: 0bcd4a2fc9aa4e27ee2c401f9ed44cd851127ca8.
    Source receipt SHA-256: ff63a70dd4a7ca62ab7932aa07c7e4ec7841adabae206cb5f274235d2bfd9fbb.
    Archive SHA-256: 7c640633edd742b69eb39d4bef004393760801c6cd71a9843f0a8a86231c7f9b.

    The SSH signature on RELEASE.json uses namespace argand-site-registry-source, identity nicweyand, key fingerprint SHA256:2te+ycJIQON/Wo/dH6+ZkFSQ4HnHWpetV2azx9E65dQ. Authenticate the publisher key independently before verification. Follow docs/RELEASING.md using an already trusted verifier.

    Code license: AGPL-3.0-or-later. Data keeps the separate source terms documented in LICENSE_SOURCES.md. This source distribution contains no provider dataset or production approval log.

    The Forgejo CI workflow is included; Actions is disabled pending an isolated runner. Argand still uses its embedded registry dependency until a coordinated upstream cutover. No public approved-link dataset or malware-safety certification is implied.

    Downloads