-
Argand Site Registry v0.6.2
StableSome checks failedStandalone registry checks / check (push) Has been cancelledreleased this
2026-09-22 13:09:41 +00:00 | 1 commits to main since this releaseArgand Site Registry v0.6.2 fixes the compact public-catalog runtime discovered
while building the first real v0.6 Web Graph generation.- Retains the pinned Public Suffix List fact required by runtime normalization.
- Exercises
review-queueagainst the compact catalog in the release suite. - Preserves the full cold source history in authenticated external audit bundles.
- Passes the complete Rust/Python/CLI/docs/consumer-parity suite and a clean
RustSec audit.
This patch includes v0.6.1's complete-graph compatibility fix. Route admission,
review quorum, publisher signing, and activation remain fail-closed.Downloads
-
Source code (ZIP)
0 downloads
-
Source code (TAR.GZ)
0 downloads
-
Argand Site Registry v0.6.1
StableSome checks failedStandalone registry checks / check (push) Has been cancelledreleased this
2026-09-22 13:01:40 +00:00 | 2 commits to main since this releaseArgand Site Registry v0.6.1 is a compatibility patch for the public v0.6 Web
Graph pipeline.- Streams and authenticates complete Common Crawl domain-rank releases.
- Treats provider rows that are not DNS hostnames as non-candidates instead of
aborting the entire graph import. - Preserves exact provider row coordinates for all retained observations.
- Keeps schema and numeric corruption fail-closed.
- Passed the complete Rust/Python/CLI/docs/consumer-parity suite and a clean
RustSec audit. - Passed an actual 2.1 GB Common Crawl graph import: 38.10 seconds, 22,112 KiB
peak RSS, zero swap, with 840 identity-backed domains retained.
v0.6.1 does not weaken route admission. Web Graph evidence cannot create an
entity, official-site assertion, reviewer vote, publisher signature, or redirect.Downloads
-
Source code (ZIP)
0 downloads
-
Source code (TAR.GZ)
0 downloads
-
Argand Site Registry 0.6.0
StableSome checks failedStandalone registry checks / check (push) Has been cancelledreleased this
2026-09-22 12:26:35 +00:00 | 3 commits to main since this releaseArgand Site Registry 0.6.0 adds authenticated Common Crawl domain Web Graph
authority evidence to the public updater without allowing popularity to create or
approve navigation routes.Highlights:
- streams and validates the complete official six-column domain-rank object;
- retains only registrable domains already asserted by imported public identity
sources, binding the exact sorted-domain digest into the source identity; - preserves harmonic-centrality, PageRank, member-host counts, exact provider
fields, source-line coordinates, rights metadata, and attribution; - orders scheduled imports so Wikidata/ROR/Curlie identity evidence is available
before{candidate_domains}Web Graph acquisition; - adds fail-closed URL, schema, scope, gzip, provenance, safety, determinism, and
resource tests; - updates Rustls to 0.23.45, remediating RUSTSEC-2026-0285.
The focused 100,000-row benchmark retained one applicable row in 0.52 seconds of
test time with 79,944 KiB peak RSS in the enclosing warm Cargo process. The full
offline acceptance suite and networked RustSec audit passed. These are engineering
gates, not a full-provider-object duration claim.Web Graph and Wikidata records remain evidence. Only authenticated review policy
can authorize a redirect. Third-party consumers and Argand use this same public
signed source release; there is no embedded Argand-only fork.Downloads
-
Source code (ZIP)
0 downloads
-
Source code (TAR.GZ)
0 downloads
-
Argand Site Registry 0.5.0 and public signed catalog
StableAll checks were successfulStandalone registry checks / check (push) Successful in 5m52sreleased this
2026-09-13 18:50:30 +00:00 | 5 commits to main since this releaseArgand Site Registry 0.5.0 and first public signed catalog
This release publishes the Rust source for Site Registry v0.5.0 and the first
public signed data generation. Site Registry is Argand Navigate's authoritative
auto-route catalog; other applications can use the same policy-enforced resolver.The catalog asset contains the immutable SQLite generation, compact receipt,
publisher signature, attribution and licensing files, disclosed policy, and public
publisher/reviewer trust roots. The deterministic archive SHA-256 is:d878fa057397effa5dc729d2fa3a689c8edd1f4112ef1326dd6131b3fdeab63eGeneration pin:
ede14746da8817aafdf705dd88cfeabbe8d23e1991e43a304acd8eca9249b18aThe catalog is deliberately conservative and currently small. It uses one disclosed
automated evidence-gate reviewer group, not a human-review quorum, and abstains on
conflicts or dangerous endpoint drift. Consumers must preserve typed abstentions and
apply their own malware/content policy. See the bundled README anddocs/CONSUMERS.md.Argand public beta deployed a collection- and content-policy-bound projection of
this exact generation on September 20, 2026. Yahoo Mail, NBA, and Canva now use
signed/yw/handoffs. Facebook and other unresolved or corpus-ineligible routes
remain ordinary search results; no safety or trust threshold was weakened.Downloads
-
Source code (ZIP)
0 downloads
-
Source code (TAR.GZ)
0 downloads
-
Source code (ZIP)
-
Argand Site Registry 0.3.0
StableAll checks were successfulStandalone registry checks / check (push) Successful in 3m44sreleased this
2026-09-13 06:40:31 +00:00 | 11 commits to main since this releaseArgand Site Registry 0.3.0 closes the security and operational findings from the 0.2 review.
- Queries use a private authenticated SQLite snapshot; source import and release signing operate on exact opened or sealed bytes.
- Signed release verification and activation now require independent reviewer trust roots. OpenSSH validity epochs support reviewer-key retirement.
- Imports and query/diff outputs have finite configurable resource bounds; Curlie descriptions remain redacted from typed diffs with attribution attached.
- Identity reviews bind displayed entity metadata, CrUX output-only limits no longer change job IDs, and v3 activation can inspect pinned v1/v2 history for rollback safety.
Compatibility: writer schema and derivation rules advance to version 3.
activaterequires--allowed-reviewers; Rust callers ofrelease::verify_signedandrelease::activatemust pass the reviewer trust file.Validation: 38 Rust tests, eight source-release tests, strict formatting/compiler/Clippy/rustdoc gates, native CLI/Rust/Python parity, RustSec audit, and isolated Forgejo Actions runs 4 and 5.
Source release:
RELEASE.jsonSHA-256:8083e44b632c84abc711915314130194bcd16de54d0e93d287a8b4b0acc2626eRELEASE.json.sigSHA-256:f0304b400695b9b5c14e79712914a8b7744b8e59e8a457e30fda7f65a04e80d2source.tar.gzSHA-256:e6db0b982cb3c04f2175936180f0a95f53dcf59bb097fd4d6b6c972a5ad0b669
This release contains source code only. It acquires no provider data and promotes no destination registry.
Downloads
-
Source code (ZIP)
0 downloads
-
Source code (TAR.GZ)
0 downloads
-
Argand Site Registry 0.2.0
StableAll checks were successfulStandalone registry checks / check (push) Successful in 3m54sreleased this
2026-09-13 05:31:21 +00:00 | 13 commits to main since this releaseArgand Site Registry 0.2.0 strengthens the standalone, evidence-backed entity-to-website registry for navigational search and regional destination resolution.
Security and release integrity:
- Opens authenticated generation bytes through an immutable file descriptor and rejects SQLite WAL/SHM sidecars, symlinks and unexpected generation files.
- Requires SSH-authenticated exact reviewer decisions, preserves the signed proof bytes and re-verifies every decision before a dataset release can be signed.
- Preserves revocation history during activation and reports review-only and revocation-only changes in typed diffs.
- Keeps source assertions, popularity signals, reviewer decisions and crawler observations separate; observations never establish ownership on their own.
Operator and consumer improvements:
- Adds stable resolver outcomes for ambiguous identities, missing/expired reviews, region mismatches and destination ambiguity.
- Adds exact entity lookup, URL/hostname/registrable-domain reverse lookup, source-separated popularity, redacted Curlie categories and registry history/statistics views.
- Adds bounded JSONL evaluation with entity, URL and resolution-status judgments plus native p50/p95 latency.
- Adds a publisher runbook, evaluation guide, isolated CI image and future crawler-evidence contract.
Schema compatibility: version 0.2 uses database schema 2 and
argand.site-rules/v2. Opening a version 1 store applies the append-only migration and preserves its history, but legacy unauthenticated decisions cannot authorize a new signed release. Start a reviewed version 2 store from pinned source snapshots and obtain fresh authenticated decisions.Validation: 32 Rust tests and eight Python packaging tests pass with strict formatting, compilation, Clippy, API documentation, shell checks, consumer parity and adversarial trust-boundary cases. Forgejo Actions run 3 passed final commit
82b9d652a98b1895bd44246c39b359d3aa412917on the repository-scoped isolated runner, including byte-identical package creation and a full acceptance rerun from extracted source: https://git.argand.org/nicweyand/argand-site-registry/actions/runs/3Source receipt SHA-256:
e5e416d687c7e1fba0c10310247ca5f6cbe8518c846294ace24d478c27e393c7.
Archive SHA-256:e291493669da70080a2c537a9d54c0a2612595efded0351c8147cff2ee18ba6f.
Source signature namespace:argand-site-registry-source.
Signer identity:nicweyand.
Signer key fingerprint:SHA256:2te+ycJIQON/Wo/dH6+ZkFSQ4HnHWpetV2azx9E65dQ.Authenticate the signer key independently, then follow
docs/RELEASING.md. Code is AGPL-3.0-or-later. Provider data retains the separate terms documented inLICENSE_SOURCES.md. The attached source release contains no provider dataset, reviewer approval log or production signing key. Argand has not yet switched its embedded registry dependency to this release.Downloads
-
Source code (ZIP)
0 downloads
-
Source code (TAR.GZ)
0 downloads
-
Argand Site Registry 0.1.0 Stable
released this
2026-09-13 01:49:26 +00:00 | 16 commits to main since this releaseInitial standalone source release of Argand Site Registry: a Rust library and CLI for evidence-backed entity/website identity and regional resolution.
Includes all five source adapters, provenance-preserving SQLite generations, explicit expiring reviews, signed dataset activation and revocation-aware rollback; standalone build metadata, Rust/Python examples, contribution and trust policies, and deterministic source packaging.
Validated on Linux with Rust 1.98.1: 23 Rust tests, eight source-release tests, strict Clippy and documentation checks, all-source native fixtures, and native/Rust/Python consumer parity. Full acceptance also passed on an extracted source archive outside the Git checkout and developer Cargo configuration. The final change after that run is documentation only.
Source commit:
0bcd4a2fc9aa4e27ee2c401f9ed44cd851127ca8.
Source receipt SHA-256:ff63a70dd4a7ca62ab7932aa07c7e4ec7841adabae206cb5f274235d2bfd9fbb.
Archive SHA-256:7c640633edd742b69eb39d4bef004393760801c6cd71a9843f0a8a86231c7f9b.The SSH signature on RELEASE.json uses namespace
argand-site-registry-source, identitynicweyand, key fingerprintSHA256:2te+ycJIQON/Wo/dH6+ZkFSQ4HnHWpetV2azx9E65dQ. Authenticate the publisher key independently before verification. Follow docs/RELEASING.md using an already trusted verifier.Code license: AGPL-3.0-or-later. Data keeps the separate source terms documented in LICENSE_SOURCES.md. This source distribution contains no provider dataset or production approval log.
The Forgejo CI workflow is included; Actions is disabled pending an isolated runner. Argand still uses its embedded registry dependency until a coordinated upstream cutover. No public approved-link dataset or malware-safety certification is implied.
Downloads
-
Source code (ZIP)
0 downloads
-
Source code (TAR.GZ)
0 downloads
-
Source code (ZIP)