• v0.4.4 e2316f534b

    OciDeck v0.4.4
    All checks were successful
    ci / gate (push) Successful in 12m50s
    release / Web bouwen (push) Successful in 13m51s
    release / Webversie live zetten (push) Successful in 28s
    release / Linux bouwen (push) Successful in 19m37s
    release / Windows ophalen van de spiegel (push) Successful in 23m48s
    release / macOS bouwen (push) Successful in 13m31s
    release / Release publiceren (push) Successful in 1m6s
    release / Homebrew-cask bijwerken (push) Successful in 39s
    release / Website-downloads bijwerken (push) Successful in 3m17s
    linux-gate / gate-linux (push) Successful in 42m35s
    Stable

    brenno released this 2026-08-15 22:38:27 +00:00 | 1062 commits to main since this release

    OciDeck 0.4.4 — a presentation tool where the content, not the canvas, is
    the document. Decks are Marp Markdown: plain text you can read, diff and keep.

    Try it without installing: https://ocideck.librekat.nl/ runs this same
    version in your browser. Your deck stays in the tab; nothing is uploaded.

    Downloads

    Platform File
    macOS (Apple Silicon + Intel) ocideck-macos-0.4.4.zip
    Windows (x64) ocideck-windows-x64-0.4.4.zip
    Linux — AppImage (most distributions) ocideck-linux-x86_64-0.4.4.AppImage
    Linux — Debian / Ubuntu / Mint ocideck-linux-amd64-0.4.4.deb
    Linux — Fedora / openSUSE ocideck-linux-x86_64-0.4.4.rpm
    Linux — portable tarball ocideck-linux-x64-0.4.4.tar.gz
    Web bundle (self-hosting) ocideck-web-0.4.4.tar.gz

    Also attached: the Software Bill of Materials in CycloneDX
    (ocideck-0.4.4.cdx.json) and SPDX (ocideck-0.4.4.spdx.json),
    SHA256SUMS over every file above, and SHA256SUMS.minisig — a minisign
    signature over that list.

    Opening the download on each platform

    The macOS build is signed and notarised; the Windows and Linux builds are not
    code-signed. Only Windows warns on first launch — a Linux tarball does not.
    Verify the download below, then:

    macOS. Signed with a Developer ID and notarised by Apple — it opens with a
    normal double-click, no workaround needed. (Check with spctl -a -t exec OciDeck.app: it reports source=Notarized Developer ID.)

    Windows. SmartScreen shows "Windows protected your PC". Choose More
    info
    , then Run anyway.

    Linux. Four packagings of the same build — pick what fits your distribution.
    None is sandboxed or store-signed; each wraps the same bundle listed above.

    • AppImagechmod +x ocideck-linux-x86_64-0.4.4.AppImage, then run it. One
      file, no installation, works on most distributions.
    • Debian / Ubuntu / Mintsudo apt install ./ocideck-linux-amd64-0.4.4.deb.
    • Fedora / openSUSEsudo dnf install ./ocideck-linux-x86_64-0.4.4.rpm
      (or sudo zypper install ./ocideck-linux-x86_64-0.4.4.rpm).
    • Any distribution — unpack ocideck-linux-x64-0.4.4.tar.gz and run
      ./ocideck.

    All four need GTK 3, libsecret-1 and liblzma5; the .deb and .rpm pull
    them in, and any GTK desktop already has them. For the AppImage or tarball on a
    minimal system: sudo apt install libgtk-3-0 libsecret-1-0 (Debian/Ubuntu).

    Verifying what you downloaded

    First check that the checksum list vouches for your files:

    sha256sum --ignore-missing -c SHA256SUMS
    

    (macOS: shasum -a 256 -c SHA256SUMS --ignore-missing.)

    SHA256SUMS on its own tells you only that you have the bytes it lists — not who
    published them. The list itself is therefore signed. Verify that signature with
    minisign and the project's public key
    (minisign.pub):

    minisign -Vm SHA256SUMS -p minisign.pub
    

    The key's ID is CF0BCBD82CFD5B85. Since the key and the signature come from the
    same host as this download, cross-check that ID against an independent copy — the
    source repository or the
    GitHub mirror — before you trust it.

    Because SHA256SUMS covers every file above, one verified signature over the
    list anchors the whole release: tampering with any listed artifact breaks its
    checksum, and the signed list is what vouches for those checksums. The macOS build
    additionally carries an Apple notarisation attesting its publisher; for the
    strongest guarantee on any platform, build from source — every artifact above
    comes from a workflow in this repository that you can read, and make check-toolchain pins the exact Flutter release used.

    What is in it

    See CHANGELOG.md
    for the full list, and
    docs/USER_GUIDE.md
    to get started. Both links point at this tag, not at main, so they keep
    describing the version you just downloaded.

    Licensed under the EUPL-1.2. Published by Stichting LibreKAT. Security
    findings: security@librekat.nl — see
    SECURITY.md.

    Downloads