Skip to content

chore(ci): build MSIX artifacts and publish Store alpha assets - #1403

Merged
karkarl merged 2 commits into
openclaw:mainfrom
natalie-aguinaldo:user/natalie-aguinaldo/msix-ci-artifacts
Sep 17, 2026
Merged

karkarl merged 2 commits into
openclaw:mainfrom
natalie-aguinaldo:user/natalie-aguinaldo/msix-ci-artifacts

Conversation

@natalie-aguinaldo

@natalie-aguinaldo natalie-aguinaldo commented Sep 11, 2026 •

Copy link
Copy Markdown
Contributor

Summary

Build x64 and ARM64 MSIX packages in CI, and attach the unsigned Store submission packages and metadata to canonical alpha GitHub pre-releases for manual upload to Partner Center.

Dev-signed tester packages remain Actions artifacts only. Stable, stable-correction, and non-alpha releases keep the existing EXE/ZIP asset set.

Rebased onto main at 3c43751b. #1328 (feat: add Microsoft Store MSIX packaging) has merged, so its packaging changes are no longer part of this PR's diff. Current head: e348ef7d9ffdef4b76f438d60484ffd2d6529bcc.

Partially addresses #1375. Store distribution, automatic submission, signed-package retrieval, and coexistence/migration in #1374 remain separate work.

Behavior

Surface Result
Actions artifacts Unsigned Store and Dev-signed packages for x64 and ARM64. Selected MSIX builds are required by CI Gate.
vX.Y.Z-alpha.N release Adds two unsigned Store MSIX files and two architecture-specific metadata files to the existing EXE/ZIP downloads.
Dev packages Public certificate, signed package, metadata, and installation instructions stay in Actions. No Dev certificate or package is attached to a release.
Stable and other releases No MSIX assets or MSIX download notes. Existing release/signing gates remain.
Manual alpha request After merge, run Actions > Daily Alpha Release > Run workflow to evaluate the current default branch. It does not publish the feature branch selected in the UI.

Alpha releases are public and visible on the Releases page, but use prerelease: true and make_latest: false. Existing 30-day alpha retention applies. Manual dispatch bypasses only the clock check; published-head, pending non-alpha tag, GitVersion, tag ownership, CI Gate, and signing checks remain. A previously published head is skipped.

The Store assets are submission inputs, not installers. Upload the MSIX files manually to Partner Center. This workflow does not submit, retrieve, or publish Store-signed packages.

Store version caveat: X.Y.Z-alpha.N still produces Windows package version X.Y.Z.0. Multiple alpha tags sharing a base version can collide with earlier Store submissions; check Partner Center before uploading. Dev versions remain X.Y.Z.<github.run_number>, with explicit bounds and no wrapping.

Artifact and signing safeguards

The existing builders remain authoritative: Build-StoreMsix.ps1 for validated unsigned Store inputs, and build.ps1 -Msix Dev plus Export-DevMsixArtifact.ps1 for Dev downloads.

Each selected MSIX matrix leg provisions a disposable non-exportable Dev certificate and removes its signer/trust in an always() cleanup step. Only the public certificate is exported. Dev uploads use an explicit four-file allowlist, never the whole packaging directory or a PFX.

Alpha release staging requires both architectures, a clean expected source commit, Store identity/publisher, Release configuration, expected architecture/version/filename, unsigned boolean metadata, and matching package hashes. Both inputs are validated before any release output is created. Package and metadata bytes are preserved.

Alpha-only attachments:

OpenClawCompanion-x64.msix
OpenClawCompanion-x64.msix-metadata.json
OpenClawCompanion-arm64.msix
OpenClawCompanion-arm64.msix-metadata.json

Installing a Dev artifact remains an explicit trust decision. It uses the existing Dev identity and may upgrade an existing Dev installation rather than create an isolated app. No product permissions, node/MCP commands, user settings migration, or new production signing secret are introduced.

Required proof pools

  • windows-11-arm64: Native packaging passed on the historical hosted run below. Current-head native ARM64 build/install/launch proof remains pending; the full pool is not satisfied.
  • windows-clean-installer-upgrade: Historical existing-host x64 installation/launch is recorded below. Clean installation and controlled retained-settings upgrade across different runner certificates remain unverified.

These declarations do not establish Store readiness or waive the broader rollout gates.

Validation

The following passed against the source tree committed as e348ef7d; no code changed between these runs and the commit.

Command Result
.\build.ps1 All five project builds passed.
dotnet test .\tests\OpenClaw.Shared.Tests\OpenClaw.Shared.Tests.csproj --no-restore 3,983 passed, 33 skipped, 0 failed.
dotnet test .\tests\OpenClaw.Tray.Tests\OpenClaw.Tray.Tests.csproj --no-restore 2,978 passed, 0 failed.
.\scripts\test-msix-alpha-release.ps1 Passed: exact assets, provenance/hash/version rejection, no partial staging, alpha-only selection, and actual manual/scheduled Bash selector execution.
.\scripts\test-msix-ci-artifacts.ps1 Passed.
.\scripts\test-ci-workflow-contract.ps1 Passed.
.\scripts\test-ci-gate-results.ps1 Passed.
.\scripts\test-ci-change-classifier.ps1 Passed.
.\scripts\test-stable-correction-release-validator.ps1 Passed: 4 accepted, 11 rejected, 5 classifications.
.\scripts\validate-docs.ps1 and git diff --check Passed; 48 Markdown files checked.

Test restores completed before --no-restore runs. Tests used this worktree's OPENCLAW_REPO_ROOT and isolated OPENCLAW_TRAY_DATA_DIR.

Local environment: prerequisite diagnostics passed. The host's inherited NuGet source was disabled, and the v3 endpoint failed TLS negotiation. Final build/tests used a session-only RestoreConfigFile pointing to the official https://www.nuget.org/api/v2/ feed. No tracked dependency, warning policy, audit setting, or CI configuration was changed for this workaround; the final runs did not use the older runtime-patch override.

Hosted CI for e348ef7d: Build and Test 35031354398 is running. Fast validation, classification, and release metadata passed; both native MSIX jobs are in progress. CodeQL 35031354557 passed. The successful old run below is historical, not proof of this rebased head.

Review: a read-only review identified that manual feature-branch dispatch could affect GitVersion normalization despite default-branch checkout. Fixed with disableNormalization: true, covered by a workflow regression and the actual GitVersion proof below. Structured autoreview was retried after the fix: local mode hit its diff-size guard; the committed branch bundle succeeded, but the Codex executable is unavailable. No guards were bypassed and no clean structured-review result is claimed.

Real behavior proof

Current alpha stager, genuine historical inputs: ran Stage-StoreMsixReleaseAssets.ps1 against both Store artifacts from run 34644112448, with expected clean source 17fce3fa321ed157c4ef0134d9261549f403cc30 and test alpha version 2026.7.2-alpha.4. It produced exactly the four release filenames above, preserving package and metadata bytes. Package hashes still matched the historical table below. This proves current staging behavior, not a current-head package rebuild or a published release.

Actual GitVersion 6.8.2 proof: in an isolated clone checked out to default-branch commit 3c43751b, /nonormalize /nofetch /nocache produced 2026.9.4-alpha.5 both with GITHUB_REF=refs/heads/main and with a different feature-branch ref/SHA. The reported branch and source remained main and 3c43751b. The real working branch and remote tags were not altered.

No alpha tag/release was created and no Partner Center submission was made for validation. The public release attachment path and manual Actions dispatch still need an eligible, approved post-merge release run.

Historical hosted packages and developer x64 launch, before this rebase

Build and Test run 34644112448, attempt 2 passed for original PR head 74b6a8bb. It built clean test-merge commit 17fce3fa321ed157c4ef0134d9261549f403cc30, not the current head.

Both signing/cleanup paths passed, with logs reporting Development MSIX certificate and local trust removed. All four downloads were inspected; package hashes, metadata, manifest identity/version/architecture, and public-only certificate exports matched. Both exported certificates had HasPrivateKey: false. The artifact IDs below were rechecked while updating this description and remain unexpired.

Artifact Version Package SHA-256
Store x64 2026.7.2.0 c1e455d6f507c4bca4c652be4e8dc190d1f49cd8b7abdb95c9d9428343ddf1c0
Store ARM64 2026.7.2.0 6d5fba319a97f67dde6477eb22f9be759c1e385b5e02a950730d488fe3c6d75a
Dev x64 2026.7.2.3209 d933b8abd6d3fb5086eeb2a99d08a4064b15407679712b88a239242e75f202de
Dev ARM64 2026.7.2.3209 eab791386df222a19d0cb68686609c59d3d85f859709e2100936b01d780b4573

The developer installed the hosted x64 Dev package and launched the welcome screen on the existing Windows host. Read-only inspection confirmed package OpenClawFoundation.OpenClaw.Dev, x64 version 2026.7.2.3209, and a running executable inside that installed package. The downloaded signature was valid, with signer 90EA74F2039332D8A72CEBAC40B8B58226BD0B44.

The developer's existing screenshot is preserved here:

msix-ci-x64-first-launch-cropped

The attachment was verified by a successful image download while updating this description.

The installation capture used Add-AppxPackage -AllowUnsigned after certificate import. Although the package signature independently validated, installation without that flag was not demonstrated. This is existing-host launch proof, not a clean-machine install, completed onboarding, controlled upgrade, or native ARM64 launch.

Earlier local package generation at 74b6a8bb also passed for Store x64, Store ARM64 cross-build, and Dev x64. Those packages and their earlier test results do not establish current-head acceptance.

Not verified / blocked

  • Current-head full hosted CI and both native MSIX packaging legs: still running; fast validation and CodeQL passed.
  • Actual post-merge alpha release publication/manual Actions run: not performed.
  • Native ARM64 installation/launch and clean install/controlled retained-settings upgrade: not verified.
  • Developer installation without -AllowUnsigned: not demonstrated.
  • Partner Center acceptance, Store-signed retrieval, and official lifecycle/distribution: outside this PR.
  • Clean structured autoreview: blocked by the missing Codex executable after committed-bundle preparation.

This PR remains a draft.

@clawsweeper

clawsweeper Bot commented Sep 11, 2026 •

Copy link
Copy Markdown

🦞👀
ClawSweeper picked this up.

Pull request received. I will update this pull request when review starts.

ClawSweeper review complete

ClawSweeper finished reviewing this revision. The review result is being finalized.

View the workflow run.

@clawsweeper clawsweeper Bot added P2 Normal priority bug or improvement with limited blast radius. merge-risk: 🚨 automation 🚨 Merging this PR could break CI, automerge, proof capture, label sync, or automation. merge-risk: 🚨 compatibility 🚨 Merging this PR could break existing users, config, migrations, defaults, or upgrades. rating: 🦐 gold shrimp Decent PR readiness signal, but merge confidence is limited. status: 📣 needs proof The PR needs real behavior proof before ClawSweeper can clear the contributor ask. labels Sep 11, 2026
@clawsweeper

clawsweeper Bot commented Sep 11, 2026 •

Copy link
Copy Markdown

Codex review: needs real behavior proof before merge. Reviewed September 15, 2026, 6:46 PM ET / 22:46 UTC (Revision 4).

ClawSweeper review

What this changes

Builds x64 and ARM64 Windows application packages in CI, provides signed development downloads, and attaches unsigned Store submission assets to alpha releases.

Merge readiness

⛔ Blocked before merge - 4 items remain

This remains useful work beyond the merged packaging implementation. No concrete code defect was found, and both current-head native packaging jobs passed; installation and upgrade proof remains incomplete.

Priority: P2
Reviewed head: e348ef7d9ffdef4b76f438d60484ffd2d6529bcc

Review scores

Measure Result What it means
Overall readiness 🦐 gold shrimp (3/6) The implementation and packaging validation are solid, but incomplete installation and upgrade proof prevents merge readiness.
Proof confidence 🦐 gold shrimp (3/6) Needs stronger real behavior proof before merge: Current native CI jobs successfully exercised package construction, Dev export, uploads, and cleanup; genuine-package staging and actual GitVersion execution also count as production-path evidence. The prior review's remaining gap persists: clean signed Dev installation without -AllowUnsigned, native ARM64 launch, and retained-settings upgrade across runner certificates are not demonstrated. After adding proof, update the PR body; ClawSweeper should re-review automatically. If it does not, the PR author or someone with repository write access can comment @clawsweeper re-review.
Patch quality 🐚 platinum hermit (4/6) No actionable review findings were identified.

Verification

Check Result Evidence
Real behavior Needs proof Needs stronger real behavior proof before merge: Current native CI jobs successfully exercised package construction, Dev export, uploads, and cleanup; genuine-package staging and actual GitVersion execution also count as production-path evidence. The prior review's remaining gap persists: clean signed Dev installation without -AllowUnsigned, native ARM64 launch, and retained-settings upgrade across runner certificates are not demonstrated. After adding proof, update the PR body; ClawSweeper should re-review automatically. If it does not, the PR author or someone with repository write access can comment @clawsweeper re-review.
Evidence reviewed 10 items Applicable repository policy: Read the complete root AGENTS.md, proof-validation skill, and proof-pool documentation. No additional ancestor AGENTS.md applies to the changed files, and .agents/maintainer-notes is absent. Installation evidence and explicit proof limitations informed this review.
Current main still pauses MSIX artifacts: At the pinned main revision, build-msix remains disabled and release documentation lists EXE/ZIP distribution. The merged #1328 (feat: add Microsoft Store MSIX packaging) supplies the existing builders but explicitly leaves CI distribution disabled, so it does not supersede this PR.
Latest release boundary: GitHub reports v2026.9.4 as the latest release, published September 15, with two installers and two portable ZIPs; no MSIX assets are present. The local tag points to the pinned main revision.
Findings None None.
Security None None.

How this fits together

The packaging pipeline turns Companion source into Windows packages for testers and Store submission. CI validates the artifacts, while the release pipeline attaches unsigned Store inputs only to canonical alpha releases.

flowchart TD
  A[Source and release version] --> B[Native x64 and ARM64 builds]
  B --> C[Signed development packages]
  B --> D[Unsigned Store packages]
  C --> E[Actions tester downloads]
  D --> F[Validate provenance and hashes]
  F --> G{Canonical alpha tag}
  G --> H[GitHub submission assets]
Loading

Before merge

  • Add real behavior proof - Needs stronger real behavior proof before merge: Current native CI jobs successfully exercised package construction, Dev export, uploads, and cleanup; genuine-package staging and actual GitVersion execution also count as production-path evidence. The prior review's remaining gap persists: clean signed Dev installation without -AllowUnsigned, native ARM64 launch, and retained-settings upgrade across runner certificates are not demonstrated. After adding proof, update the PR body; ClawSweeper should re-review automatically. If it does not, the PR author or someone with repository write access can comment @clawsweeper re-review.
  • Resolve merge risk (P1) - CI Dev downloads use the existing Dev identity with certificates that change between runners. Installing one can upgrade an existing Dev installation, but clean signed installation and retained-settings upgrades across those certificates remain unverified.
  • Resolve merge risk (P1) - The actual alpha publication/manual-dispatch path has not yet been exercised as a release; current genuine-package evidence covers staging, not public attachment.
  • Complete next step (P2) - Provide clean signed installation without -AllowUnsigned, native ARM64 launch, and retained-settings upgrade evidence across runner certificates. Redacted terminal output or logs are acceptable; screenshots or recordings help show launch. Update the PR body to trigger re-review, or ask a maintainer to comment @clawsweeper re-review.
Agent review details

Security

None.

Review metrics

Metric Value Why it matters
Code growth Production/build scripts +290; tests +460; workflows +55; docs/help +129 net lines The production growth is explained by two artifact validators and bounded build parameters, with dedicated regression coverage.
Native packaging coverage 2 successful native jobs; 4 current-head MSIX artifacts Both architectures now have successful packaging evidence, while installation and upgrade coverage remains separate.

Merge-risk options

Maintainer options:

  1. Demonstrate the Dev installation contract (recommended)
    Provide clean signed installation and retained-settings upgrade evidence across runner certificates using the published Dev artifacts.
  2. Defer installable tester downloads
    If lifecycle proof is unavailable, narrow the PR to unsigned submission artifacts and defer Dev downloads.

Technical review

Best possible solution:

Retain the existing packaging owners and alpha-only submission boundary, with demonstrated signed installation and settings-preserving Dev upgrades before making tester downloads merge-ready.

Do we have a high-confidence way to reproduce the issue?

Not applicable: this adds CI downloads and release assets rather than repairing a reproduced product failure.

Is this the best way to solve the issue?

Yes, the implementation appropriately reuses existing builders and release gates; its remaining readiness gap is real installation and upgrade coverage.

AGENTS.md: found and applied where relevant.

Codex review notes: model internal, reasoning medium; reviewed against 3c43751b2bac.

Labels

Label justifications:

  • P2: This is a bounded packaging and release improvement without evidence of an urgent user-facing regression.
  • merge-risk: 🚨 compatibility: New CI downloads can upgrade the existing Dev identity using different runner certificates, and retained-settings compatibility has not been demonstrated.
  • rating: 🦐 gold shrimp: Overall readiness is 🦐 gold shrimp; proof is 🦐 gold shrimp and patch quality is 🐚 platinum hermit.
  • status: 📣 needs proof: The PR needs real behavior proof before ClawSweeper can clear the contributor ask. Needs stronger real behavior proof before merge: Current native CI jobs successfully exercised package construction, Dev export, uploads, and cleanup; genuine-package staging and actual GitVersion execution also count as production-path evidence. The prior review's remaining gap persists: clean signed Dev installation without -AllowUnsigned, native ARM64 launch, and retained-settings upgrade across runner certificates are not demonstrated. After adding proof, update the PR body; ClawSweeper should re-review automatically. If it does not, the PR author or someone with repository write access can comment @clawsweeper re-review.

Evidence

What I checked:

  • Applicable repository policy: Read the complete root AGENTS.md, proof-validation skill, and proof-pool documentation. No additional ancestor AGENTS.md applies to the changed files, and .agents/maintainer-notes is absent. Installation evidence and explicit proof limitations informed this review. (AGENTS.md:85, e348ef7d9ffd)
  • Current main still pauses MSIX artifacts: At the pinned main revision, build-msix remains disabled and release documentation lists EXE/ZIP distribution. The merged feat: add Microsoft Store MSIX packaging #1328 (feat: add Microsoft Store MSIX packaging) supplies the existing builders but explicitly leaves CI distribution disabled, so it does not supersede this PR. (.github/workflows/ci.yml:812, 3c43751b2bac)
  • Latest release boundary: GitHub reports v2026.9.4 as the latest release, published September 15, with two installers and two portable ZIPs; no MSIX assets are present. The local tag points to the pinned main revision. (3c43751b2bac)
  • Production packaging and release safeguards: The introduced workflow uses existing Store and Dev builders, explicitly allowlists Dev uploads, cleans up certificates with always(), and requires selected MSIX jobs through CI Gate. Alpha staging checks both architectures, clean source provenance, identity, version, unsigned metadata, and hashes before copying outputs. Release publication retains the tag and release-signing gates. (.github/workflows/ci.yml:821, e348ef7d9ffd)
  • Current native packaging evidence: Live GitHub job records for https://github.com/openclaw/openclaw-windows-node/actions/runs/35031354398 show both native MSIX jobs succeeding, including Store validation, Dev signing/export, uploads, and certificate cleanup. Four unexpired MSIX artifacts are associated with head e348ef7. This advances the captured body's pending-build status, but does not prove installation or launch. Raw job-log retrieval was blocked by the runner-log storage host allowlist; job and artifact API evidence remains credited. (.github/workflows/ci.yml:853, e348ef7d9ffd)
  • Real proof and remaining coverage: The supplied PR snapshot reports current Store staging against genuine historical packages, preserving all four release files, and actual GitVersion execution preserving the default-branch source despite a feature-branch environment. The downloaded screenshot visibly shows the historical x64 welcome screen. The body explicitly discloses use of -AllowUnsigned and missing native ARM64 launch, clean installation, and retained-settings upgrade across runner certificates. The previous completed review covered this same head and identified those same gaps. (scripts/Export-DevMsixArtifact.ps1:129, e348ef7d9ffd)

Likely related people:

  • Natalie Aguinaldo: Raw commit bd9ce43 adds scripts/Build-StoreMsix.ps1:157 relative to its recorded parents. This identifies author metadata, not feature responsibility or a PR merger. (role: source-line author; confidence: high; commits: bd9ce43b4d9c; files: scripts/Build-StoreMsix.ps1)
  • Dallin Romney: Raw commit c57002c adds .github/workflows/daily-alpha-release.yml:50 relative to its recorded parents. This identifies author metadata, not feature responsibility or a PR merger. (role: source-line author; confidence: high; commits: c57002c5c3ba; files: .github/workflows/daily-alpha-release.yml)

Rank-up moves

Optional improvements that raise the rating; they are not merge blockers.

  • Add current-artifact clean signed installation, native ARM64 launch, and retained-settings upgrade evidence across runner certificates, with private information redacted.

Rating scale

Score Internal tier Crab rank Meaning
6/6 S 🦀 challenger crab Exceptional readiness
5/6 A 🦞 diamond lobster Very strong readiness
4/6 B 🐚 platinum hermit Good normal PR; ordinary maintainer review
3/6 C 🦐 gold shrimp Useful, but confidence is limited
2/6 D 🦪 silver shellfish Proof or implementation needs work
1/6 F 🧂 unranked krab Not merge-ready
N/A NA 🌊 off-meta tidepool Rating does not apply

Overall follows the weaker of proof and patch quality.
Shiny media proof means a screenshot, video, or linked artifact directly shows the changed behavior. Runtime, network, CSP, and security claims still need visible diagnostics.

Workflow

  • ClawSweeper keeps one durable marker-backed review comment per issue or PR.
  • Re-runs edit this comment so the latest verdict, findings, and automation markers stay together instead of adding duplicate bot comments.
  • A fresh review can be triggered by eligible @clawsweeper re-review comments, exact-item GitHub events, scheduled/background review runs, or manual workflow dispatch.
  • PR/issue authors and users with repository write access can comment @clawsweeper re-review or @clawsweeper re-run on an open PR or issue to request a fresh review only.
  • Maintainers can also comment @clawsweeper review to request a fresh review only.
  • Fresh-review commands do not start repair, autofix, rebase, CI repair, or automerge.
  • Maintainer-only repair and merge flows require explicit commands such as @clawsweeper autofix, @clawsweeper automerge, @clawsweeper fix ci, or @clawsweeper address review.
  • Maintainers can comment @clawsweeper explain to ask for more context, or @clawsweeper stop to stop active automation.

History

Review history (3 earlier review cycles)
  • reviewed 2026-09-11T20:32:06.269Z sha 74b6a8b :: needs real behavior proof before merge. :: none
  • reviewed 2026-09-11T21:44:29.171Z sha 74b6a8b :: needs real behavior proof before merge. :: none
  • reviewed 2026-09-15T22:38:34.907Z sha e348ef7 :: needs real behavior proof before merge. :: none

@clawsweeper clawsweeper Bot removed the merge-risk: 🚨 automation 🚨 Merging this PR could break CI, automerge, proof capture, label sync, or automation. label Sep 11, 2026
natalie-aguinaldo and others added 2 commits September 15, 2026 14:25
Build verified x64 and ARM64 workflow downloads through the existing packaging scripts. Bound Dev CI revisions, stage only public signing material, and gate selected MSIX jobs without enabling MSIX release publishing.

Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>
Copilot-Session: cb0e5a80-d2cf-41b0-9fb0-21eb32623526
Keep Dev-signed packages as workflow artifacts and stable assets unchanged. Add manual default-branch alpha dispatch with existing tag gates, validate Store staging provenance, and document submission/version constraints.

Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>
Copilot-Session: cb0e5a80-d2cf-41b0-9fb0-21eb32623526
@natalie-aguinaldo
natalie-aguinaldo force-pushed the user/natalie-aguinaldo/msix-ci-artifacts branch from 74b6a8b to e348ef7 Compare September 15, 2026 22:30
@natalie-aguinaldo natalie-aguinaldo changed the title chore(ci): enable Dev-signed and unsigned Store MSIX artifacts chore(ci): build MSIX artifacts and publish Store alpha assets Sep 15, 2026
@natalie-aguinaldo
natalie-aguinaldo marked this pull request as ready for review September 15, 2026 22:42

@karkarl karkarl left a comment

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Adversarial review verdict: no actionable findings.

Independent reviews by Claude Opus 4.7 and GPT Codex 5.3 agreed, with no disputed findings. Reviewed commit: e348ef7.

Validation: all four focused CI/MSIX contract suites passed locally (test-ci-gate-results.ps1, test-ci-workflow-contract.ps1, test-msix-ci-artifacts.ps1, and test-msix-alpha-release.ps1). The alpha suite initially failed to locate Git Bash and passed after prioritizing the full Git installation in the process PATH. GitHub's CI Gate and both x64 and ARM64 MSIX artifact jobs also passed.

Limitation: actual alpha release publication remains unverified because the PR's release job was skipped.

@karkarl
karkarl merged commit 3383997 into openclaw:main Sep 17, 2026
27 checks passed
@natalie-aguinaldo
natalie-aguinaldo deleted the user/natalie-aguinaldo/msix-ci-artifacts branch September 17, 2026 21:53
@natalie-aguinaldo
natalie-aguinaldo restored the user/natalie-aguinaldo/msix-ci-artifacts branch September 18, 2026 03:32
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

merge-risk: 🚨 compatibility 🚨 Merging this PR could break existing users, config, migrations, defaults, or upgrades. P2 Normal priority bug or improvement with limited blast radius. rating: 🦐 gold shrimp Decent PR readiness signal, but merge confidence is limited. status: 📣 needs proof The PR needs real behavior proof before ClawSweeper can clear the contributor ask.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants