Vault Prospector 0.3.0-preview.5
0.3.0-preview.5 is the current unsigned Windows x64 manual-test Preview. It replaces 0.3.0-preview.3 and contains the completed current Windows production-code backlog.
Included
- Approved C · Atlas installation, setup, search, administration, diagnostics, update, recovery, and error workflows.
- Trusted in-application update discovery, verified MSI download, and user-controlled installer handoff.
- Privacy-safe diagnostics, external collection, and redacted support-bundle export.
- Policy-controlled Remote Desktop and AVD-equivalent current-account verification.
- Reveal-verification grace, discovered-source filter selectors, minimize-to-notification-area behavior, and Microsoft-owned service-principal filtering.
- Guided browser-fill setup diagnostics and actionable isolated synchronization errors with exact-scope retry.
- Four separately governed Azure Key Vault mutation operations. They remain hidden and denied unless both an accepted release switch and exact machine policy enable them.
Download and trust
Download the MSI, adjacent checksum, and Sigstore bundle from the public binary-only release. The direct installer is intentionally unsigned and displays Unknown Publisher. Its SHA-256 is:
DBE46EB192912BA7317F0152B23494179781E2C94C22BA94DA778F7C8D10C29DThe release contains 16 assets. Independent public downloads matched every GitHub digest and all five adjacent package checksums.
Validation boundary
The HCS exact-main and immutable-tag workflows passed the full Windows source suite, performance, packaging, installer/browser contracts, clean installer lifecycle, and readiness checks. The product-owner installed workflow walkthrough remains pending and must not be inferred from automated evidence.
Known issue
The installer can display a missing logo with a red-X placeholder where its branding image should appear. This cosmetic package defect is tracked by GitHub Bug #62 and ADO AB#5799. No fix is included in this release.
This Preview is for voluntary non-production evaluation. Direct Windows binaries remain unsigned. Independent security, complete live Azure, accessibility/usability, and Microsoft Store signing gates remain open before GA. CyberArk is post-GA roadmap work, and mobile is a separate roadmap.
See the release evidence and go/no-go record.