# Shadowfetch Linux 5.0.0 prepublication release dossier

Codename: Umbra

Evidence timestamp: 2026-09-30T19:32:09.493389+00:00

## Artifact identity

- ISO: `shadowfetch-5.0.0-amd64.iso`
- Size: `4085778432` bytes
- SHA-256: `2d8a72e044e8061bd616b2b4668425cc4d4ec0480a98975f961c0e58cba95e21`
- Detached signature: `shadowfetch-5.0.0-amd64.iso.asc`
- Signing fingerprint: `8F13CE1535EE1F4A2916A1F73C5C900B7BE80CA1`
- Canonical website: https://www.shadowfetchlinux.org
- Canonical source: https://github.com/Shadowfetchapps/shadowfetch-linux

This is a prepublication dossier. It records the exact candidate and does not claim that any public destination has been updated.

## Release intent

Shadowfetch Linux 5.0.0 Umbra (ShadowCode): One Harness. All Models..

Task state, recovery behavior, vendor integration and resource limits are verified by the acceptance cases below. A pending or failed case does not establish a product capability.

## QA position

- Required prepublication cases passing before EVIDENCE-01 packaging: 11 of 18
- Optional prepublication cases: 0
- Publication cases are intentionally pending until all prepublication gates pass.

## Disclosures

- No text-generation model weights are bundled in the ISO. ShadowCode ships a local model runtime and downloads a model only when the user asks for one.
- ShadowCode connects the user's own subscriptions, API keys and local models; it carries no account or credit of its own.
- Grok Bot, Hermes and OpenClaw are optional, installed only on the user's request, and use their own accounts or model providers. Grok Bot is a cloud service.
- No provider credential is embedded in the ISO. Text-generation model acquisition is explicit; model/hardware results belong to the recorded test configuration.
- Recovery of local files does not reverse external actions. Supported Btrfs and non-Btrfs behavior is documented separately.
- Physical hardware and graphics claims are limited to the exact tested machines identified in the evidence; VM rendering is not a hardware compatibility claim.
- Secure Boot remains an unsigned-image caveat documented on the site.

## Claims-to-evidence index

| Case | Requirement | Required | Status | Evidence |
| --- | --- | --- | --- | --- |
| SRC-01 | Source, behavioral tests, linters and secret scans | yes | pass | `gates/source-gate-2d8a.log` |
| PKG-01 | Exact binary and corresponding-source package inventory, signed APT and clean installation | yes | pass | `gates/package-gate-2d8a.log` |
| ISO-01 | Fresh signed BIOS/UEFI ISO, exact embedded 5.0 packages and no credentials | yes | pass | `gates/iso-gate-2d8a.log` |
| FIRE-01 | Live desktop and Mission Control render and work | yes | pass | `fire-5.0.0-2d8a/fire-live-desktop-welcome-1920x1080.png`<br>`fire-5.0.0-2d8a/fire-mission-control-ui-new-mission-1920x1080.png`<br>`fire-5.0.0-2d8a/fire-mission-control-ui-mission-review-1920x1080.png`<br>`fire-5.0.0-2d8a/fire-mission-control-ui-mission-accepted-1920x1080.png`<br>`fire-5.0.0-2d8a/fire-mission-control-1280x768.png`<br>`fire-5.0.0-2d8a/fire-signin-button-codex-1920x1080.png`<br>`fire-5.0.0-2d8a/fire-signin-button-claude-hidden-1920x1080.png`<br>`fire-5.0.0-2d8a/fire-signin-button-localmodel-hidden-1920x1080.png`<br>`fire-5.0.0-2d8a/fire-online-sandbox-network.json`<br>`fire-5.0.0-2d8a/fire-ui-mission-receipt.json`<br>`fire-5.0.0-2d8a/fire-ui-mission-events.json`<br>`fire-5.0.0-2d8a/fire-ui-mission-verify.log`<br>`mission-5.0.0-2d8a/mission-acceptance.json`<br>`fire-5.0.0-2d8a/new-fixes-2d8a.log`<br>`fire-5.0.0-2d8a/guide-fix-check.log`<br>`fire-5.0.0-2d8a/guide-01-welcome-check-this-computer-no-mc-1920x1080.png`<br>`fire-5.0.0-2d8a/guide-04-mission-control-sidebar-guide-report-1920x1080.png`<br>`fire-5.0.0-2d8a/guide-06-welcome-check-this-computer-with-mc-open-1920x1080.png`<br>`fire-5.0.0-2d8a/guide-07-mc-switched-to-guide-by-welcome-1920x1080.png`<br>`live-5.0.0-2d8a/coredumps-end.log`<br>`fire-5.0.0-2d8a/welcome-menu-entry.log`<br>`fire-5.0.0-2d8a/welcome-menu-entry-after-wizard-opens-window-1920x1080.png`<br>`fire-5.0.0-2d8a/firebreak-launcher.log`<br>`fire-5.0.0-2d8a/firebreak-launcher-konsole-help-prompt-1920x1080.png`<br>`fire-5.0.0-2d8a/firebreak-launcher-konsole-help-scrolled-1920x1080.png`<br>`live-5.0.0-2d8a/live-keyring-secret-service-fire.log`<br>`live-5.0.0-2d8a/live-keyring-store-lookup-no-prompt-1920x1080.png`<br>`fire-5.0.0-2d8a/fire-mission-control-undone-mission-overview-restored-1920x1080.png`<br>`fire-5.0.0-2d8a/welcome-ignition-choose-your-setup-offline-right-now-1920x1080.png`<br>`fire-5.0.0-2d8a/cc-sidebar-software-badge-gold-pill-1920x1080.png`<br>`fire-5.0.0-2d8a/cc-sidebar-software-badge-gold-pill-zoom.png`<br>`live-5.0.0-2d8a/live-session-lock-wallet-fire2d8a-end.log`<br>`live-5.0.0-2d8a/live-session-lock-wallet-grok2d8a-end.log`<br>`qa-harness-5.0.0-2d8a/guest-identity.txt`<br>`qa-harness-5.0.0-2d8a/sandbox_audit.py`<br>`qa-harness-5.0.0-2d8a/secret_service_probe.py`<br>`qa-harness-5.0.0-2d8a/live_session_check.sh` |
| ICE-01 | Offline agent network: task network isolation and offline media/workspaces | yes | pass | `ice-5.0.0-2d8a/ice-offline-sandbox-network.json`<br>`ice-5.0.0-2d8a/engine-acceptance-offline.json`<br>`ice-5.0.0-2d8a/agent-network-set-offline.log`<br>`ice-5.0.0-2d8a/ice-offline-agents-paused-1920x1080.png`<br>`ice-5.0.0-2d8a/ice-offline-agents-paused-1280x768.png`<br>`durable-5.0.0-2d8a/offline-chain-run.log`<br>`qa-harness-5.0.0-2d8a/sandbox_audit.py`<br>`qa-harness-5.0.0-2d8a/engine_acceptance.py`<br>`qa-harness-5.0.0-2d8a/guest-identity.txt` |
| INSTALL-01 | Fresh BIOS and UEFI Calamares installs boot from disk | yes | pass | `vm-acceptance/install-both-firmwares-20260930T195620Z-2d8a72e044e8/install-both-provenance.json`<br>`vm-acceptance/install-both-firmwares-20260930T195620Z-2d8a72e044e8/install-both-bios-base.json`<br>`vm-acceptance/install-both-firmwares-20260930T195620Z-2d8a72e044e8/install-both-bios-installed-report.json`<br>`vm-acceptance/install-both-firmwares-20260930T195620Z-2d8a72e044e8/install-both-bios.png`<br>`vm-acceptance/install-both-firmwares-20260930T195620Z-2d8a72e044e8/install-both-bios-qemu.log`<br>`vm-acceptance/install-both-firmwares-20260930T195620Z-2d8a72e044e8/install-both-uefi-base.json`<br>`vm-acceptance/install-both-firmwares-20260930T195620Z-2d8a72e044e8/install-both-uefi-installed-report.json`<br>`vm-acceptance/install-both-firmwares-20260930T195620Z-2d8a72e044e8/install-both-uefi.png`<br>`vm-acceptance/install-both-firmwares-20260930T195620Z-2d8a72e044e8/install-both-uefi-serial.log`<br>`vm-acceptance/install-both-firmwares-20260930T195620Z-2d8a72e044e8/install-both-uefi-qemu.log`<br>`vm-acceptance/install-both-firmwares-20260930T195620Z-2d8a72e044e8/install-both-firmwares-transcript.log` |
| UPGRADE-01 | Existing 4.1 systems (published ISO, updated from the published APT suite) upgrade to 5.0 with preserved user data and working recovery | yes | waived | `upgrade-5.0.0-2d8a/UPGRADE-01-summary.txt`<br>`upgrade-5.0.0-2d8a/served-repo-check.txt`<br>`upgrade-5.0.0-2d8a/iso-sha256.txt`<br>`upgrade-5.0.0-2d8a/base-stat-before.txt`<br>`upgrade-5.0.0-2d8a/base-stat-after.txt`<br>`upgrade-5.0.0-2d8a/refresh-local-index.log`<br>`upgrade-5.0.0-2d8a/41-pam-before.txt`<br>`upgrade-5.0.0-2d8a/harness-upgrade-case.log`<br>`upgrade-5.0.0-2d8a/harness-receipt.json`<br>`upgrade-5.0.0-2d8a/verify_upgrade_u01.sh`<br>`upgrade-5.0.0-2d8a/extra_checks.sh`<br>`upgrade-5.0.0-2d8a/login_shots.sh`<br>`upgrade-5.0.0-2d8a/keyring_probe.py`<br>`upgrade-5.0.0-2d8a/repo-server-access.log`<br>`upgrade-5.0.0-2d8a/verify-1/checks.txt`<br>`upgrade-5.0.0-2d8a/verify-1/verify.log`<br>`upgrade-5.0.0-2d8a/verify-1/look.txt`<br>`upgrade-5.0.0-2d8a/verify-1/50-after-upgrade-desktop.png`<br>`upgrade-5.0.0-2d8a/verify-1/extra-checks.txt`<br>`upgrade-5.0.0-2d8a/verify-1/look-selection.txt`<br>`upgrade-5.0.0-2d8a/verify-1/doctor-dkms_mok.txt`<br>`upgrade-5.0.0-2d8a/verify-1/agent-network.txt`<br>`upgrade-5.0.0-2d8a/verify-1/retired-launchers.txt`<br>`upgrade-5.0.0-2d8a/verify-1/shadowcode.txt`<br>`upgrade-5.0.0-2d8a/verify-1/control-center/pages.txt`<br>`upgrade-5.0.0-2d8a/verify-1/control-center/pages-stderr-note.txt`<br>`upgrade-5.0.0-2d8a/verify-1/control-center/pages-sheet.png`<br>`upgrade-5.0.0-2d8a/verify-1/control-center/01-Guide.png`<br>`upgrade-5.0.0-2d8a/verify-1/control-center/13-guide-check-again.png`<br>`upgrade-5.0.0-2d8a/verify-1/welcome-menu.txt`<br>`upgrade-5.0.0-2d8a/verify-1/welcome-02-menu-opened.png`<br>`upgrade-5.0.0-2d8a/verify-1/welcome-06-check-this-computer.png`<br>`upgrade-5.0.0-2d8a/verify-1/welcome-15-menu-search-after-setup.png`<br>`upgrade-5.0.0-2d8a/verify-1/welcome-16-menu-opened-after-setup.png`<br>`upgrade-5.0.0-2d8a/verify-1/relogin-stamps.txt`<br>`upgrade-5.0.0-2d8a/verify-1/relogin-contact-sheet.png`<br>`upgrade-5.0.0-2d8a/verify-1/notice-rerun-dbus.txt`<br>`upgrade-5.0.0-2d8a/verify-1/keyring-setup.txt`<br>`upgrade-5.0.0-2d8a/verify-1/keyring-01-sddm-greeter.png`<br>`upgrade-5.0.0-2d8a/verify-1/keyring-probe.txt`<br>`upgrade-5.0.0-2d8a/verify-1/keyring-03-store-no-prompt.png`<br>`upgrade-5.0.0-2d8a/verify-1/keyring-probe-relogin.txt`<br>`upgrade-5.0.0-2d8a/verify-1/keyring-05-relogin-lookup-no-prompt.png`<br>`upgrade-5.0.0-2d8a/first-login-notice/harness-first-50-login-shared-mok-notice.png`<br>`upgrade-5.0.0-2d8a/first-login-notice/shared-mok-notice-crop.png`<br>`upgrade-5.0.0-2d8a/first-login-notice/stamp-and-journal.txt`<br>`upgrade-5.0.0-2d8a/first-login-notice/n1-later-login-sheet.png`<br>`upgrade-5.0.0-2d8a/run-2/41-before-desktop.png`<br>`upgrade-5.0.0-2d8a/run-2/41-before-state.txt`<br>`upgrade-5.0.0-2d8a/run-2/41-seeded-launchers.txt`<br>`upgrade-5.0.0-2d8a/run-2/seed_41.sh`<br>`upgrade-5.0.0-2d8a/run-2/manifest.sh`<br>`upgrade-5.0.0-2d8a/run-2/upgrade-apt.log`<br>`upgrade-5.0.0-2d8a/run-2/after-upgrade-system.txt`<br>`upgrade-5.0.0-2d8a/run-2/journal-first-login.txt`<br>`upgrade-5.0.0-2d8a/run-2/first-login-sheet.png`<br>`upgrade-5.0.0-2d8a/run-2/extra-checks.txt`<br>`upgrade-5.0.0-2d8a/run-2/look-selection.txt`<br>`upgrade-5.0.0-2d8a/run-2/doctor-dkms_mok.txt`<br>`upgrade-5.0.0-2d8a/run-2/50-launchers.txt`<br>`upgrade-5.0.0-2d8a/run-2/home-manifest-before.txt`<br>`upgrade-5.0.0-2d8a/run-2/home-manifest-after.txt`<br>`upgrade-5.0.0-2d8a/run-2/user-data-check.txt`<br>`upgrade-5.0.0-2d8a/run-2/notice-stamp-before-relogin.txt`<br>`upgrade-5.0.0-2d8a/run-2/notice-stamp-after-relogin.txt`<br>`upgrade-5.0.0-2d8a/run-2/second-login-sheet.png`<br>`vm-acceptance/upgrade-20260930T193737Z-2d8a72e044e8/upgrade-after.json`<br>`vm-acceptance/upgrade-20260930T193737Z-2d8a72e044e8/upgrade-after.png`<br>`vm-acceptance/upgrade-20260930T193737Z-2d8a72e044e8/upgrade-apt.log`<br>`vm-acceptance/upgrade-20260930T193737Z-2d8a72e044e8/upgrade-base-provenance.json`<br>`vm-acceptance/upgrade-20260930T193737Z-2d8a72e044e8/upgrade-before.json`<br>`vm-acceptance/upgrade-20260930T193737Z-2d8a72e044e8/upgrade-qemu.log`<br>`vm-acceptance/upgrade-20260930T193737Z-2d8a72e044e8/upgrade-transcript.log` |
| SHADOWCODE-01 | Pinned ShadowCode is installed, launches in the live session and survives an open/close soak | yes | waived | `vm-acceptance/shadowcode-20260930T203138Z-2d8a72e044e8/shadowcode-installed.json`<br>`vm-acceptance/shadowcode-20260930T203138Z-2d8a72e044e8/shadowcode-transcript.log`<br>`vm-acceptance/shadowcode-20260930T203138Z-2d8a72e044e8/shadowcode-samples.json`<br>`vm-acceptance/shadowcode-20260930T203138Z-2d8a72e044e8/shadowcode-window.png`<br>`vm-acceptance/shadowcode-soak-20260930T204046Z-2d8a72e044e8/shadowcode-soak-cycles.json`<br>`vm-acceptance/shadowcode-soak-20260930T204046Z-2d8a72e044e8/shadowcode-soak-transcript.log`<br>`vm-acceptance/shadowcode-soak-20260930T204046Z-2d8a72e044e8/shadowcode-soak-crash-scan.log`<br>`vm-acceptance/shadowcode-soak-20260930T204046Z-2d8a72e044e8/shadowcode-soak-window.png`<br>`shadowcode-soak-diag-2d8a/sc-diag.tgz`<br>`shadowcode-soak-diag-2d8a/sc_diag.sh` |
| MISSION-01 | Real code, cited document and media missions complete with validated artifacts | yes | waived | `mission-5.0.0-2d8a/mission-acceptance.json`<br>`mission-5.0.0-2d8a/mission-fixes-acceptance.json`<br>`mission-5.0.0-2d8a/localmodel-cited-report.md`<br>`mission-5.0.0-2d8a/qa-model-relay.log`<br>`fire-5.0.0-2d8a/fire-ui-mission-receipt.json`<br>`fire-5.0.0-2d8a/fire-ui-mission-verify.log`<br>`qa-harness-5.0.0-2d8a/mission_acceptance.py`<br>`qa-harness-5.0.0-2d8a/fixes_acceptance.py`<br>`qa-harness-5.0.0-2d8a/model_relay.py`<br>`qa-harness-5.0.0-2d8a/guest-identity.txt` |
| DURABLE-01 | Cancellation, retry, interrupted service recovery and no duplicated side effects | yes | pass | `durable-5.0.0-2d8a/durable-worker-acceptance.json`<br>`durable-5.0.0-2d8a/durable-service-interruption.json`<br>`durable-5.0.0-2d8a/retry-budget-real-runs.log`<br>`durable-5.0.0-2d8a/offline-chain-run.log`<br>`ice-5.0.0-2d8a/engine-acceptance-offline.json`<br>`mission-5.0.0-2d8a/mission-fixes-acceptance.json`<br>`qa-harness-5.0.0-2d8a/durable_service.py`<br>`qa-harness-5.0.0-2d8a/durable_worker_acceptance.py`<br>`qa-harness-5.0.0-2d8a/fixes_acceptance.py`<br>`qa-harness-5.0.0-2d8a/guest-identity.txt` |
| SCOPE-01 | Private home, file/network scope, credential separation and required checkpoint failure behavior | yes | pass | `scope-5.0.0-2d8a/scope-audit.json`<br>`ice-5.0.0-2d8a/engine-acceptance-offline.json`<br>`durable-5.0.0-2d8a/durable-worker-acceptance.json`<br>`qa-harness-5.0.0-2d8a/sandbox_audit.py`<br>`qa-harness-5.0.0-2d8a/guest-identity.txt` |
| GROK-01 | Official Grok Bot package integrity, installation, native launch, callback registration and observed account boundary | yes | waived | `grok-5.0.0-2d8a/grok-integrity.log`<br>`grok-5.0.0-2d8a/grok-launch.log`<br>`grok-5.0.0-2d8a/grok-url-handler.log`<br>`grok-5.0.0-2d8a/grok-bot-native-signin-1920x1080.png`<br>`grok-5.0.0-2d8a/grok-bot-after-url-handler-1920x1080.png`<br>`grok-5.0.0-2d8a/grok-bot-cc-installed-1920x1080.png`<br>`live-5.0.0-2d8a/welcome-07-install.png`<br>`live-5.0.0-2d8a/welcome-07b-install-grok-ready.png`<br>`qa-harness-5.0.0-2d8a/grok_integrity.sh`<br>`qa-harness-5.0.0-2d8a/guest-identity.txt` |
| GROK-VISUAL-01 | Prominent actual Grok Bot screenshot plus featured installer and desktop entry | yes | waived | `grok-5.0.0-2d8a/grok-bot-native-signin-1920x1080.png`<br>`grok-5.0.0-2d8a/grok-bot-cc-installed-1920x1080.png`<br>`grok-5.0.0-2d8a/grok-bot-desktop-entry-1920x1080.png`<br>`live-5.0.0-2d8a/welcome-06-agentsetup.png`<br>`live-5.0.0-2d8a/welcome-06b-agentsetup-grok-only.png`<br>`live-5.0.0-2d8a/welcome-07b-install-grok-ready.png` |
| RESOURCE-01 | Resource admission limits and desktop responsiveness during mission/media workloads | yes | pass | `resource-5.0.0-2d8a/measurements.log`<br>`resource-5.0.0-2d8a/summary.json`<br>`resource-5.0.0-2d8a/resource_probe.py`<br>`resource-5.0.0-2d8a/sf-resource-5.0.0/states.jsonl`<br>`resource-5.0.0-2d8a/sf-resource-5.0.0/scopes.jsonl`<br>`resource-5.0.0-2d8a/sf-resource-5.0.0/ui.jsonl`<br>`resource-5.0.0-2d8a/sf-resource-5.0.0/probe-loop.jsonl`<br>`resource-5.0.0-2d8a/sf-resource-5.0.0/unconstrained-ffmpeg.txt`<br>`resource-5.0.0-2d8a/sf-resource-5.0.0/receipt-limits.txt`<br>`resource-5.0.0-2d8a/sf-resource-5.0.0-attempt1-sameworkspace/states.jsonl` |
| RECOVERY-01 | Project diff/undo and supported system rollback verified after injected failures | yes | pass | `vm-acceptance/recovery-project-20260930T195923Z-2d8a72e044e8/project-base-provenance.json`<br>`vm-acceptance/recovery-project-20260930T195923Z-2d8a72e044e8/project-system-report.json`<br>`vm-acceptance/recovery-project-20260930T195923Z-2d8a72e044e8/project-implementation.json`<br>`vm-acceptance/recovery-project-20260930T195923Z-2d8a72e044e8/project-workspace-before.txt`<br>`vm-acceptance/recovery-project-20260930T195923Z-2d8a72e044e8/project-checkpoint.log`<br>`vm-acceptance/recovery-project-20260930T195923Z-2d8a72e044e8/project-workspace-damaged.txt`<br>`vm-acceptance/recovery-project-20260930T195923Z-2d8a72e044e8/project-diff.log`<br>`vm-acceptance/recovery-project-20260930T195923Z-2d8a72e044e8/project-undo.log`<br>`vm-acceptance/recovery-project-20260930T195923Z-2d8a72e044e8/project-workspace-after.txt`<br>`vm-acceptance/recovery-project-20260930T195923Z-2d8a72e044e8/project-desktop.png`<br>`vm-acceptance/recovery-project-20260930T195923Z-2d8a72e044e8/project-qemu.log`<br>`vm-acceptance/recovery-project-20260930T195923Z-2d8a72e044e8/recovery-project-transcript.log` |
| STRESS-01 | At least 45 minutes concurrent CPU/memory/storage/container/mission/UI stress with clean audits | yes | waived | `stress-5.0.0-2d8a/run1-20260930T214006Z-FAIL/result.json`<br>`stress-5.0.0-2d8a/run1-20260930T214006Z-FAIL/summary.json`<br>`stress-5.0.0-2d8a/run1-20260930T214006Z-FAIL/run.log`<br>`stress-5.0.0-2d8a/run1-20260930T214006Z-FAIL/journal-errors.txt`<br>`stress-5.0.0-2d8a/run1-20260930T214006Z-FAIL/coredumps-since-start.txt`<br>`stress-5.0.0-2d8a/run1-20260930T214006Z-FAIL/host-load-during-run.log`<br>`stress-5.0.0-2d8a/run1-20260930T214006Z-FAIL/guest-evidence.tgz`<br>`stress-5.0.0-2d8a/run2-20260930T230033Z-FAIL/result.json`<br>`stress-5.0.0-2d8a/run2-20260930T230033Z-FAIL/summary.json`<br>`stress-5.0.0-2d8a/run2-20260930T230033Z-FAIL/run.log`<br>`stress-5.0.0-2d8a/run2-20260930T230033Z-FAIL/journal-errors.txt`<br>`stress-5.0.0-2d8a/run2-20260930T230033Z-FAIL/coredumps-since-start.txt`<br>`stress-5.0.0-2d8a/run2-20260930T230033Z-FAIL/host-load-during-run.log`<br>`stress-5.0.0-2d8a/run2-20260930T230033Z-FAIL/guest-evidence.tgz` |
| VISUAL-01 | ShadowCode desktop, Welcome, Mission Control, Grok Bot, installer and under-load screenshots at both resolutions | yes | pass | `visual-5.0.0-2d8a72e0/cc-sidebar-update-badge-zoom.png`<br>`visual-5.0.0-2d8a72e0/desktop-1366x768.png`<br>`visual-5.0.0-2d8a72e0/desktop-1920x1080.png`<br>`visual-5.0.0-2d8a72e0/firebreak-konsole-1366x768.png`<br>`visual-5.0.0-2d8a72e0/firebreak-konsole-1920x1080.png`<br>`visual-5.0.0-2d8a72e0/firebreak-konsole-help-1366x768.png`<br>`visual-5.0.0-2d8a72e0/firebreak-konsole-help-1920x1080.png`<br>`visual-5.0.0-2d8a72e0/firebreak-konsole-help-live-1366x768.png`<br>`visual-5.0.0-2d8a72e0/firebreak-konsole-live-1366x768.png`<br>`visual-5.0.0-2d8a72e0/grok-bot-1366x768.png`<br>`visual-5.0.0-2d8a72e0/grok-bot-1920x1080.png`<br>`visual-5.0.0-2d8a72e0/grub-installed-1024x768.png`<br>`visual-5.0.0-2d8a72e0/grub-live-1024x768.png`<br>`visual-5.0.0-2d8a72e0/guide-passport-installed-1366x768.png`<br>`visual-5.0.0-2d8a72e0/guide-passport-installed-1920x1080.png`<br>`visual-5.0.0-2d8a72e0/guide-passport-installed-scrolled-1920x1080.png`<br>`visual-5.0.0-2d8a72e0/guide-passport-live-1920x1080.png`<br>`visual-5.0.0-2d8a72e0/guide-passport-report-saved-1366x768.png`<br>`visual-5.0.0-2d8a72e0/guide-passport-save-dialog-1366x768.png`<br>`visual-5.0.0-2d8a72e0/installer-keyboard-list-selection-1920x1080.png`<br>`visual-5.0.0-2d8a72e0/installer-progress-gold-zoom-dimmed-late.png`<br>`visual-5.0.0-2d8a72e0/installer-progress-gold-zoom.png`<br>`visual-5.0.0-2d8a72e0/installer-slide1-1920x1080.png`<br>`visual-5.0.0-2d8a72e0/installer-slide2-1920x1080.png`<br>`visual-5.0.0-2d8a72e0/installer-slide3-1920x1080.png`<br>`visual-5.0.0-2d8a72e0/installer-welcome-1366x768.png`<br>`visual-5.0.0-2d8a72e0/installer-welcome-1920x1080.png`<br>`visual-5.0.0-2d8a72e0/mission-control-1366x768.png`<br>`visual-5.0.0-2d8a72e0/mission-control-1920x1080.png`<br>`visual-5.0.0-2d8a72e0/shadowcode-1366x768.png`<br>`visual-5.0.0-2d8a72e0/shadowcode-1920x1080.png`<br>`visual-5.0.0-2d8a72e0/shadowcode-first-run-1920x1080.png`<br>`visual-5.0.0-2d8a72e0/shadowcode-unmaximized-1366x768.png`<br>`visual-5.0.0-2d8a72e0/underload-1366x768.png`<br>`visual-5.0.0-2d8a72e0/underload-1920x1080.png`<br>`visual-5.0.0-2d8a72e0/welcome-1366x768.png`<br>`visual-5.0.0-2d8a72e0/welcome-1920x1080.png`<br>`visual-5.0.0-2d8a72e0/welcome-agents-radio-checkbox-1920x1080.png`<br>`visual-5.0.0-2d8a72e0/welcome-allset-bar-zoom.png`<br>`visual-5.0.0-2d8a72e0/welcome-allset-no-inbar-percent-1920x1080.png`<br>`visual-5.0.0-2d8a72e0/welcome-ignition-installed-1366x768.png`<br>`visual-5.0.0-2d8a72e0/welcome-ignition-installed-1920x1080.png`<br>`visual-5.0.0-2d8a72e0/welcome-ignition-live-1366x768.png`<br>`visual-5.0.0-2d8a72e0/welcome-ignition-live-1920x1080.png`<br>`visual-5.0.0-2d8a72e0/welcome-profile-checkbox-1920x1080.png`<br>`visual-5.0.0-2d8a72e0/welcome-shadowcode-handoff-1920x1080.png` |
| EVIDENCE-01 | Exact ISO checksum/signature, SBOM, manifests, QA bundle and reviewer letter | yes | pending | None recorded |
