Standalone technical alpha
Copy the app from the private DMG, approve that exact artifact, then choose Install Signal Lab. No Terminal or source checkout is required.
Follow this path →Everything needed to install, approve, operate, pair, repair, and evaluate Crypto Signal Lab today, including the parts that are not production-ready yet.
Crypto Signal Lab is a local research system with a native macOS shell and an iPhone companion. The private desktop alpha is now self-contained, but it is not yet an Apple-trusted public release.
It carries a checksum-pinned Python 3.12 runtime, the Signal Lab wheel and all required wheels, governed defaults, and a native install action. It remains ad-hoc signed and unnotarized, so verify the separately supplied checksum and follow the scoped trust steps below.
Copy the app from the private DMG, approve that exact artifact, then choose Install Signal Lab. No Terminal or source checkout is required.
Follow this path →Do not redistribute the developer DMG as a public release. Developer ID signing, notarization, and stapling are still required.
See what the prompt means →A standalone, Developer ID signed, notarized package with a normal install and update path.
Understand the release path →The current build has a narrow support envelope. Checking it first avoids turning an architecture or provisioning mismatch into an installation mystery.
| Area | Current requirement | What to expect |
|---|---|---|
| Mac processor | arm64 Apple Silicon | M1 or newer. The current binary does not run on Intel Macs. |
| macOS | 14.0 or later | Earlier releases are outside the bundle deployment target. |
| Python | Bundled Python 3.12 | No separate Python, package manager, or source checkout is required. |
| Disk | Varies by history and models | First run estimates storage before bootstrap. Longer history and Chronos need more space. |
| Network | Not required for core install | Selected market history, live read-only feeds, notifications, and optional models use the network after setup. |
| Privileges | No root required | The managed install lives under the user's home and runs as a user service. |
| iPhone | iOS 17 or later | Xcode installation is contributor-only. The first external TestFlight build is waiting for Beta App Review. |
Use only the private DMG and checksum supplied through your alpha invitation. Do not download similarly named packages from a public package index.
Compare the DMG SHA-256 with the separately supplied manifest before mounting it. Keep both files together until installation is complete.
Mount the DMG and drag Signal Lab.app to Applications. The app bundle contains the runtime payload; no backend step comes first.
Open Signal Lab, complete the scoped Gatekeeper approval if required, then choose Install Signal Lab. The app verifies its embedded manifest, creates the managed environment under your home directory, installs defaults, and starts the user service without root.
bash scripts/install_desktop.sh to build and install both from source.The current shell is ad-hoc signed and not notarized. macOS will warn. Follow the scoped approval path in the next section; do not disable system-wide security.
Gatekeeper is doing its job: the current alpha proves that the app bundle has not changed since it was ad-hoc signed, but it does not prove an Apple-verified developer identity or notarization result.
Confirm the file name, version, source, and SHA-256 checksum through the same trusted channel that invited you. A willingness to test is not a substitute for artifact verification.
Compare the output with the separately supplied .sha256 file or invitation message.
$ shasum -a 256 "Signal-Lab-0.1.0-Developer.dmg"
In Finder, Control-click Signal Lab.app, choose Open, then confirm Open if macOS offers it.
Attempt the launch once, then open System Settings > Privacy & Security. In the Security area, choose Open Anyway for Signal Lab and authenticate locally.
A materially different app version may require a new approval. Recheck the checksum before approving it.
Do not disable Gatekeeper globally, recursively remove quarantine attributes, run an unexplained sudo command, or bypass an employer's device policy. The alpha approval should be explicit and limited to this verified app. Managed Macs may correctly prevent the override.
The app will be signed with an Apple Developer ID Application certificate, use hardened runtime and a secure timestamp, pass Apple's notarization service, and carry a stapled ticket. Users may still see the normal first-open notice for an internet download, but not the unidentified-developer block expected from this alpha.
The standalone install starts with conservative defaults under your home directory. After relaunch, Setup & Devices shows the selected data root, sources, bootstrap state, and pairing controls.
On a clean Mac, choose Install Signal Lab. The app relaunches after the embedded runtime and managed service are ready.
Use the default home-directory location or an owned writable path. Do not choose a synchronized cloud folder.
Start with recommended sources and seven days. Expand only after the initial readiness checks pass.
Setup estimates runtime, model, bootstrap, disk, and time requirements before committing.
Wait for service, API, frontend, and schema readiness. Keep the app open during the initial bootstrap.
The desktop is useful without a phone. Add the companion only after local health is stable.
Healthy first-run result: siglab status reports the user service, the health endpoint returns success, and the desktop loads the local cockpit without a remote login.
The native app is a control surface around a local daemon and browser cockpit. Closing a window is not the same as stopping the research service.
siglab startStart the managed service and open the cockpit.siglab statusInspect service, runtime, data, and health state.siglab repair --check-onlyDiagnose without changing the installation.siglab backupCreate a managed local backup before risky alpha changes.siglab stopStop the managed service intentionally.The companion is a remote view into your own desktop. It is not a hosted account and it cannot function without a reachable, paired local installation. Alpha users should receive it through TestFlight, never through source code, scripts, or a raw IPA.
TestFlight delivers a compiled Apple-signed app and manages installation and updates. Testers do not receive the repository, Xcode project, build scripts, desktop intelligence code, or signing keys.
Reserved for maintainers and repository contributors. It requires the private source, full Xcode, a selected team, and a registered iPhone. It is not an alpha-user onboarding path.
The required path for invited users. Apple hosts the compiled signed build and updates; testers install from the TestFlight app without source access. Each build remains available for up to 90 days.
Uploading an IPA to Azure or sending source and scripts does not create a trusted iPhone release. User consent cannot bypass iOS signing and provisioning. Wait for an accepted TestFlight build.
Alpha upgrades may change code, schemas, or packaging. Treat the local research database as valuable state and make the rollback path explicit.
Run siglab backup and retain the reported artifact until the new version has completed a healthy replay.
Verify the next private DMG and follow its replacement instructions. Do not assume siglab upgrade works until an approved package feed exists.
Run status, check-only repair, health, and one representative replay before trusting new alerts.
Use siglab restore latest only after reading the release-specific rollback notes and stopping conflicting work.
$ siglab backup $ siglab status $ siglab repair --check-only
Use siglab uninstall --keep-data. Confirm the reported retained path and backup before manually removing anything. The installer deliberately refuses unsafe or ambiguous ownership.
Most alpha failures fall into four boundaries: operating-system trust, missing backend installation, local service health, or phone reachability.
Expected for the current ad-hoc, non-notarized build. Verify the checksum and use the scoped Finder or Privacy & Security approval steps above. Do not disable Gatekeeper globally.
Open trust instructionsChoose Install Signal Lab in the app. If installation fails, keep the exact error visible and send a redacted report; do not install an unrelated Python package or run an unverified script.
Run siglab status, siglab repair --check-only, and curl --fail http://127.0.0.1:8766/health. Share redacted output, not secrets. Use Repair only after check-only identifies a managed issue.
Confirm macOS 14+ and Apple Silicon from Apple menu > About This Mac. The current shell is arm64-only and cannot run on an Intel Mac.
A LAN pairing is home-only. Configure the documented private Tailscale HTTPS path on both devices, then issue a new pairing invitation. Do not expose the local port directly to the public internet.
For a contributor build, free Xcode provisioning may expire after seven days. For an alpha-user build, TestFlight expires after 90 days. Install the replacement from the same approved channel; do not accept an IPA sent outside TestFlight.
Stop relying on new alerts, preserve logs, run check-only repair, and compare the release notes. Restore only from a verified managed backup and only after confirming the target root.
siglab status and check-only repair outputSignal Lab is local-first, not network-free. It contacts configured read-only data sources and notification adapters, while research state remains in the selected local application root.
We are looking for careful users who enjoy inspecting how a system reaches a conclusion, not just whether the conclusion looks exciting. Alpha feedback should make the product more understandable, reproducible, operable, and honest about uncertainty.
Access, artifacts, source, and contributions remain coordinated through the private invitation channel. Alpha software is research software: no financial advice, no execution, no custody, and no guarantees.