Open counter
$0 forever
- Unlimited local APK checks
- Static release pockets
- Publisher pinning and rollback
- JSON CI output
Local release verification
Verify the signer, version, SDK, ABI, and every byte—then publish a tiny install page with QR guidance and signed rollback history.
Looking for the latest verified CLI build…
01 no uploads
02 no re-signing
03 immutable rollback
04 JSON for CI
A release, not an attachment
Generic file hosts stop at “download.” ARP carries the publisher identity and device fit all the way to the person installing.
Parses the manifest for package, version code, SDK range, and native ABIs.
Checks the v2 signer signature and independently recomputes the APK content digest.
Writes an install page, QR link, checksums, release JSON, and immutable prior builds.
Install the inspector
The installer reads the signed GitHub Release manifest and verifies SHA-256 before placing arp on your path.
curl -fsSL https://apk-release-pocket.sociobot.in/install.sh | shirm https://apk-release-pocket.sociobot.in/install.ps1 | iexarp release app-release.apk --out ./pocket --base-url https://downloads.example.com! macOS and Windows builds are unsigned in v0.1.0. Always compare the published checksum; the installers do this automatically.
What users see
Pocket Notes 1.4.2
Every byte checked · prior signed releases retained
Keep the lights on
Open counter
$0 forever
Team lantern
$39 one time
Sociobot/Dodo is merchant of record. Refunds revoke the license.
Already bought it?
Your token stays in this browser. Verification runs at most once per day.
Team lantern unlocked
Add an approval note to this browser and export a portable JSON trail at any time.
The safety boundary
ARP verifies and explains legitimate direct-install releases. It does not create signatures, disguise packages, collect device credentials, disable protections, or promise that a verified publisher is trustworthy. Users still choose whether to install.