diff options
| author | Tom Cooks <tommasogagliardi+github@gmail.com> | 2026-10-11 04:05:03 -0400 |
|---|---|---|
| committer | Tom Cooks <tommasogagliardi+github@gmail.com> | 2026-10-11 04:05:03 -0400 |
| commit | cf64cdec78899e69df55dab0341d2098acfe30e8 (patch) | |
| tree | 69269a8b37b00f0f2edbcc73197b330c44ab838a /app | |
| parent | ffa7e605511fa6962de192dfafd5e1906f0f6b07 (diff) | |
| download | reccoon-cf64cdec78899e69df55dab0341d2098acfe30e8.tar.gz | |
Build unsigned; sign with apksigner to avoid the PKDS signing block
Diffstat (limited to 'app')
| -rw-r--r-- | app/build.gradle.kts | 32 |
1 files changed, 3 insertions, 29 deletions
diff --git a/app/build.gradle.kts b/app/build.gradle.kts index c539960..473dd7f 100644 --- a/app/build.gradle.kts +++ b/app/build.gradle.kts @@ -1,18 +1,7 @@ -import java.util.Properties - plugins { id("com.android.application") } -// Release signing is read from keystore.properties (git-ignored, present only on -// the maintainer's machine). CI (e.g. F-Droid) builds an unsigned APK. -val keystorePropertiesFile = rootProject.file("keystore.properties") -val keystoreProperties = Properties().apply { - if (keystorePropertiesFile.exists()) { - keystorePropertiesFile.inputStream().use { load(it) } - } -} - android { namespace = "com.tomcooks.reccoon" @@ -36,30 +25,15 @@ android { } } - signingConfigs { - if (keystorePropertiesFile.exists()) { - create("release") { - storeFile = file(keystoreProperties.getProperty("storeFile")) - storePassword = keystoreProperties.getProperty("storePassword") - keyAlias = keystoreProperties.getProperty("keyAlias") - keyPassword = keystoreProperties.getProperty("keyPassword") - } - } - } - buildTypes { debug { isMinifyEnabled = false } release { isMinifyEnabled = false - // Signed with the maintainer's key when keystore.properties is - // present; unsigned otherwise so F-Droid/CI signs it itself. - signingConfig = if (keystorePropertiesFile.exists()) { - signingConfigs.getByName("release") - } else { - null - } + // Built unsigned on purpose. Sign with tools/build-release.sh, which + // uses the SDK apksigner instead of AGP: AGP adds a "Dependency + // metadata" (PKDS) signing block that F-Droid's scanner rejects. proguardFiles( getDefaultProguardFile("proguard-android-optimize.txt"), "proguard-rules.pro" |
