Canonical SHA-256 checksums for every published build. This page lives at the on-chain
name releases.silentmode.bch; the name pins where it is served from, so a tampered
mirror cannot change what you check against here.
Theseus Navigator 0.3.56
Windows 64-bit · unsigned · 2026-09-23 · 0.3.56 — WizardConnect without the copy-paste — WizardConnect pairing no longer needs copying a code between tabs: a dapp can hand the pairing straight to Aegis, a wiz:// link routes to the wallet on click, and the wallet can find a pairing code on the dapp tab you already have open. The wallet still asks before anything is paired. Also bundles Aegis 0.9.0, which fixes imported Tron, Ethereum and Solana wallets showing a balance but no transaction history or tokens, corrects pending transactions that were displayed as failed, and pairs imported Bitcoin Cash wallets with WizardConnect for the first time.
Windows 64-bit · unsigned · bundled Node runtime · 2026-09-19 · Same rules as every other client — Resolver library brought level with the desktop reader: per-TLD certificate registry read from the TLD beacon, current NFT owner tracked per name, the port-443 electrum route tried first, and the TLD co-sign rule (a registration under a "cosign" or hidden TLD is only recognised when it carries the TLD's certificate). Same daemon, same install; existing installs upgrade in place.
Android 5.0+ (API 21) · self-signed release key · 2026-09-19 · 0.19 — co-sign rule — Consensus fix: the on-device index now applies the TLD co-sign rule. A name registered under a TLD whose owner set policy "cosign" or switched the TLD off (hidden) only counts when the registration transaction also carries the TLD's own certificate, exactly as the gateway, Theseus and the desktop resolver decide it, so every client agrees on which names exist. The index reads the per-TLD certificate registry and its policy history from the TLD beacon at build time; if that beacon cannot be reached it keeps the previous behaviour instead of returning an empty index. No UI changes.
How to verify. After downloading, compute the file's SHA-256 and compare it to
the value above — on Windows: certutil -hashfile <file> SHA256;
on Android, hash the downloaded .apk on a computer before you move
it to the phone, or use any file-hashing app. Nothing here is signed by an authority your device
already trusts — by design — so it will warn about an unrecognized app; the checksum is the
real check. The machine-readable manifest is at
releases-manifest.json.