mirror of
https://github.com/wu736139669/hapi.git
synced 2026-10-06 18:39:47 +00:00
codesign reads the private key from the login keychain, and only the Aqua session can reach it: agents/daemons run in launchd's Background domain, where codesign fails with errSecInternalComponent even while Keychain Access shows the keychain unlocked. sign-build.sh now warns with the fix (run from a Terminal window, or `security unlock-keychain` first), and docs/local-deployment.md records the rule.