| Security Pillar | Verification Badge |
|---|---|
| Platform Standard | |
| Credential Defense | |
| Supply Chain Surface | |
| Post-Quantum Cryptography | |
| Build Provenance & SLSA | |
| Repository Governance |
The signed package channel — APT and RPM repos served at
idlescreen.github.io/packages, fed by release imports from every product
repo. Part of IdleScreen — modular Wayland
screensavers for Linux.
curl -fsSL https://idlescreen.github.io/install.sh | shThe installer writes the repo config + GPG key, then installs the
idlescreen product package — the router that pulls the whole stack.
See TRUST.md for the trust model and signature verification.
The IdleScreen installer preserves existing user and system configurations without clobbering:
- User configs:
~/.config/idlescreen/config.yamland~/.config/idle/config.yaml - System defaults:
/etc/xdg/idlescreen/config.yaml,/etc/idlescreen/config.yaml, and/etc/idle/config.yaml
Existing files are preserved completely across installs, upgrades, and channel re-syncs.
Apache-2.0 · © 2026 IdleScreen