The house · Provenance
Root of trust
Every archive we publish is cut reproducibly: the same inputs produce the same bytes, so a hash means something. Below is the SHA-256 of each current archive, written by the same build that produced it. Compare it against your download before you trust it.
SHPBL-Evaluation-Master-Library-v3.4.0.zip
df9d93f1729c539a7c926275e9bf0053d3fa737da9b8df27c79dbeef3f5195d6
984,719 bytes
CMPSBL-Agent-Kit-r3.4.0-Library-v3.4.0.zip
73d4af86c7ff19bbdc4c34eeba6ae766ca7bfa0d23234f511c55ddbff860d133
969,802 bytes
SHPBL-Governor-Edition-v1.3.0.zip
b5f3166699339282b9925a2b1b77c5b661094699c8d7f6fb6a2b7a99ab5f3438
1,045,616 bytes
Checking it yourself
On macOS or Linux, run shasum -a 256 <file>; on Windows, certutil -hashfile <file> SHA256. The output must match the line above character for character. Every archive also carries its own CHECKSUMS.sha256 covering each file inside it.
If a hash does not match, do not run the contents. Write to dev@cmpsbl.com and we will re-issue.
Published 2026-08-28 alongside server 1.31.0. See the release notes for what changed.