WPF DevTools MCP Server
Search Results for

    Show / Hide Table of Contents

    Release Layout

    This page documents the stable public folder contract for published release assets, extracted packages, and installed copies.

    Canonical generation sources

    • Packaging source: scripts/tools/packaging/Publish-Release.ps1
    • Sidecar source: scripts/tools/packaging/Write-ReleaseSidecars.ps1
    • Upload source: scripts/tools/packaging/Export-GitHubReleaseAssets.ps1
    • Online installer source: scripts/online-installer.ps1

    The documentation below describes the output of those scripts. It does not replace them.

    Public release assets

    Install the latest stable release:

    irm https://installer.wpf-mcptools.evanlau1798.com | iex
    

    The generic archive pattern is release_<version>_win-<arch>.zip. Stable release archives are named:

    • release_<version>_win-x64.zip
    • release_<version>_win-x86.zip

    ARM64 archives may be published as preview assets, but they are not guaranteed stable because practical Windows-on-ARM runtime validation hardware is not currently available. Preview ARM64 archives use:

    • release_<version>_win-arm64.zip

    Keep the archive adjacent to these sidecars for production review:

    File Meaning
    SHA256SUMS.txt Archive checksum verification
    release-assets.json Canonical asset metadata and sidecar hashes
    release-sbom.spdx.json Release asset/archive inventory
    package-sbom.spdx.json Package, dependency, script, assembly, and payload SBOM

    release-sbom.spdx.json and package-sbom.spdx.json are intentionally separate.

    Release packages use two trust modes. Signed packages use Authenticode payload verification and require WPFDEVTOOLS_RELEASE_SIGNER_THUMBPRINT. Beta prerelease packages may use ReleaseChecksumOnly while paid signing is unavailable; the installer accepts that mode only after GitHub Release sidecars or an explicit trusted metadata directory prove the archive through SHA256 release metadata.

    ReleaseChecksumOnly protects raw injection only while exact payload bytes can still be compared with the original reviewed archive. An installed manifest alone is not a trust root. For unsigned raw injection, keep the original archive and SHA256SUMS.txt outside the installed payload and set WPFDEVTOOLS_TRUSTED_RELEASE_METADATA_DIRECTORY in the MCP client process; otherwise use Signed installed payloads.

    Extracted package layout

    release_<version>_win-x64/
      run.bat
      bin/
        install.ps1
        manifest.json
        wpf-devtools-x64.exe
        WpfDevTools.Mcp.Server.dll
        WpfDevTools.Injector.dll
        WpfDevTools.Shared.dll
        inspectors/
          net8.0-windows/
            WpfDevTools.Inspector.dll
          net48/
            WpfDevTools.Inspector.dll
        bootstrapper/
          x64/
            WpfDevTools.Bootstrapper.x64.dll
        installer/
          installer-helpers.manifest.json
          Installer.Actions.ps1
          Installer.Uninstall.ps1
          Tui.Flow.ps1
          ...
    

    Installed layout

    <InstallRoot>\<arch>\
      current/
        bin/
          manifest.json
          wpf-devtools-<arch>.exe
          WpfDevTools.Mcp.Server.dll
          WpfDevTools.Injector.dll
          WpfDevTools.Shared.dll
          inspectors/
          bootstrapper/
          installer/
      client-registration/
        claude-code.txt
        codex.txt
        claude-desktop.json
        cursor.global.json
        cursor.project.json
        vscode.json
        visual-studio.json
        other.mcpServers.json
      install-manifest.json
    

    Contract notes

    • MCP clients should register bin/wpf-devtools-<arch>.exe.
    • bin/inspectors and bin/bootstrapper must remain adjacent to the installed server content.
    • bin/installer is the integrity-checked helper bundle used by package and recovery flows.
    • run.bat is the package-root entrypoint for users who do not want to invoke PowerShell directly.
    • client-registration is generated at install time and is the public copy-paste source for MCP client setup.
    • If -InstallRoot is omitted, the installer reuses the last live install root when possible; %APPDATA%\WpfDevToolsMcp is the fallback root only when no reusable install root exists.

    Online installer source contract

    scripts/online-installer.ps1 is the canonical source entrypoint for the public installer alias and the generated single-file release artifact. The release pipeline must validate the source entrypoint, packaged artifact, and public alias together so they resolve the same release assets and enforce the same package verification behavior.

    Any future helper reorganization must preserve that contract and keep the packaged helper manifest, generated artifact, and public installer endpoint in sync.

    • Edit this page
    In this article
    Back to top WPF DevTools MCP Server documentation for users, operators, and contributors.