Linux workstation

Debian 13 (Trixie) native package

chromium-common

web browser - common resources used by the chromium packages

Packages / Debian 13 (Trixie) / web / chromium-common

[Source: chromium]

Package: chromium-common (153.0.8010.47-2~deb13u1)

Maintainers:

Debian Chromium Team

External Resources:

Homepage: [www.chromium.org]

Similar packages:

web browser - common resources used by the chromium packages

Other Packages Related to chromium-common:

  • dep: [libc6] (>= 2.39)

    GNU C Library: Shared libraries

  • dep: [libgcc-s1] (>= 4.2)

    GCC support library

  • dep: [zlib1g] (>= 1:1.2.11.dfsg)

    compression library - runtime

  • dep: [x11-utils]

    X11 utilities

  • dep: [xdg-utils]

    desktop integration utilities from freedesktop.org

Download chromium-common

ArchitecturePackage SizeInstalled SizeFiles
amd6429 MiB65 MiB[list of files]
arm6433 MiB82 MiB[list of files]

Package file paths (21)

Paths come from the repository package-file index for the observed builds. They describe archive/package associations, not every file that will exist on a running system after maintainer scripts, alternatives, generated state, diversions, or installation choices.

  • /usr/lib/chromium/chrome_100_percent.pak
  • /usr/lib/chromium/chrome_200_percent.pak
  • /usr/lib/chromium/chrome_crashpad_handler
  • /usr/lib/chromium/icudtl.dat
  • /usr/lib/chromium/libEGL.so
  • /usr/lib/chromium/libGLESv2.so
  • /usr/lib/chromium/libVkICD_mock_icd.so
  • /usr/lib/chromium/libVkICD_mock_icd.so.TOC
  • /usr/lib/chromium/libVkLayer_khronos_validation.so
  • /usr/lib/chromium/libVkLayer_khronos_validation.so.TOC
  • /usr/lib/chromium/libvk_swiftshader.so
  • /usr/lib/chromium/libvulkan.so.1
  • /usr/lib/chromium/libvulkan.so.1.TOC
  • /usr/lib/chromium/locales/en-US.pak
  • /usr/lib/chromium/resources.pak
  • /usr/lib/chromium/snapshot_blob.bin
  • /usr/lib/chromium/v8_context_snapshot.bin
  • /usr/lib/chromium/vk_swiftshader_icd.json
  • /usr/share/doc/chromium-common/changelog.Debian.gz
  • /usr/share/doc/chromium-common/copyright
  • /usr/share/doc/chromium-common/NEWS.Debian.gz

Field source: Debian Security revision trixie-security-main-amd64:75560d6c0aa0fb0861555b21106fd10c6386a685dfee72fdf757310a0a450f9b

Use this package

OpenFactory can boot this operating system in a browser VM, or start a build that includes the native package name from this record.

Versions, suites, and repositories

Each row is recorded package-index metadata for one version, architecture, suite, and repository. Names, URLs, and sizes are source-reported; a link is a potentially mutable retrieval location, not an OpenFactory redistribution claim or proof that OpenFactory retained the artifact bytes.

VersionReleaseArchitectureRepositoryPackage sizeInstalled sizePublisher repository artifact
153.0.8010.47-2~deb13u1trixie-security / mainamd64Debian 13 security · main · amd6429 MiB65 MiBpool/updates/main/c/chromium/chromium-common_153.0.8010.47-2~deb13u1_amd64.deb
151.0.7922.173-1~deb13u1trixie-security / mainarm64Debian 13 security · main · arm6433 MiB82 MiBpool/updates/main/c/chromium/chromium-common_151.0.7922.173-1~deb13u1_arm64.deb
152.0.7977.82-1~deb13u1 (withdrawn)trixie-security / mainamd64Debian 13 security · main · amd6429 MiB64 MiBpool/updates/main/c/chromium/chromium-common_152.0.7977.82-1~deb13u1_amd64.deb
152.0.7977.75-1~deb13u1 (withdrawn)trixie-security / mainamd64Debian 13 security · main · amd6429 MiB64 MiBpool/updates/main/c/chromium/chromium-common_152.0.7977.75-1~deb13u1_amd64.deb
151.0.7922.173-1~deb13u1 (withdrawn)trixie-security / mainamd64Debian 13 security · main · amd6428 MiB63 MiBpool/updates/main/c/chromium/chromium-common_151.0.7922.173-1~deb13u1_amd64.deb
151.0.7922.169-1~deb13u1 (withdrawn)trixie-security / mainamd64Debian 13 security · main · amd6428 MiB63 MiBpool/updates/main/c/chromium/chromium-common_151.0.7922.169-1~deb13u1_amd64.deb
151.0.7922.137-1~deb13u1 (withdrawn)trixie-security / mainamd64Debian 13 security · main · amd6428 MiB63 MiBpool/updates/main/c/chromium/chromium-common_151.0.7922.137-1~deb13u1_amd64.deb
151.0.7922.108-1~deb13u1 (withdrawn)trixie-security / mainamd64Debian 13 security · main · amd6428 MiB63 MiBpool/updates/main/c/chromium/chromium-common_151.0.7922.108-1~deb13u1_amd64.deb

Field source: Debian Security revision trixie-security-main-amd64:75560d6c0aa0fb0861555b21106fd10c6386a685dfee72fdf757310a0a450f9b

Checksums and observation dates

For an APT source, signature verification authenticates the repository metadata chain and the Packages index containing this source-reported artifact digest. It does not certify package safety.

153.0.8010.47-2~deb13u1 / amd64Observed Sep 17, 2026 to Sep 19, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: cd0f81f259bad000c2a0be298567163d2bf76383530ef61e3395d7fea5543b95

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' 'cd0f81f259bad000c2a0be298567163d2bf76383530ef61e3395d7fea5543b95' 'chromium-common_153.0.8010.47-2~deb13u1_amd64.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian Security revision trixie-security-main-amd64:75560d6c0aa0fb0861555b21106fd10c6386a685dfee72fdf757310a0a450f9b

151.0.7922.173-1~deb13u1 / arm64Observed Sep 1, 2026 to Sep 1, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: 11b206e11b4561bf5e589075fce434e8164541a8c94a84e465428b23a682f556

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' '11b206e11b4561bf5e589075fce434e8164541a8c94a84e465428b23a682f556' 'chromium-common_151.0.7922.173-1~deb13u1_arm64.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian 13 (Trixie) security main arm64 revision trixie-security-main-arm64:a1606cb4e67822be93a6484199cd3ca52e27a8be038314abcac98bbd484c43d8

152.0.7977.82-1~deb13u1 / amd64Observed Sep 5, 2026 to Sep 17, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: 0aab94c6541b0fa4bdfc61cbc5b97e999a132e9723092a30bd1476f344d5d958

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' '0aab94c6541b0fa4bdfc61cbc5b97e999a132e9723092a30bd1476f344d5d958' 'chromium-common_152.0.7977.82-1~deb13u1_amd64.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian Security revision trixie-security-main-amd64:2280bcb74c75a8edfe41286e21de7940dea0a012ea0c9d3d08ae3bb9d187061d

152.0.7977.75-1~deb13u1 / amd64Observed Sep 4, 2026 to Sep 4, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: 5c70468e4381eb5450600429de7ebc041345edecab63e4779a52c891a7acc8da

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' '5c70468e4381eb5450600429de7ebc041345edecab63e4779a52c891a7acc8da' 'chromium-common_152.0.7977.75-1~deb13u1_amd64.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian Security revision trixie-security-main-amd64:88e073912d3a817e5cfe648897f50f8e21a49d740962c461fbb477dc4fde1283

151.0.7922.173-1~deb13u1 / amd64Observed Aug 27, 2026 to Aug 30, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: 9d7f417c4b93250dcc5b0b4b2fe00554ea17d895876418d95625512993c6a7c6

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' '9d7f417c4b93250dcc5b0b4b2fe00554ea17d895876418d95625512993c6a7c6' 'chromium-common_151.0.7922.173-1~deb13u1_amd64.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian Security revision trixie-security-main-amd64:dc1fe8c451d5ad17fe1ab51a53a09aa339509450dccf3cc574b243af9d7bd45e

151.0.7922.169-1~deb13u1 / amd64Observed Aug 20, 2026 to Aug 27, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: ddea5a3f21067647ca5e13feb74ab169c4102dcfc371374e21af1d99a5bb07e2

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' 'ddea5a3f21067647ca5e13feb74ab169c4102dcfc371374e21af1d99a5bb07e2' 'chromium-common_151.0.7922.169-1~deb13u1_amd64.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian Security revision trixie-security-main-amd64:c1869d6f847d40762b3983ebbeb21f242b8394c714c2e6ec62e876ff2ccbf4a7

151.0.7922.137-1~deb13u1 / amd64Observed Aug 13, 2026 to Aug 20, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: 65fd53be209e949ef601ccd8fc6e8c4a7dc27fe09462d7e98dc9fad5f4975501

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' '65fd53be209e949ef601ccd8fc6e8c4a7dc27fe09462d7e98dc9fad5f4975501' 'chromium-common_151.0.7922.137-1~deb13u1_amd64.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian Security revision trixie-security-main-amd64:435e64a94ed08a30473967e41b252b8d0560f2cc483cd8773066cfca5061c588

151.0.7922.108-1~deb13u1 / amd64Observed Aug 10, 2026 to Aug 12, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: 6eaa601c158a87769d7cd73b924f88443761649f6c320497a69f98dc5cd46058

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' '6eaa601c158a87769d7cd73b924f88443761649f6c320497a69f98dc5cd46058' 'chromium-common_151.0.7922.108-1~deb13u1_amd64.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian Security revision trixie-security-main-amd64:0cf5cc7f0802043f9f7e3e57eb01c2022148817b1b50a8923fba858aca5cab98

Catalog record completeness

The completeness score measures metadata coverage, not software quality, security, compatibility, or suitability.

Summary and description
25/25
Artifact path and source digest
25/25
Dependency metadata
15/15
Package-file index
0/15
Homepage
5/5
License text
0/5
Source package or maintainer
10/10

Recorded total: 80/100

Field source: Debian 13 (Trixie) main amd64 revision trixie-main-amd64:3ab4e811cf4f3e5a335d382c58cc19d85f1abe7a4ef4689160ca1f637fa0e9b3, Debian 13 (Trixie) main arm64 revision trixie-main-arm64:753da751bbc7a679f48bd1b623ffd4479cb6861c426118284c76eb82909e4908, Debian 13 (Trixie) security main arm64 revision trixie-security-main-arm64:a1606cb4e67822be93a6484199cd3ca52e27a8be038314abcac98bbd484c43d8, Debian Security revision trixie-security-main-amd64:75560d6c0aa0fb0861555b21106fd10c6386a685dfee72fdf757310a0a450f9b. The cross-OS mapping is catalog-derived from the source-reported homepage; it does not establish authorship or publisher identity

Sources and provenance

Field-source links above resolve here. Each source entry names the metadata publisher, trust tier, exact snapshot revision, signature result, and observation time; catalog-derived mappings are labeled separately.

  • Authoritative source; repository metadata signature verified, revision trixie-main-amd64:3ab4e811cf4f3e5a335d382c58cc19d85f1abe7a4ef4689160ca1f637fa0e9b3

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    98b25b5cd185c59d34aa6e4c3e9b5b8f01bbe9d104fe2dcfbcd30dc0a14a59ed
    Signer fingerprint
    4CB50190207B4758A3F73A796ED0E7B82643E131
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 1, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-amd64/Packages.xz
    Expected SHA-256: 3ab4e811cf4f3e5a335d382c58cc19d85f1abe7a4ef4689160ca1f637fa0e9b3
    Observed SHA-256: 3ab4e811cf4f3e5a335d382c58cc19d85f1abe7a4ef4689160ca1f637fa0e9b3
    Result: match verified

  • Authoritative source; repository metadata signature verified, revision trixie-main-arm64:753da751bbc7a679f48bd1b623ffd4479cb6861c426118284c76eb82909e4908

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    98b25b5cd185c59d34aa6e4c3e9b5b8f01bbe9d104fe2dcfbcd30dc0a14a59ed
    Signer fingerprint
    4CB50190207B4758A3F73A796ED0E7B82643E131
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 1, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-arm64/Packages.xz
    Expected SHA-256: 753da751bbc7a679f48bd1b623ffd4479cb6861c426118284c76eb82909e4908
    Observed SHA-256: 753da751bbc7a679f48bd1b623ffd4479cb6861c426118284c76eb82909e4908
    Result: match verified

  • Authoritative source; repository metadata signature verified, revision trixie-security-main-arm64:a1606cb4e67822be93a6484199cd3ca52e27a8be038314abcac98bbd484c43d8

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    fb4f5284b755510aafc1d8a39ef966c7ef714aaab3ecc24baae0a67c38518ab5
    Signer fingerprint
    B0CAB9266E8C3929798B3EEEBDE6D2B9216EC7A8
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 1, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-arm64/Packages.xz
    Expected SHA-256: a1606cb4e67822be93a6484199cd3ca52e27a8be038314abcac98bbd484c43d8
    Observed SHA-256: a1606cb4e67822be93a6484199cd3ca52e27a8be038314abcac98bbd484c43d8
    Result: match verified

  • Debian SecurityAug 12, 2026

    Authoritative source; repository metadata signature verified, revision trixie-security-main-amd64:0cf5cc7f0802043f9f7e3e57eb01c2022148817b1b50a8923fba858aca5cab98

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    106d89bc0895d7923eed2abfa7161d5297fa0d6154c4ea75c0fd8ab421790bd5
    Signer fingerprint
    B0CAB9266E8C3929798B3EEEBDE6D2B9216EC7A8
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Aug 13, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-amd64/Packages.xz
    Expected SHA-256: 0cf5cc7f0802043f9f7e3e57eb01c2022148817b1b50a8923fba858aca5cab98
    Observed SHA-256: 0cf5cc7f0802043f9f7e3e57eb01c2022148817b1b50a8923fba858aca5cab98
    Result: match verified

  • Debian SecuritySep 17, 2026

    Authoritative source; repository metadata signature verified, revision trixie-security-main-amd64:2280bcb74c75a8edfe41286e21de7940dea0a012ea0c9d3d08ae3bb9d187061d

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    833b4346077a607a1df885ba666f8ffe711045b4e200b4d1658d1ca31c7ea6fa
    Signer fingerprint
    B0CAB9266E8C3929798B3EEEBDE6D2B9216EC7A8
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 17, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-amd64/Packages.xz
    Expected SHA-256: 2280bcb74c75a8edfe41286e21de7940dea0a012ea0c9d3d08ae3bb9d187061d
    Observed SHA-256: 2280bcb74c75a8edfe41286e21de7940dea0a012ea0c9d3d08ae3bb9d187061d
    Result: match verified

  • Debian SecurityAug 20, 2026

    Authoritative source; repository metadata signature verified, revision trixie-security-main-amd64:435e64a94ed08a30473967e41b252b8d0560f2cc483cd8773066cfca5061c588

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    681311da1ca84724d3ad40f986be0e7ae61bb6fe2871400ff7f579594de65fc5
    Signer fingerprint
    B0CAB9266E8C3929798B3EEEBDE6D2B9216EC7A8
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Aug 20, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-amd64/Packages.xz
    Expected SHA-256: 435e64a94ed08a30473967e41b252b8d0560f2cc483cd8773066cfca5061c588
    Observed SHA-256: 435e64a94ed08a30473967e41b252b8d0560f2cc483cd8773066cfca5061c588
    Result: match verified

  • Debian SecuritySep 19, 2026

    Authoritative source; repository metadata signature verified, revision trixie-security-main-amd64:75560d6c0aa0fb0861555b21106fd10c6386a685dfee72fdf757310a0a450f9b

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    a04d08d53e4682587d9bfe6ff7958f614db5619c6264f4cdfb223b1812e217b7
    Signer fingerprint
    B0CAB9266E8C3929798B3EEEBDE6D2B9216EC7A8
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 19, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-amd64/Packages.xz
    Expected SHA-256: 75560d6c0aa0fb0861555b21106fd10c6386a685dfee72fdf757310a0a450f9b
    Observed SHA-256: 75560d6c0aa0fb0861555b21106fd10c6386a685dfee72fdf757310a0a450f9b
    Result: match verified

  • Debian SecuritySep 4, 2026

    Authoritative source; repository metadata signature verified, revision trixie-security-main-amd64:88e073912d3a817e5cfe648897f50f8e21a49d740962c461fbb477dc4fde1283

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    7d59d4d519745158ccb48f7b17d14266f8657770d14023633575cd5f228c6c48
    Signer fingerprint
    B0CAB9266E8C3929798B3EEEBDE6D2B9216EC7A8
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 5, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-amd64/Packages.xz
    Expected SHA-256: 88e073912d3a817e5cfe648897f50f8e21a49d740962c461fbb477dc4fde1283
    Observed SHA-256: 88e073912d3a817e5cfe648897f50f8e21a49d740962c461fbb477dc4fde1283
    Result: match verified

  • Debian SecurityAug 27, 2026

    Authoritative source; repository metadata signature verified, revision trixie-security-main-amd64:c1869d6f847d40762b3983ebbeb21f242b8394c714c2e6ec62e876ff2ccbf4a7

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    e0e2f9925c15afdecd27b9008f0ec187146dc4263b470bb1c993c9cbefa45201
    Signer fingerprint
    B0CAB9266E8C3929798B3EEEBDE6D2B9216EC7A8
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Aug 27, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-amd64/Packages.xz
    Expected SHA-256: c1869d6f847d40762b3983ebbeb21f242b8394c714c2e6ec62e876ff2ccbf4a7
    Observed SHA-256: c1869d6f847d40762b3983ebbeb21f242b8394c714c2e6ec62e876ff2ccbf4a7
    Result: match verified

  • Debian SecurityAug 30, 2026

    Authoritative source; repository metadata signature verified, revision trixie-security-main-amd64:dc1fe8c451d5ad17fe1ab51a53a09aa339509450dccf3cc574b243af9d7bd45e

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    fb4f5284b755510aafc1d8a39ef966c7ef714aaab3ecc24baae0a67c38518ab5
    Signer fingerprint
    B0CAB9266E8C3929798B3EEEBDE6D2B9216EC7A8
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 3, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-amd64/Packages.xz
    Expected SHA-256: dc1fe8c451d5ad17fe1ab51a53a09aa339509450dccf3cc574b243af9d7bd45e
    Observed SHA-256: dc1fe8c451d5ad17fe1ab51a53a09aa339509450dccf3cc574b243af9d7bd45e
    Result: match verified