add code signing certificate
- [ ] find where to buy cheap one ( https://codesigningstore.com/code-signing/comodo-code-signing-certificate , https://www.thesslstore.com/promoads/cheap-code-signing.aspx ) ???
- [ ] add github build pipeline with certs?
- [ ] DEPRECATED: add to appveyor build pipeline (docs https://stackoverflow.com/a/64510718/5452781 , https://help.appveyor.com/discussions/problems/26836-signing-the-msi-using-signtool-and-pfx signscript https://github.com/snapcore/snapcraft/blob/master/appveyor.yml )
info about that, [How to avoid the "Windows Defender SmartScreen prevented an unrecognized app from starting warning"] https://stackoverflow.com/a/66582477/5452781
*Submitted zip to MS analysis, lets see what happens.
ok, got results (from the current prerelease build:
The warning you experienced indicates that the application had not established reputation with the Microsoft Defender SmartScreen Application Reputation feature at that time. We can confirm that the application (SHA256:64F4D28CC32D388890E39EF44C49C2B43BC889097B55BA0068432AB43EAAB9E7)" has since established reputation and attempting to download or run the application should no longer show any warnings.
Please note, however, that the submitted files are not signed using a valid digital certificate. Unsigned files will have to establish reputation each time a new version is released.
info about signtool: https://answers.unity.com/questions/433371/code-signing-certificate.html
cheaper one? https://signmycode.com/comodo-code-signing