tasks
Add owned Forma CLI self-update
Add an explicit release-scoped checksum-verified self-update flow for install-script-owned Forma CLI binaries.
Goal
Let install-script users explicitly check for and install an exact, verified Forma Release without giving the CLI authority over package-manager or editor-managed installations.
Sources
In Scope
- Release discovery and exact SemVer selection.
- Platform asset and checksum verification.
- Install-script ownership receipts, confirmation, JSON output, replacement, and recovery.
- Unix, Windows, CLI, and release-matrix regression coverage.
Out of Scope
- Passive startup update notices.
- Automatic mise, WinGet, or editor-extension updates.
- Channels, arbitrary assets, commits, branches, and custom download URLs.
Acceptance Criteria
- Official install scripts write a versioned ownership receipt beside Forma.
forma self-updatecan check latest or exact releases and applies only to an owned installation.- Same-version replacement and downgrade require explicit version-direction flags.
- Interrupted replacement is recoverable or diagnosable without guessing installation ownership.
- The complete repository gate and configured workspace health pass.