# Checking Codesign Signature In-App code

**URL:** <https://forum.xojo.com/t/checking-codesign-signature-in-app-code/20424>\
**Category:** macOS\
**Created:** [November 19, 2014, 6:07pm UTC](https://forum.xojo.com/t/checking-codesign-signature-in-app-code/20424 "2014-11-19T18:07:35Z")\
**Posts on this page:** 5\
**Page:** 2

<div class="post-metadata">

**Author:** ![Sam\_Rowlands](https://forum.xojo.com/user_avatar/forum.xojo.com/sam_rowlands/32/265_2.png) [@Sam\_Rowlands](https://forum.xojo.com/u/Sam_Rowlands)\
**Post date:** [November 20, 2014, 5:43am UTC](https://forum.xojo.com/t/checking-codesign-signature-in-app-code/20424/21 "2014-11-20T05:43:12Z")

</div>

> [@144475:@Christoph De Vocht](#):
>
> Yes it is from OSX10.7 and upwards.

The codesign command has been installed since 10.6, may even be older. It’s the codesign\_allocate that is no longer installed without Xcode. This allows code signatures to be verified.

> [@144529:@Tim Parnell](#):
>
> Anything more than stopping casual piracy is a waste of your and your legitimate customers time and resources.

Agreed, we grab the codesignature when someone asks for support, if someone contacts me with a different code signature or none at all, I assume that I don’t need to prioritize their support as chances are they’ve ripped me off.

We certainly receive less support from cracked versions now-a-days, but at the height of one products sales, I’d get people asking for features and help at least once a week (from a cracked version). My first reply would be that the application appears to be compromised and they need to download a fresh copy, 9 times out of 10 the conversation never went further.

---

<div class="post-metadata">

**Author:** ![Beatrix\_Willius](https://forum.xojo.com/user_avatar/forum.xojo.com/beatrix_willius/32/282_2.png) [@Beatrix\_Willius](https://forum.xojo.com/u/Beatrix_Willius)\
**Post date:** [November 20, 2014, 6:02am UTC](https://forum.xojo.com/t/checking-codesign-signature-in-app-code/20424/22 "2014-11-20T06:02:34Z")

</div>

For a while I was signing my app (with a helper) incorrectly. The codesign command showed that everything was okay. Only spclt (spelling?) showed that I had a screwed up signature.

---

<div class="post-metadata">

**Author:** ![Oliver\_Osswald](https://forum.xojo.com/user_avatar/forum.xojo.com/oliver_osswald/32/6972_2.png) [@Oliver\_Osswald](https://forum.xojo.com/u/Oliver_Osswald)\
**Post date:** [November 20, 2014, 6:43am UTC](https://forum.xojo.com/t/checking-codesign-signature-in-app-code/20424/23 "2014-11-20T06:43:29Z")

</div>

> [@144592:@Beatrix Willius](#):
>
> \<…\>Only spclt (spelling?) showed that I had a screwed up signature.

I’m using RB App Checker for this.  
[http://brockerhoff.net/RB/AppCheckerLite/](http://brockerhoff.net/RB/AppCheckerLite/)

---

<div class="post-metadata">

**Author:** ![Sam\_Rowlands](https://forum.xojo.com/user_avatar/forum.xojo.com/sam_rowlands/32/265_2.png) [@Sam\_Rowlands](https://forum.xojo.com/u/Sam_Rowlands)\
**Post date:** [November 20, 2014, 7:39am UTC](https://forum.xojo.com/t/checking-codesign-signature-in-app-code/20424/24 "2014-11-20T07:39:05Z")

</div>

[quote=144601:@Oliver Osswald]I’m using RB App Checker for this.  
[http://brockerhoff.net/RB/AppCheckerLite/[/quote]](http://brockerhoff.net/RB/AppCheckerLite/%5B/quote%5D)  
This app is indispensable, Rainer is a great guy too! If you use App Wrapper 3, I’ve added a quick action to verify your ‘wrapped’ application in RB App Checker Lite after wrapping.

---

<div class="post-metadata">

**Author:** ![system](https://forum.xojo.com/uploads/default/original/1X/455b4dcc0e61630e9f81940004ddffa49c432a46.png) [@system](https://forum.xojo.com/u/system)\
**Post date:** [October 29, 2020, 5:29pm UTC](https://forum.xojo.com/t/checking-codesign-signature-in-app-code/20424/25 "2020-10-29T17:29:46Z")

</div>



[Previous page](https://forum.xojo.com/t/checking-codesign-signature-in-app-code/20424.md?page=1)
