Skip to main content

The component catalogue.

Install only what you need

Each component installs independently, so a machine carries only what it uses. Every release is built and signed offline, and the installer verifies each download against its sha256 checksum before anything runs. The checksums are published on every build below and on the checksums page.

Install baton

Download baton-installer.pkg

macOS · v0.1.5 · 86.0 MB

Notarized by Apple and stapled, so it installs offline. Double-click it: baton, its background service and every module are set up for you.

One file. It places the conductor on your PATH and installs the modules you choose — you never assemble anything by hand.

Windows baton-setup.exe — v0.1.5 · 46.1 MB Download
Linux baton.deb — v0.1.5 · 59.5 MB Download
macOS / Linux curl -fsSL https://quantumencoding.io/install.sh | sh
Windows irm https://quantumencoding.io/install.ps1 | iex
AI assistant Read https://quantumencoding.io/baton-skill.md and follow it to set up baton on this machine.

Every download is checked against its sha256 and the publisher's signature before anything runs, and the key is pinned so later installs are verified the same way. Checksums are on the checksums page; the machine-readable manifest, signatures included, is at /api/releases.

Everything else, added any time

The installer above carries the core and can add any of these. So can baton update install <name>, later, on any machine — nothing here has to be decided now.

baton-installer

module
baton-installer

The Mac and Linux front door.

The one-download installer for Mac and Linux. On a Mac it is a notarized .pkg, stapled so it installs with no network; on Debian and Ubuntu it is a .deb. Either way you double-click it, and it sets up baton, every module and the batond background service for the person installing. macOS 14+ on Apple silicon; Debian 11+ or Ubuntu 20.04+ on x86-64. The curl one-liner stays for other distributions, scripts and CI.

macOS arm64 v0.1.5 · 86.0 MB
Linux x86_64 v0.1.5 · 59.5 MB
baton update install baton-installer More →

baton-setup

module
baton-setup

Download. Double-click. Done.

The signed Windows installer: one Authenticode-signed executable (subject QUANTUM ENCODING LTD, verified by Windows itself before it runs) carrying the whole payload, every binary inside individually signed and timestamped. It extracts, runs the tested installer while you watch, and holds the window open until you have seen the outcome. The front door for people; the irm one-liner stays for scripts and CI.

Windows x86_64 v0.1.5 · 46.1 MB
baton update install baton-setup More →

lin-drive

platform
lin-drive

Desktop automation for GNOME and Wayland.

The Linux sibling, same JSON contract, so app profiles and orchestration port unchanged. It perceives over AT-SPI, captures through the ScreenCast portal, and acts two ways: element-first over D-Bus, with no pointer to aim and no focus to steal (the sturdy default on Wayland), or humanized synthetic input through kernel uinput for targets AT-SPI cannot see. Drives Chromium browsers over CDP; manages windows through a bundled GNOME Shell extension.

Linux x86_64 v0.1.0 · 2.1 MB
baton update install lin-drive More →

mac-drive

platform
mac-drive

Playwright for the Mac desktop.

JSON-driven perceive-and-act automation for native macOS apps: read the accessibility tree, snapshot elements to stable refs, click, type, and run a whole flow in one invocation. Input is humanized, down to glide paths and typing rhythm. Acts sit behind a Secure-Enclave arm grant (the first act fires Touch ID on the physical machine) and the operator always gets a countdown card with live Pause and Cancel.

macOS arm64 v0.1.1 · 629 KB
baton update install mac-drive More →

secrets-vault

module
secrets-vault

The fleet's biometric secret store.

An encrypted vault that asks for Touch ID at the moment of read, not at login, with its master key wrapped by the Secure Enclave. Store a key once; then scoped injection with secrets exec, per-agent grants, TTL leases that self-destruct, and a session broker decide who reads what, and when. Every baton flow fetches its keys from here. Install on Apple silicon: brew install --cask quantum-encoding/tap/secrets — the Developer ID signed, notarized build, which is what lets Touch ID and the Secure Enclave work.

zdedupe

module
zdedupe
macOS arm64x86_64 v1.0.2 · 7.9 MB
baton update install zdedupe