diff --git a/docs/tutorial/asar-integrity.md b/docs/tutorial/asar-integrity.md index 22ef79f5d1..0362ea5427 100644 --- a/docs/tutorial/asar-integrity.md +++ b/docs/tutorial/asar-integrity.md @@ -15,6 +15,14 @@ Currently, ASAR integrity checking is supported on: * macOS as of `electron>=16.0.0` * Windows as of `electron>=30.0.0` +> [!NOTE] +> ASAR integrity is fully supported in Mac App Store (MAS) builds and is recommended +> as a best practice. While MAS-installed applications have their `Resources/` folder +> protected by the system (owned by root), ASAR integrity still provides an additional +> layer of security. It is especially important if you use Electron's MAS build but +> distribute your app through channels other than the Mac App Store (such as direct +> download), since those installations won't have the system-level read-only protections. + In order to enable ASAR integrity checking, you also need to ensure that your `app.asar` file was generated by a version of the `@electron/asar` npm package that supports ASAR integrity.