MAS 2.0 · FREE · WINDOWS 10 / 11 x64 MAS 2.0 · KOSTENFREI · WINDOWS 10 / 11 x64

The integrated packaging tool for the single-machine packager. Das integrierte Paketierungs-Werkzeug für den einzelnen Packager.

MAS 2.0 is a free Windows desktop tool that turns an MSI or EXE into a signed PSADT package and pushes it into SCCM or Intune in a single unbroken workflow. One packager, one machine, every feature unlocked. No licence key. No cloud. No telemetry. MAS 2.0 ist ein kostenfreies Windows-Desktop-Werkzeug, das eine MSI oder EXE in ein signiertes PSADT-Paket verwandelt und in einem durchgängigen Ablauf nach SCCM oder Intune ausliefert. Ein Packager, eine Maschine, alle Features freigeschaltet. Kein Lizenzschlüssel. Keine Cloud. Keine Telemetrie.

PSADT-first · WinUI 3 · Freeware, no registration · Local operation, no telemetry · Optional donation PSADT-first · WinUI 3 · Freeware, keine Registrierung · Lokaler Betrieb, keine Telemetrie · Spende freiwillig
VersionVersion v2.26.7.18 · TestsTests 316 / 316 · WarningsWarnungen 0 · LicenseLizenz FreewareFreeware
Every feature, every install. Jedes Feature, in jeder Installation.
Five areas the freeware release covers end to end. No tier gating, no upgrade nag, no cloud fallback — everything runs on the workstation. Fünf Bereiche, die die Freeware-Version vollständig abdeckt. Kein Tier-Gating, kein Upgrade-Nag, kein Cloud-Fallback — alles läuft auf der Workstation.
MSI / EXE analysis and PSADT generation MSI-/EXE-Analyse und PSADT-Generierung
Drag any MSI, EXE, MSP or setup folder onto the Welcome page. MAS extracts product code, version, vendor, silent switches and detection rules, then generates a signed PSADT v4 workspace against the embedded template. MSI, EXE, MSP oder Setup-Ordner auf die Welcome-Seite ziehen. MAS extrahiert Product Code, Version, Hersteller, Silent-Switches und Detection Rules und erzeugt daraus ein signiertes PSADT-v4-Workspace gegen das eingebettete Template.
SCCM & Intune ship queue Ship-Queue für SCCM & Intune
One profile can carry both a SCCM site and an Intune tenant; one Ship click queues jobs to both. Pre-ship rename, per-package detection editor, and Intune auto-assignments run from a single drawer. Ein Profil kann SCCM-Site und Intune-Tenant gleichzeitig tragen; ein Ship-Klick queued Jobs für beide. Pre-Ship-Rename, Per-Package-Detection-Editor und Intune-Auto-Assignments laufen aus einem einzigen Drawer.
Cmdlet Library & Memory Database Cmdlet Library & Memory Database
The built-in PSADT cmdlet catalog plus any custom cmdlets you author. The local Software Memory DB remembers every package you've built, so re-opening a two-month-old project lands you back in the Ship drawer without re-capturing. Der eingebaute PSADT-Cmdlet-Katalog plus jede von dir erstellte Custom-Cmdlet. Die lokale Software-Memory-DB merkt sich jedes gebaute Paket, sodass ein zwei Monate altes Projekt beim Reopen direkt wieder im Ship-Drawer landet — ohne neue Capture.
Hash-chain audit & GDPR export Hash-Chain-Audit & GDPR-Export
Every write to the Memory DB is chained by SHA-256 hash — tampering with any older row breaks the chain at that point. GDPR Subject Access Request bundles are a five-click workflow: subject → preview → save → archive → verify. Jeder Schreibzugriff auf die Memory-DB wird per SHA-256-Hash verkettet — Manipulation an einer älteren Zeile bricht die Chain genau dort. GDPR-Auskunftsersuchen sind ein Fünf-Klick-Workflow: Subject → Preview → Save → Archive → Verify.
Diagnose ZIP & portable backup Diagnose-ZIP & Portable Backup
One click builds a redacted diagnostics bundle for support handoffs — no licence keys, no domain passwords. The Memory DB and workspaces round-trip through a portable `.masdb` archive for cross-machine moves. Ein Klick baut ein redigiertes Diagnose-Bündel für Support-Handoffs — ohne Lizenzschlüssel, ohne Domain-Passwörter. Memory-DB und Workspaces bewegen sich per portable `.masdb`-Archiv sauber zwischen Maschinen.
MAS 2.0 Roadmap. MAS-2.0-Roadmap.
The ten tasks that carry MAS 2.0 from the July 2026 freeware pivot to the public download. Five are done, one is continuous, four are pending. Full detail on the roadmap page. Die zehn Aufgaben, die MAS 2.0 vom Freeware-Pivot im Juli 2026 zum öffentlichen Download tragen. Fünf abgeschlossen, eine läuft kontinuierlich, vier ausstehend. Vollständige Details auf der Roadmap-Seite.
2026-07-16
Auto Mode removed & licensing hidden Auto Mode entfernt & Lizensierung ausgeblendet DONEFERTIG
`MAS.AutoMode` archived to `.archive/`, removed from solution, DI and navigation. `LicenseGate` replaced with a permanent `FreewareLicenseGate` — the app now behaves as if a Paid Site licence were installed at all times. Build clean, zero warnings. `MAS.AutoMode` nach `.archive/` gesichert, aus Solution, DI und Navigation entfernt. `LicenseGate` durch permanentes `FreewareLicenseGate` ersetzt — die App verhält sich, als läge dauerhaft eine Paid-Site-Lizenz an. Build sauber, null Warnings.
2026-07-17
Profile consolidation Profil-Zusammenlegung DONEFERTIG
The two-active-profile split (`ActiveSccmProfileId` + `ActiveIntuneProfileId`) collapsed into a single `ActiveProfileId`; field presence drives tab enablement on the Rollout page. Der Zwei-Profil-Split (`ActiveSccmProfileId` + `ActiveIntuneProfileId`) auf ein einzelnes `ActiveProfileId` zusammengezogen; Feld-Presence treibt die Tab-Enablement auf der Rollout-Seite.
2026-07-18
Distribute + Deploy refactor (Ship flow, six stages) Distribute + Deploy überarbeitet (Ship-Flow, sechs Etappen) DONEFERTIG
State engine + queue + toasts, Ship drawer with pre-ship rename, per-package detection editor, and Intune assignment auto-post from profile defaults. SCCM app-create packed into a single `New-CMApplication` call — CIVersion lands at 2 on a fresh app instead of 4. State-Engine + Queue + Toasts, Ship-Drawer mit Pre-Ship-Rename, Per-Package-Detection-Editor und Intune-Assignments-Autopost aus Profile-Defaults. SCCM-App-Create in einen einzigen `New-CMApplication`-Aufruf gepackt — CIVersion landet auf 2 statt 4 auf frischer App.
continuouskontinuierlich
Build hygiene & log discipline Build-Hygiene & Log-Disziplin RUNNINGLAUFEND
Zero warnings after every feature cut, clean log output, publish cycle verified. This is not a milestone with a checkbox — it's the standing quality gate for every merge into MAS 2.0. Null Warnings nach jedem Feature-Cut, sauberer Log-Output, verifizierter Publish-Zyklus. Kein Meilenstein mit Häkchen — sondern das stehende Qualitätsgate für jeden Merge in MAS 2.0.
pendingausstehend
Cmdlet-Library polish · Theme picker · E2E smoke pass · Design pass Cmdlet-Library-Feinschliff · Theme-Picker · E2E-Smoke-Pass · Design-Pass PENDINGGEPLANT
Four items remain before the public release: HTML mockup for the Cmdlet Library UI, decision between a full theme editor and a simpler picker, a full end-to-end smoke run against a lab SCCM + Intune target, and the final consistency pass across every page. Vier Punkte bleiben vor dem Public Release: HTML-Mockup für die Cmdlet-Library-UI, Entscheidung zwischen vollem Theme-Editor und einfachem Picker, ein vollständiger End-to-End-Smoke-Lauf gegen ein SCCM- und Intune-Test-Lab und der finale Konsistenz-Pass über alle Seiten.
All ten roadmap items → Alle zehn Roadmap-Punkte →
Free forever. Every feature. No sign-up. Kostenfrei, immer. Alle Features. Ohne Registrierung.
MAS 2.0 ships as freeware with no licence key, no trial timer, and no telemetry. Pick the Setup for auto-updates on the stable channel, or the portable ZIP for controlled deployments. MAS 2.0 kommt als Freeware — ohne Lizenzschlüssel, ohne Trial-Countdown, ohne Telemetrie. Setup wählen für Auto-Updates auf dem Stable-Kanal, oder Portable-ZIP für kontrollierte Rollouts.
PORTABLE · ZIP
Free Kostenfrei
no installer · relocatableohne Installer · frei verschiebbar
Extract-and-run. No installer, no Start-Menu shortcut, auto-update disabled by default. Suited for locked-down or fully-managed workstations where the packager controls update cadence. Entpacken und starten. Ohne Installer, ohne Startmenü-Eintrag, Auto-Update per Default aus. Passend für abgeschottete oder vollständig verwaltete Workstations, in denen der Packager den Update-Takt bestimmt.
Download ZIP ↓ZIP herunterladen ↓
SOURCESOURCE
Closed Closed
binary distribution onlynur Binär-Distribution
MAS 2.0 is closed-source freeware. The build pipeline and PSADT templates live in a private repository. Diagnostic transparency is preserved through the local logs, the Diagnose ZIP, and the audit hash-chain. MAS 2.0 ist Closed-Source-Freeware. Build-Pipeline und PSADT-Templates liegen in einem privaten Repository. Diagnostische Transparenz bleibt durch lokale Logs, das Diagnose-ZIP und die Audit-Hash-Chain gewährleistet.
// SmartScreen may prompt on the first Setup run — the certificate is standard code-signing, not EV. Choose *More info → Run anyway*; the warning stops after a handful of launches on the same machine. // SmartScreen kann beim ersten Setup-Start warnen — das Zertifikat ist Standard-Code-Signing, kein EV. *Weitere Informationen → Trotzdem ausführen* wählen; nach einigen Starts auf derselben Maschine verschwindet die Warnung.
Free tool. Optional coffee. Kostenfreies Werkzeug. Kaffee freiwillig.
MAS 2.0 stays free. If it saves you real time on the packaging desk and you'd like to send a coffee in return, pick whichever channel matches your setup. Both channels go to the same maintainer — Ko-fi accepts card and PayPal on the payer's side. MAS 2.0 bleibt kostenfrei. Wenn dir das Werkzeug am Packaging-Tisch echt Zeit spart und du dafür einen Kaffee ausgeben magst — die beiden Kanäle unten führen zum selben Maintainer. Ko-fi akzeptiert auf der Zahler-Seite Karte und PayPal.
KO-FI
Card or PayPal on the payer's side, no account required. Works for a one-off coffee or a recurring monthly amount — the tier is chosen inside Ko-fi. Kreditkarte oder PayPal auf der Zahler-Seite, keine Anmeldung nötig. Funktioniert sowohl für den einmaligen Kaffee als auch für einen wiederkehrenden Monatsbetrag — die Auswahl passiert direkt in Ko-fi.
Open Ko-fi →Ko-fi öffnen →
GITHUB SPONSORS
Recurring or one-time support with the sponsor tier shown on the GitHub profile page. Preferred by teams that already run their tooling budget through GitHub. Wiederkehrende oder einmalige Unterstützung, der gewählte Sponsor-Tier ist auf dem GitHub-Profil sichtbar. Bevorzugt von Teams, die ihr Tooling-Budget ohnehin über GitHub laufen lassen.
Sponsor on GitHub →Auf GitHub sponsern →
// Donations are not a paywall and do not unlock features. MAS 2.0's feature set is what it is on every install, whether the operator chips in or not. // Spenden sind keine Paywall und schalten keine Features frei. Der MAS-2.0-Feature-Umfang ist auf jeder Installation identisch — egal ob der Betreiber beisteuert oder nicht.
Frequently asked questions. Häufig gestellte Fragen.
Is it really free? Where's the catch? Wirklich kostenfrei? Wo ist der Haken?
MAS 2.0 is freeware — no licence key, no trial, no feature gate, no telemetry upload, no cloud registration. Download, install, use. Donations exist but are opt-in and unlock nothing. MAS 2.0 ist Freeware — kein Lizenzschlüssel, kein Trial, kein Feature-Gate, keine Telemetrie, keine Cloud-Registrierung. Herunterladen, installieren, benutzen. Spenden gibt es, sind aber freiwillig und schalten nichts frei.
Is the source code available? Ist der Quellcode verfügbar?
No. MAS 2.0 is closed-source freeware — the build pipeline and PSADT templates live in a private repository. Diagnostic transparency is preserved through the local Serilog logs under `%LOCALAPPDATA%\MilochApplicationStudio\logs\`, the on-demand Diagnose ZIP, and the tamper-evident audit hash-chain. External verification of the audit chain is possible via the Python reference implementation shipped in the docs. Nein. MAS 2.0 ist Closed-Source-Freeware — Build-Pipeline, PSADT-Templates und Katalog liegen in einem privaten Repository. Diagnostische Transparenz bleibt gewährleistet durch die lokalen Serilog-Logs unter `%LOCALAPPDATA%\MilochApplicationStudio\logs\`, das on-demand Diagnose-ZIP und die tamper-evident Audit-Hash-Chain. Externe Verifikation der Chain ist über die Python-Referenzimplementierung in der Doku möglich.
What data does MAS transmit during normal operation? Welche Daten überträgt MAS im Normalbetrieb?
Nothing outbound during packaging. The only optional online interaction is the update check against `https://miloch.dev/mas/updates/stable/`, which can be turned off entirely under Settings → Updates. Every packaging, signing, SCCM push and Intune upload happens against endpoints you configure — no MAS-controlled cloud sits in between. Telemetry, usage tracking, error-reporter-to-vendor are all absent from the codebase. Nichts nach außen während des Paketierens. Die einzige optionale Online-Interaktion ist der Update-Check gegen `https://miloch.dev/mas/updates/stable/`, komplett abschaltbar unter Einstellungen → Updates. Jede Paketierung, Signierung, jeder SCCM-Push und Intune-Upload läuft gegen die von dir konfigurierten Endpoints — dazwischen sitzt keine MAS-eigene Cloud. Telemetrie, Nutzungsverfolgung und automatische Fehlerberichte an den Hersteller fehlen komplett im Code.
Which SCCM and Intune versions are supported? Welche SCCM- und Intune-Versionen werden unterstützt?
SCCM: current-branch ConfigMgr from version 2309 onward via the ConfigMgr PowerShell provider that ships with the SCCM Admin Console. Older branches likely work but are not part of the smoke suite. Intune: the Microsoft Graph beta endpoint for Win32App creation and assignment; any tenant that supports Win32App deployment works. SCCM: Current-Branch-ConfigMgr ab Version 2309 über den ConfigMgr-PowerShell-Provider aus der SCCM-Admin-Konsole. Ältere Branches funktionieren wahrscheinlich, sind aber nicht Teil der Smoke-Suite. Intune: der Microsoft-Graph-Beta-Endpoint für Win32App-Erstellung und -Zuweisung; jeder Tenant mit Win32App-Deployment-Unterstützung funktioniert.
Is MAS a team platform? Ist MAS eine Team-Plattform?
No. MAS 2.0 is a single-machine tool for one packager, by design. Shared configuration, shared audit trails, headless service-mode automation, multi-tenant governance and centralised deploy pipelines are outside the scope on purpose — a solo-developer freeware project cannot carry that kind of complexity sustainably. Nein. MAS 2.0 ist bewusst ein Einzelplatz-Werkzeug für einen Packager. Shared-Config, geteilte Audit-Trails, Headless-Service-Automatisierung, Multi-Tenant-Governance und zentralisierte Deploy-Pipelines liegen bewusst außerhalb des Scopes — ein Solo-Freeware-Projekt kann diese Art von Komplexität nicht dauerhaft tragen.
Who develops MAS? Wer entwickelt MAS?
MAS is developed by an independent engineer with 25+ years of enterprise IT experience and more than a decade of primary work in software packaging and SCCM administration (profile). The product is built in-house, without external development partners or venture funding. MAS wird von einem unabhängigen Engineer mit 25+ Jahren Enterprise-IT-Erfahrung und über einem Jahrzehnt schwerpunktmäßiger Arbeit in Software-Paketierung und SCCM-Administration entwickelt (Profil). Die Entwicklung erfolgt eigenständig, ohne externe Entwicklungspartner oder Venture-Kapital.