# CMWTAT Digital Edition: a C# GUI for Windows 10 and 11 digital license activation

> CMWTAT Digital Edition is a GPL-2.0 C# desktop tool that activates Windows 10 and Windows 11 with a digital license. It is a single-exe download for Windows 11 and Windows 10, and its own README now leads with a compromise notice about the project website.

**TGSAN/CMWTAT_Digital_Edition** — CloudMoe Windows 10/11 Activation Toolkit get digital license, the best open source Win 10/11 activator in GitHub. GitHub 上最棒的开源 Win10/Win11 数字权利（数字许可证）激活工具！

- Repository: https://github.com/TGSAN/CMWTAT_Digital_Edition
- Website: https://cmwtat.cloudmoe.com
- Stars: 19,510 · Forks: 2,184
- Language: C#
- License: NOASSERTION
- Published: 2026-09-21 · Updated: 2026-09-21 · Language: en
- Canonical page: https://hysenlabs.com/projects/tgsan-cmwtat-digital-edition

## What CMWTAT Digital Edition is for, and who it is aimed at

CMWTAT Digital Edition is a Windows 10 and Windows 11 digital license activation tool written in C#. That sentence is the project's own description, and it defines the whole scope: the toolkit exists to give a Windows installation a digital license rather than a time-limited key. The repository topics name the targets directly (win-10, win-11, windows-10, windows-11, digital-license, activation-toolkit), so there is no ambiguity about the platform it serves.

The audience is narrower than the topic list suggests. This is not a volume licensing product for an IT department, and nothing in the README describes remote management, reporting or a server component. It is a desktop utility for someone sitting in front of a machine that needs activation. The fact that it is written in C# and ships a Windows executable matters here: the tool is a native Windows program, not a cross-platform script. If you administer Linux or macOS fleets, the project has nothing for you.

The project also carries a caution that most activation utilities do not: the README opens with a security announcement about its own website. That is unusual enough to shape how you should think about adoption, and it is covered below.

## How the activation mechanism is packaged in the repository

The repository layout tells you what kind of program this is. The top level holds a Visual Studio solution, CMWTAT_DIGITAL.sln, a project directory named CMWTAT_DIGITAL, a second project directory named SofwareLicenseManagerCLI, and a prebuilt binary, CMWTAT_Digital_Release_3_0_1_0.exe. There are also two PowerShell entry points, DirectRun.ps1 and CDNDirectRun.ps1, plus a _config.yml that points at the project site.

The name of the second project is the most informative detail. SofwareLicenseManagerCLI (the spelling is the repository's) suggests a command-line license manager sits beside the GUI application, which fits the separation you would expect: a CLI layer that handles license operations and a C# front end that wraps it. The README does not document that CLI's arguments, so anyone who wants to drive activation from a script has to read the source rather than the manual. That is a real gap, not a stylistic one.

The PowerShell scripts at the top level are named as direct-run helpers, and the CDN variant implies a download path through a content delivery network. The README does not document what either script fetches or where it fetches from. Given the security announcement about the project's mirrors, an undocumented download helper is the part of this repository I would read line by line before executing.

## Installing and running a first activation

The README does not give a build or install procedure. What it does give is the expected shape of a download: a normal CMWTAT download should be a standalone .exe file, or a ZIP archive containing only one .exe file. The repository itself carries a prebuilt binary at the top level, CMWTAT_Digital_Release_3_0_1_0.exe, matching release 3.0.1.0.

So the first step is verification, not installation. After downloading, inspect the archive contents before extracting anything. On Windows you can open the ZIP in Explorer and look at the file list; the README's rule is that the archive should hold a single .exe. If it shows an .msi file, the README is explicit: do not run it. The security announcement states that the site's Alibaba Cloud and Amazon Cloud mirrors were replaced with ZIP files containing malicious .msi installers, and that downloads from GitHub Releases are not confirmed to be affected by that incident. That makes the release page the safer of the two documented sources, though the README does not claim it is clean, only that it is not confirmed affected.

Once you have a verified executable, run it from a normal user session and follow the interface. The README includes a UI screenshot but no walkthrough of the buttons, so there is no documented sequence of clicks to reproduce here. If you prefer to build from source instead of trusting a binary, open CMWTAT_DIGITAL.sln in Visual Studio and build the CMWTAT_DIGITAL project; the README does not state a required .NET version, so check the project file rather than assuming one.

## The website compromise is the limitation that matters most

Most reviews of an activation tool would talk about detection or licensing terms. For CMWTAT Digital Edition, the documented risk sits one layer earlier, in distribution. The README's security announcement states that cmwtat.cloudmoe.com was compromised, that the attacker had been scanning the server for some time, and that the intrusion most likely began on the evening of August 10, 2026. Server file timestamps were falsified to show dates in 2025, which means a file's apparent age on that host was not trustworthy during the window.

The announcement also states that the official links have since been restored, and it credits @efojug for reporting the issue in Issue #115. Two things follow from this. First, the project's distribution channel has been a real attack surface, and the maintainer says the investigation into the exact upload time is still ongoing. Second, the README's own remedy is procedural: check that the archive contains one .exe and not an .msi.

There is a second, quieter limitation. The README does not document what the tool does to the system beyond the outcome of activation. It does not describe which Windows editions or builds are supported, what happens if activation fails partway, or how to reverse a change. The statement that deleting CMWTAT will not affect an activation that has already been completed is the closest thing to a rollback note, and it is a reassurance rather than a procedure. If you need documented reversibility, this project does not provide it.

## How CMWTAT Digital Edition compares with KMS-based activators

The obvious alternative category is KMS activation, and the difference is not cosmetic. A KMS-based tool points Windows at a key management service, which typically means activation is tied to a renewal cycle and to reachability of that service. CMWTAT Digital Edition is described as producing a digital license instead. A digital license is stored against the machine's hardware, which is why the README can state that removing the tool does not undo an activation and that the system will activate automatically after a reinstall.

That distinction changes what you are managing. With a KMS approach you are maintaining a dependency: something has to answer when Windows checks in. With a digital license, the dependency is the hardware fingerprint. Reinstalling the operating system on the same machine should not require running the tool again, according to the README. Replacing a motherboard is a different story, and the README does not address hardware changes at all.

The other difference is the shape of the software. CMWTAT Digital Edition is a C# desktop application with a graphical interface and a prebuilt .exe, which suits a person activating one machine. KMS tooling is more often scripted or server-side, which suits environments where many machines need the same treatment. If your problem is one workstation, the GUI is the shorter path. If your problem is a lab of thirty machines, neither the README nor the repository layout suggests CMWTAT was built for that.

## Licence, maintenance and what an upgrade costs you

The repository states GPL-2.0 in the README and ships a LICENSE file, while the repository metadata reports the licence as NOASSERTION. Those two signals disagree, and for anyone planning to redistribute a modified build the discrepancy is worth resolving by reading the LICENSE file itself rather than the badge. This is a description of what the repository says, not legal advice; if redistribution matters to your organisation, that question belongs with someone qualified to answer it.

On maintenance, the release history is the useful evidence. Versions 3.0.0.0 and 3.0.1.0 were published on 2026-08-02 and 2026-08-03, following 2.7.2.0 on 2024-11-25. The gap between those two points is roughly twenty months, so the project's release cadence has not been steady. The last push to the repository was on 2026-09-20, one day before this writing, and the repository is not archived. Recent activity is real, but the long quiet stretch before 3.0 should temper any assumption that fixes arrive quickly.

The upgrade cost is mostly in the download path. Every version bump means re-running the verification the README describes, because the compromise was in the distribution layer rather than the code. If you build from source, the cost is a Visual Studio toolchain and whatever .NET version the project files require, which the README does not state. There is no documented configuration file to migrate between versions and no documented state that persists, so an upgrade is close to a fresh download.

## Conclusion

Use CMWTAT Digital Edition if you administer your own Windows 10 or Windows 11 machine, want a graphical tool written in C#, and can verify the download is a standalone .exe or a ZIP holding exactly one .exe. Do not use it on hardware you do not own or on a machine where a licensing audit matters. Before running anything, check the archive contents and, if you build from source, confirm the CMWTAT_DIGITAL project settings against the release you intend to match.

## FAQ

### Can I activate Windows with a digital license using CMWTAT Digital Edition?

Yes. The project describes itself as a Windows 10 and Windows 11 digital license activation tool, so producing a digital license is the stated purpose. The README notes that deleting the tool afterwards does not affect an activation that has already been completed.

### What does it mean when Windows is activated with a digital license?

The README's own framing is that a completed activation survives the removal of CMWTAT and that the system will activate automatically after a reinstall. That behaviour is what separates a digital license from activation that depends on a service being reachable.

### Can I permanently activate Windows 10 for free with CMWTAT Digital Edition?

The README does not use the word permanent and does not discuss cost or licensing terms. It states that a completed activation is unaffected by deleting the tool, and that the system activates automatically after reinstallation, which is the closest the documentation comes to describing duration.

## Sources

- [Issues](https://github.com/TGSAN/CMWTAT_Digital_Edition/issues)
- [Project website](https://cmwtat.cloudmoe.com)
- [README](https://github.com/TGSAN/CMWTAT_Digital_Edition/blob/master/README.md)
- [Releases](https://github.com/TGSAN/CMWTAT_Digital_Edition/releases)
- [TGSAN/CMWTAT_Digital_Edition on GitHub](https://github.com/TGSAN/CMWTAT_Digital_Edition)

---

Hysen Labs editorial analysis, written from the project's own repository and release notes. Cite the canonical page: https://hysenlabs.com/projects/tgsan-cmwtat-digital-edition
