Skip to main content

macos-host-security

Durable research for building a macOS host-safety layer that protects a dev box from any AI agent or downloaded executable running on it — the primitives, prior art, the read-only-vs-privileged trust map, and the no-keyword-NLP secret-detection method behind Port Daddy's `pd safe` ("the AI little sniffer", ADR-0088). Covers Endpoint Security Framework (ESF) + eslogger, Network Extension (NEFilterDataProvider/DNS/transparent proxy), pf forced egress, code-trust CLIs (codesign/spctl/xattr), libproc/nettop/lsof read-only inventory, TCC + Full Disk Access, structured-format + Shannon-entropy secret scanning, and Santa-fronted binary lockdown. Activate on: "macOS host security", "endpoint security framework", "eslogger", "ESF AUTH_EXEC", "NEFilterDataProvider", "network extension", "system extension entitlement", "pf forced egress", "codesign trust", "quarantine xattr", "Full Disk Access", "TCC", "secret scanner", "gitleaks rules", "Shannon entropy detection", "Santa binary lockdown", "pd safe", "AI sniffer", "con

الانتقال إلى التثبيت

معلومات المصدر

المستودع
curiositech/port-daddy
آخر نشاط في المصدر
٢٣ يونيو ٢٠٢٦ في ٠٩:٤٦
لغة SKILL.md المكتشفة
الإنجليزية
النجوم
٢
التفرعات
٠

خيارات التثبيت

يُحدَّد Prompt الذي يراجع المصدر أولًا بشكل افتراضي. يمكنك التبديل إلى أمر مباشر أو تنزيل نسخة محلية.

مراجعة ملفات المصدر

اقرأ SKILL.md وأي ملفات مرافقة يعرضها SkillsMP قبل أن تقرر التثبيت.