Skip to main content

macos-host-security

Durable research for building a macOS host-safety layer that protects a dev box from any AI agent or downloaded executable running on it — the primitives, prior art, the read-only-vs-privileged trust map, and the no-keyword-NLP secret-detection method behind Port Daddy's `pd safe` ("the AI little sniffer", ADR-0088). Covers Endpoint Security Framework (ESF) + eslogger, Network Extension (NEFilterDataProvider/DNS/transparent proxy), pf forced egress, code-trust CLIs (codesign/spctl/xattr), libproc/nettop/lsof read-only inventory, TCC + Full Disk Access, structured-format + Shannon-entropy secret scanning, and Santa-fronted binary lockdown. Activate on: "macOS host security", "endpoint security framework", "eslogger", "ESF AUTH_EXEC", "NEFilterDataProvider", "network extension", "system extension entitlement", "pf forced egress", "codesign trust", "quarantine xattr", "Full Disk Access", "TCC", "secret scanner", "gitleaks rules", "Shannon entropy detection", "Santa binary lockdown", "pd safe", "AI sniffer", "con

Aller à l'installation

Informations de source

Dépôt
curiositech/port-daddy
Dernière activité de la source
23 juin 2026 à 09:46
Langue détectée de SKILL.md
anglais
Étoiles
2
Forks
0

Options d'installation

Le prompt qui vérifie d'abord la source est sélectionné par défaut. Vous pouvez passer à une commande directe ou télécharger une copie locale.

Vérifiez les fichiers source

Lisez SKILL.md et les fichiers associés affichés par SkillsMP avant de décider de l'installer.