Skip to main content

macos-host-security

Durable research for building a macOS host-safety layer that protects a dev box from any AI agent or downloaded executable running on it — the primitives, prior art, the read-only-vs-privileged trust map, and the no-keyword-NLP secret-detection method behind Port Daddy's `pd safe` ("the AI little sniffer", ADR-0088). Covers Endpoint Security Framework (ESF) + eslogger, Network Extension (NEFilterDataProvider/DNS/transparent proxy), pf forced egress, code-trust CLIs (codesign/spctl/xattr), libproc/nettop/lsof read-only inventory, TCC + Full Disk Access, structured-format + Shannon-entropy secret scanning, and Santa-fronted binary lockdown. Activate on: "macOS host security", "endpoint security framework", "eslogger", "ESF AUTH_EXEC", "NEFilterDataProvider", "network extension", "system extension entitlement", "pf forced egress", "codesign trust", "quarantine xattr", "Full Disk Access", "TCC", "secret scanner", "gitleaks rules", "Shannon entropy detection", "Santa binary lockdown", "pd safe", "AI sniffer", "con

跳到安装

来源信息

仓库
curiositech/port-daddy
最近来源活动
2026年6月23日 09:46
检测到的 SKILL.md 语言
英语
星标
2
分支
0

安装方式

默认使用会先检查来源的 Prompt;你也可以切换为直接命令,或下载本地副本。

检查来源文件

决定是否安装前,请先阅读 SKILL.md,以及 SkillsMP 当前展示的配套文件。