{
  "cells": {
    "vendor#little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.alerting": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "Little Snitch shows a connection alert when Alert Mode is active and an attempted connection is not covered by a rule, lets the user allow or deny it, and creates a matching rule for later attempts.",
      "fetch_event_id": "de6fbcc0-e8ee-538b-bb6b-740c725e065a",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "When Little Snitch encounters a connection attempt that is not yet covered by a rule and Alert Mode is active, it shows a connection alert, asking you whether to allow or deny the connection. Answering the alert creates a rule which matches the connection. The next time the connection is attempted, it is covered by the rule you just created and the rule determines whether to allow or deny it. Description — Name of the connecting process and remote server 1 . If an app uses a helper process to establish the connection, the name of this helper is shown next to the app name (e.g. “LaunchBar via ssh”). Depending on your detail level setting in Alert Settings , port number and connection protocol are shown as well. Rule lifetime — Rules can be automatically deleted at a later date. Choose “forever” or the event for which the rule should be deleted. Profile — Click to choose whether the rule should be created in the current profile or effective in all profiles. By default, rules are created in the current profile. This can be changed in Settings Alert Settings . Options — These options determine how specific the remote host is matched 2 . The set of options depends on the detail level setting in Alert Settings , but the full set is always available when the Details section is open. Click the domain name for a menu to choose between domain and host rules. Confirm — Decide whether to create an Allow- or Deny-rule. IAP — Internet Access Policy , if available for the process. Click this button to get more information about the purpose of the connection. Details — Click this button to reveal all technical details . Notes — Rules can be annotated. If you want to add a note, e.g. why or when the rule was created, click this button. Minimize — If you don’t want to handle the alert immediately, you can minimize it.",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "54a55538d556f147e48bb4649092e83a1aa6901d9a3c535693a39a89aacbd5df",
      "source_url": "https://help.obdev.at/littlesnitch6/alert-overview",
      "table": "vendor"
    },
    "vendor#little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.audit_report": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": null,
      "fetch_event_id": "14b863bf-e338-5d6d-ade2-ac89cdc47349",
      "pinpoint": null,
      "public_reason": "Not disclosed in the captured primary source.",
      "publish_status": "typed_unknown",
      "quote": null,
      "readiness": "verified_absence",
      "reason_code": "not_disclosed",
      "rendered": "badge",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "65357a3680d9110834d8af76fac5bb69c19a15fef8823e2ba79586bd3ba60842",
      "source_url": "https://www.obdev.at/products/littlesnitch/index.html",
      "table": "vendor"
    },
    "vendor#little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.deletion": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "Little Snitch says placing a product in the shopping cart sets a purchase-procedure cookie that enables temporary storage of entered shopping-cart and contact data, with the temporarily stored information deleted after no more than 24 hours.",
      "fetch_event_id": "fe70bd4f-2804-5cf4-b47b-6834494a4621",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "As soon as you place a product in the shopping cart, a cookie is set on your web browser. This cookie is necessary for the purchase procedure. It enables us to temporarily store the data you have entered (shopping cart, contact data). After 24 hours at the latest, the temporarily stored information is deleted.",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "ac09e387aa4433fb219327d40b44dddb1064e7c4111b57c79fba70b4ba48bc5e",
      "source_url": "https://www.obdev.at/privacy",
      "table": "vendor"
    },
    "vendor#little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.later_verification_triggers": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "Little Snitch says that if the location cannot be sufficiently determined from clues in the purchase process, such as the Internet address, it will request further documents, such as a copy of an ID card; the documents are stored for 30 days and deleted if no purchase is made, or kept for the 10-year legal retention period if a purchase is made.",
      "fetch_event_id": "b5d795b0-a17c-5897-89f2-1c1bd8edabcb",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "If this location cannot be sufficiently determined by clues from the purchase process (e.g. Internet address), we will request further documents (e.g. a copy of your ID card). These documents are initially stored for 30 days. If no purchase is made within these 30 days, we will delete the documents. If a purchase is made, we store it for the duration of the legal retention period of 10 years (§25 para. 12, Art. 25a para. 10 Austrian UStG).",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "ac09e387aa4433fb219327d40b44dddb1064e7c4111b57c79fba70b4ba48bc5e",
      "source_url": "https://www.obdev.at/privacy",
      "table": "vendor"
    },
    "vendor#little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "Little Snitch's vendor identifies Objective Development Software GmbH, states that Objective Development was founded in 2004 and is based in Vienna, and lists Commercial Court Vienna registration FN 244130 s.",
      "fetch_event_id": "6401732e-0120-51d8-8636-fed5b4c0d47b",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "Objective Development was founded in 2004 and is based in Vienna, Austria. We are a continuously growing team of talented enthusiasts, sharing their passion for programming, design, productivity and privacy to create powerful applications such as Little Snitch , Micro Snitch and LaunchBar . Programming Design Productivity Privacy Objective Development Software GmbH Grosse Schiffgasse 1A / 7 1020 Vienna, AUSTRIA - EUROPE Registered at the Commercial Court Vienna: FN 244130 s Company Objects: Development and distribution of computer software",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "42bffb5f6a978c73ef2db28f310657dbe021a544a5c08b0d863f26e501b878c5",
      "source_url": "https://www.obdev.at/about.html",
      "table": "vendor"
    },
    "vendor#little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.outbound_rule_model": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "Little Snitch rules match connection conditions and choose one action in each of three categories—filtering, notification, and hiding history from Network Monitor—with the most specific matching rule supplying each action.",
      "fetch_event_id": "410b3c66-18c9-520d-8b3a-4581d4d91809",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "Rules are the basic building blocks used to describe what to do with a connection. A rule consists of the following groups of properties: Condition properties : These properties determine whether the rule matches a given connection. Action property : This property determines what to do when the rule matches. Annotation properties : These properties keep track of when the rule was created or modified. They also contain a short text maintained by the user. Other properties : Miscellaneous other things. Rule actions fall into three categories: Filter actions: whether to allow or deny the connection or to ask the user. Notification actions: whether to play a sound or show a user notification. Hide from Network Monitor: whether to suppress recording of connection history in Network Monitor. A connection can be matched by more than one rule, but only one action in each category can be applied. Little Snitch chooses the action from the most specific matching rule in each action category. See the section about rule precedence below to learn what “more specific” means. Condition properties Connect direction Connections can be initiated by your local computer (outgoing connection, the usual case), or by a remote computer (incoming connections, primarily seen on servers). Regardless of which computer initiated the connection (local or remote), data is exchanged in both directions. A rule can be made to match only incoming, only outgoing or both types of connections. Process pair The process (usually an app) is the local endpoint of a connection. A rule can match a specific process, any process in a group of processes (e.g. all simulator processes or all processes which are part of the core Unix operating system) or any process. We talk about process pairs because processes initiating or receiving connections may do that on behalf of other processes. When you use ping in a Terminal window, rules for just “Terminal” will match, but you can be more specific and make a rule which requires “Terminal via ping”. Processes can be recognized: by their file system path, or by their code ID If a process is identifies by its path, Little Snitch can optionally verify the code identity (based on code signature ) to ensure that the program was not replaced. Process owner Processes have an owner who is usually the user who started the process. Rules can be made to match only for processes with a particular owner, or they can match any owner. The owner can also be the operating system (denoted as “System” by Little Snitch). System processes provide services to all users on the computer. Rules for system processes are therefore global. Technically speaking, Little Snitch treats all accounts with a user ID below 500 as system user, except 201 (which is the guest account) and -2 (nobody). System processes and rules for system processes are marked with a gear wheel icon: Server (remote computer) This property can be one of: A list of domains — Matches remote computers where Little Snitch knows the name and the name is in any of the domains listed. A list of hostnames — Matches remote computers where Little Snitch knows the name and the name is listed exactly. IP addresses — Matches remote computers by Internet address . This property can contain individual IPv4 and IPv6 addresses and ranges of these addresses. Local network — Matches computers on [private networks], Bonjour addresses and Broadcast addresses. Usually these are your printer, your router and other computers in your house. But be careful: In an Internet Café, it also matches the computers of all the other people in the café. Broadcast addresses — Matches an address in your local network which is used for broadcasts. Messages sent to this address can be received by all computers in the network. Primarily used to find resources in your local network. Bonjour addresses — Similar to Broadcast Addresses, used to find resources in your local network. Multicast addresses — Matches Internet addresses in a particular range which is used to send data to multiple computers not necessarily in your local network. Berkeley Packet Filter — The Berkeley Packet Filter is a low level service of the operating system which can be used to eavesdrop all network communication of your computer or even other computers in your network. It can also be used to inject and receive any type of network packets. While all of these options can be used to match outgoing connections, incoming connections cannot be matched by name or domain because the remote name is never known reliably. Protocol A rule can match on particular protocols only (such as TCP, UDP or ICMP) or on any protocol. Port Some protocols (notably UDP and TCP) allow multiple simultaneous connections between the same two computers. These connections are distinguished by port numbers . For outgoing connections, the rule matches if its port matches the connection’s remote port. For incoming connections, the rules’s port must match the local port where the connection is accepted. Rules can match either a single port or a range of port numbers (e.g. 137-139) or any port.",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "044bb2e2d31ce9b090658ddc1a06e7e01bbccec9cc2ba2f43b0612dee8d513d8",
      "source_url": "https://help.obdev.at/littlesnitch6/concepts-rules",
      "table": "vendor"
    },
    "vendor#little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.request_reporting": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": null,
      "fetch_event_id": "0c6bac76-9989-59d7-9552-91d931ad4191",
      "pinpoint": null,
      "public_reason": "Not disclosed in the captured primary source.",
      "publish_status": "typed_unknown",
      "quote": null,
      "readiness": "verified_absence",
      "reason_code": "not_disclosed",
      "rendered": "badge",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "ac09e387aa4433fb219327d40b44dddb1064e7c4111b57c79fba70b4ba48bc5e",
      "source_url": "https://www.obdev.at/privacy",
      "table": "vendor"
    },
    "vendor#little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.retention": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "Little Snitch says invoice data and VAT proof are retained for 10 years for EU customers outside Austria or seven years for others, while the license owner's name, email address, license keys, and purchase date are stored for the license-agreement term.",
      "fetch_event_id": "52bf6cda-ce12-5902-9525-17f27800a525",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "If payment is made within 30 days, we will issue a proper invoice and send you the license or gift card codes of the purchased products to the email address provided. We are legally obliged to keep all invoice data and proof of the applicable VAT rate for a certain period of time. This period is 10 years for customers from the EU (except Austria) (§25 para. 12, Art. 25a para. 10 Austrian UStG), or 7 years for all others, counted from the end of the year. The name and email address of the license owner, the purchased license keys and the date of purchase are also stored for the term of the license agreement. Data processing is carried out on the basis of the provisions of the GDPR Art. 6 para. 1 lit. b (necessity to fulfill the contract) and para. 1 lit. f (affected party is the customer, see recital 47 sentence 2 of the GDPR).",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "ac09e387aa4433fb219327d40b44dddb1064e7c4111b57c79fba70b4ba48bc5e",
      "source_url": "https://www.obdev.at/privacy",
      "table": "vendor"
    },
    "vendor#little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.reversibility": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "Little Snitch says moving its app to the Trash with Finder removes associated system extensions and helper tools but preserves configuration data and traffic history unless the Little Snitch folder in Application Support and the Little Snitch preference files in user defaults are also deleted.",
      "fetch_event_id": "21d000b4-95bc-532d-bd8b-b5a871150dd7",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "Uninstall Little Snitch In order to uninstall Little Snitch, just move the Little Snitch application from your Applications folder to the trash using Finder. That’s it. Finder takes care of removing the associated system extensions as well and Little Snitch cleans up after itself by removing any helper tools. IMPORTANT : Do not remove the Little Snitch app by any other means (like Terminal or some third party app-removal tool) because otherwise macOS won’t remove the Little Snitch system extension! If something went wrong Due to bugs in macOS, the uninstallation may fail in some rare cases, causing the Little Snitch system extensions to remain installed after moving the app to the trash. To recover from this situation, please do the following: Reinstall the current version of Little Snitch in your Applications folder (either by putting it back from the Trash or by downloading it from our website ). Start the app. Choose Help > Uninstall Little Snitch from the main menu. Quit the app and move it to the Trash in Finder. Wiping everything When you uninstall Little Snitch, your configuration data and traffic history is preserved. If you decide to reinstall Little Snitch at a later point, your rules and settings will still be in place. If you want to delete all the configuration and history data as well, delete /Library/Application Support/Objective Development/Little Snitch in Finder. Some less important settings are stored in the macOS user defaults. In order to delete them, remove the following files: ~/Library/Preferences/at.obdev.littlesnitch.plist ~/Library/Preferences/at.obdev.littlesnitch.agent.plist ~/Library/Preferences/at.obdev.littlesnitch.networkmonitor.plist ~/Library/Preferences/at.obdev.littlesnitch.softwareupdate.plist The ~ (tilde character) refers to your home folder.",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "608420566b779fe08b78cc204b7fceee201038ca268cd4c64c73859a33ba94b3",
      "source_url": "https://help.obdev.at/littlesnitch6/intro-uninstall",
      "table": "vendor"
    },
    "vendor#little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.scope_of_changes": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "Little Snitch runs locally as an application firewall, lets rules allow or deny connections per app, and can hold an uncovered connection while the user chooses whether to allow or deny it.",
      "fetch_event_id": "89d7eb4a-1c4a-53fa-b8a1-4404c480ebde",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "Little Snitch is a firewall Little Snitch runs locally on your computer and supervises network connections made to remote computers. It can deny particular connections based on rules . You create rules to enhance security and privacy. By allowing only connections needed by your current software, new (potential malware) programs cannot communicate without your explicit consent. By denying connections to servers known to collect analytics data, you prevent tracking of your behavior. Little Snitch is application based Little Snitch is an application firewall. This means that rules can distinguish between apps and allow one app a connection while they deny it for others. Little Snitch is interactive If a network connection is not yet covered by a firewall rule, Little Snitch can put it on hold and ask the user how to proceed. The user can then interactively create a rule to allow or deny the connection.",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "e5258af7639074f6150f3b1546885184f72fe208148a351c37bbc337b5388915",
      "source_url": "https://help.obdev.at/littlesnitch6/intro-whatis",
      "table": "vendor"
    },
    "vendor#little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.signup_identifiers": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "Little Snitch says checkout stores the buyer's name, address, email address, company name, VAT number, shopping cart, Internet address, and chosen payment method to issue an invoice with the applicable VAT rate.",
      "fetch_event_id": "f247c900-3a5f-52e2-8e4f-a022e5f47b97",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "If you proceed to checkout, your contact data (name, address, email address, company name, VAT number), the shopping cart, your Internet address and the payment method you have chosen will be stored with us. These data are necessary so that we can issue a proper invoice with the VAT rate applicable for you.",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "ac09e387aa4433fb219327d40b44dddb1064e7c4111b57c79fba70b4ba48bc5e",
      "source_url": "https://www.obdev.at/privacy",
      "table": "vendor"
    },
    "vendor#little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.source_availability": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "Objective Development says Little Snitch is proprietary software and that it thinks users should be able to test all features before buying and that a certain level of protection should be available free of charge for everyone.",
      "fetch_event_id": "00bd9bd2-9070-5a48-b91f-b57cd4e5e5f1",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "Although Little Snitch is proprietary software, we at Objective Development think (a) that you should be able to test all features of the software before you buy and (b) that a certain level of protection should be available free of charge for everyone.",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "e5258af7639074f6150f3b1546885184f72fe208148a351c37bbc337b5388915",
      "source_url": "https://help.obdev.at/littlesnitch6/intro-whatis",
      "table": "vendor"
    },
    "vendor#lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.alerting": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "LuLu says it blocks unknown outgoing connections on Macs.",
      "fetch_event_id": "175d6951-3a8d-5bff-a66d-c35de0ab829a",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "LuLu is a free, open-source firewall that blocks unknown outgoing connections, protecting your privacy and your Mac. Download v4.5.1 · macOS 10.15+ · Changelog · Source ·",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "455ebeee985c01332b612d9bc73051800b5c2ff41f5887a921d37511b6baf629",
      "source_url": "https://objective-see.org/products/lulu.html",
      "table": "vendor"
    },
    "vendor#lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.audit_report": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": null,
      "fetch_event_id": "aade2d4b-8b73-5d59-8216-5f188c52198a",
      "pinpoint": null,
      "public_reason": "Not disclosed in the captured primary source.",
      "publish_status": "typed_unknown",
      "quote": null,
      "readiness": "verified_absence",
      "reason_code": "not_disclosed",
      "rendered": "badge",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "455ebeee985c01332b612d9bc73051800b5c2ff41f5887a921d37511b6baf629",
      "source_url": "https://objective-see.org/products/lulu.html",
      "table": "vendor"
    },
    "vendor#lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.deletion": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "LuLu says users can quit or fully uninstall it from the status-bar menu and must authenticate to do either.",
      "fetch_event_id": "6c516ae9-8a72-5a38-b9dd-c32565f11b24",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "You can quit or fully uninstall LuLu via its status bar menu: To either exit or unistall Lulu, you will be required to authenticate:",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "455ebeee985c01332b612d9bc73051800b5c2ff41f5887a921d37511b6baf629",
      "source_url": "https://objective-see.org/products/lulu.html",
      "table": "vendor"
    },
    "vendor#lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.later_verification_triggers": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": null,
      "fetch_event_id": "e74e584f-2fc3-5586-9d07-aba5f73a6e4f",
      "pinpoint": null,
      "public_reason": "Not disclosed in the captured primary source.",
      "publish_status": "typed_unknown",
      "quote": null,
      "readiness": "verified_absence",
      "reason_code": "not_disclosed",
      "rendered": "badge",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "455ebeee985c01332b612d9bc73051800b5c2ff41f5887a921d37511b6baf629",
      "source_url": "https://objective-see.org/products/lulu.html",
      "table": "vendor"
    },
    "vendor#lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "For LuLu, the cited articles name Objective-See Foundation, Inc. as a nonprofit corporation formed under Hawaii law.",
      "fetch_event_id": "994bccfb-f836-5a6b-93f9-a9540ab77217",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "ARTICLES OF INCORPORATION OF OBJECTIVE-SEE FOUNDATION, INC. The undersigned, to form a nonprofit corporation under the laws of the State of Hawaii and to obtain the rights and benefits conferred by those laws upon a nonprofit corporation, make and execute the following Amended and Restated Articles of Incorporation (\"Articles\") under the Hawaii Nonprofit Corporations Act, Hawaii Revised Statutes, Chapter 414D. ARTICLE I NAME The name of the corporation shall be Objective-See Foundation, Inc. (hereafter referred to as the \"Corporation\").",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "ebf871842213e90477472db9e6a548687929aebc93b78f8d2bf252d3b6b24917",
      "source_url": "https://objective-see.org/downloads/foundation/Objective-See%20Foundation%20Articles.pdf",
      "table": "vendor"
    },
    "vendor#lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.outbound_rule_model": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "LuLu describes itself as a firewall that blocks unknown outgoing connections on Macs.",
      "fetch_event_id": "38178880-fdb2-5b2a-8783-4139000b59a9",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "LuLu is a free, open-source firewall that blocks unknown outgoing connections, protecting your privacy and your Mac. Download v4.5.1 · macOS 10.15+ · Changelog · Source ·",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "455ebeee985c01332b612d9bc73051800b5c2ff41f5887a921d37511b6baf629",
      "source_url": "https://objective-see.org/products/lulu.html",
      "table": "vendor"
    },
    "vendor#lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.request_reporting": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": null,
      "fetch_event_id": "b5fdfd43-e028-59fa-a232-f4f30db2128c",
      "pinpoint": null,
      "public_reason": "Not disclosed in the captured primary source.",
      "publish_status": "typed_unknown",
      "quote": null,
      "readiness": "verified_absence",
      "reason_code": "not_disclosed",
      "rendered": "badge",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "455ebeee985c01332b612d9bc73051800b5c2ff41f5887a921d37511b6baf629",
      "source_url": "https://objective-see.org/products/lulu.html",
      "table": "vendor"
    },
    "vendor#lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.retention": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "LuLu says a rule can last always, for the current process lifetime, or until a future time, when an expiring rule is deleted automatically.",
      "fetch_event_id": "947aab5a-7c4d-526e-9802-9b8aceab2fae",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "The 'Rule Duration' options allow you to specify whether the rule will last always, just for instance of this process' lifetime, or be valid up to some future time. Note: The 'Expires in' option expects an amount of time, in hours and minutes, that the rule should be valid until. When the specified time is hit, the rule is automatically deleted.",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "455ebeee985c01332b612d9bc73051800b5c2ff41f5887a921d37511b6baf629",
      "source_url": "https://objective-see.org/products/lulu.html",
      "table": "vendor"
    },
    "vendor#lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.reversibility": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "LuLu says users can quit or fully uninstall it from the status-bar menu and must authenticate to do either.",
      "fetch_event_id": "9cf8024a-6db8-5d8f-9bb8-14c207da8441",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "You can quit or fully uninstall LuLu via its status bar menu: To either exit or unistall Lulu, you will be required to authenticate:",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "455ebeee985c01332b612d9bc73051800b5c2ff41f5887a921d37511b6baf629",
      "source_url": "https://objective-see.org/products/lulu.html",
      "table": "vendor"
    },
    "vendor#lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.scope_of_changes": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "LuLu describes itself as a firewall that blocks unknown outgoing connections on Macs.",
      "fetch_event_id": "62761c5f-ad56-5a3c-87af-1bf26fa2e2b2",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "LuLu is a free, open-source firewall that blocks unknown outgoing connections, protecting your privacy and your Mac. Download v4.5.1 · macOS 10.15+ · Changelog · Source ·",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "455ebeee985c01332b612d9bc73051800b5c2ff41f5887a921d37511b6baf629",
      "source_url": "https://objective-see.org/products/lulu.html",
      "table": "vendor"
    },
    "vendor#lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.signup_identifiers": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "LuLu describes itself as a free, open-source firewall for macOS 10.15 and later, with version 4.5.1 listed for download.",
      "fetch_event_id": "16fcbafc-601c-5f18-99b2-b94c32c3e321",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "LuLu is a free, open-source firewall that blocks unknown outgoing connections, protecting your privacy and your Mac. Download v4.5.1 · macOS 10.15+ · Changelog · Source ·",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "455ebeee985c01332b612d9bc73051800b5c2ff41f5887a921d37511b6baf629",
      "source_url": "https://objective-see.org/products/lulu.html",
      "table": "vendor"
    },
    "vendor#lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.source_availability": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "LuLu describes itself as free and open source and links its source alongside the version 4.5.1 download.",
      "fetch_event_id": "b06a0956-cd2b-5263-b02e-78d1063bea1e",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "LuLu is a free, open-source firewall that blocks unknown outgoing connections, protecting your privacy and your Mac. Download v4.5.1 · macOS 10.15+ · Changelog · Source ·",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "455ebeee985c01332b612d9bc73051800b5c2ff41f5887a921d37511b6baf629",
      "source_url": "https://objective-see.org/products/lulu.html",
      "table": "vendor"
    },
    "vendor#macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.alerting": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "macOS displays an alert when a connection attempt targets an app that has not been added and allowed, and denies attempts until the user allows or denies the connection.",
      "fetch_event_id": "d1374f8f-1817-52a0-8871-e27b33ef9e4f",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "When your Mac detects an attempt to connect to an app you haven’t added to the list and given access to, an alert message appears asking if you want to allow or deny the connection over the network or internet. Until you take action, the message remains, and any attempts to connect to the app are denied.",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "6fec0e985c063341d37cd1c4bbc9e37f5a20b1c8f2e5b4e3a543bd945c202137",
      "source_url": "https://support.apple.com/guide/mac-help/block-connections-to-your-mac-with-a-firewall-mh34041/mac",
      "table": "vendor"
    },
    "vendor#macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.audit_report": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": null,
      "fetch_event_id": "8ee25d09-fbd0-57ed-88ab-f2d0315487d8",
      "pinpoint": null,
      "public_reason": "Not disclosed in the captured primary source.",
      "publish_status": "typed_unknown",
      "quote": null,
      "readiness": "verified_absence",
      "reason_code": "not_disclosed",
      "rendered": "badge",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "b52f68820c1ea891c34bba5b9f54ded6f1160fc72561d75fdf5c230c64f83e67",
      "source_url": "https://help.apple.com/pdf/security/en_US/apple-platform-security-guide.pdf",
      "table": "vendor"
    },
    "vendor#macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.deletion": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "Apple says customers may request deletion of personal data through its Data and Privacy page, subject to exceptions including legal recordkeeping and anti-fraud or security purposes.",
      "fetch_event_id": "91287302-268c-54c3-9f0c-b65b9e755a08",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "At Apple, we respect your ability to know, access, correct, transfer, restrict the processing of, and delete your personal data. We have provided these rights to our global customer base and if you choose to exercise these privacy rights, you have the right not to be treated in a discriminatory way nor to receive a lesser degree of service from Apple. Where you are requested to consent to the processing of your personal data by Apple, you have the right to withdraw your consent at any time.\nTo exercise your privacy rights and choices, including where a third-party service provider is acting on Apple’s behalf, visit the Apple Data and Privacy page at\nprivacy.apple.com\nfor Apple or\nshazam.com/privacy\nfor Shazam.\nTo help protect the security of your personal data, you must sign in to your account and your identity will be verified. If you want to obtain a copy of personal data that is not currently available from\nprivacy.apple.com\n, you can make a request at\napple.com/legal/privacy/contact\n. You also have the right to lodge a complaint with the applicable regulator.\nThere may be situations where we cannot grant your request — for example, if you ask us to delete your transaction data and Apple is legally obligated to keep a record of that transaction to comply with law. We may also decline to grant a request where doing so would undermine our legitimate use of data for anti-fraud and security purposes, such as when you request deletion of an account that is being investigated for security concerns. Other reasons your privacy request may be denied are if it jeopardizes the privacy of others, is frivolous or vexatious, or would be extremely impractical or unreasonable.",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "dbbad8a02adb6060887d387b0bb0dc85ba1220f813fddb84ab20eb78cb56c8b0",
      "source_url": "https://www.apple.com/legal/privacy/en-ww/",
      "table": "vendor"
    },
    "vendor#macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.later_verification_triggers": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "macOS Firewall settings let a user turn on the firewall to prevent unwanted connections from the internet or other networks.",
      "fetch_event_id": "db97a520-d573-51bd-aaaa-ff00c6da1ebf",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "On your Mac, use Firewall settings to turn on the firewall in macOS to prevent unwanted connections from the internet or other networks.",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "f15110d26e9c9a699617ff4886b5630b0c57c2ca00a31ffae3bc79eb1c9c14d8",
      "source_url": "https://support.apple.com/guide/mac-help/change-firewall-settings-on-mac-mh11783/mac",
      "table": "vendor"
    },
    "vendor#macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "Apple Inc. states a 2026 copyright notice.",
      "fetch_event_id": "d3feefda-209a-5c14-8dcc-4c4b8a71c1e3",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "Copyright © 2026 Apple Inc. All rights reserved.",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "6fec0e985c063341d37cd1c4bbc9e37f5a20b1c8f2e5b4e3a543bd945c202137",
      "source_url": "https://support.apple.com/guide/mac-help/block-connections-to-your-mac-with-a-firewall-mh34041/mac",
      "table": "vendor"
    },
    "vendor#macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.outbound_rule_model": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "macOS Firewall supports blocking all incoming connections, automatically allowing built-in or downloaded signed software, allowing or denying access by app, and preventing responses to ICMP probes and port scans.",
      "fetch_event_id": "1c47e337-f4b7-51ce-9677-db00ab38cb29",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "The following configurations are supported: • Block all incoming connections, regardless of app. • Automatically allow built-in software to receive incoming connections. • Automatically allow downloaded and signed software to receive incoming connections. • Add or deny access based on user-specified apps. • Prevent the Mac from responding to ICMP (Internet Control Message Protocol) probing and portscan requests.",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "b52f68820c1ea891c34bba5b9f54ded6f1160fc72561d75fdf5c230c64f83e67",
      "source_url": "https://help.apple.com/pdf/security/en_US/apple-platform-security-guide.pdf",
      "table": "vendor"
    },
    "vendor#macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.request_reporting": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "Apple says its transparency report provides information about government requests for customer data received globally.",
      "fetch_event_id": "8e2d79ff-4be7-537d-9a76-f5e7d9579145",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "Apple is committed to your privacy and being transparent\nabout government\nrequests for customer data globally. This report provides information on government\nrequests received.",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "36fbce99d74106d6029ed7fb9f665950a3f4bf9829e84e88ed6ecdac5648c68f",
      "source_url": "https://www.apple.com/legal/transparency/",
      "table": "vendor"
    },
    "vendor#macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.retention": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "Apple says it retains personal data only as long as necessary for the purposes for which it was collected or as required by law, and works to retain it for the shortest possible period permissible under law when retention is required.",
      "fetch_event_id": "63f53d29-4e3c-5cc8-b932-e64482351edf",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "Apple retains personal data only for so long as necessary to fulfill the purposes for which it was collected, including as described in this Privacy Policy or in our service-specific privacy notices, or as required by law. We will retain your personal data for the period necessary to fulfill the purposes outlined in this Privacy Policy and our service-specific privacy notices. When assessing retention periods, we first carefully examine whether it is necessary to retain the personal data collected and, if retention is required, work to retain the personal data for the shortest possible period permissible under law.",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "dbbad8a02adb6060887d387b0bb0dc85ba1220f813fddb84ab20eb78cb56c8b0",
      "source_url": "https://www.apple.com/legal/privacy/en-ww/",
      "table": "vendor"
    },
    "vendor#macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.reversibility": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "macOS lets a user add apps or services in Firewall options and choose whether to allow or block their connections, while warning that blocking may affect software performance.",
      "fetch_event_id": "faf29711-8374-5517-9436-998ea868fd73",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "To specify additional security settings, click Options, turn settings on or off, then click OK. See\nChange Firewall settings\n.\nSet firewall access for services and apps\nOn your Mac, choose Apple menu\n> System Settings, click Network\nin the sidebar, then click Firewall. (You may need to scroll down.)\nOpen Network settings for me\nClick Options.\nIf the Options button is disabled, first turn on Firewall.\nClick\nunder the list of applications and services, then select the apps or services you want to add. After an app or service is added, click its up and down arrows\nand choose whether to allow or block connections through the firewall.\nBlocking an app’s access through the firewall could interfere with or affect the performance of the app or other software that may depend on it.",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "6fec0e985c063341d37cd1c4bbc9e37f5a20b1c8f2e5b4e3a543bd945c202137",
      "source_url": "https://support.apple.com/guide/mac-help/block-connections-to-your-mac-with-a-firewall-mh34041/mac",
      "table": "vendor"
    },
    "vendor#macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.scope_of_changes": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "Apple says macOS includes a built-in firewall to protect the Mac from network access and denial-of-service attacks, configurable in system settings or through a firewall configuration profile.",
      "fetch_event_id": "59921456-087f-548f-ab28-e8714bbb139a",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "macOS includes a built-in firewall to protect the Mac from network access and denial-of-service attacks. It can be configured by going to System Settings > Privacy & Security (macOS 13 or later), the Security & Privacy pane of System Preferences (macOS 12 or earlier), or by using a configuration profile with the Firewall payload installed manually or provided by a device management service. The following configurations are supported: • Block all incoming connections, regardless of app. • Automatically allow built-in software to receive incoming connections. • Automatically allow downloaded and signed software to receive incoming connections. • Add or deny access based on user-specified apps. • Prevent the Mac from responding to ICMP (Internet Control Message Protocol) probing and portscan requests.",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "b52f68820c1ea891c34bba5b9f54ded6f1160fc72561d75fdf5c230c64f83e67",
      "source_url": "https://help.apple.com/pdf/security/en_US/apple-platform-security-guide.pdf",
      "table": "vendor"
    },
    "vendor#macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.signup_identifiers": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "macOS lets a user turn on Firewall in System Settings under Network.",
      "fetch_event_id": "4058411f-75cd-59fb-9e08-5f4b38583cb8",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "On your Mac, choose Apple menu\n> System Settings, click Network\nin the sidebar, then click Firewall. (You may need to scroll down.)\nOpen Network settings for me\nTurn on Firewall.",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "6fec0e985c063341d37cd1c4bbc9e37f5a20b1c8f2e5b4e3a543bd945c202137",
      "source_url": "https://support.apple.com/guide/mac-help/block-connections-to-your-mac-with-a-firewall-mh34041/mac",
      "table": "vendor"
    },
    "vendor#macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.source_availability": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "Apple says macOS includes a built-in firewall to protect the Mac from network access and denial-of-service attacks.",
      "fetch_event_id": "f170ac75-ea2b-5b46-86bc-039405206712",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "macOS includes a built-in firewall to protect the Mac from network access and denial-of-service attacks.",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "b52f68820c1ea891c34bba5b9f54ded6f1160fc72561d75fdf5c230c64f83e67",
      "source_url": "https://help.apple.com/pdf/security/en_US/apple-platform-security-guide.pdf",
      "table": "vendor"
    },
    "vendor#objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.alerting": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "Objective-See says BlockBlock starts automatically when the computer restarts, aims to detect installed persistent software, and displays an informative alert.",
      "fetch_event_id": "7d883f56-e7e9-5933-b667-f8e8e512c482",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "Once installed, BlockBlock will begin running and will be automatically started any time your computer is restarted, thus providing continual protection. If anything installs a persistent piece of software, BlockBlock aims to detect this and will display an informative alert:",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "cbf8d5f2bd6e7295a071490ef0706ec807e3a8cda0c20baffc005893adef31aa",
      "source_url": "https://objective-see.org/products/blockblock.html",
      "table": "vendor"
    },
    "vendor#objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.audit_report": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": null,
      "fetch_event_id": "cdfba5b0-c2e0-5a14-a754-2e3e66b661f2",
      "pinpoint": null,
      "public_reason": "Not disclosed in the captured primary source.",
      "publish_status": "typed_unknown",
      "quote": null,
      "readiness": "verified_absence",
      "reason_code": "not_disclosed",
      "rendered": "badge",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "df3c97510ac41ab7090957c75478e1bfc661be250e4e09635b977107a3f50ce3",
      "source_url": "https://objective-see.org/about.html",
      "table": "vendor"
    },
    "vendor#objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.deletion": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "Objective-See says BlockBlock's status-bar menu launches an uninstaller that completely removes BlockBlock.",
      "fetch_event_id": "f4205e52-1468-55d4-a198-20f8cef05e6f",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "To uninstall BlockBlock, click on 'Uninstall BlockBlock' in BlockBlock's status bar menu: This will launch the uninstaller. Click 'Uninstall' to completely remove BlockBlock:",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "cbf8d5f2bd6e7295a071490ef0706ec807e3a8cda0c20baffc005893adef31aa",
      "source_url": "https://objective-see.org/products/blockblock.html",
      "table": "vendor"
    },
    "vendor#objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.later_verification_triggers": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": null,
      "fetch_event_id": "54b8b928-1141-5f1c-b95c-00ecf0c6b9b2",
      "pinpoint": null,
      "public_reason": "Not disclosed in the captured primary source.",
      "publish_status": "typed_unknown",
      "quote": null,
      "readiness": "verified_absence",
      "reason_code": "not_disclosed",
      "rendered": "badge",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "455ebeee985c01332b612d9bc73051800b5c2ff41f5887a921d37511b6baf629",
      "source_url": "https://objective-see.org/products/lulu.html",
      "table": "vendor"
    },
    "vendor#objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "Objective-See's 2025 IRS Form 990 lists OBJECTIVE-SEE FOUNDATION INC as the organization's name.",
      "fetch_event_id": "afed716d-9da2-559a-8c30-c7a7e3653bfd",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "C Name of organization OBJECTIVE-SEE FOUNDATION INC",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "8b3a950dc09d8e5d2bf1406453878c11a536843512341ac26febc2a74118368d",
      "source_url": "https://objective-see.org/downloads/foundation/2025-990.pdf",
      "table": "vendor"
    },
    "vendor#objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.outbound_rule_model": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "Objective-See describes LuLu v4.5.1 for macOS 10.15+ as a free, open-source firewall that blocks unknown outgoing connections.",
      "fetch_event_id": "508efa87-598c-56b8-a97c-63746f79c7c3",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "LuLu is a free, open-source firewall that blocks unknown outgoing connections, protecting your privacy and your Mac. Download v4.5.1 · macOS 10.15+ · Changelog · Source ·",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "455ebeee985c01332b612d9bc73051800b5c2ff41f5887a921d37511b6baf629",
      "source_url": "https://objective-see.org/products/lulu.html",
      "table": "vendor"
    },
    "vendor#objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.request_reporting": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": null,
      "fetch_event_id": "1fe9c71b-bc10-5485-9636-01cdee61c4da",
      "pinpoint": null,
      "public_reason": "Not disclosed in the captured primary source.",
      "publish_status": "typed_unknown",
      "quote": null,
      "readiness": "verified_absence",
      "reason_code": "not_disclosed",
      "rendered": "badge",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "df3c97510ac41ab7090957c75478e1bfc661be250e4e09635b977107a3f50ce3",
      "source_url": "https://objective-see.org/about.html",
      "table": "vendor"
    },
    "vendor#objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.retention": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "Objective-See says BlockBlock logs all alert responses to `/Library/Objective-See/BlockBlock/BlockBlock.log`.",
      "fetch_event_id": "d0df79fc-03b1-5d37-8011-5038c29f5e82",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "All alert responses, are logged to: /Library/Objective-See/BlockBlock/BlockBlock.log .",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "cbf8d5f2bd6e7295a071490ef0706ec807e3a8cda0c20baffc005893adef31aa",
      "source_url": "https://objective-see.org/products/blockblock.html",
      "table": "vendor"
    },
    "vendor#objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.reversibility": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "Objective-See says BlockBlock's status-bar menu launches an uninstaller that completely removes BlockBlock.",
      "fetch_event_id": "3fae6505-d784-5c5d-8802-fb65385d2960",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "To uninstall BlockBlock, click on 'Uninstall BlockBlock' in BlockBlock's status bar menu: This will launch the uninstaller. Click 'Uninstall' to completely remove BlockBlock:",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "cbf8d5f2bd6e7295a071490ef0706ec807e3a8cda0c20baffc005893adef31aa",
      "source_url": "https://objective-see.org/products/blockblock.html",
      "table": "vendor"
    },
    "vendor#objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.scope_of_changes": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "Objective-See describes LuLu v4.5.1 for macOS 10.15+ as a free, open-source firewall that blocks unknown outgoing connections.",
      "fetch_event_id": "f4ea86c1-3a01-5309-91f0-5fe27280288e",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "LuLu is a free, open-source firewall that blocks unknown outgoing connections, protecting your privacy and your Mac. Download v4.5.1 · macOS 10.15+ · Changelog · Source ·",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "455ebeee985c01332b612d9bc73051800b5c2ff41f5887a921d37511b6baf629",
      "source_url": "https://objective-see.org/products/lulu.html",
      "table": "vendor"
    },
    "vendor#objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.signup_identifiers": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": null,
      "fetch_event_id": "8e39c81f-db33-57fd-839f-7cb27f5770f0",
      "pinpoint": null,
      "public_reason": "Not disclosed in the captured primary source.",
      "publish_status": "typed_unknown",
      "quote": "LuLu is a free, open-source firewall that blocks unknown outgoing connections, protecting your privacy and your Mac. Download v4.5.1 · macOS 10.15+ · Changelog · Source ·",
      "readiness": "verified_absence",
      "reason_code": "not_disclosed",
      "rendered": "badge",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "455ebeee985c01332b612d9bc73051800b5c2ff41f5887a921d37511b6baf629",
      "source_url": "https://objective-see.org/products/lulu.html",
      "table": "vendor"
    },
    "vendor#objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.source_availability": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "vendor_stated",
      "display": "Objective-See says all tools are open source and points to its GitHub page.",
      "fetch_event_id": "d7b6fbe4-daa3-5820-affc-67957b1d6ee9",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "All tools are open-source: https://github.com/objective-see .",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S5",
      "source_sha256": "22eb147ad411639e3f24e01ca0930ee99c513a3ea4872b8f07acc48300b58392",
      "source_url": "https://objective-see.org/tools.html",
      "table": "vendor"
    },
    "vendor#privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.alerting": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "public_record",
      "display": "privacy.sexy says its desktop and web versions receive updates deployed from source code, while macOS desktop updates may require users to finish installation manually.",
      "fetch_event_id": "adcd6a07-d694-5e1d-a655-05ff21f2ee56",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "### Auto-updates\n\nBoth the desktop and web versions of privacy.sexy provide timely access to the latest features and security improvements. The updates are automatically deployed from source code, reflecting the latest changes for enhanced security and reliability. For more details, see [CI/CD documentation](./../ci-cd.md).\n\nThe desktop version ensures secure delivery through cryptographic signatures and version checks.\n\n[Security is a top priority](./../../SECURITY.md#update-security-and-integrity) at privacy.sexy.\n\n> **Note for macOS users:**\n> On macOS, the desktop version's auto-update process involves manual steps due to Apple's code signing costs.\n> Users get notified about updates but might need to complete the installation manually.\n> Updater stores update installation files temporarily at `$HOME/Library/Application Support/privacy.sexy/updates`.\n> Consider [donating](https://github.com/sponsors/undergroundwires) to help improve this process ❤️.",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S4",
      "source_sha256": "26689e256c89bb91dafc7d34880b09f117ea653029eac7d2a330c552ac32ddbf",
      "source_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/docs/desktop/desktop-vs-web-features.md",
      "table": "vendor"
    },
    "vendor#privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.audit_report": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "public_record",
      "display": null,
      "fetch_event_id": "26613ee4-6435-5798-a1c7-0103916cc367",
      "pinpoint": null,
      "public_reason": "Not disclosed in the captured primary source.",
      "publish_status": "typed_unknown",
      "quote": null,
      "readiness": "verified_absence",
      "reason_code": "not_disclosed",
      "rendered": "badge",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S4",
      "source_sha256": "c7cc89b6aabfb779189e69259ac471c9addecc80652bcaa8dfe49328accd6794",
      "source_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/docs/tests.md",
      "table": "vendor"
    },
    "vendor#privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.deletion": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "public_record",
      "display": "privacy.sexy says its desktop version keeps activity logs and script-execution history in operating-system-specific directories and provides scripts to securely erase both.",
      "fetch_event_id": "b21e967b-7158-5cef-872a-b05783b40a77",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "### Logging\n\nThe desktop version supports logging of activities to aid in troubleshooting.\nThis feature is not available in the web version.\n\nLog file locations vary by operating system:\n\n- macOS: `$HOME/Library/Logs/privacy.sexy`\n- Linux: `$HOME/.config/privacy.sexy/logs`\n- Windows: `%APPDATA%\\privacy.sexy\\logs`\n\n> 💡 privacy.sexy provides scripts to securely erase these logs.\n\n### Secure script execution/storage\n\nThe desktop version of privacy.sexy enables direct script execution, providing a seamless and integrated experience.\nThis direct execution capability isn't available in the web version due to inherent browser restrictions.\n\n**Script execution history:**\n\nFor enhanced auditability and easier troubleshooting, the desktop version keeps a record of executed scripts in designated directories.\nThese locations vary based on the operating system:\n\n- macOS: `$HOME/Library/Application Support/privacy.sexy/runs`\n- Linux: `$HOME/.config/privacy.sexy/runs`\n- Windows: `%APPDATA%\\privacy.sexy\\runs`\n\n> 💡 privacy.sexy provides scripts to securely erase your script execution history.\n\n**Script antivirus scans:**\n\nTo enhance system protection, the desktop version of privacy.sexy automatically verifies the security of script\nexecution files by reading them back.\nThis process triggers antivirus scans to verify that scripts are safe before the execution.\n\n**Script integrity checks:**\n\nThe desktop version of privacy.sexy implements robust integrity checks for both script execution and storage.\nFeaturing tamper protection, the application actively verifies the integrity of script files before executing or saving them.\nIf the actual contents of a script file do not align with the expected contents, the application refuses to execute or save the script.\nThis proactive approach ensures only unaltered and verified scripts undergo processing, thereby enhancing both security and reliability.\n\n**Error handling:**\n\nThe desktop version of privacy.sexy features advanced error handling capabilities.\nIn scenarios where script execution or storage encounters failure, the desktop application initiates automated troubleshooting and self-healing processes.\nIt employs robust and reliable execution strategies, including self-healing mechanisms, and provides guidance and troubleshooting information to resolve issues effectively.\nThis proactive error handling and user guidance enhances the application's security and reliability.",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S4",
      "source_sha256": "26689e256c89bb91dafc7d34880b09f117ea653029eac7d2a330c552ac32ddbf",
      "source_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/docs/desktop/desktop-vs-web-features.md",
      "table": "vendor"
    },
    "vendor#privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.later_verification_triggers": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "public_record",
      "display": "privacy.sexy is available online and as offline downloads for Windows, macOS, and Linux.",
      "fetch_event_id": "4a8f2d4a-64f9-5359-b918-d376c71f0454",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "## Get started\n\n- 🌍️ **Online**: [https://privacy.sexy](https://privacy.sexy).\n- 🖥️ **Offline**: Download directly for: [Windows](https://github.com/undergroundwires/privacy.sexy/releases/download/0.13.8/privacy.sexy-Setup-0.13.8.exe), [macOS](https://github.com/undergroundwires/privacy.sexy/releases/download/0.13.8/privacy.sexy-0.13.8.dmg), [Linux](https://github.com/undergroundwires/privacy.sexy/releases/download/0.13.8/privacy.sexy-0.13.8.AppImage). For more options, see [here](#additional-install-options).",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S4",
      "source_sha256": "e994cbc18a1a1821e286c75eb26ac5a5226826b01ca5ccd6b8208615eafd4003",
      "source_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/README.md",
      "table": "vendor"
    },
    "vendor#privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "public_record",
      "display": "privacy.sexy's package identifies undergroundwires as its author.",
      "fetch_event_id": "3eeb996f-eceb-5aed-8d36-e9472af7f6ce",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "{\n  \"name\": \"privacy.sexy\",\n  \"version\": \"0.13.8\",\n  \"private\": true,\n  \"slogan\": \"Privacy is sexy\",\n  \"description\": \"Enforce privacy & security best-practices on Windows, macOS and Linux, because privacy is sexy.\",\n  \"author\": \"undergroundwires\",",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S4",
      "source_sha256": "c8b224b262ec3a81d19aaa66bf58021e5bbace7c1ce62146b3c5667fcab2ea24",
      "source_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/package.json",
      "table": "vendor"
    },
    "vendor#privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.outbound_rule_model": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "public_record",
      "display": "privacy.sexy says its scripts are independently executable and provide visibility into what each tweak does.",
      "fetch_event_id": "3a4ce355-2674-5c2a-8a5d-868f784d08da",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "## Features\n\n- **Rich**: Hundreds of scripts that aims to give you control of your data.\n- **Free**: Both free as in \"beer\" and free as in \"speech\".\n- **Transparent**. Have full visibility into what the tweaks do as you enable them.\n- **Reversible**. Revert if something feels wrong.\n- **Accessible**. No need to run any compiled software on your computer with web version.\n- **Secure**: Security is a top priority at privacy.sexy with [comprehensive safeguards](./SECURITY.md#security-practices) in place.\n- **Open**. What you see as code in this repository is what you get. The application itself, its infrastructure and deployments are open-source and automated thanks to [bump-everywhere](https://github.com/undergroundwires/bump-everywhere).\n- **Tested**. A lot of tests. Automated and manual. Community-testing and verification. Stability improvements comes before new features.\n- **Extensible**. Effortlessly [extend scripts](./CONTRIBUTING.md#extend-scripts) with a custom designed [templating language](./docs/templating.md).\n- **Portable and simple**. Every script is independently executable without cross-dependencies.",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S4",
      "source_sha256": "e994cbc18a1a1821e286c75eb26ac5a5226826b01ca5ccd6b8208615eafd4003",
      "source_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/README.md",
      "table": "vendor"
    },
    "vendor#privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.request_reporting": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "public_record",
      "display": "privacy.sexy invites contributions and directs contributors to its CONTRIBUTING guide.",
      "fetch_event_id": "4cdf2c11-a3c3-5943-a950-02358e753642",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "## Support\n\n**Sponsor 💕**. Consider sponsoring on [GitHub Sponsors](https://github.com/sponsors/undergroundwires), or you can donate using [other ways such as crypto or a coffee](https://undergroundwires.dev/donate).\n\n**Star 🤩**. Feel free to give it a star ⭐ .\n\n**Contribute 👷**. Contributions of any type are welcome. See [CONTRIBUTING.md](./CONTRIBUTING.md) as the starting point. It includes useful information like [how to add new scripts](./CONTRIBUTING.md#extend-scripts).",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S4",
      "source_sha256": "e994cbc18a1a1821e286c75eb26ac5a5226826b01ca5ccd6b8208615eafd4003",
      "source_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/README.md",
      "table": "vendor"
    },
    "vendor#privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.retention": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "public_record",
      "display": "privacy.sexy says its desktop version keeps activity logs and script-execution history in operating-system-specific directories and provides scripts to securely erase both.",
      "fetch_event_id": "d0f09707-8a2f-597a-bbd6-375136d6225f",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "### Logging\n\nThe desktop version supports logging of activities to aid in troubleshooting.\nThis feature is not available in the web version.\n\nLog file locations vary by operating system:\n\n- macOS: `$HOME/Library/Logs/privacy.sexy`\n- Linux: `$HOME/.config/privacy.sexy/logs`\n- Windows: `%APPDATA%\\privacy.sexy\\logs`\n\n> 💡 privacy.sexy provides scripts to securely erase these logs.\n\n### Secure script execution/storage\n\nThe desktop version of privacy.sexy enables direct script execution, providing a seamless and integrated experience.\nThis direct execution capability isn't available in the web version due to inherent browser restrictions.\n\n**Script execution history:**\n\nFor enhanced auditability and easier troubleshooting, the desktop version keeps a record of executed scripts in designated directories.\nThese locations vary based on the operating system:\n\n- macOS: `$HOME/Library/Application Support/privacy.sexy/runs`\n- Linux: `$HOME/.config/privacy.sexy/runs`\n- Windows: `%APPDATA%\\privacy.sexy\\runs`\n\n> 💡 privacy.sexy provides scripts to securely erase your script execution history.\n\n**Script antivirus scans:**\n\nTo enhance system protection, the desktop version of privacy.sexy automatically verifies the security of script\nexecution files by reading them back.\nThis process triggers antivirus scans to verify that scripts are safe before the execution.\n\n**Script integrity checks:**\n\nThe desktop version of privacy.sexy implements robust integrity checks for both script execution and storage.\nFeaturing tamper protection, the application actively verifies the integrity of script files before executing or saving them.\nIf the actual contents of a script file do not align with the expected contents, the application refuses to execute or save the script.\nThis proactive approach ensures only unaltered and verified scripts undergo processing, thereby enhancing both security and reliability.\n\n**Error handling:**\n\nThe desktop version of privacy.sexy features advanced error handling capabilities.\nIn scenarios where script execution or storage encounters failure, the desktop application initiates automated troubleshooting and self-healing processes.\nIt employs robust and reliable execution strategies, including self-healing mechanisms, and provides guidance and troubleshooting information to resolve issues effectively.\nThis proactive error handling and user guidance enhances the application's security and reliability.",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S4",
      "source_sha256": "26689e256c89bb91dafc7d34880b09f117ea653029eac7d2a330c552ac32ddbf",
      "source_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/docs/desktop/desktop-vs-web-features.md",
      "table": "vendor"
    },
    "vendor#privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.reversibility": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "public_record",
      "display": "privacy.sexy documentation says an inline script can include revertCode to reverse changes made by code.",
      "fetch_event_id": "6980e0fa-7e68-54c6-9323-79f1035221e6",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "### Executables\n\nThey represent independently executable actions with documentation and reversibility.\n\nAn Executable is a logical entity that can\n\n- execute once compiled,\n- include a `docs` property for documentation.\n\nIt's either [Category](#category) or a [Script](#script).\n\n#### `Category`\n\nRepresents a logical group of scripts and subcategories.\n\n##### `Category` syntax\n\n- `category:` *`string`*  **(required)**\n  - Name of the category.\n  - ❗ Must be unique throughout the [collection](#collection).\n- `children: [` ***[`Category`](#category)*** `|` [***`Script`***](#script) `, ... ]` **(required)**\n  - ❗ Category must consist of at least one subcategory or script.\n  - Children can be combination of scripts and subcategories.\n- `docs`: *`string`* | `[`*`string`*`, ... ]`\n  - Markdown-formatted documentation related to the category.\n\n#### `Script`\n\nRepresents an individual tweak.\n\nTypes (like [functions](#function)):\n\n1. Inline script:\n   - Direct code.\n   - ❗ Requires `code` and optional `revertCode`.\n2. Caller script:\n   - Calls other [functions](#function).\n   - ❗ Requires `call`, but not `code` or `revertCode`.\n\n📖 For detailed guidelines, see [Script Guidelines](./script-guidelines.md).\n\n##### `Script` syntax\n\n- `name`: *`string`* **(required)**\n  - Script name.\n  - ❗ Must be unique throughout the [Collection](#collection).\n- `code`: *`string`* **(conditionally required)**\n  - Code to execute when the user selects the script.\n  - 💡 If defined, it's best practice to also define `revertCode`.\n  - ❗ Cannot co-exist with `call`, define either `code` with optional `revertCode` or `call`.\n- `revertCode`: *`string`*\n  - Reverts changes made by `code`.\n  - ❗ Cannot co-exist with `call`, define `revertCode` with `code` or `call`.\n- `call`: ***[`FunctionCall`](#functioncall)*** | `[` ***[`FunctionCall`](#functioncall)*** `, ... ]` **(conditionally required)**\n  - A shared function or sequence of functions to call (called in order).\n  - ❗ Cannot co-exist with `code` or `revertCode`, define `code` with optional `revertCode` or `call`.\n- `docs`: *`string`* | `[`*`string`*`, ... ]`\n  - Markdown-formatted documentation related to the script.\n- `recommend`: *`\"standard\"`* | *`\"strict\"`* | *`undefined`* (default: `undefined`)\n  - Sets recommendation level.\n  - Application will not recommend the script if `undefined`.\n\n📖 For detailed guidelines, see [Script Guidelines](./script-guidelines.md).",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S4",
      "source_sha256": "5e1bd2943e4d80bee87085e7936eee093827b5a4e7c8a69096eb9b5b09431adf",
      "source_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/docs/collection-files.md",
      "table": "vendor"
    },
    "vendor#privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.scope_of_changes": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "public_record",
      "display": "privacy.sexy describes hundreds of transparent, reversible scripts intended to give users control of their data.",
      "fetch_event_id": "07bb8226-91b2-53d2-b9e0-e96b003cb1fc",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "## Features\n\n- **Rich**: Hundreds of scripts that aims to give you control of your data.\n- **Free**: Both free as in \"beer\" and free as in \"speech\".\n- **Transparent**. Have full visibility into what the tweaks do as you enable them.\n- **Reversible**. Revert if something feels wrong.\n- **Accessible**. No need to run any compiled software on your computer with web version.\n- **Secure**: Security is a top priority at privacy.sexy with [comprehensive safeguards](./SECURITY.md#security-practices) in place.\n- **Open**. What you see as code in this repository is what you get. The application itself, its infrastructure and deployments are open-source and automated thanks to [bump-everywhere](https://github.com/undergroundwires/bump-everywhere).\n- **Tested**. A lot of tests. Automated and manual. Community-testing and verification. Stability improvements comes before new features.\n- **Extensible**. Effortlessly [extend scripts](./CONTRIBUTING.md#extend-scripts) with a custom designed [templating language](./docs/templating.md).\n- **Portable and simple**. Every script is independently executable without cross-dependencies.",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S4",
      "source_sha256": "e994cbc18a1a1821e286c75eb26ac5a5226826b01ca5ccd6b8208615eafd4003",
      "source_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/README.md",
      "table": "vendor"
    },
    "vendor#privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.signup_identifiers": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "public_record",
      "display": "privacy.sexy is available online and as offline downloads for Windows, macOS, and Linux.",
      "fetch_event_id": "9f28cd0e-944a-5545-a668-543f8f4daf01",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "## Get started\n\n- 🌍️ **Online**: [https://privacy.sexy](https://privacy.sexy).\n- 🖥️ **Offline**: Download directly for: [Windows](https://github.com/undergroundwires/privacy.sexy/releases/download/0.13.8/privacy.sexy-Setup-0.13.8.exe), [macOS](https://github.com/undergroundwires/privacy.sexy/releases/download/0.13.8/privacy.sexy-0.13.8.dmg), [Linux](https://github.com/undergroundwires/privacy.sexy/releases/download/0.13.8/privacy.sexy-0.13.8.AppImage). For more options, see [here](#additional-install-options).",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S4",
      "source_sha256": "e994cbc18a1a1821e286c75eb26ac5a5226826b01ca5ccd6b8208615eafd4003",
      "source_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/README.md",
      "table": "vendor"
    },
    "vendor#privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.source_availability": {
      "additional_sources": null,
      "capture_date": "2026-10-06",
      "claim_type": "public_record",
      "display": "privacy.sexy's package identifies version 0.13.8 and undergroundwires as its author.",
      "fetch_event_id": "4a7f2e9d-f103-5805-ba5e-edcbdacf6abf",
      "pinpoint": null,
      "public_reason": null,
      "publish_status": "publish_ready",
      "quote": "{\n  \"name\": \"privacy.sexy\",\n  \"version\": \"0.13.8\",\n  \"private\": true,\n  \"slogan\": \"Privacy is sexy\",\n  \"description\": \"Enforce privacy & security best-practices on Windows, macOS and Linux, because privacy is sexy.\",\n  \"author\": \"undergroundwires\",",
      "readiness": "ready",
      "reason_code": null,
      "rendered": "value",
      "snapshot_path": null,
      "snapshot_resolved": false,
      "source_class": "S4",
      "source_sha256": "c8b224b262ec3a81d19aaa66bf58021e5bbace7c1ce62146b3c5667fcab2ea24",
      "source_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/package.json",
      "table": "vendor"
    }
  },
  "class": "MAGNET",
  "content_file_sha256": "41c29149c0c56b602e39c2b6ca6d0a006ccf083dc3ddb4b39ed6949c635d5e53",
  "figure_slots": [],
  "generator": "page-generator/1",
  "held": {
    "cells": [],
    "counts": {
      "gap": 0,
      "no_quote": 0,
      "unconfirmed": 0,
      "unresolved": 0
    },
    "is_held": false
  },
  "last_updated": "2026-10-06",
  "route": "/privacy-tools/os-hardening-outbound-firewall-comparison/",
  "schema": "pp-page-sources.v1",
  "tables": {
    "accountability-evidence": {
      "field_definitions": {
        "audit_report": "Assessor, scope, standard, period or date, report locator, publication status, and limitations, preserving verified absences.",
        "request_reporting": "Published period, jurisdiction, unit, scope, counts, or process statement, preserving verified absences rather than printing zero.",
        "source_availability": "Named component, repository or artifact locator, version, release locator, license, and scope stated by the current cell."
      },
      "last_updated": "2026-10-06",
      "matrix_id": "vendor-hardening:accountability-evidence",
      "rows": [
        {
          "cells": {
            "audit_report": {
              "cell_citation_url": "https://help.apple.com/pdf/security/en_US/apple-platform-security-guide.pdf",
              "cell_locator": "macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.audit_report",
              "note": "Not disclosed in the captured primary source.",
              "publish_status": "typed_unknown",
              "source_field": "audit_report",
              "value": "unknown",
              "visible_subline": "Not disclosed in the captured primary source."
            },
            "request_reporting": {
              "cell_citation_url": "https://www.apple.com/legal/transparency/",
              "cell_locator": "macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.request_reporting",
              "publish_status": "publish_ready",
              "source_field": "request_reporting",
              "value": "Apple says its transparency report provides information about government requests for customer data received globally."
            },
            "source_availability": {
              "cell_citation_url": "https://help.apple.com/pdf/security/en_US/apple-platform-security-guide.pdf",
              "cell_locator": "macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.source_availability",
              "publish_status": "publish_ready",
              "source_field": "source_availability",
              "value": "Apple says macOS includes a built-in firewall to protect the Mac from network access and denial-of-service attacks."
            }
          },
          "last_checked": "2026-10-06",
          "name_cell": "vendor#macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
          "official_source_url": "https://support.apple.com/guide/mac-help/block-connections-to-your-mac-with-a-firewall-mh34041/mac",
          "operating_entity_citation_url": "https://support.apple.com/guide/mac-help/block-connections-to-your-mac-with-a-firewall-mh34041/mac",
          "operating_entity_subline": "Apple Inc. states a 2026 copyright notice.",
          "row_anchor": "accountability-evidence-macos-firewall",
          "row_id": "macos-firewall",
          "state": "built-in firewall"
        },
        {
          "cells": {
            "audit_report": {
              "cell_citation_url": "https://www.obdev.at/products/littlesnitch/index.html",
              "cell_locator": "little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.audit_report",
              "note": "Not disclosed in the captured primary source.",
              "publish_status": "typed_unknown",
              "source_field": "audit_report",
              "value": "unknown",
              "visible_subline": "Not disclosed in the captured primary source."
            },
            "request_reporting": {
              "cell_citation_url": "https://www.obdev.at/privacy",
              "cell_locator": "little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.request_reporting",
              "note": "Not disclosed in the captured primary source.",
              "publish_status": "typed_unknown",
              "source_field": "request_reporting",
              "value": "unknown",
              "visible_subline": "Not disclosed in the captured primary source."
            },
            "source_availability": {
              "cell_citation_url": "https://help.obdev.at/littlesnitch6/intro-whatis",
              "cell_locator": "little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.source_availability",
              "publish_status": "publish_ready",
              "source_field": "source_availability",
              "value": "Objective Development says Little Snitch is proprietary software and that it thinks users should be able to test all features before buying and that a certain level of protection should be available free of charge for everyone."
            }
          },
          "last_checked": "2026-10-06",
          "name_cell": "vendor#little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
          "official_source_url": "https://www.obdev.at/about.html",
          "operating_entity_citation_url": "https://www.obdev.at/about.html",
          "operating_entity_subline": "Little Snitch's vendor identifies Objective Development Software GmbH, states that Objective Development was founded in 2004 and is based in Vienna, and lists Commercial Court Vienna registration FN 244130 s.",
          "row_anchor": "accountability-evidence-little-snitch",
          "row_id": "little-snitch",
          "state": "Little Snitch 6"
        },
        {
          "cells": {
            "audit_report": {
              "cell_citation_url": "https://objective-see.org/products/lulu.html",
              "cell_locator": "lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.audit_report",
              "note": "Not disclosed in the captured primary source.",
              "publish_status": "typed_unknown",
              "source_field": "audit_report",
              "value": "unknown",
              "visible_subline": "Not disclosed in the captured primary source."
            },
            "request_reporting": {
              "cell_citation_url": "https://objective-see.org/products/lulu.html",
              "cell_locator": "lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.request_reporting",
              "note": "Not disclosed in the captured primary source.",
              "publish_status": "typed_unknown",
              "source_field": "request_reporting",
              "value": "unknown",
              "visible_subline": "Not disclosed in the captured primary source."
            },
            "source_availability": {
              "cell_citation_url": "https://objective-see.org/products/lulu.html",
              "cell_locator": "lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.source_availability",
              "publish_status": "publish_ready",
              "source_field": "source_availability",
              "value": "LuLu describes itself as free and open source and links its source alongside the version 4.5.1 download."
            }
          },
          "last_checked": "2026-10-06",
          "name_cell": "vendor#lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
          "official_source_url": "https://objective-see.org/downloads/foundation/Objective-See%20Foundation%20Articles.pdf",
          "operating_entity_citation_url": "https://objective-see.org/downloads/foundation/Objective-See%20Foundation%20Articles.pdf",
          "operating_entity_subline": "For LuLu, the cited articles name Objective-See Foundation, Inc. as a nonprofit corporation formed under Hawaii law.",
          "row_anchor": "accountability-evidence-lulu",
          "row_id": "lulu",
          "state": "LuLu"
        },
        {
          "cells": {
            "audit_report": {
              "cell_citation_url": "https://objective-see.org/about.html",
              "cell_locator": "objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.audit_report",
              "note": "Not disclosed in the captured primary source.",
              "publish_status": "typed_unknown",
              "source_field": "audit_report",
              "value": "unknown",
              "visible_subline": "Not disclosed in the captured primary source."
            },
            "request_reporting": {
              "cell_citation_url": "https://objective-see.org/about.html",
              "cell_locator": "objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.request_reporting",
              "note": "Not disclosed in the captured primary source.",
              "publish_status": "typed_unknown",
              "source_field": "request_reporting",
              "value": "unknown",
              "visible_subline": "Not disclosed in the captured primary source."
            },
            "source_availability": {
              "cell_citation_url": "https://objective-see.org/tools.html",
              "cell_locator": "objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.source_availability",
              "publish_status": "publish_ready",
              "source_field": "source_availability",
              "value": "Objective-See says all tools are open source and points to its GitHub page."
            }
          },
          "last_checked": "2026-10-06",
          "name_cell": "vendor#objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
          "official_source_url": "https://objective-see.org/downloads/foundation/2025-990.pdf",
          "operating_entity_citation_url": "https://objective-see.org/downloads/foundation/2025-990.pdf",
          "operating_entity_subline": "Objective-See's 2025 IRS Form 990 lists OBJECTIVE-SEE FOUNDATION INC as the organization's name.",
          "row_anchor": "accountability-evidence-objective-see",
          "row_id": "objective-see",
          "state": "Objective-See"
        },
        {
          "cells": {
            "audit_report": {
              "cell_citation_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/docs/tests.md",
              "cell_locator": "privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.audit_report",
              "note": "Not disclosed in the captured primary source.",
              "publish_status": "typed_unknown",
              "source_field": "audit_report",
              "value": "unknown",
              "visible_subline": "Not disclosed in the captured primary source."
            },
            "request_reporting": {
              "cell_citation_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/README.md",
              "cell_locator": "privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.request_reporting",
              "publish_status": "publish_ready",
              "source_field": "request_reporting",
              "value": "privacy.sexy invites contributions and directs contributors to its CONTRIBUTING guide."
            },
            "source_availability": {
              "cell_citation_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/package.json",
              "cell_locator": "privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.source_availability",
              "publish_status": "publish_ready",
              "source_field": "source_availability",
              "value": "privacy.sexy's package identifies version 0.13.8 and undergroundwires as its author."
            }
          },
          "last_checked": "2026-10-06",
          "name_cell": "vendor#privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
          "official_source_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/package.json",
          "operating_entity_citation_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/package.json",
          "operating_entity_subline": "privacy.sexy's package identifies undergroundwires as its author.",
          "row_anchor": "accountability-evidence-privacy-sexy",
          "row_id": "privacy-sexy",
          "state": "privacy.sexy"
        }
      ],
      "scope_label": "5 products"
    },
    "changes-and-reversal": {
      "field_definitions": {
        "reversibility": "Rollback, disable, uninstall, restore, reset, exception, or backup mechanics and limits stated by the current cell.",
        "scope_of_changes": "Components, settings, services, rules, scripts, or features changed at the scope stated by the current cell."
      },
      "last_updated": "2026-10-06",
      "matrix_id": "vendor-hardening:changes-and-reversal",
      "rows": [
        {
          "cells": {
            "reversibility": {
              "cell_citation_url": "https://support.apple.com/guide/mac-help/block-connections-to-your-mac-with-a-firewall-mh34041/mac",
              "cell_locator": "macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.reversibility",
              "publish_status": "publish_ready",
              "source_field": "reversibility",
              "value": "macOS lets a user add apps or services in Firewall options and choose whether to allow or block their connections, while warning that blocking may affect software performance."
            },
            "scope_of_changes": {
              "cell_citation_url": "https://help.apple.com/pdf/security/en_US/apple-platform-security-guide.pdf",
              "cell_locator": "macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.scope_of_changes",
              "publish_status": "publish_ready",
              "source_field": "scope_of_changes",
              "value": "Apple says macOS includes a built-in firewall to protect the Mac from network access and denial-of-service attacks, configurable in system settings or through a firewall configuration profile."
            }
          },
          "last_checked": "2026-10-06",
          "name_cell": "vendor#macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
          "official_source_url": "https://support.apple.com/guide/mac-help/block-connections-to-your-mac-with-a-firewall-mh34041/mac",
          "operating_entity_citation_url": "https://support.apple.com/guide/mac-help/block-connections-to-your-mac-with-a-firewall-mh34041/mac",
          "operating_entity_subline": "Apple Inc. states a 2026 copyright notice.",
          "row_anchor": "changes-and-reversal-macos-firewall",
          "row_id": "macos-firewall",
          "state": "built-in firewall"
        },
        {
          "cells": {
            "reversibility": {
              "cell_citation_url": "https://help.obdev.at/littlesnitch6/intro-uninstall",
              "cell_locator": "little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.reversibility",
              "publish_status": "publish_ready",
              "source_field": "reversibility",
              "value": "Little Snitch says moving its app to the Trash with Finder removes associated system extensions and helper tools but preserves configuration data and traffic history unless the Little Snitch folder in Application Support and the Little Snitch preference files in user defaults are also deleted."
            },
            "scope_of_changes": {
              "cell_citation_url": "https://help.obdev.at/littlesnitch6/intro-whatis",
              "cell_locator": "little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.scope_of_changes",
              "publish_status": "publish_ready",
              "source_field": "scope_of_changes",
              "value": "Little Snitch runs locally as an application firewall, lets rules allow or deny connections per app, and can hold an uncovered connection while the user chooses whether to allow or deny it."
            }
          },
          "last_checked": "2026-10-06",
          "name_cell": "vendor#little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
          "official_source_url": "https://www.obdev.at/about.html",
          "operating_entity_citation_url": "https://www.obdev.at/about.html",
          "operating_entity_subline": "Little Snitch's vendor identifies Objective Development Software GmbH, states that Objective Development was founded in 2004 and is based in Vienna, and lists Commercial Court Vienna registration FN 244130 s.",
          "row_anchor": "changes-and-reversal-little-snitch",
          "row_id": "little-snitch",
          "state": "Little Snitch 6"
        },
        {
          "cells": {
            "reversibility": {
              "cell_citation_url": "https://objective-see.org/products/lulu.html",
              "cell_locator": "lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.reversibility",
              "publish_status": "publish_ready",
              "source_field": "reversibility",
              "value": "LuLu says users can quit or fully uninstall it from the status-bar menu and must authenticate to do either."
            },
            "scope_of_changes": {
              "cell_citation_url": "https://objective-see.org/products/lulu.html",
              "cell_locator": "lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.scope_of_changes",
              "publish_status": "publish_ready",
              "source_field": "scope_of_changes",
              "value": "LuLu describes itself as a firewall that blocks unknown outgoing connections on Macs."
            }
          },
          "last_checked": "2026-10-06",
          "name_cell": "vendor#lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
          "official_source_url": "https://objective-see.org/downloads/foundation/Objective-See%20Foundation%20Articles.pdf",
          "operating_entity_citation_url": "https://objective-see.org/downloads/foundation/Objective-See%20Foundation%20Articles.pdf",
          "operating_entity_subline": "For LuLu, the cited articles name Objective-See Foundation, Inc. as a nonprofit corporation formed under Hawaii law.",
          "row_anchor": "changes-and-reversal-lulu",
          "row_id": "lulu",
          "state": "LuLu"
        },
        {
          "cells": {
            "reversibility": {
              "cell_citation_url": "https://objective-see.org/products/blockblock.html",
              "cell_locator": "objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.reversibility",
              "publish_status": "publish_ready",
              "source_field": "reversibility",
              "value": "Objective-See says BlockBlock's status-bar menu launches an uninstaller that completely removes BlockBlock."
            },
            "scope_of_changes": {
              "cell_citation_url": "https://objective-see.org/products/lulu.html",
              "cell_locator": "objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.scope_of_changes",
              "publish_status": "publish_ready",
              "source_field": "scope_of_changes",
              "value": "Objective-See describes LuLu v4.5.1 for macOS 10.15+ as a free, open-source firewall that blocks unknown outgoing connections."
            }
          },
          "last_checked": "2026-10-06",
          "name_cell": "vendor#objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
          "official_source_url": "https://objective-see.org/downloads/foundation/2025-990.pdf",
          "operating_entity_citation_url": "https://objective-see.org/downloads/foundation/2025-990.pdf",
          "operating_entity_subline": "Objective-See's 2025 IRS Form 990 lists OBJECTIVE-SEE FOUNDATION INC as the organization's name.",
          "row_anchor": "changes-and-reversal-objective-see",
          "row_id": "objective-see",
          "state": "Objective-See"
        },
        {
          "cells": {
            "reversibility": {
              "cell_citation_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/docs/collection-files.md",
              "cell_locator": "privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.reversibility",
              "publish_status": "publish_ready",
              "source_field": "reversibility",
              "value": "privacy.sexy documentation says an inline script can include revertCode to reverse changes made by code."
            },
            "scope_of_changes": {
              "cell_citation_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/README.md",
              "cell_locator": "privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.scope_of_changes",
              "publish_status": "publish_ready",
              "source_field": "scope_of_changes",
              "value": "privacy.sexy describes hundreds of transparent, reversible scripts intended to give users control of their data."
            }
          },
          "last_checked": "2026-10-06",
          "name_cell": "vendor#privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
          "official_source_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/package.json",
          "operating_entity_citation_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/package.json",
          "operating_entity_subline": "privacy.sexy's package identifies undergroundwires as its author.",
          "row_anchor": "changes-and-reversal-privacy-sexy",
          "row_id": "privacy-sexy",
          "state": "privacy.sexy"
        }
      ],
      "scope_label": "5 products"
    },
    "data-lifecycle": {
      "field_definitions": {
        "deletion": "Deletion or cleanup initiation, actor, completion statement, timeframe, exceptions, and scope stated by the current cell.",
        "retention": "Retained category or artifact, responsible actor, trigger, duration, exceptions, and scope stated by the current cell."
      },
      "last_updated": "2026-10-06",
      "matrix_id": "vendor-hardening:data-lifecycle",
      "rows": [
        {
          "cells": {
            "deletion": {
              "cell_citation_url": "https://www.apple.com/legal/privacy/en-ww/",
              "cell_locator": "macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.deletion",
              "publish_status": "publish_ready",
              "source_field": "deletion",
              "value": "Apple says customers may request deletion of personal data through its Data and Privacy page, subject to exceptions including legal recordkeeping and anti-fraud or security purposes."
            },
            "retention": {
              "cell_citation_url": "https://www.apple.com/legal/privacy/en-ww/",
              "cell_locator": "macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.retention",
              "publish_status": "publish_ready",
              "source_field": "retention",
              "value": "Apple says it retains personal data only as long as necessary for the purposes for which it was collected or as required by law, and works to retain it for the shortest possible period permissible under law when retention is required."
            }
          },
          "last_checked": "2026-10-06",
          "name_cell": "vendor#macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
          "official_source_url": "https://support.apple.com/guide/mac-help/block-connections-to-your-mac-with-a-firewall-mh34041/mac",
          "operating_entity_citation_url": "https://support.apple.com/guide/mac-help/block-connections-to-your-mac-with-a-firewall-mh34041/mac",
          "operating_entity_subline": "Apple Inc. states a 2026 copyright notice.",
          "row_anchor": "data-lifecycle-macos-firewall",
          "row_id": "macos-firewall",
          "state": "built-in firewall"
        },
        {
          "cells": {
            "deletion": {
              "cell_citation_url": "https://www.obdev.at/privacy",
              "cell_locator": "little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.deletion",
              "publish_status": "publish_ready",
              "source_field": "deletion",
              "value": "Little Snitch says placing a product in the shopping cart sets a purchase-procedure cookie that enables temporary storage of entered shopping-cart and contact data, with the temporarily stored information deleted after no more than 24 hours."
            },
            "retention": {
              "cell_citation_url": "https://www.obdev.at/privacy",
              "cell_locator": "little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.retention",
              "publish_status": "publish_ready",
              "source_field": "retention",
              "value": "Little Snitch says invoice data and VAT proof are retained for 10 years for EU customers outside Austria or seven years for others, while the license owner's name, email address, license keys, and purchase date are stored for the license-agreement term."
            }
          },
          "last_checked": "2026-10-06",
          "name_cell": "vendor#little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
          "official_source_url": "https://www.obdev.at/about.html",
          "operating_entity_citation_url": "https://www.obdev.at/about.html",
          "operating_entity_subline": "Little Snitch's vendor identifies Objective Development Software GmbH, states that Objective Development was founded in 2004 and is based in Vienna, and lists Commercial Court Vienna registration FN 244130 s.",
          "row_anchor": "data-lifecycle-little-snitch",
          "row_id": "little-snitch",
          "state": "Little Snitch 6"
        },
        {
          "cells": {
            "deletion": {
              "cell_citation_url": "https://objective-see.org/products/lulu.html",
              "cell_locator": "lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.deletion",
              "publish_status": "publish_ready",
              "source_field": "deletion",
              "value": "LuLu says users can quit or fully uninstall it from the status-bar menu and must authenticate to do either."
            },
            "retention": {
              "cell_citation_url": "https://objective-see.org/products/lulu.html",
              "cell_locator": "lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.retention",
              "publish_status": "publish_ready",
              "source_field": "retention",
              "value": "LuLu says a rule can last always, for the current process lifetime, or until a future time, when an expiring rule is deleted automatically."
            }
          },
          "last_checked": "2026-10-06",
          "name_cell": "vendor#lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
          "official_source_url": "https://objective-see.org/downloads/foundation/Objective-See%20Foundation%20Articles.pdf",
          "operating_entity_citation_url": "https://objective-see.org/downloads/foundation/Objective-See%20Foundation%20Articles.pdf",
          "operating_entity_subline": "For LuLu, the cited articles name Objective-See Foundation, Inc. as a nonprofit corporation formed under Hawaii law.",
          "row_anchor": "data-lifecycle-lulu",
          "row_id": "lulu",
          "state": "LuLu"
        },
        {
          "cells": {
            "deletion": {
              "cell_citation_url": "https://objective-see.org/products/blockblock.html",
              "cell_locator": "objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.deletion",
              "publish_status": "publish_ready",
              "source_field": "deletion",
              "value": "Objective-See says BlockBlock's status-bar menu launches an uninstaller that completely removes BlockBlock."
            },
            "retention": {
              "cell_citation_url": "https://objective-see.org/products/blockblock.html",
              "cell_locator": "objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.retention",
              "publish_status": "publish_ready",
              "source_field": "retention",
              "value": "Objective-See says BlockBlock logs all alert responses to `/Library/Objective-See/BlockBlock/BlockBlock.log`."
            }
          },
          "last_checked": "2026-10-06",
          "name_cell": "vendor#objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
          "official_source_url": "https://objective-see.org/downloads/foundation/2025-990.pdf",
          "operating_entity_citation_url": "https://objective-see.org/downloads/foundation/2025-990.pdf",
          "operating_entity_subline": "Objective-See's 2025 IRS Form 990 lists OBJECTIVE-SEE FOUNDATION INC as the organization's name.",
          "row_anchor": "data-lifecycle-objective-see",
          "row_id": "objective-see",
          "state": "Objective-See"
        },
        {
          "cells": {
            "deletion": {
              "cell_citation_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/docs/desktop/desktop-vs-web-features.md",
              "cell_locator": "privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.deletion",
              "publish_status": "publish_ready",
              "source_field": "deletion",
              "value": "privacy.sexy says its desktop version keeps activity logs and script-execution history in operating-system-specific directories and provides scripts to securely erase both."
            },
            "retention": {
              "cell_citation_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/docs/desktop/desktop-vs-web-features.md",
              "cell_locator": "privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.retention",
              "publish_status": "publish_ready",
              "source_field": "retention",
              "value": "privacy.sexy says its desktop version keeps activity logs and script-execution history in operating-system-specific directories and provides scripts to securely erase both."
            }
          },
          "last_checked": "2026-10-06",
          "name_cell": "vendor#privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
          "official_source_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/package.json",
          "operating_entity_citation_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/package.json",
          "operating_entity_subline": "privacy.sexy's package identifies undergroundwires as its author.",
          "row_anchor": "data-lifecycle-privacy-sexy",
          "row_id": "privacy-sexy",
          "state": "privacy.sexy"
        }
      ],
      "scope_label": "5 products"
    },
    "identity-and-entity": {
      "field_definitions": {
        "later_verification_triggers": "Later trigger, requested identifier, requesting actor, and scope stated by the current cell, preserving verified absences.",
        "operating_entity": "Company, project, or platform owner and jurisdictional details supported by the current cell.",
        "signup_identifiers": "Initial identifiers, collecting actor, requiredness, product, plan, region, and platform stated by the current cell, preserving verified absences."
      },
      "last_updated": "2026-10-06",
      "matrix_id": "vendor-hardening:identity-and-entity",
      "rows": [
        {
          "cells": {
            "later_verification_triggers": {
              "cell_citation_url": "https://support.apple.com/guide/mac-help/change-firewall-settings-on-mac-mh11783/mac",
              "cell_locator": "macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.later_verification_triggers",
              "publish_status": "publish_ready",
              "source_field": "later_verification_triggers",
              "value": "macOS Firewall settings let a user turn on the firewall to prevent unwanted connections from the internet or other networks."
            },
            "operating_entity": {
              "cell_citation_url": "https://support.apple.com/guide/mac-help/block-connections-to-your-mac-with-a-firewall-mh34041/mac",
              "cell_locator": "macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
              "publish_status": "publish_ready",
              "source_field": "operating_entity",
              "value": "Apple Inc. states a 2026 copyright notice."
            },
            "signup_identifiers": {
              "cell_citation_url": "https://support.apple.com/guide/mac-help/block-connections-to-your-mac-with-a-firewall-mh34041/mac",
              "cell_locator": "macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.signup_identifiers",
              "publish_status": "publish_ready",
              "source_field": "signup_identifiers",
              "value": "macOS lets a user turn on Firewall in System Settings under Network."
            }
          },
          "last_checked": "2026-10-06",
          "name_cell": "vendor#macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
          "official_source_url": "https://support.apple.com/guide/mac-help/block-connections-to-your-mac-with-a-firewall-mh34041/mac",
          "operating_entity_citation_url": "https://support.apple.com/guide/mac-help/block-connections-to-your-mac-with-a-firewall-mh34041/mac",
          "operating_entity_subline": "Apple Inc. states a 2026 copyright notice.",
          "row_anchor": "identity-and-entity-macos-firewall",
          "row_id": "macos-firewall",
          "state": "built-in firewall"
        },
        {
          "cells": {
            "later_verification_triggers": {
              "cell_citation_url": "https://www.obdev.at/privacy",
              "cell_locator": "little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.later_verification_triggers",
              "publish_status": "publish_ready",
              "source_field": "later_verification_triggers",
              "value": "Little Snitch says that if the location cannot be sufficiently determined from clues in the purchase process, such as the Internet address, it will request further documents, such as a copy of an ID card; the documents are stored for 30 days and deleted if no purchase is made, or kept for the 10-year legal retention period if a purchase is made."
            },
            "operating_entity": {
              "cell_citation_url": "https://www.obdev.at/about.html",
              "cell_locator": "little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
              "publish_status": "publish_ready",
              "source_field": "operating_entity",
              "value": "Little Snitch's vendor identifies Objective Development Software GmbH, states that Objective Development was founded in 2004 and is based in Vienna, and lists Commercial Court Vienna registration FN 244130 s."
            },
            "signup_identifiers": {
              "cell_citation_url": "https://www.obdev.at/privacy",
              "cell_locator": "little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.signup_identifiers",
              "publish_status": "publish_ready",
              "source_field": "signup_identifiers",
              "value": "Little Snitch says checkout stores the buyer's name, address, email address, company name, VAT number, shopping cart, Internet address, and chosen payment method to issue an invoice with the applicable VAT rate."
            }
          },
          "last_checked": "2026-10-06",
          "name_cell": "vendor#little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
          "official_source_url": "https://www.obdev.at/about.html",
          "operating_entity_citation_url": "https://www.obdev.at/about.html",
          "operating_entity_subline": "Little Snitch's vendor identifies Objective Development Software GmbH, states that Objective Development was founded in 2004 and is based in Vienna, and lists Commercial Court Vienna registration FN 244130 s.",
          "row_anchor": "identity-and-entity-little-snitch",
          "row_id": "little-snitch",
          "state": "Little Snitch 6"
        },
        {
          "cells": {
            "later_verification_triggers": {
              "cell_citation_url": "https://objective-see.org/products/lulu.html",
              "cell_locator": "lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.later_verification_triggers",
              "note": "Not disclosed in the captured primary source.",
              "publish_status": "typed_unknown",
              "source_field": "later_verification_triggers",
              "value": "unknown",
              "visible_subline": "Not disclosed in the captured primary source."
            },
            "operating_entity": {
              "cell_citation_url": "https://objective-see.org/downloads/foundation/Objective-See%20Foundation%20Articles.pdf",
              "cell_locator": "lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
              "publish_status": "publish_ready",
              "source_field": "operating_entity",
              "value": "For LuLu, the cited articles name Objective-See Foundation, Inc. as a nonprofit corporation formed under Hawaii law."
            },
            "signup_identifiers": {
              "cell_citation_url": "https://objective-see.org/products/lulu.html",
              "cell_locator": "lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.signup_identifiers",
              "publish_status": "publish_ready",
              "source_field": "signup_identifiers",
              "value": "LuLu describes itself as a free, open-source firewall for macOS 10.15 and later, with version 4.5.1 listed for download."
            }
          },
          "last_checked": "2026-10-06",
          "name_cell": "vendor#lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
          "official_source_url": "https://objective-see.org/downloads/foundation/Objective-See%20Foundation%20Articles.pdf",
          "operating_entity_citation_url": "https://objective-see.org/downloads/foundation/Objective-See%20Foundation%20Articles.pdf",
          "operating_entity_subline": "For LuLu, the cited articles name Objective-See Foundation, Inc. as a nonprofit corporation formed under Hawaii law.",
          "row_anchor": "identity-and-entity-lulu",
          "row_id": "lulu",
          "state": "LuLu"
        },
        {
          "cells": {
            "later_verification_triggers": {
              "cell_citation_url": "https://objective-see.org/products/lulu.html",
              "cell_locator": "objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.later_verification_triggers",
              "note": "Not disclosed in the captured primary source.",
              "publish_status": "typed_unknown",
              "source_field": "later_verification_triggers",
              "value": "unknown",
              "visible_subline": "Not disclosed in the captured primary source."
            },
            "operating_entity": {
              "cell_citation_url": "https://objective-see.org/downloads/foundation/2025-990.pdf",
              "cell_locator": "objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
              "publish_status": "publish_ready",
              "source_field": "operating_entity",
              "value": "Objective-See's 2025 IRS Form 990 lists OBJECTIVE-SEE FOUNDATION INC as the organization's name."
            },
            "signup_identifiers": {
              "cell_citation_url": "https://objective-see.org/products/lulu.html",
              "cell_locator": "objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.signup_identifiers",
              "note": "Not disclosed in the captured primary source.",
              "publish_status": "typed_unknown",
              "source_field": "signup_identifiers",
              "value": "unknown",
              "visible_subline": "Not disclosed in the captured primary source."
            }
          },
          "last_checked": "2026-10-06",
          "name_cell": "vendor#objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
          "official_source_url": "https://objective-see.org/downloads/foundation/2025-990.pdf",
          "operating_entity_citation_url": "https://objective-see.org/downloads/foundation/2025-990.pdf",
          "operating_entity_subline": "Objective-See's 2025 IRS Form 990 lists OBJECTIVE-SEE FOUNDATION INC as the organization's name.",
          "row_anchor": "identity-and-entity-objective-see",
          "row_id": "objective-see",
          "state": "Objective-See"
        },
        {
          "cells": {
            "later_verification_triggers": {
              "cell_citation_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/README.md",
              "cell_locator": "privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.later_verification_triggers",
              "publish_status": "publish_ready",
              "source_field": "later_verification_triggers",
              "value": "privacy.sexy is available online and as offline downloads for Windows, macOS, and Linux."
            },
            "operating_entity": {
              "cell_citation_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/package.json",
              "cell_locator": "privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
              "publish_status": "publish_ready",
              "source_field": "operating_entity",
              "value": "privacy.sexy's package identifies undergroundwires as its author."
            },
            "signup_identifiers": {
              "cell_citation_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/README.md",
              "cell_locator": "privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.signup_identifiers",
              "publish_status": "publish_ready",
              "source_field": "signup_identifiers",
              "value": "privacy.sexy is available online and as offline downloads for Windows, macOS, and Linux."
            }
          },
          "last_checked": "2026-10-06",
          "name_cell": "vendor#privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
          "official_source_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/package.json",
          "operating_entity_citation_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/package.json",
          "operating_entity_subline": "privacy.sexy's package identifies undergroundwires as its author.",
          "row_anchor": "identity-and-entity-privacy-sexy",
          "row_id": "privacy-sexy",
          "state": "privacy.sexy"
        }
      ],
      "scope_label": "5 products"
    },
    "rules-and-alerts": {
      "field_definitions": {
        "alerting": "Prompt, notification, log, interface, trigger, and scope stated by the current cell without inferring a block.",
        "outbound_rule_model": "Rule granularity, default behavior, matching conditions, user choices, and scope stated by the current cell."
      },
      "last_updated": "2026-10-06",
      "matrix_id": "vendor-hardening:rules-and-alerts",
      "rows": [
        {
          "cells": {
            "alerting": {
              "cell_citation_url": "https://support.apple.com/guide/mac-help/block-connections-to-your-mac-with-a-firewall-mh34041/mac",
              "cell_locator": "macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.alerting",
              "publish_status": "publish_ready",
              "source_field": "alerting",
              "value": "macOS displays an alert when a connection attempt targets an app that has not been added and allowed, and denies attempts until the user allows or denies the connection."
            },
            "outbound_rule_model": {
              "cell_citation_url": "https://help.apple.com/pdf/security/en_US/apple-platform-security-guide.pdf",
              "cell_locator": "macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.outbound_rule_model",
              "publish_status": "publish_ready",
              "source_field": "outbound_rule_model",
              "value": "macOS Firewall supports blocking all incoming connections, automatically allowing built-in or downloaded signed software, allowing or denying access by app, and preventing responses to ICMP probes and port scans."
            }
          },
          "last_checked": "2026-10-06",
          "name_cell": "vendor#macos-firewall.macos-firewall.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
          "official_source_url": "https://support.apple.com/guide/mac-help/block-connections-to-your-mac-with-a-firewall-mh34041/mac",
          "operating_entity_citation_url": "https://support.apple.com/guide/mac-help/block-connections-to-your-mac-with-a-firewall-mh34041/mac",
          "operating_entity_subline": "Apple Inc. states a 2026 copyright notice.",
          "row_anchor": "rules-and-alerts-macos-firewall",
          "row_id": "macos-firewall",
          "state": "built-in firewall"
        },
        {
          "cells": {
            "alerting": {
              "cell_citation_url": "https://help.obdev.at/littlesnitch6/alert-overview",
              "cell_locator": "little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.alerting",
              "publish_status": "publish_ready",
              "source_field": "alerting",
              "value": "Little Snitch shows a connection alert when Alert Mode is active and an attempted connection is not covered by a rule, lets the user allow or deny it, and creates a matching rule for later attempts."
            },
            "outbound_rule_model": {
              "cell_citation_url": "https://help.obdev.at/littlesnitch6/concepts-rules",
              "cell_locator": "little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.outbound_rule_model",
              "publish_status": "publish_ready",
              "source_field": "outbound_rule_model",
              "value": "Little Snitch rules match connection conditions and choose one action in each of three categories—filtering, notification, and hiding history from Network Monitor—with the most specific matching rule supplying each action."
            }
          },
          "last_checked": "2026-10-06",
          "name_cell": "vendor#little-snitch.little-snitch.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
          "official_source_url": "https://www.obdev.at/about.html",
          "operating_entity_citation_url": "https://www.obdev.at/about.html",
          "operating_entity_subline": "Little Snitch's vendor identifies Objective Development Software GmbH, states that Objective Development was founded in 2004 and is based in Vienna, and lists Commercial Court Vienna registration FN 244130 s.",
          "row_anchor": "rules-and-alerts-little-snitch",
          "row_id": "little-snitch",
          "state": "Little Snitch 6"
        },
        {
          "cells": {
            "alerting": {
              "cell_citation_url": "https://objective-see.org/products/lulu.html",
              "cell_locator": "lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.alerting",
              "publish_status": "publish_ready",
              "source_field": "alerting",
              "value": "LuLu says it blocks unknown outgoing connections on Macs."
            },
            "outbound_rule_model": {
              "cell_citation_url": "https://objective-see.org/products/lulu.html",
              "cell_locator": "lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.outbound_rule_model",
              "publish_status": "publish_ready",
              "source_field": "outbound_rule_model",
              "value": "LuLu describes itself as a firewall that blocks unknown outgoing connections on Macs."
            }
          },
          "last_checked": "2026-10-06",
          "name_cell": "vendor#lulu.lulu.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
          "official_source_url": "https://objective-see.org/downloads/foundation/Objective-See%20Foundation%20Articles.pdf",
          "operating_entity_citation_url": "https://objective-see.org/downloads/foundation/Objective-See%20Foundation%20Articles.pdf",
          "operating_entity_subline": "For LuLu, the cited articles name Objective-See Foundation, Inc. as a nonprofit corporation formed under Hawaii law.",
          "row_anchor": "rules-and-alerts-lulu",
          "row_id": "lulu",
          "state": "LuLu"
        },
        {
          "cells": {
            "alerting": {
              "cell_citation_url": "https://objective-see.org/products/blockblock.html",
              "cell_locator": "objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.alerting",
              "publish_status": "publish_ready",
              "source_field": "alerting",
              "value": "Objective-See says BlockBlock starts automatically when the computer restarts, aims to detect installed persistent software, and displays an informative alert."
            },
            "outbound_rule_model": {
              "cell_citation_url": "https://objective-see.org/products/lulu.html",
              "cell_locator": "objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.outbound_rule_model",
              "publish_status": "publish_ready",
              "source_field": "outbound_rule_model",
              "value": "Objective-See describes LuLu v4.5.1 for macOS 10.15+ as a free, open-source firewall that blocks unknown outgoing connections."
            }
          },
          "last_checked": "2026-10-06",
          "name_cell": "vendor#objective-see.objective-see.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
          "official_source_url": "https://objective-see.org/downloads/foundation/2025-990.pdf",
          "operating_entity_citation_url": "https://objective-see.org/downloads/foundation/2025-990.pdf",
          "operating_entity_subline": "Objective-See's 2025 IRS Form 990 lists OBJECTIVE-SEE FOUNDATION INC as the organization's name.",
          "row_anchor": "rules-and-alerts-objective-see",
          "row_id": "objective-see",
          "state": "Objective-See"
        },
        {
          "cells": {
            "alerting": {
              "cell_citation_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/docs/desktop/desktop-vs-web-features.md",
              "cell_locator": "privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.alerting",
              "publish_status": "publish_ready",
              "source_field": "alerting",
              "value": "privacy.sexy says its desktop and web versions receive updates deployed from source code, while macOS desktop updates may require users to finish installation manually."
            },
            "outbound_rule_model": {
              "cell_citation_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/README.md",
              "cell_locator": "privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.outbound_rule_model",
              "publish_status": "publish_ready",
              "source_field": "outbound_rule_model",
              "value": "privacy.sexy says its scripts are independently executable and provide visibility into what each tweak does."
            }
          },
          "last_checked": "2026-10-06",
          "name_cell": "vendor#privacy-sexy.privacy-sexy.all-documented-plans.vendor-documented.all-documented-platforms.operating_entity",
          "official_source_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/package.json",
          "operating_entity_citation_url": "https://raw.githubusercontent.com/undergroundwires/privacy.sexy/7b956f3d8c8b80bbb2b5d0f77912431bf98fdafb/package.json",
          "operating_entity_subline": "privacy.sexy's package identifies undergroundwires as its author.",
          "row_anchor": "rules-and-alerts-privacy-sexy",
          "row_id": "privacy-sexy",
          "state": "privacy.sexy"
        }
      ],
      "scope_label": "5 products"
    }
  },
  "template": "matrix",
  "tier": "T1",
  "warnings": [
    "sideways label \"Hardened Mobile Operating Systems\" differs from the known title \"Hardened Mobile Operating Systems: Isolation, Boot, and Updates\" of /exposure/hardened-mobile-operating-systems/"
  ]
}
