Watch the sensitive places.
Shell startup files, SSH configuration, LaunchAgents and Daemons, and executable directories. Keep changes to these locations in view.
~/.zshrc~/.sshLaunchAgentsAn installer edits your shell startup. A new LaunchAgent appears.
Verity watches the sensitive places, shows you the changes,
and keeps an encrypted history you can return to.
macOS 15+ · Apple silicon & Intel · 7-day trial · No card required
~/.bash_profile
alias ll='ls -la'export PATH="$HOME/.local/bin:$PATH"source ~/.profileOne line added. A directory was added to the shell’s search path. Review the change in context.
Example data shown. Available details depend on the event and stored content.
A CLEARER PICTURE
You don’t need another mysterious warning.
You need to see what happened.
Shell startup files, SSH configuration, LaunchAgents and Daemons, and executable directories. Keep changes to these locations in view.
~/.zshrc~/.sshLaunchAgentsA timeline of recorded changes, available file diffs, and execution decisions. Mark incidents as reviewed, move to the next one, and undo when needed.
Review → Next → Undo ⌘ZEligible file contents are stored in an AES-256 encrypted vault. Restore an earlier version when a usable snapshot is available.
Local vault. Key in your macOS Keychain.AN EXTRA LAYER, WHEN YOU WANT IT
Enable Protect to ask before selected new or changed executables run in your monitored executable directories, and for executables linked to recent persistence changes.
Review the available signature and trust information. Block the request, allow one launch, or create a trust rule.
/opt/homebrew/bin/example-tool/bin/zshIllustration only. Nothing is executed or blocked here.
BUILT FOR CONTEXT, NOT CERTAINTY
Verity records an initial state and reports changes from there. It doesn’t certify that existing files are safe or replace your backups.
Severity helps you prioritize a review. It isn’t a probability that a file is malware. When a possible process is shown, that correlation is not proof of who made the change.
More about how Verity worksYOUR DATA STAYS WITH YOU
Monitoring data and the encrypted vault stay on your Mac. Purchases and license activation are handled by Polar. License validation requires an internet connection at least once every 72 hours. File contents are not sent to Polar, and there is no automatic AI upload. If you choose to export for AI, you review the locally redacted text before copying it.
TRY IT ON YOUR MAC
All features. No card required for the trial.
$49 USD · one-time payment
A license for one active Mac.
Buy for 1 Mac ↗$89 USD · one-time payment
One license key for up to three active Macs.
Buy for 3 Macs ↗Purchases during 0.x include all 1.x updates. Later major upgrades may be paid. Update terms.
Try all features free for 7 days before buying. No refunds for change of mind; statutory rights remain unaffected. Read our Terms & License and refund policy.
Download Verity to start a 7-day trial on first launch. After purchase, copy your license key from Polar into Settings → License. Activate each Mac separately; deactivate a Mac to free a slot.
Licenses are checked daily, with up to 72 hours offline after a successful validation. Before the trial or offline allowance ends, Verity displays a warning. Monitoring and Protect stop when access expires; your Vault and history remain available.
Recover your key or manage your Macs ↗THE PRACTICAL DETAILS
No. Verity monitors selected filesystem locations and offers scoped execution protection. It helps you investigate changes; it does not classify every file as safe or malicious.
Verity combines visible risk factors into a score from 0 to 100: Low is 0–39, Medium is 40–69, and High is 70–100. It prioritizes review and is not a probability that a file is malware. See every factor, weight, and alert rule →
No. Executable directories are monitored through metadata. Some file contents cannot be read, and stored versions are subject to retention. Verity reports unavailable content rather than promising a snapshot it cannot provide.
Apple has granted Verity permission to use the Endpoint Security capability in macOS. Verity uses this capability through a background helper to monitor executions and support Protect’s approval requests. macOS must allow the helper, and execution monitoring requires Full Disk Access for it. The onboarding guides you through the available setup and status checks.
Closing the window leaves Verity running in the menu bar. Quitting stops filesystem observation and the decision interface. An enabled helper keeps its execution policy until the license deadline or a helper restart, and blocks unanswered requests that require a decision. Protect must be enabled again after a helper restart.
Verity can watch /opt/homebrew/bin and /usr/local/bin. It records executable metadata changes. When Protect is enabled, some new or changed executables in its scope can require your approval.
macOS 15 or later, on Apple silicon and Intel. The download is signed with Developer ID and notarized by Apple. Permissions still need to be approved on the Mac where you install it.
WHY I BUILT VERITY
An unexpected executable. Modified shell startup files. And uncertainty about what had happened to my credentials. That experience led me to build Verity.
Read the storySTART PAYING ATTENTION
Start your 7-day trial. No card required.
Verity has Apple’s permission to use Endpoint Security on macOS.
Download Verityv0.1.16 · 10.4 MB · macOS 15+ · Universal
SHA-256 checksum