spctl
executablemacOS343.9 KBx86_64, arm64
Code signing utility — validates and manages macOS application signatures and certificates
Verifies the validity of code signatures on macOS binaries and frameworks using cryptographic certificates from the Keychain. Accesses hardware security features and interacts with Apple's code signing infrastructure via 7 network endpoints, likely for certificate validation, revocation checks, and signature verification services. Includes telemetry reporting on signing operations and manages 10 bundle identifiers, suggesting it handles multiple signing contexts. Operates with direct hardware/driver communication privileges and Keychain access to authenticate and validate signed code.AI
Fingerprint
- Platform
- macOS
- Type
- executable
- Arch
- x86_64, arm64
- Min OS
- 26.1.0
- SDK
- 26.1.0
- File Size
- 343.9 KB
- UUID
- D0C316C1-938B-39B6-BF27-07030C6E56F5
- Analyzed
- 2026-04-07T05:21:17Z
- CDHash
- 85f5699ee651ab9f66107c7a7b254ece85af6e31bfdcfe11dc5b4dce2e14a1d9
Capabilities
HardwareDirect hardware/driver communication
/System/Library/Frameworks/IOKit.framework/Versions/A/IOKitSecurityKeychain, certificates, code signing
/System/Library/Frameworks/Security.framework/Versions/A/SecurityFrameworks13
Entitlements1
Interesting Strings
Bundle IDs(10)
File Paths(13)
/AppleInternal/Library/Frameworks/AppleMobileFileIntegrity.framework/AppleMobileFileIntegrity/System/AppleInternal/Library/Frameworks/AppleMobileFileIntegrity.framework/AppleMobileFileIntegrity/System/Library/Frameworks/AppleMobileFileIntegrity.framework/AppleMobileFileIntegrity/System/Library/Frameworks/CoreFoundation.framework/Versions/A/CoreFoundation/System/Library/Frameworks/CoreServices.framework/Versions/A/CoreServices
telemetry(2)
Network Surface
Networking Frameworks
DNA Capability Vector
Location
0
Keychain
0
Network
0
Storage
0
Hardware
1
IPC
0
Analytics
0
Security
1
System
0
Behavioral Profile
URL Endpoints
4
Telemetry Strings
2
File Paths
13
Bundle IDs
10
IOKit Constants
0
Library Functions
0
Structural HashesSHA-256
Static Libraries0 / 351 functions identified
Functions(351)
0x100001290-[SPExecutionPolicy performGatekeeperPreflight:withPreflightOptions:withResult:]
0x100001a10sub_100001a10
0x100001a20sub_100001a20
0x100001a28sub_100001a28
0x100001a30sub_100001a30
0x100001a44-[SPExecutionPolicy notifyInstalledContent:withInstallationType:error:]
0x100001b28sub_100001b28
0x100001b38-[SPExecutionPolicy performGatekeeperScan:withScanOptions:withShouldOverridePolicy:withPolicy:withProgressHandler:error:]
0x100001d08sub_100001d08
0x100001d4csub_100001d4c
0x100001d94sub_100001d94
0x100001dd0-[SPExecutionPolicy performGatekeeperScan:withScanOptions:withProgressHandler:error:]
0x100001de4sub_100001de4
0x100001df4sub_100001df4
0x100001e00sub_100001e00
0x100001e64+[NVRAM isKeyPresent:]
0x100001f48+[NVRAM setKey:toValue:]
0x100002048+[NVRAM deleteKey:]
0x100002140+[NVRAM readCSRData]
0x10000233c+[NVRAM writeCSRData:]
Imports259 symbols from 11 dylibs
Exports1
_mh_execute_header0x0