macOS users learn the one-switch Full Disk Access fix — doctor reports it, setup teaches it - #95540
Merged
Merged
Conversation
The last piece of the macOS permissions campaign (#52010 follow-up): macOS prompts per-folder (Desktop, then Downloads, then Documents, ...) as the agent touches each one — a drip-feed of dialogs on first use. ONE Full Disk Access grant covers all of them permanently, and with the stable signing identities merged this week it survives every update. Nothing in Hermes taught users that. - hermes doctor: check_macos_full_disk_access() — prompt-free probe (the FDA-gated TCC db dir returns EPERM without a dialog; TCC only prompts on protected-CATEGORY paths), reports granted state or prints the one-switch setup with the Privacy_AllFiles deep link. - hermes setup: same probe at the end of onboarding — the moment users are primed to do system setup — silent when already granted, indeterminate, or non-macOS. - docs: desktop.md TCC section now leads with the one-switch guidance. - 7 tests (granted / denied / indeterminate / non-macOS, both surfaces).
Contributor
૮ >ﻌ< ა ci reviewran on a769a91 — feat(macos): one-switch Full Disk Access guidance in doctor
|
Open
20 tasks
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Summary
The last piece of the macOS permissions campaign: Hermes now teaches macOS users the one-switch fix — a single Full Disk Access grant covers every folder prompt (Desktop/Downloads/Documents/...), permanently, and with the stable signing identities landed this week it survives every update. Nothing in the product surfaced that; users got the OS's drip-feed of per-folder dialogs instead. Follow-up to #52010.
Changes
hermes_cli/doctor.py:check_macos_full_disk_access()— reports whether the current terminal context has FDA; when missing, prints the one-switch setup with thePrivacy_AllFilesSystem Settings deep link. Prompt-free probe: readability of the FDA-gated~/Library/Application Support/com.apple.TCCdir, which returns EPERM without ever showing a dialog (TCC only prompts on protected-CATEGORY paths). Silent on non-macOS/indeterminate.hermes_cli/setup.py: same probe at the end of onboarding — the moment users are primed for system setup. Silent when already granted.website/docs/user-guide/desktop.md: the TCC section now leads with the one-switch guidance.Built on this week's substrate: #95091 (cert-anchored identity), #95128 (doctor DR diagnosis), #95131/#95478 (interpreter anchor + repair signing) — the FDA grant these instructions produce is durable precisely because of those.
Validation
tests/hermes_cli/test_macos_fda_guidance.py+ full doctor suite: 72 passedhermes doctoron a machine without FDA and confirm no prompt appears.Infographic