2018-11-25 18:13:15 -05:00
|
|
|
<?xml version="1.0" encoding="UTF-8"?>
|
|
|
|
<!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "http://www.apple.com/DTDs/PropertyList-1.0.dtd">
|
|
|
|
<plist version="1.0">
|
|
|
|
<dict>
|
2018-11-25 21:00:04 -05:00
|
|
|
<!-- Enable app sandbox -->
|
2018-11-25 18:13:15 -05:00
|
|
|
<key>com.apple.security.app-sandbox</key>
|
|
|
|
<true/>
|
2018-11-25 21:00:04 -05:00
|
|
|
|
2020-09-22 00:16:31 -04:00
|
|
|
<!-- Required for running PyInstaller python code with hardened runtime -->
|
|
|
|
<key>com.apple.security.cs.allow-unsigned-executable-memory</key>
|
|
|
|
<true/>
|
|
|
|
|
2018-11-25 21:00:04 -05:00
|
|
|
<!-- Both OnionShare and Tor need network server and client -->
|
2018-11-25 19:15:27 -05:00
|
|
|
<key>com.apple.security.network.server</key>
|
|
|
|
<true/>
|
2018-11-25 18:13:15 -05:00
|
|
|
<key>com.apple.security.network.client</key>
|
|
|
|
<true/>
|
2018-11-25 21:00:04 -05:00
|
|
|
|
2018-11-25 20:18:55 -05:00
|
|
|
<!-- In share mode, users need to be able to select files, and in receive mode,
|
|
|
|
users need to be able to choose a folder to save files to -->
|
|
|
|
<key>com.apple.security.files.user-selected.read-write</key>
|
2018-11-25 18:52:36 -05:00
|
|
|
<true/>
|
2018-11-25 21:00:04 -05:00
|
|
|
|
2018-11-25 20:18:55 -05:00
|
|
|
<!-- Flask needs to read this mime.types file when starting an HTTP server -->
|
|
|
|
<key>com.apple.security.temporary-exception.files.absolute-path.read-only</key>
|
|
|
|
<array>
|
|
|
|
<string>/private/etc/apache2/mime.types</string>
|
|
|
|
</array>
|
2018-11-25 21:00:04 -05:00
|
|
|
|
2018-11-25 20:18:55 -05:00
|
|
|
<!-- For OnionShare to be able to connect to Tor Browser's tor control port,
|
|
|
|
it needs to read it's control_auth_cookie file -->
|
2018-11-25 20:00:02 -05:00
|
|
|
<key>com.apple.security.temporary-exception.files.home-relative-path.read-only</key>
|
|
|
|
<array>
|
|
|
|
<string>/Library/Application Support/TorBrowser-Data/Tor/control_auth_cookie</string>
|
|
|
|
</array>
|
2018-11-25 21:00:04 -05:00
|
|
|
|
2018-11-25 20:18:55 -05:00
|
|
|
<!-- In receive mode, OnionShare needs to be able to write to ~/OnionShare -->
|
2018-11-25 18:13:15 -05:00
|
|
|
<key>com.apple.security.temporary-exception.files.home-relative-path.read-write</key>
|
|
|
|
<array>
|
2018-11-25 21:00:04 -05:00
|
|
|
<string>/OnionShare/</string>
|
2018-11-25 20:00:02 -05:00
|
|
|
</array>
|
2018-11-25 18:13:15 -05:00
|
|
|
</dict>
|
|
|
|
</plist>
|