signing-entitlements

द्वारा openai

macOS ऐप्स के लिए हस्ताक्षर, अधिकार, कठोर रनटाइम और गेटकीपर समस्याओं का निरीक्षण करें। जब कोड हस्ताक्षर विफलताओं, लापता अधिकारों,… के निदान के लिए कहा जाए तो उपयोग करें।

npx skills add https://github.com/openai/plugins --skill signing-entitlements

Signing & Entitlements

Quick Start

Use this skill when the failure smells like codesigning rather than compilation: launch refusal, missing entitlement, invalid signature, sandbox mismatch, hardened runtime confusion, or trust-policy rejection.

Workflow

  1. Inspect the bundle or binary.

    • Locate the .app or executable.
    • Identify the main binary inside Contents/MacOS/.
  2. Read signing details.

    • Use codesign -dvvv --entitlements :- <path>.
    • Use spctl -a -vv <path> when Gatekeeper behavior matters.
    • Use plutil -p for entitlements or Info.plist inspection.
  3. Classify the failure.

    • Unsigned or ad hoc signed
    • Wrong identity
    • Entitlement mismatch
    • Hardened runtime issue
    • App Sandbox issue
    • Nested code signing issue
    • Distribution/notarization prerequisite issue
  4. Explain the minimum fix path.

    • Say exactly what is wrong.
    • Show the shortest set of validation or repair commands.
    • Distinguish local development problems from distribution problems.

Useful Commands

  • codesign -dvvv --entitlements :- <app-or-binary>
  • spctl -a -vv <app-or-binary>
  • security find-identity -p codesigning -v
  • plutil -p <path-to-entitlements-or-plist>

Guardrails

  • Never invent missing entitlements.
  • Do not conflate notarization with local debug signing.
  • If the real issue is a build setting or provisioning profile, say so directly.

Output Expectations

Provide:

  • what artifact was inspected
  • what signing state it is in
  • the exact failure class
  • the minimum fix or validation sequence

openai की और Skills

release
openai
Symphony रिलीज़ को बंप करके, उसे लैंड करके, मर्ज किए गए कमिट को टैग करके, और Burrito रिलीज़ वर्कफ़्लो को सत्यापित करके काटें। जब ऐसा करने के लिए कहा जाए…
building-ai-agent-on-cloudflare
openai
Cloudflare पर Agents SDK का उपयोग करके AI एजेंट बनाता है, जिसमें state प्रबंधन, real-time WebSockets, अनुसूचित कार्य, tool एकीकरण और चैट शामिल हैं…
epigraphdb-skill
openai
ऑन्टोलॉजी, साहित्य, एमआर, जीन-दवा और समर्थन-पथ साक्ष्य के लिए कॉम्पैक्ट EpiGraphDB API अनुरोध सबमिट करें। जब उपयोगकर्ता संक्षिप्त EpiGraphDB सारांश चाहता है तब उपयोग करें।
runtime-behavior-probe
openai
अस्थायी जांच स्क्रिप्ट, सत्यापन मैट्रिक्स, स्थिति नियंत्रण और निष्कर्ष-प्रथम रिपोर्ट के साथ runtime-behavior जांच की योजना बनाएं और निष्पादित करें। केवल तब उपयोग करें जब...
deep-security-scan
openai
उपयोग तब करें जब उपयोगकर्ता गहन, व्यापक, बहु-पास, या विचरण-न्यूनीकरण वाले रिपॉजिटरी-व्यापी या स्कोप्ड-पथ Codex Security स्कैन का अनुरोध करता है। कई स्वतंत्र बार-बार चलाएँ…
define-security-policy
openai
किसी रिपॉज़िटरी या कंपोनेंट के लिए SECURITY.md मार्गदर्शन को परिभाषित, समीक्षा, या अपडेट करें। उपयोग करें जब उपयोगकर्ता यह स्पष्ट करना चाहता है कि Codex Security को क्या समीक्षा करनी चाहिए, क्या बाहर…
validation
openai
इसका उपयोग तब करें जब Codex पहले से ही सुरक्षा स्कैन के सत्यापन चरण में हो या उपयोगकर्ता स्पष्ट रूप से यह निर्धारित करने के लिए कहे कि एक या अधिक उम्मीदवार सुरक्षा निष्कर्ष…
fix-finding
openai
उपयोग तब करें जब उपयोगकर्ता स्पष्ट रूप से किसी सत्यापित या संभावित सुरक्षा निष्कर्ष को ठीक करने और सत्यापित करने के लिए कहे। पूर्ण PR, commit, branch,… के लिए प्राथमिक ट्रिगर के रूप में उपयोग न करें।