Before you build
Use an Apple Silicon Mac running macOS 26 or later, with Swift 6 and the macOS 27 SDK. Full Xcode 27 is required for Xcode archives. The repository also includes a Command Line Tools build path used for local validation.
This guide runs the current UI and fixture milestone. It does not install agent hooks, register a Login Item, collect an Anthropic key, or enable live protection.
Build from source
./scripts/build.sh
open build/TraceRook.appRun these commands from the root of the current TraceRook development checkout. They require the native application source and scripts; the static website by itself is not an app source distribution. You can also open TraceRook.xcodeproj and select the TraceRook scheme. Development builds are ad-hoc signed unless a signing identity is supplied. Signature integrity alone does not establish Developer ID trust or notarization.
There is no signed release download available in this milestone. Review the repository’s security limitations before using a source build.
Explore Cloud Demo
open build/TraceRook.app --args --demo- Open Overview and confirm the Demo label.
- Browse Sessions and select a sample session to inspect its task context and timeline.
- Open Incidents and inspect the evidence, policy reference, response, and execution certainty.
- Select Simulate review, then open Approvals or the native review panel.
- Choose Block or Allow once before the sample’s 45-second deadline. An expired response is rejected.
The sample account, usage, and plan screens use bundled fixtures. No cloud enrollment, purchase, or analysis request occurs.
Check the real activity view
Switch away from the sample view. Real activity should stay empty and integrations should show Not integrated or an unchecked state. Installing Claude Code or Codex on your Mac does not make the development app a live security gate.
BYOK is shown as unavailable until Phase 4. Do not manually wire the foundation hook executable into your agent configuration: its normal operational path is intentionally unsupported.
Run the local checks
./scripts/smoke-test.sh
./scripts/ui-smoke-test.shThe smoke script compiles the three executables, runs the Swift Testing harness, and exercises harmless fixture demonstrations. The UI script produces native light and dark render artifacts. These checks do not prove real-host enforcement or a notarized release.
For the full distinction between current evidence and release gates, read testing and verification.