App Trust Preview , also on the App Store
App Trust Preview helps you understand Mac software before opening or installing it.
About App Trust Preview
App Trust Preview helps you understand Mac software before opening or installing it. Inspect an app, installer package, disk image, executable, or script. Drop it into the app, choose it on your Mac, preview it in Finder with Quick Look, or create a command-line report. App Trust Preview turns technical macOS information into a plain-language report. See who created the software, whether Apple notarized it, where it came from, what it may access or connect to, what it contains, and which findings deserve a closer look. What App Trust Preview checks - Signatures, developer identity, notarization, certificate revocation, version information, and changes made after signing. - Download history with source URLs, the download application, date, file type, quarantine status, and macOS processing metadata. Copy the original download URL with one click. - App Sandbox, Hardened Runtime, risky entitlements, and whether helpers are signed, sandboxed, or able to access more than the main app. - Privacy access the software may request and saved macOS permission choices, including whether those choices match the inspected build. - Internet access and potential connections, with domains and URLs grouped by purpose. These are possible destinations found in files, not proof of contact. - App and disk image contents. DMG reports separate metadata for the disk image, extracted app, and bundled components. - Installer payloads, destination paths, administrator approval, install scripts, and nested PKG packages, including packages with symbolic links. - Executable and script details, linked libraries, readable script contents, and SHA-256, SHA-1, and MD5 hashes. Open an existing VirusTotal page without uploading the inspected file. - Build technologies such as Electron, Chromium, Tauri, WebKit, SwiftUI, Flutter, Unity, Java, .NET, Python, and Node.js. - Technical details including relevant code-signing, Finder, and system file metadata, private frameworks, URL schemes, shared keychain access, App Groups, and declared capabilities. Important findings appear first. Choose which report panels are visible and arrange their order. Your preferences remain in place as reports change. Export an inspected app to a folder, ZIP, or DMG, or install it in Applications at your request, including from a DMG. Add personal notes and save reports as PDF, PNG, JSON, or text. JSON, text, and command-line reports include download history and file metadata. With 'Open with other apps', send an analyzed item to apps you add, such as EasyDMG or antivirus tools. App Trust Preview is fully compatible with App Archiver, a separate app. Add App Archiver to the 'Open with other apps' panel, then click its button to quickly archive or unarchive apps. Use the command-line interface with shell scripts, automated workflows, security checks, and external AI agents. Analysis runs locally. App Trust Preview does not launch, modify, or upload inspected software. It is not a malware scanner and cannot prove software is safe, but it provides useful evidence before you decide whether to trust it.
Screenshots
From the developer's own App Store listing.
Features
- Signatures, developer identity, notarization, certificate revocation, version information, and changes made after signing.
- Download history with source URLs, the download application, date, file type, quarantine status, and macOS processing metadata. Copy the original download URL w
- App Sandbox, Hardened Runtime, risky entitlements, and whether helpers are signed, sandboxed, or able to access more than the main app.
- Privacy access the software may request and saved macOS permission choices, including whether those choices match the inspected build.
- Internet access and potential connections, with domains and URLs grouped by purpose. These are possible destinations found in files, not proof of contact.
- App and disk image contents. DMG reports separate metadata for the disk image, extracted app, and bundled components.