Agent skill · Security

macos-codesign-workflow

Execute macOS code signing with Developer ID and hardened runtime requirements

a5c-aigithub.com/a5c-aiGitHub ↗
claude-codecodexcan modify filesMIT
Install
npx skills add a5c-ai/babysitter --skill macos-codesign-workflow --agent claude-code

Same command for any agent — swap --agent for codex, cursor, copilot.

Facts
Files in the skill folder: 2
SKILL.md size: 2 KB
Bundled scripts: none
Allowed tools: ReadWriteEditBashGlobGrep
Path: library/specializations/desktop-development/skills/macos-codesign-workflow/SKILL.md
Open the folder on GitHub →
Where it comes from
Stars: 1,642
Language: JavaScript

Weekly change comes from our own snapshots, not the repository page — it measures attention, not adoption.

From the SKILL.md

# macos-codesign-workflow Execute macOS code signing with Developer ID certificates and hardened runtime. This skill handles the complete code signing process for macOS applications. ## Capabilities - Sign app bundles with Developer ID - Configure hardened runtime - Sign nested frameworks and binaries - Configure entitlements - Verify signatures - Set up CI/CD signing - Handle keychain management ## Input Schema ```json { "type": "object", "properties": { "appPath": { "type": "string" }, "identity": { "type": "string" }, "entitlements": { "type": "string" }, "hardenedRuntime": { "type": "boolean", "default": true } }, "required": ["appPath", "identity"] } ``` ## Signing Commands ```bash # Sign app bundle with hardened runtime codesign --force --options runtime --timestamp \ --entitlements MyApp.entitlements \ --sign "Developer ID Application: Company Name (TEAMID)" \ MyApp.app # Sign nested components first find MyApp.app -name "*.dylib" -o -name "*.framework" | \ xargs -I {} codesign --force --options runtime --timestamp \ --sign "Developer ID Application: Company Name (TEAMID)" {} # Verify signature codesign --verify --deep --strict --verbose=2 MyApp.app spctl --assess --type exe

What's inside
Steps it walks through
  1. Capabilities
  2. Input Schema
  3. Signing Commands
  4. Related Skills
Ships with 1 file
  • README.md
Commands it runs
Sign app bundle with hardened runtime
codesign --force --options runtime --timestamp \
MyApp.app
Sign nested components first
find MyApp.app -name "*.dylib" -o -name "*.framework" | \
xargs -I {} codesign --force --options runtime --timestamp \
Verify signature
codesign --verify --deep --strict --verbose=2 MyApp.app
spctl --assess --type execute --verbose MyApp.app
More from babysitter
All skills →
About this skill
What does the macos-codesign-workflow skill do?

Execute macOS code signing with Developer ID and hardened runtime requirements

How do I install it?

Run `npx skills add a5c-ai/babysitter --skill macos-codesign-workflow --agent claude-code` — it drops the skill into your project so the agent can pick it up. Swap the --agent value for codex, cursor or copilot if you use one of those.

Where does this skill come from?

From a5c-ai/babysitter, a repository with 1,642 stars. We read it straight from the repository tree rather than a submitted listing, so what you see here is what is actually published.

Is a popular skill a good skill?

Not necessarily. Stars measure attention, not adoption — a repository can trend for a week and be abandoned. That is why we show the weekly change from our own snapshots next to the total, instead of a single flattering number.

Keep going