Files
PROXY_GOD_MAC/README.md
2026-05-23 22:09:43 -07:00

54 lines
2.3 KiB
Markdown

# Proxy God for macOS
This workspace now runs the Python/CustomTkinter Proxy God dashboard from the reference repo, patched for macOS launch and GOST bootstrap.
## Run
```sh
make run
```
Or double-click:
```text
run_mac.command
```
To refresh the clickable app bundle:
```sh
make app
open "Proxy God.app"
```
The first run creates `.venv`, installs dependencies, downloads the correct macOS GOST binary, and starts the GUI.
## What Was Ported
- Neon Proxy God v2 dashboard layout, top status bar, chain visualization, progress strip, and tabs.
- Live tab with direct/exit IP, exit intel, chain map, and verbose logs.
- Chain Builder with pinned chains, manual exit parsing, per-hop testing, fixed final hop, and source management.
- Browser tab with hardened Firefox profile controls.
- Ban Tester, Signup Prep, Privacy, and Settings tabs.
- GOST-backed rotating multi-hop chain service.
- Proxifly/jsDelivr proxy source ingestion, validation, pool rotation, exit verification, HTTPS tunnel probe, leak checks, and health rotation.
- macOS app-data paths under `~/Library/Application Support/ProxyChainManager`.
- macOS GOST download/extract for `darwin_arm64` or `darwin_amd64`.
- macOS DNS cache flush and system proxy apply/clear through `networksetup`.
- macOS launch-at-login through a per-user LaunchAgent.
- macOS hostname spoof and IPv6-off controls with standard administrator prompts.
## Platform Notes
The upstream project is Windows-first. Features that do not have a clean, safe macOS equivalent were removed from the Mac UI instead of being left as fake toggles: netsh firewall kill-switch, registry Chrome/Edge WebRTC policy, MAC spoofing, Windows telemetry kill, and Windows LAN broadcast lockdown.
macOS networking is handled through:
- GOST bound to loopback at `127.0.0.1`.
- System HTTP/HTTPS proxy apply/clear via `networksetup`.
- Administrator prompt fallback when macOS requires permission for network changes.
- DNS cache flush with `dscacheutil` and `mDNSResponder`.
- Hardened Firefox profile for WebRTC and fingerprint controls.
The global Windows fail-closed firewall was not ported because a safe one-click macOS PF equivalent would require managing privileged packet-filter state and can leave the machine offline if interrupted. The Mac build favors deterministic system-proxy cleanup and verified chain health over unsafe PF mutation.