# jipegit/OSXAuditor

OS X Auditor is a free Mac OS X computer forensics tool

Repository: https://github.com/jipegit/OSXAuditor
Canonical: https://ross.abutalabs.com/products/osxauditor
Language: JavaScript
License: NOASSERTION
License Family: other
Last push: 2020-07-27T22:34:25+00:00

## Health v2 (maintenance only)
Score: 32/100 (v2, computed 2026-09-03T02:20:16.233290+00:00)
- activity 0, release rhythm 35, longevity 100
- inputs: {"age_days": 4823, "days_push": 2228, "days_rel": null, "gap_med": null, "n_releases_24m": 0}
- flags: no_releases, no_license
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 3135, forks 274 (observed 2026-08-28T04:07:45.666047+00:00)

## What it is
OS X Auditor is a free Mac OS X computer forensics tool that parses and hashes system artifacts such as kernel extensions, daemons, startup items, browser histories, and quarantined files. It can check file reputation against services like VirusTotal and Team Cymru's MHR, and output results as text, HTML, or syslog.

## Use cases
- analyze a mac system for signs of malware infection
- collect forensic artifacts from an osx machine
- hash suspicious files and check them against virustotal
- extract browser history and wifi access points from a mac
- audit startup items and launch agents on os x
- aggregate system logs into a zipball for incident response

## When to choose
- you need a free, scriptable forensics scanner for older OS X systems
- you want to parse macOS persistence artifacts and browser data from Python
- you are analyzing a copied macOS system image offline

## When to avoid
- you need a maintained tool - the project is explicitly no longer maintained
- you run modern macOS versions where parsing may break
- you need Python 3 support - it requires Python 2.7
- you want active community support or updates

## Facets
- artifact type: cli-tool
- maturity: abandoned
- function: security, logging, search-engine
- domain: security, operating-systems, developer-tools
- platform: python, cli
- tags: computer-forensics, incident-response, macos-artifacts, malware-analysis, unmaintained, forensics, macos

## Member repositories
- jipegit/OSXAuditor (main) score 32

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:07:45.666047+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-29T18:45:36.898222+00:00, confidence not recorded.
  - readme: https://github.com/jipegit/OSXAuditor (fetched 2026-08-28T04:07:45.666047+00:00, sha c2d6df7b4fe9)
- Data as of 2026-08-30T08:39:29.467469+00:00.
