V1.0 macOS 14+ · runs locally · no account

Control starts with visibility.

Your AI tools have more ways to act than you think. Mockingbird maps those capabilities, sets the boundaries, and tells you when they change.

Read the doctrine Nothing changes until you approve a change.
AI
DOCTRINE SCORE 41/ 100
17 of 46 rules failing
PERMISSIONS HELD 312grants 4 wildcard · 0 that refrain
GUARD · LAST 24H 2,481calls inspected before running
6 refused · 1 paused 12m
DRIFT hooks.json changed 04:12 no longer matches the
configuration you approved

DEMO MACHINE · SYNTHETIC RULE PACK

HOW IT WORKS04 STEPS
THE ORDER IS
LOAD-BEARING

Measure first. Change nothing you haven't verified.

01

Measure

Checks run against the actual machine — permission lists, file flags, hooks, snapshots, open database handles. Each reports the evidence it found, not a green tick. The result is a weighted score you can argue with.

02

Implement

Every fixable finding writes a shell script and shows it to you. Read it, then apply — or run it yourself. Settings are backed up before a byte changes.

03

Enforce

A hook inspects every tool call before it runs, reading the command and the paths it touches. It sits below the permission list, where a wildcard grant can't step around it.

04

Watch

Re-scans on your cadence. Says when a control that was holding stops holding, when a config file changes underneath you, when the original moves and nothing was supposed to be writing to it.

WHAT YOU GET06 CAPABILITIES

A score, not a checklist

Controls are weighted by what they cost you when they fail, so the number moves for reasons you can name. Every check shows its working.

Fixes you read first

No silent remediation. The change is written to disk as a script you can open, before anything runs it.

Enforcement below the config

A permission list sitting beside a general interpreter is advice. The guard reads the command whichever interpreter would have run it.

Pause that actually pauses

The guard re-reads its state on every call. Pause takes effect now, resumes itself when you said it should, and keeps logging throughout — so you can see what went through while it was off.

Drift you'd otherwise find late

Fingerprints on the files that matter. A control that quietly stopped holding is an event, not something you discover in a quarterly review.

Your doctrine, not ours

Ships with one rule pack. Every rule is a shell probe you can edit, weight, disable or replace — write your own and the score follows.

There is no build to hand over yet.

Mockingbird is not signed and notarised yet. Leave an address and you will hear the moment it is — one email, nothing before it.

Used for that one email and nothing else.

Request the documentation

What each rule probes and how it is weighted, what the guard reads before a call runs, and where the controls stop. We will send it over.

Used to send you the documentation and nothing else.