A little clarity.For every connection.

See the trust behind your traffic. Uncover TLS inspection signals, explore certificates, and understand your network. Right from your Mac’s menu bar.

Free & open source · macOS 14+ · Apple Silicon

Domain inspection ratio

41.4%
Confirmed12
Suspected3
Public trust14

Certificate activity

Example Enterprise CACN=Example Enterprise Root CA
Confirmed
Public certificate baselineCN=Example Public Root CA
Public trust

Built for your Mac. Built to be understood.

Native SwiftUI

Feels right at home.

MIT licensed

Open for everyone.

Local analysis

On your own Mac.

No account needed

Download and explore.

Less guessing. More understanding.

From a network signal to the certificate behind it. Everything you need to follow the evidence.

01

Spot inspection signals

Compare macOS trust with an independent public certificate baseline. See confirmed, suspected, and unknown results in context.

02

Follow the certificate

Explore issuers, validity dates, fingerprints, and the domains that share a certificate authority.

03

Keep the context

Search observed domains, inspect probe results, and trace connection details without leaving your menu bar.

Three views. One clearer picture.

Interactive preview · Sample data

swg bar

api.example.org

:443
Native trust
Accepted
Public baseline
Not accepted
TLS
TLS 1.3

Illustrative preview. Independent probes do not establish which certificate another app received.

Private by architecture.

Your network observations belong on your Mac. No central analysis service. No account to create.

  • Observations stored locally
  • Independent public certificate baseline
  • Pause monitoring whenever you want

Probes connect to discovered hosts. Some metadata and logs are not encrypted.

How your data is handled

From your menu bar to the evidence.

A simple flow from observation to understanding, right on your Mac.

01

Open swg bar

Install on macOS 14 or later with Apple Silicon. Open the app from your menu bar.

02

Let the signals surface

Import accessible Chromium browser history and discover domains through available network metadata. TLS probes gather trust evidence.

03

Explore the evidence

Review domains, certificate details, and classifications. Follow a signal at your own pace.

ConfirmedSuspectedPublic trustExpected privateUnknownExcluded

Trust should be inspectable.So should the tools.

Read the code. Question the evidence. Help make network trust a little easier to understand.

Explore the source

A clearer network. A simple price.

Completely free and open source under the MIT license. All the essentials, without a subscription.

SWG BAR
$0

Completely free & open source

  • TLS inspection insights
  • Domain & certificate details
  • 5 languages · 3 appearance modes
  • Local analysis, no account
Download for macOSmacOS 14+ · Apple Silicon

A few things worth knowing.

Straight answers, from the project itself.

What does swg bar actually detect?

It compares native macOS trust with an independent public certificate baseline to surface TLS inspection signals. Classification depends on collected evidence and rules. A repeated certificate authority alone is not proof of inspection.

Does it intercept or decrypt my traffic?

No. swg bar examines available connection metadata and certificates, and makes its own TLS probes. It is not a VPN, traffic blocker, or decryption proxy. A probe cannot prove which certificate another application received.

Which Macs are supported?

The published v1.7.0 installer requires macOS 14 or later and an Apple Silicon Mac (M1 or later). An Intel installer is not included in this release.

Why might macOS show a security notice?

The current release uses ad-hoc signing. It is not Developer ID signed or notarized by Apple. After reviewing the source and download, follow the app-specific option in System Settings → Privacy & Security if macOS blocks it. Managed Macs may restrict installation.

What data does the app use?

It reads macOS certificate trust, imports hostnames from accessible Chromium browser histories, and uses network metadata where permissions allow. Observations stay local; probes make outbound TLS connections. Some fields are encrypted, but metadata and logs are not fully encrypted.

Are there limits to the results?

Yes. Current classification is scoped to supported IPv4 HTTPS evidence. Missing handshakes, unavailable capture permissions, unsupported traffic, and other gaps may leave results unknown or excluded. Treat the app as an evidence tool, not a guarantee.

What happens when I upgrade?

The current application resets its local database, rules, encryption key, and archived logs when it detects a newer version. Back up ~/Library/Application Support/SWGBar/ and ~/Library/Logs/SWGBar/ before upgrading if you need existing records.

Make the invisible a little clearer.

Start with your next connection.

A little clarity is one install away.

SWGBar v1.7.0 · macOS 14+ · Apple Silicon

  1. Quit any running copy of SWGBar.
  2. Open the .pkg installer, then launch SWGBar from Applications.
  3. Look for swg bar in your menu bar. There is no Dock icon.

About the current release

Ad-hoc signed; not Developer ID signed or notarized. macOS may block installation or launch. Review the source and Apple’s instructions before using the app-specific Open Anyway option. Managed Macs may restrict it.

Apple’s installation guidance
Upgrading an existing installation?

This version resets local records when it detects a newer version. Back up your SWGBar Application Support and Logs folders first if you need to keep them.

Download .pkgSHA-256 checksums