Edge Rewrite
// HTMLRewriter · presentation

This page was redesigned at the edge.

Cloudflare fetched the original article and streamed it through HTMLRewriter to apply an entirely new visual system without rebuilding the source page.

// request.cf · coarse context

A page that knows where it met you.

Only coarse request metadata is shown. This demo does not display or persist visitor IP addresses.

Country
US
Cloudflare location
CMH
Connection
HTTP/2
Language
Not provided

Ray ID: a41ec95f9c39d858

Jump to content

// Workers AI · dad joke modeWhat did Little Snitch say to the firewall? You're always blocking my sniff.

From Wikipedia, the free encyclopedia
Little Snitch
DeveloperObjective Development Software GmbH
Stable release6.3.3 (November 19, 2025; 10 months ago (2025-11-19)[1]) [±]
Written inObjective-C
Operating systemmacOS, Linux
Available inGerman, English
TypeFirewall
LicenseProprietary (macOS); mixed GPLv2 and proprietary components (for Linux)
Websiteobdev.at/products/littlesnitch (macOS); obdev.at/products/littlesnitch-linux/index.html (for Linux)
Repositorygithub.com/obdev/littlesnitch-linux (for Linux)

Little Snitch and Little Snitch for Linux are a multi-platform pair of host-based application firewalls supported by Objective Development Software GmbH for macOS and Linux-based desktop computer systems, respectively. Each can be used to monitor applications, preventing or permitting them to connect to attached networks through advanced rules.

Unlike a stateful firewall, which is designed primarily to protect a system from external attacks by restricting inbound traffic, Little Snitch is designed to protect privacy by limiting outbound traffic.[2] Until Little Snitch 4, it controlled network traffic by registering kernel extensions through the standard application programming interface (API) provided by Apple, but at version 5 it switched to using Apple's Network Extensions due to the deprecation[3] of kernel extensions on macOS Catalina.[4]

When an application or process attempts to establish a network connection, Little Snitch presents a dialog that allows the user to deny or permit the connection once, for a limited time, or permanently. The dialog also allows the user to restrict the parameters of the connection, for example allowing a given application to only connect to a certain domain or using a specific protocol or port. Little Snitch's integral network monitor shows ongoing traffic in real time with domain names and traffic direction.

The application (version 4) received a positive 4.5/5 review from Macworld.[5]

In 2026 a Linux version was released.[6] While the macOS version is written in Objective-C,[7] the Linux version is written in Rust.[6]

References

[edit]
  1. ↑ "Release Notes – Little Snitch". Retrieved April 27, 2026.
  2. ↑ "Little Snitch 4". Retrieved July 20, 2019.
  3. ↑ "Release Notes - Little Snitch". archive.ph.{{cite web}}: CS1 maint: deprecated archival service (link)
  4. ↑ Little Snitch 3 - Documentation. Objective Development Software GmbH. 2013.
  5. ↑ Fleishman, Glenn (September 8, 2017). "Little Snitch 4 review: Mac app excels at monitoring and controlling network activity". Macworld. Retrieved July 20, 2019.
  6. 1 2 Zorz, Mirko (2026-04-10). "Little Snitch for Linux shows what your apps are connecting to". Help Net Security. Retrieved 2026-06-28.
  7. ↑ "Little Snitch". Objective Development. Retrieved 2026-06-28.
[edit]