Built-in Terminal Actions
Open a live-filtering action picker from the SSH prompt, fill the blanks with Tab path completion, then review the finished command before you press Enter.
HearthGate 1.14 is live
HearthGate 1.14 adds Built-in Terminal Actions: press / on an empty SSH prompt and pick from a curated command palette for the Mac you are connected to. It also introduces Terminal + tunnel packages for full-access keys, so a trusted operator can open a shell while the secure screen tunnel is alive.
Open a live-filtering action picker from the SSH prompt, fill the blanks with Tab path completion, then review the finished command before you press Enter.
Full-access key holders can open an interactive shell and a Screen Sharing tunnel together. Close the shell and the tunnel closes with it.
The default catalog focuses on useful Mac admin checks and helper tasks. Commands are suggested, not auto-run, and the default set avoids sudo and destructive actions.
Edit the catalog from Configuration, carry custom actions inside encrypted .hgex exports, and keep catalog updates consent-based instead of silently rewritten.
SSH workflow
HearthGate now treats SSH as a first-class operator surface, not only as the transport under VNC. A full-access key can get practical terminal workflows while restricted VNC keys stay narrow by default.
Use macOS Terminal, Windows PowerShell, a Linux shell, or another standard SSH client. The action picker runs from the Mac side through the same governed SSH path.
Terminal Actions use a managed zsh workflow on the Mac. There is no client-side install and no requirement for Homebrew, fzf, or extra server packages.
HearthGate is pure Swift. Its security-critical core and privileged helper contain zero third-party code. Sparkle is version-pinned, EdDSA-signed, and used only for updates.
Terminal examples
The new palette is built for the small Mac admin tasks people repeat during remote support, homelab care, and development work.
Use case
Connect over SSH from Windows, press /, and choose common Mac checks without memorizing every command or installing another tool on the client.
Use case
Use curated actions for folders, search, disk space, processes, networking, system info, login history, and security-oriented session checks.
Use case
Create a deliberate full-access key and choose Terminal + tunnel when the operator needs both a shell and a screen-sharing path.
Use case
Restricted VNC-only keys stay excluded from terminal package generation, so routine screen access does not accidentally become shell access.
Security notes
This release adds useful terminal surfaces for trusted keys while preserving HearthGate’s default VNC-only posture for ordinary connection packages.
Learn about SILA, the codnamacs security lifecycle frameworkHearthGate 1.14