Guest sessions fully sign out
Disconnect a guest, revoke their key, or delete the guest account and the on-screen guest session closes right away. If a guest connection drops unexpectedly, HearthGate cleans it up automatically shortly after.
HearthGate 1.12 is live
HearthGate 1.12 tightens the full Guest Access lifecycle. Guest sessions now sign out when you disconnect them, revoke their key, or delete the guest account; guest connections get their own menubar action; your personal connection hooks stay personal; and the security score is clearer about what is actually protected.
Disconnect a guest, revoke their key, or delete the guest account and the on-screen guest session closes right away. If a guest connection drops unexpectedly, HearthGate cleans it up automatically shortly after.
When a guest is connected, HearthGate shows a dedicated Disconnect guest session action. End the guest session without touching your own active connections.
Guest connect and disconnect events no longer trigger your personal on-connect or on-disconnect automations, so guest help does not accidentally run your own scripts.
The post-quantum signal is now shown as its own badge, and the posture scan adds checks for login banner, VNC Lockdown, and brute-force protection.
Guest session control
1.12 focuses on the end of a guest visit. A guest can receive screen or shell access through HearthGate, then be disconnected, revoked, paused by trial state, or removed without leaving a hidden signed-in desktop behind.
Guest connections are labeled clearly, so an operator can tell which sessions belong to the temporary guest workflow at a glance.
Finishing setup with a freshly generated key now switches sign-in to key-only exactly as the guided setup says it will.
When a trial ends, guest access is parked with the rest of the gateway and returns automatically after activation.
Operational examples
Guest Access was already scoped. 1.12 makes the cleanup path feel just as intentional as the connection path.
Use case
Use Disconnect guest session from the menubar and HearthGate ends the guest visit without closing your own sessions.
Use case
Revoke the key and HearthGate closes the active guest screen session instead of merely blocking the next attempt.
Use case
If the network disappears, HearthGate automatically signs the guest out shortly after so the Mac does not keep an unattended guest desktop alive.
Use case
Guest connect and disconnect events stay out of your Connection Hooks, avoiding accidental Slack alerts, music pauses, or cleanup scripts.
Security notes
This release keeps the promise of temporary access: visible while it is active, easy to end, and separated from your personal account and automations.
Learn about SILA, the codnamacs security lifecycle frameworkHearthGate 1.12