HearthGate 1.12 is live

Guest access now cleans up after itself.

HearthGate 1.12 tightens the full Guest Access lifecycle. Guest sessions now sign out when you disconnect them, revoke their key, or delete the guest account; guest connections get their own menubar action; your personal connection hooks stay personal; and the security score is clearer about what is actually protected.

Guest sessions fully sign out

Disconnect a guest, revoke their key, or delete the guest account and the on-screen guest session closes right away. If a guest connection drops unexpectedly, HearthGate cleans it up automatically shortly after.

Disconnect guest from the menubar

When a guest is connected, HearthGate shows a dedicated Disconnect guest session action. End the guest session without touching your own active connections.

Hooks stay tied to your sessions

Guest connect and disconnect events no longer trigger your personal on-connect or on-disconnect automations, so guest help does not accidentally run your own scripts.

More honest posture scoring

The post-quantum signal is now shown as its own badge, and the posture scan adds checks for login banner, VNC Lockdown, and brute-force protection.

Guest session control

Temporary access should leave no user behind.

1.12 focuses on the end of a guest visit. A guest can receive screen or shell access through HearthGate, then be disconnected, revoked, paused by trial state, or removed without leaving a hidden signed-in desktop behind.

Visible state

Guest badge in Active Sessions

Guest connections are labeled clearly, so an operator can tell which sessions belong to the temporary guest workflow at a glance.

Setup clarity

Wizard key-only promise

Finishing setup with a freshly generated key now switches sign-in to key-only exactly as the guided setup says it will.

Consistent pause

Trial pause covers guests

When a trial ends, guest access is parked with the rest of the gateway and returns automatically after activation.

Operational examples

Where 1.12 makes guest access calmer

Guest Access was already scoped. 1.12 makes the cleanup path feel just as intentional as the connection path.

Use case

Remote help is finished

Use Disconnect guest session from the menubar and HearthGate ends the guest visit without closing your own sessions.

Use case

A guest key is revoked

Revoke the key and HearthGate closes the active guest screen session instead of merely blocking the next attempt.

Use case

A guest connection drops

If the network disappears, HearthGate automatically signs the guest out shortly after so the Mac does not keep an unattended guest desktop alive.

Use case

Your automation should stay yours

Guest connect and disconnect events stay out of your Connection Hooks, avoiding accidental Slack alerts, music pauses, or cleanup scripts.

Security notes

1.12 tightens the guest lifecycle without adding operator work.

This release keeps the promise of temporary access: visible while it is active, easy to end, and separated from your personal account and automations.

Learn about SILA, the codnamacs security lifecycle framework

Release notes at a glance

  • Guest sessions now sign out immediately when disconnected, revoked, or deleted.
  • Unexpected guest drops are cleaned up automatically shortly after the connection disappears.
  • A dedicated menubar action disconnects the guest session without touching the operator’s own connections.
  • Active Sessions now marks guest connections with a clear Guest badge.
  • Guest connections no longer trigger personal Connection Hooks.
  • Fresh setup with a generated key now switches sign-in to key-only as promised by the wizard.
  • Security posture scoring separates the post-quantum badge from warning checks and adds login banner, VNC Lockdown, and brute-force protection checks.
  • Trial pause, status cards, and Admin Lock edge cases were tightened so the UI state better matches the security state.

HearthGate 1.12

HearthGate 1.12 makes Guest Access easier to end, audit, and trust.

Open HearthGate page