Ari scans projects before Xcode opens them, detecting malicious:
build phases, shell scripts, dependency hooks, and hidden execution paths.
What Ari Protects Against
Downloaded Projects
Scans untrusted GitHub repos and sample code before opening in Xcode.
Build Script Execution
Detects hidden Run Script phases and obfuscated shell commands.
Supply Chain Risk
Flags unsafe dependencies and remote execution hooks.
Team Propagation
Prevents malicious code spreading through shared repositories and CI pipelines.
How Developers Use It
1. Clone or download a project from GitHub
2. Ari scans the project before opening in Xcode
3. Ari scans build phases, scripts, and configs
4. You review risk before any project opens
5. Open safely in Xcode if clean