Sentinel: Building a CVE-Aware macOS Update System

How I built a two-component macOS update management system that ties CVE severity directly to deployment urgency, so users get accurate security context and admins get phased rollouts that automatically accelerate when it matters.

January 30, 2026 · 8 min · Matt Parker