Keeps watch over your Mac. Checks memory, CPU, heat, battery, disk, network and device management, explains what it finds in plain words, and answers questions — with an AI model that runs entirely on the Mac. Deploy your IT guides and it answers from them, naming the document.
A deterministic rule engine evaluates the Mac and lists findings with severity (critical, warning, info), explanation, recommendation and the measured values in human units.
“Why is my Mac slow?”, “Is my battery OK?”, “Is this Mac managed?” The on-device model explains the rule engine's findings — it never invents its own. Every question carries the current results, so it doesn't ask users to run commands or paste logs. It introduces itself as Heimdall and declines requests unrelated to the Mac or IT.
Gemma 4 E2B (text-only) is bundled in the app and runs via MLX. Loaded on the first question, released after 5 minutes idle. Load Anyway when memory is short.
Memory pressure, swap, memory and CPU per app, CPU load, thermal throttling via kernel_task, temperature, battery health and cycles, disk space, uptime, network, Low Power Mode.
MDM enrollment and user approval, Automated Device Enrollment, MDM profile signature, MDM errors in the system log, Jamf Pro and Microsoft Intune agent health. The managing vendor is read from the MDM profile, so a Jamf-managed Mac with Company Portal no longer gets an Intune warning. Kandji, Workspace ONE, Addigy and Mosyle agents are detected.
Deploy IT guides (Markdown, text, PDF, Word, RTF, HTML) and Heimdall searches them locally, answers from the matching sections and names the document. A support contact you set is added when an answer recommends contacting IT.
Saved per session on the Mac (newest 50 kept), with New Conversation and a Conversations menu. The model sees the last 10 messages.
Managed Preferences can force the on-device model, point Heimdall at an OpenAI-compatible server, set the documentation folder and the IT support contact. Forced settings show as locked. A Jamf Pro schema and example profile are included.
A signed, notarized package that installs only the app — no LaunchAgents, no daemons, no root helper, no system extensions.
No telemetry, no account, no cloud. Data leaves the Mac only if an administrator configures an external server.
Deployment with Jamf Pro, Intune or any MDM, managed settings, every check and its thresholds, data locations and troubleshooting.
📖 Read the DocumentationmacOS 26 or later, Apple Silicon.
8 GB RAM or more — the model needs about 2.7 GB of free memory while answering.
About 2.5 GB of disk space.
Version 0.2.0 — beta. Signed with a Developer ID certificate and notarized by Apple.
The rule engine, MDM probe, documentation search and chat sessions are covered by unit tests (64 passing).
System checks and the bundled model were verified live on an 8 GB M1. 0.2.0 follows up on the first tests on a managed Mac in a demo environment; nothing has been tested in production.
The Jamf Pro and Intune checks were built against documented log formats and unit-tested with sample logs; vendor detection by MDM profile, the documentation feature and the support contact have not had wider testing across tenants.
More checks (login items, crash reports, Spotlight, Time Machine, software updates), trends over days, and MDM-configurable thresholds.
Concept app · Free · Signed & Notarized · macOS 26+ · Apple Silicon · 2.4 GB
Download Heimdall