Skip to content

Glossary

tccd

The macOS daemon that evaluates TCC permission requests, shows consent prompts and writes the decisions to the system and per-user TCC.db files.

tccd is the daemon behind TCC. It receives permission requests, checks existing decisions and policies, shows consent prompts, and writes the outcome to TCC.db. There is a system instance and a per-user instance, matching the system and per-user databases.

tccd logs under the unified log subsystem com.apple.TCC. That log, not the database, is where individual requests and the responsible process appear, while retention allows. See investigating TCC permission abuse.