Yes, I thought OP was going that direction from the title. I keep reading posts hoping someone has found the solution but there's always a tradeoff.
I think it's important enough that maybe apple will announce something at WWDC. The AIs need better isolation primitives. Running software from un-trusted sources needs easier and more flexible isolation guarantees. Automated builds need lighter weight virtualization options. A dockerfile that you can specify includes xcode-tools, the accessibility APIs. Volume mounting. Network controls. etc.
https://github.com/dockur/macos is a little too clunky? Tart VM or manually doing apple's container CLI is maybe most of the way there, but images are huge.
Yes, I thought OP was going that direction from the title. I keep reading posts hoping someone has found the solution but there's always a tradeoff.
I think it's important enough that maybe apple will announce something at WWDC. The AIs need better isolation primitives. Running software from un-trusted sources needs easier and more flexible isolation guarantees. Automated builds need lighter weight virtualization options. A dockerfile that you can specify includes xcode-tools, the accessibility APIs. Volume mounting. Network controls. etc.
https://github.com/dockur/macos is a little too clunky? Tart VM or manually doing apple's container CLI is maybe most of the way there, but images are huge.