From what I’ve read, generated thumbnails from Finder are stored in a insecure place ~/Library/Caches/
outside of TCC restrictions where any non-sandboxed process can access them?
Is there any practical way to secure these thumbnails?
A relevant discussion from 2018 on MacRumours. Doesn’t seem to provide any good solutions.
/private/var/folders/…/C/com.apple.quicklook.ThumbnailsAgent/com.apple.QuickLook.thumbnailcache
This is where the cached icons are supposed to be but it’s completely empty on my mac (macOS 15.2).
ive found this article from 2023 Sealing the Quick Look Cache Security Leak - Apple Gazette , which says the best possible solution is to disable the caching functionality entirely, but personally I want to have thumbnails in finder.