Based on telemetry, we only need mach-register for accessibility-related features. Let’s revise the rule to just allow the two AX-related items: (allow mach-register (local-name "com.apple.axserver" “com.apple.tsm.portname” ))
<rdar://problem/70350150>
Created attachment 420021 [details] Patch
Comment on attachment 420021 [details] Patch Great! R=me.
commit-queue failed to commit attachment 420021 [details] to WebKit repository. To retry, please set cq+ flag again.
Created attachment 420145 [details] Patch for landing
Committed r272796: <https://commits.webkit.org/r272796> All reviewed patches have been landed. Closing bug and clearing flags on attachment 420145 [details].