Install on One Machine (No MDM)
This guide installs the Waxell desktop agent on one machine, by yourself — no MDM, no admin/IT involvement. It's the fastest way to try Waxell on your own laptop before rolling it out to a fleet.
Once installed, the agent discovers which apps on your machine talk to AI services (Claude Desktop, Cursor, Claude Code, Copilot, browsers…) and reports that activity to your workspace under Governance → Connect → AI Endpoints.
Don't install machine-by-machine — use the one-profile MDM flow. It pushes silently to every managed device. This page is only for single-machine, hands-on installs.
Installing the app turns on discovery and metadata only — which apps are talking to which AI services. Nothing is intercepted or decrypted. Payload capture stays off until an admin enables it for a specific host on the Guard cascade.
macOS
Requirements: macOS 12 (Monterey) or later. The app is signed and Apple-notarized, so it opens without any "unidentified developer" warning.
1. Download
⬇ Download for Mac (Apple Silicon)This is the Apple Silicon (M1/M2/M3/M4) build. Not sure which Mac you have? Click → About This Mac — if the Chip line says "Apple", this is the right one.
A direct download for older Intel Macs is coming soon. In the meantime, ask your Waxell contact for the Intel build.
2. Install
- Open the downloaded
WaxellSetup-arm64.dmg. - Drag
Waxell Setuponto theApplicationsfolder. - Open Applications and double-click
Waxell Setupto launch it.
The network monitor only loads when the app runs from /Applications. If you launch
it from the disk image or Downloads, macOS will block the monitor. Drag it to
Applications first.
3. Sign in
- Click Sign in with browser.
- Your default browser opens to the Waxell sign-in page. Log in.
- Click Allow this Mac.
- The app flips to "Signed in as <your-email>". No API key to paste.
4. Approve the network monitor
- macOS shows that a system extension was blocked, or the app says "Approve in System Settings."
- Open System Settings → General → Login Items & Extensions.
- Under Network Extensions, find Waxell and turn it on.
- If macOS shows a "Waxell would like to filter network content" dialog, click Allow. Enter your Mac password if prompted.
5. Verify
- In Waxell Setup, the Network Monitor tab shows the service running (green).
- In your workspace, Governance → Connect → AI Endpoints → AI Apps lists your machine and its AI apps within a minute or two.
✅ Done. Use your AI tools normally; discovered activity flows into your workspace.
Uninstall (macOS)
- Quit Waxell Setup and drag
/Applications/Waxell Setup.appto the Trash. - System Settings → General → Login Items & Extensions → Network Extensions → Waxell → off.
Windows
Requirements: Windows 10 (1809+) or Windows 11. The installer is code-signed, so it installs without an "unknown publisher" prompt.
1. Download
⬇ Download for Windows (x64)2. Install
- Double-click the downloaded
WaxellSetup-x64.msi. - Approve the UAC prompt.
- Wait ~30 seconds — the installer sets up the app and confirms the WaxellNetworkMonitor service is running.
3. Sign in
- Open Waxell Setup from the Start Menu.
- Click Sign in with browser → log in → Allow this PC.
- The app flips to "Signed in as <your-email>".
4. Verify
- The Network Monitor tab shows the service running.
- Governance → Connect → AI Endpoints → AI Apps lists your PC within a minute or two.
✅ Done.
Uninstall (Windows)
Settings → Apps → Installed apps → Waxell → Uninstall (it stops the service and
removes the binaries). To clear sign-in first: click Sign out in the app, or
remove dev.waxell.setup:connect from Control Panel → Credential Manager.
Hitting a snag?
See Troubleshooting & Diagnostics for fixes to the common issues (system-extension approval, SmartScreen, Defender, browser sign-in), and What gets installed for the full component list.