Safari:Settings ()

The declaration to configure Safari settings.

iOS(26.0)macOS(26.0)visionOS(26.0)
Branch: seed_OS_27_0

Settings (17)

SettingTypeRequiredDefaultManual InstallSupported OS
Accept cookies
AcceptCookies
The policy Safari uses for managing cookies: - `Never`: Safari always blocks cookies. - `CurrentWebsite`: Safari allows cookies only from the current website. - `VisitedWebsites`: Safari allows cookies only from visited websites. - `Always`: Safari always allows cookies.
stringoptionalAlways
No
Allow disabling fraud warning
AllowDisablingFraudWarning
If `false`, the system forces fraud warnings on in Safari.
booleanoptionaltrue
No
Allow history clearing
AllowHistoryClearing
If `false`, the system disables clearing history in Safari.
booleanoptionaltrue
No
Allow JavaScript
AllowJavaScript
If `false`, the system disables JavaScript in Safari.
booleanoptionaltrue
No
Allow private browsing
AllowPrivateBrowsing
If `false`, the system disables private browsing in Safari.
booleanoptionaltrue
No
Allow popups
AllowPopups
If `false`, the system disables popups in Safari.
booleanoptionaltrue
No
Allow summary
AllowSummary
If `false`, the system disables summarization of content in Safari.
booleanoptionaltrue
No
New tab start page
NewTabStartPage
Sets the start page for new tabs in Safari.
3 subkeys
dictionaryoptional
Yes
iOS (26.0+)macOS (26.0+)visionOS (26.0+)
└─
Page type
PageType
Sets the start page type in Safari: - `Start` - Safari uses the default start page. Safari disables the Homepage. - `Home` - Safari uses the page specified by `HomepageURL`, and Safari also sets that as the Homepage. - `Extension` - Safari uses the page specified by the Safari extension whose identifier is `ExtensionIdentifier`. Safari disables the Homepage.
stringrequired
Yes
iOS (26.0+)macOS (26.0+)visionOS (26.0+)
└─
The homepage URL.
HomepageURL
The URL of the homepage which needs to start with `https://` or `http://`. Required when setting `PageType` to `Home`.
stringoptional
Yes
iOS (26.0+)macOS (26.0+)visionOS (26.0+)
└─
The extension identifier.
ExtensionIdentifier
The composed identifier of the extension that provides the start page. The required format is "Identifier (TeamIdentifier)", for example "com.example.app (ABCD1234)". Required when setting `PageType` to `Extension`.
stringoptional
Yes
iOS (26.0+)macOS (26.0+)visionOS (26.0+)
Website privacy
Privacy
New in iOS 27.0, macOS 27.0
The dictionary of website privacy settings.
1 subkey
dictionaryoptional
Yes
iOS (27.0+)macOS (27.0+)
└─
Website privacy permission defaults
PermissionDefaults
The dictionary of website permission defaults. Each key in the dictionary represents a single website, or a website and its sub-domains. The dictionary values represent the permission defaults that Safari applies for each website that matches the key. Safari supports the following patterns for the website key: - A specific domain such as "example.com" or "www.example.com". The permission defaults apply to that website only. - A wildcard domain that uses a single "\*" character as a prefix for the domain, such as "\*example.com". The permission defaults apply to both the exact domain "example.com", and any sub-domains such as "www.example.com". It won't match other domains with a similar string suffix such as "myexample.com". When multiple patterns match a website, Safari uses the most precise pattern. For example, for the website "www.example.com", if rules "www.example.com" and "*example.com" match, Safari uses the former.
1 subkey
dictionaryoptional
Yes
iOS (26.0+)macOS (26.0+)visionOS (26.0+)
└─ └─
ANY
ANY
The dictionary that defines the website privacy permission defaults. Each key represents a website.
3 subkeys
dictionaryoptional
Yes
iOS (26.0+)macOS (26.0+)visionOS (26.0+)
└─ └─ └─
Organization justification
OrganizationJustification
Text that clearly explains to the Safari user the reason why the organization requires these website privacy permission defaults. Safari includes this text in the permission consent prompt it displays when it first displays the website.
stringrequired
Yes
iOS (26.0+)macOS (26.0+)visionOS (26.0+)
└─ └─ └─
Camera permission
Camera
Controls whether a website privacy permission default is set. * `None`: Safari sets no website privacy permission default for use of the camera. * `Allow`: Safari sets the website privacy permission default to allow use of the camera.
stringoptional
Yes
iOS (26.0+)macOS (26.0+)visionOS (26.0+)
└─ └─ └─
Microphone permission
Microphone
Controls whether a website privacy permission default is set. * `None`: Safari sets no website privacy permission default for use of the microphone. * `Allow`: Safari sets the website privacy permission default to allow use of the microphone.
stringoptional
Yes
iOS (26.0+)macOS (26.0+)visionOS (26.0+)

Apple MDM & DDM Policy Explorer

Explore the full catalogue of Apple Mobile Device Management (MDM) and Declarative Device Management (DDM) policies for macOS and iOS. Search, filter, and reference policy keys for use with Microsoft Intune, Jamf, or any standards-compliant MDM solution.

Reference: policy categories & common keys

Policy categories

  • Configuration Profile
  • Declarative Configuration
  • Declarative Activation
  • Declarative Asset
  • Declarative Management

Common policy keys

  • com.apple.wifi.managedWi-Fi network configuration
  • com.apple.vpn.managedVPN configuration
  • com.apple.applicationaccessApp and feature restrictions
  • com.apple.security.pkcs1Certificate (PKCS#1) payload
  • com.apple.security.pkcs12Identity certificate (PKCS#12) payload
  • com.apple.security.scepSCEP certificate enrolment
  • com.apple.mail.managedMail account configuration
  • com.apple.eas.accountExchange ActiveSync account
  • com.apple.MCXManaged Client (macOS) preferences
  • com.apple.MCX.FileVault2FileVault 2 disk encryption
  • com.apple.dockmacOS Dock configuration
  • com.apple.screensaverScreensaver configuration
  • com.apple.loginwindowmacOS login window configuration
  • com.apple.systempolicy.managedGatekeeper / system policy
  • com.apple.systempreferencesSystem Preferences pane restrictions
  • com.apple.SoftwareUpdateSoftware update behaviour
  • com.apple.TCC.configuration-profile-policyPrivacy Preferences Policy Control (PPPC)
  • com.apple.notificationsettingsPer-app notification settings
  • com.apple.webcontent-filterWeb content filter
  • com.apple.dnsSettings.managedDNS settings (DoH / DoT)
  • com.apple.relay.managedNetwork relay configuration
  • com.apple.extensiblessoExtensible Single Sign-On
  • com.apple.configuration.passcode.settingsDDM: passcode policy
  • com.apple.configuration.softwareupdate.enforcement.specificDDM: enforced software update
  • com.apple.configuration.services.configuration-filesDDM: service configuration files
  • com.apple.configuration.management.status-subscriptionsDDM: status subscriptions
  • com.apple.activation.simpleDDM: simple activation predicate
  • com.apple.management.organization-infoDDM: organization information