{
  "meta": {
    "title": {
      "en": "ScopeShelf — Sandbox any Mac app with macOS Seatbelt",
      "de": "ScopeShelf — Mac-Apps in der macOS-Sandbox starten"
    },
    "description": {
      "en": "Run your Mac apps under the built-in macOS sandbox. Grant folders per app — writable, read-only or invisible — block network access, and watch blocked accesses live. No kernel extension, no account, no telemetry.",
      "de": "Mac-Apps in der eingebauten Seatbelt-Sandbox starten: Ordner pro App freigeben — schreibbar, nur lesbar oder unsichtbar — Netzwerk sperren, blockierte Zugriffe live sehen. Ohne Kernel-Extension, Account oder Telemetrie."
    }
  },
  "nav": {
    "features": {
      "en": "Features",
      "de": "Funktionen"
    },
    "how": {
      "en": "How it works",
      "de": "So funktioniert's"
    },
    "security": {
      "en": "Security",
      "de": "Sicherheit"
    },
    "pricing": {
      "en": "Pricing",
      "de": "Preise"
    },
    "faq": {
      "en": "FAQ",
      "de": "FAQ"
    },
    "blog": {
      "en": "Blog",
      "de": "Blog"
    },
    "contact": {
      "en": "Contact",
      "de": "Kontakt"
    },
    "buy": {
      "en": "Buy",
      "de": "Kaufen"
    },
    "langSwitcherLabel": {
      "en": "Change language",
      "de": "Sprache ändern"
    },
    "menuLabel": {
      "en": "Open menu",
      "de": "Menü öffnen"
    }
  },
  "hero": {
    "eyebrow": {
      "en": "APP SANDBOXING FOR MACOS",
      "de": "APP-SANDBOXING FÜR MACOS"
    },
    "title": {
      "en": "Apps see only<br /><span class=\"grad\">what you allow.</span>",
      "de": "Apps sehen nur,<br /><span class=\"grad\">was du erlaubst.</span>"
    },
    "sub": {
      "en": "ScopeShelf runs your Mac apps under the macOS Seatbelt sandbox. Each launcher grants exactly the folders you choose — everything else in your home directory stays invisible.",
      "de": "ScopeShelf startet deine Mac-Apps in der macOS-Seatbelt-Sandbox. Jeder Launcher gibt genau die Ordner frei, die du wählst — alles andere in deinem Benutzerordner bleibt unsichtbar."
    },
    "ctaPrimary": {
      "en": "Try free for 7 days",
      "de": "7 Tage kostenlos testen"
    },
    "ctaSecondary": {
      "en": "See what's inside",
      "de": "Was drinsteckt"
    },
    "ctaNote": {
      "en": "No credit card, no account. Then €19 once — no subscription.",
      "de": "Keine Kreditkarte, kein Account. Danach einmal 19 € — kein Abo."
    },
    "b1": {
      "en": "Grant folders per app: writable, read-only or invisible.",
      "de": "Ordner pro App freigeben: schreibbar, nur lesbar oder unsichtbar."
    },
    "b2": {
      "en": "SSH keys, keychains and cloud credentials are blocked by default.",
      "de": "SSH-Schlüssel, Schlüsselbunde und Cloud-Zugänge sind standardmäßig blockiert."
    },
    "b3": {
      "en": "Cut an app's network access with one switch.",
      "de": "Netzwerkzugriff einer App mit einem Schalter kappen."
    },
    "b4": {
      "en": "Watch blocked accesses live in the audit log.",
      "de": "Blockierte Zugriffe live im Protokoll sehen."
    },
    "specline": {
      "en": "sandbox-exec · Seatbelt profiles · macOS 14+ · Apple Silicon &amp; Intel",
      "de": "sandbox-exec · Seatbelt-Profile · macOS 14+ · Apple Silicon &amp; Intel"
    },
    "meta": {
      "en": "macOS 14+ · Apple Silicon &amp; Intel · runs sandboxed apps even when closed",
      "de": "macOS 14+ · Apple Silicon &amp; Intel · geschützte Apps laufen auch, wenn ScopeShelf geschlossen ist"
    }
  },
  "pain": {
    "title": {
      "en": "Every app you open can read your whole life.",
      "de": "Jede App, die du öffnest, kann dein ganzes Leben lesen."
    },
    "sub": {
      "en": "Most Mac apps run with your full user rights. That fact is invisible — until it isn't.",
      "de": "Die meisten Mac-Apps laufen mit deinen vollen Nutzerrechten. Unsichtbar — bis es zu spät ist."
    },
    "p1t": {
      "en": "Your home folder is open to every binary.",
      "de": "Dein Benutzerordner steht jeder App offen."
    },
    "p1b": {
      "en": "Any app you double-click can read your SSH keys, browser profiles, client work and tax documents. macOS asks for your consent for the camera — not for your files.",
      "de": "Jede App, die du doppelklickst, kann SSH-Schlüssel, Browserprofile, Kundenprojekte und Steuerunterlagen lesen. macOS fragt bei der Kamera — nicht bei deinen Dateien."
    },
    "p2t": {
      "en": "Network filters only see half the story.",
      "de": "Netzwerkfilter sehen nur die halbe Geschichte."
    },
    "p2b": {
      "en": "Connection-level tools watch what leaves your Mac. What an app reads from disk before it ever phones home stays invisible to them.",
      "de": "Verbindungs-Tools beobachten, was deinen Mac verlässt. Was eine App vorher von der Platte liest, bleibt für sie unsichtbar."
    },
    "p3t": {
      "en": "Real sandboxing means writing profiles by hand.",
      "de": "Echtes Sandboxing heißt: Profile von Hand schreiben."
    },
    "p3b": {
      "en": "sandbox-exec ships with every Mac, but Seatbelt profiles are an arcane dialect nobody wants to maintain per app. So almost nobody does.",
      "de": "sandbox-exec liegt auf jedem Mac, aber Seatbelt-Profile sind ein arkaner Dialekt, den niemand pro App pflegen will. Also tut es fast niemand."
    },
    "close": {
      "en": "ScopeShelf writes and maintains those profiles for you — per app, in plain sight.",
      "de": "ScopeShelf schreibt und pflegt diese Profile für dich — pro App, einsehbar."
    }
  },
  "screenshots": {
    "eyebrow": {
      "en": "Inside the app",
      "de": "Ein Blick in die App"
    },
    "title": {
      "en": "This is what it looks like.",
      "de": "So sieht sie aus."
    },
    "sub": {
      "en": "Real screens from the shipping app — German UI, because that's how it ships. Every launcher shows exactly what its app can reach.",
      "de": "Echte Screens aus der fertigen App. Jeder Launcher zeigt exakt, was seine App erreichen kann."
    },
    "cap1": {
      "en": "The shelf at a glance: every launcher, its running state, and a warning the moment an app runs without its sandbox.",
      "de": "Das Regal auf einen Blick: jeder Launcher, sein Laufstatus — und eine Warnung, sobald eine App ohne Sandbox läuft."
    },
    "cap2": {
      "en": "Three protection zones per launcher: writable, read-only, invisible — plus a per-app network switch.",
      "de": "Drei Schutz-Zonen pro Launcher: schreibbar, nur lesbar, unsichtbar — plus Netzwerk-Schalter pro App."
    },
    "cap3": {
      "en": "The live audit log: which operation, which path, how often macOS said no. Proof beats promises.",
      "de": "Das Live-Protokoll: welche Operation, welcher Pfad, wie oft macOS Nein gesagt hat. Belege schlagen Versprechen."
    },
    "cap4": {
      "en": "A new launcher in three steps: pick the app, confirm the suggested folders, set the network switch.",
      "de": "Ein neuer Launcher in drei Schritten: App wählen, vorgeschlagene Ordner bestätigen, Netzwerk-Schalter setzen."
    },
    "note": {
      "en": "Real screenshots from the shipping app.",
      "de": "Echte Screenshots aus der fertigen App."
    }
  },
  "positioning": {
    "headline": {
      "en": "The sandbox is built into macOS.<br /><span class=\"grad\">We made it usable.</span>",
      "de": "Die Sandbox steckt in macOS.<br /><span class=\"grad\">Wir haben sie benutzbar gemacht.</span>"
    }
  },
  "story": {
    "eyebrow": {
      "en": "Why ScopeShelf exists",
      "de": "Warum es ScopeShelf gibt"
    },
    "title": {
      "en": "It started with an app I didn't trust.",
      "de": "Es begann mit einer App, der ich nicht traute."
    },
    "p1": {
      "en": "A while back I downloaded a small utility — closed source, from a vendor I'd never heard of, solving exactly my problem. Before double-clicking, I caught myself thinking: the moment this thing launches, it can read my entire home folder. SSH keys, cloud credentials, client projects. With my full user rights, no questions asked.",
      "de": "Vor einiger Zeit lud ich ein kleines Tool herunter — Closed Source, von einem Anbieter, den ich nicht kannte, und es löste exakt mein Problem. Vorm Doppelklick erwischte ich mich bei dem Gedanken: Sobald das Ding läuft, kann es meinen ganzen Benutzerordner lesen. SSH-Schlüssel, Cloud-Zugänge, Kundenprojekte. Mit meinen vollen Nutzerrechten, ohne Rückfrage."
    },
    "p2": {
      "en": "The irony is that macOS has shipped the answer since 2007: Seatbelt, the same kernel sandbox Apple uses for its own apps. sandbox-exec sits in /usr/bin on every Mac. But writing Seatbelt profiles by hand is tedious, the syntax is unforgiving, and one rule in the wrong order silently breaks the whole thing. So I wrote one profile, then a generator, then a GUI.",
      "de": "Die Ironie: macOS liefert die Antwort seit 2007 mit — Seatbelt, dieselbe Kernel-Sandbox, die Apple für die eigenen Apps nutzt. sandbox-exec liegt auf jedem Mac in /usr/bin. Aber Seatbelt-Profile von Hand zu schreiben ist mühsam, die Syntax ist ungnädig, und eine Regel in der falschen Reihenfolge macht still das ganze Profil kaputt. Also schrieb ich ein Profil, dann einen Generator, dann eine GUI."
    },
    "p3": {
      "en": "That became ScopeShelf. My apps live on a shelf now, each with exactly the folders I granted — and when one of them tries something I didn't allow, macOS blocks it and my audit log shows me it tried. I still use that little utility. It just can't read my life anymore.",
      "de": "Daraus wurde ScopeShelf. Meine Apps stehen jetzt im Regal, jede mit genau den Ordnern, die ich freigegeben habe — und wenn eine etwas versucht, das ich nicht erlaubt habe, blockiert es macOS, und mein Protokoll zeigt mir den Versuch. Das kleine Tool nutze ich immer noch. Es kann nur mein Leben nicht mehr lesen."
    },
    "sign": {
      "en": "— Christof, builder of ScopeShelf",
      "de": "— Christof, Entwickler von ScopeShelf"
    }
  },
  "features": {
    "eyebrow": {
      "en": "Features",
      "de": "Funktionen"
    },
    "title": {
      "en": "One job, done properly.",
      "de": "Eine Aufgabe, richtig gemacht."
    },
    "sub": {
      "en": "ScopeShelf does exactly one thing: it decides what each app can reach. Everything below serves that.",
      "de": "ScopeShelf tut genau eines: Es entscheidet, was jede App erreichen kann. Alles Folgende dient diesem Zweck."
    },
    "zones": {
      "title": {
        "en": "Three protection zones",
        "de": "Drei Schutz-Zonen"
      },
      "body": {
        "en": "Writable, read-only, invisible — per launcher, per folder. Read-only is enforced by real deny file-write* rules, not by politeness.",
        "de": "Schreibbar, nur lesbar, unsichtbar — pro Launcher, pro Ordner. Nur lesbar wird durch echte deny-file-write*-Regeln erzwungen, nicht durch Höflichkeit."
      }
    },
    "credentials": {
      "title": {
        "en": "Credentials blocked by default",
        "de": "Zugänge standardmäßig blockiert"
      },
      "body": {
        "en": "~/.ssh, ~/.gnupg, ~/Library/Keychains, ~/.aws and ~/.config/gcloud are invisible to every launcher before you grant anything.",
        "de": "~/.ssh, ~/.gnupg, ~/Library/Keychains, ~/.aws und ~/.config/gcloud sind für jeden Launcher unsichtbar, bevor du irgendetwas freigibst."
      }
    },
    "network": {
      "title": {
        "en": "Network off, per app",
        "de": "Netzwerk aus, pro App"
      },
      "body": {
        "en": "One switch adds deny network-outbound. The app keeps running — it just can't send anything anywhere.",
        "de": "Ein Schalter setzt deny network-outbound. Die App läuft weiter — sie kann nur nichts mehr nach draußen senden."
      }
    },
    "audit": {
      "title": {
        "en": "Live audit log",
        "de": "Live-Protokoll"
      },
      "body": {
        "en": "Start a recording and watch macOS work: which operation, which path, how often. Proof beats promises.",
        "de": "Starte eine Aufzeichnung und sieh macOS bei der Arbeit zu: welche Operation, welcher Pfad, wie oft. Belege schlagen Versprechen."
      }
    },
    "dock": {
      "title": {
        "en": "Dock starters",
        "de": "Dock-Starter"
      },
      "body": {
        "en": "Turn any launcher into a small clickable app for your Dock. Double-click, sandboxed — ScopeShelf doesn't need to be open.",
        "de": "Mache jeden Launcher zu einer kleinen klickbaren App fürs Dock. Doppelklick, Sandboxing inklusive — ScopeShelf muss dafür nicht offen sein."
      }
    },
    "menubar": {
      "title": {
        "en": "Menu bar status",
        "de": "Menüleisten-Status"
      },
      "body": {
        "en": "The menu bar extra shows which watched apps are running protected — and warns you when one is running without its sandbox.",
        "de": "Das Menüleisten-Icon zeigt, welche überwachten Apps geschützt laufen — und warnt dich, wenn eine ohne Sandbox läuft."
      }
    },
    "cli": {
      "title": {
        "en": "CLI and project configs",
        "de": "CLI und Projekt-Configs"
      },
      "body": {
        "en": "scopeshelf run, dry, add, presets — plus a .scopeshelf file per project directory. Scriptable, diffable, yours.",
        "de": "scopeshelf run, dry, add, presets — plus eine .scopeshelf-Datei pro Projektordner. Skriptbar, diffbar, deins."
      }
    },
    "presets": {
      "title": {
        "en": "Curated app presets",
        "de": "Kuratierte App-Presets"
      },
      "body": {
        "en": "VS Code, Cursor, Windsurf, WebStorm and iTerm ship with their known data folders. One command, sensible sandbox.",
        "de": "VS Code, Cursor, Windsurf, WebStorm und iTerm bringen ihre bekannten Datenordner mit. Ein Befehl, vernünftige Sandbox."
      }
    }
  },
  "how": {
    "eyebrow": {
      "en": "How it works",
      "de": "So funktioniert's"
    },
    "title": {
      "en": "Built on the sandbox Apple ships.",
      "de": "Gebaut auf der Sandbox, die Apple mitliefert."
    },
    "sub": {
      "en": "No kernel extension, no helper daemon, no cloud. ScopeShelf renders a Seatbelt profile per launcher and starts the app through sandbox-exec — the enforcement is macOS itself, and it keeps working when ScopeShelf is closed.",
      "de": "Keine Kernel-Extension, kein Hintergrund-Daemon, keine Cloud. ScopeShelf erzeugt pro Launcher ein Seatbelt-Profil und startet die App über sandbox-exec — die Durchsetzung ist macOS selbst, und sie funktioniert auch, wenn ScopeShelf geschlossen ist."
    },
    "caption": {
      "en": "This is the actual profile, abridged. Rule order matters — ScopeShelf's renderer gets it right every time.",
      "de": "Das ist das echte Profil, gekürzt. Die Regelreihenfolge entscheidet — der Renderer von ScopeShelf macht sie jedes Mal richtig."
    }
  },
  "security": {
    "eyebrow": {
      "en": "Security",
      "de": "Sicherheit"
    },
    "title": {
      "en": "Enforced by the kernel, not by us.",
      "de": "Durchgesetzt vom Kernel, nicht von uns."
    },
    "sub": {
      "en": "ScopeShelf doesn't intercept anything itself. It writes rules; macOS enforces them. That distinction is the whole point.",
      "de": "ScopeShelf fängt selbst nichts ab. Es schreibt Regeln; macOS setzt sie durch. Genau darin liegt der Punkt."
    },
    "cards": {
      "kernel": {
        "title": {
          "en": "Kernel-enforced rules",
          "de": "Kernel-erzwungene Regeln"
        },
        "body": {
          "en": "Seatbelt rules are evaluated by the macOS kernel. The sandboxed app cannot switch them off — and neither can a bug inside it.",
          "de": "Seatbelt-Regeln wertet der macOS-Kernel aus. Die geschützte App kann sie nicht abschalten — und ein Fehler in ihr auch nicht."
        }
      },
      "invisible": {
        "title": {
          "en": "Invisible means denied",
          "de": "Unsichtbar heißt verweigert"
        },
        "body": {
          "en": "„Invisible\" folders get real deny rules. The app can't read them, can't write them, can't even see they exist.",
          "de": "„Unsichtbare\" Ordner bekommen echte Deny-Regeln. Die App kann sie nicht lesen, nicht schreiben, nicht einmal sehen, dass es sie gibt."
        }
      },
      "readonly": {
        "title": {
          "en": "Read-only means read-only",
          "de": "Nur lesbar heißt nur lesbar"
        },
        "body": {
          "en": "Read-only folders receive explicit deny file-write* rules. Open them, yes. Modify them, no.",
          "de": "Nur-lesbar-Ordner erhalten explizite deny-file-write*-Regeln. Öffnen ja. Ändern nein."
        }
      },
      "verified": {
        "title": {
          "en": "Verified protection",
          "de": "Geprüfter Schutz"
        },
        "body": {
          "en": "The live status checks each running process with the system's own sandbox_check. If ScopeShelf says „protected\", macOS confirmed it.",
          "de": "Der Live-Status prüft jeden laufenden Prozess mit dem systemeigenen sandbox_check. Wenn ScopeShelf „geschützt\" sagt, hat macOS es bestätigt."
        }
      },
      "honest": {
        "title": {
          "en": "Honest about what it sees",
          "de": "Ehrlich in dem, was es sieht"
        },
        "body": {
          "en": "If the protection state of a process can't be determined, ScopeShelf says exactly that — it never claims a protection it can't verify.",
          "de": "Lässt sich der Schutz-Status eines Prozesses nicht bestimmen, sagt ScopeShelf genau das — es behauptet nie einen Schutz, den es nicht prüfen kann."
        }
      },
      "nonew": {
        "title": {
          "en": "Nothing new in your system",
          "de": "Nichts Neues in deinem System"
        },
        "body": {
          "en": "No kext, no launchd daemon, no root privileges. ScopeShelf composes tools your Mac already has — and removes nothing when you uninstall it.",
          "de": "Keine Kext, kein launchd-Daemon, keine Root-Rechte. ScopeShelf kombiniert Werkzeuge, die dein Mac schon hat — und hinterlässt nichts, wenn du es entfernst."
        }
      }
    }
  },
  "privacy": {
    "eyebrow": {
      "en": "Privacy",
      "de": "Datenschutz"
    },
    "title": {
      "en": "All local. No account. No telemetry.",
      "de": "Alles lokal. Kein Account. Keine Telemetrie."
    },
    "sub": {
      "en": "We don't know who you are, and we like it that way.",
      "de": "Wir wissen nicht, wer du bist — und das ist gut so."
    },
    "notelemetry": {
      "title": {
        "en": "🚫 No telemetry, ever",
        "de": "🚫 Keine Telemetrie, niemals"
      },
      "body": {
        "en": "No analytics SDK, no crash reporting you didn't ask for, no usage metrics. The app makes no network connections of its own.",
        "de": "Kein Analytics-SDK, kein Crash-Reporting ohne deine Zustimmung, keine Nutzungsstatistiken. Die App baut selbst keine Netzwerkverbindungen auf."
      }
    },
    "local": {
      "title": {
        "en": "🗄 Local-first by design",
        "de": "🗄 Local-first mit Absicht"
      },
      "body": {
        "en": "Launchers, profiles and audit logs live in your user folder. There is no ScopeShelf cloud to leak, breach or subpoena.",
        "de": "Launcher, Profile und Protokolle liegen in deinem Benutzerordner. Es gibt keine ScopeShelf-Cloud, die lecken, gehackt oder herausverlangt werden könnte."
      }
    },
    "noaccount": {
      "title": {
        "en": "👤 No account",
        "de": "👤 Kein Account"
      },
      "body": {
        "en": "You download the app and it runs. No sign-up, no email verification, no password to forget.",
        "de": "Du lädst die App, und sie läuft. Keine Registrierung, keine E-Mail-Bestätigung, kein Passwort zum Vergessen."
      }
    },
    "polar": {
      "title": {
        "en": "🧾 Sold by Polar, not by data",
        "de": "🧾 Verkauft über Polar, nicht über Daten"
      },
      "body": {
        "en": "Polar.sh is our merchant of record. They process the payment; we receive an email address for your license. Nothing else changes hands.",
        "de": "Polar.sh ist unser Merchant of Record. Dort läuft die Zahlung; wir erhalten eine E-Mail-Adresse für deine Lizenz. Sonst wechselt nichts den Besitzer."
      }
    }
  },
  "pricing": {
    "eyebrow": {
      "en": "Pricing",
      "de": "Preise"
    },
    "title": {
      "en": "Buy once. Own it.",
      "de": "Einmal kaufen. Für immer deins."
    },
    "sub": {
      "en": "One payment, no subscription. Sold by Christof Müller (Switzerland) via Polar.sh as merchant of record — VAT handled properly, invoice included.",
      "de": "Eine Zahlung, kein Abo. Verkauft von Christof Müller (Schweiz) über Polar.sh als Merchant of Record — mit korrekter MwSt. und Rechnung."
    },
    "personal": {
      "title": {
        "en": "Personal",
        "de": "Personal"
      },
      "period": {
        "en": "once",
        "de": "einmalig"
      },
      "sub": {
        "en": "For developers, freelancers and anyone who installs software they don't fully trust.",
        "de": "Für Entwickler, Freelancer und alle, die Software installieren, der sie nicht blind trauen."
      },
      "li1": {
        "en": "✓ Unlimited launchers &amp; sandboxed apps",
        "de": "✓ Unbegrenzt Launcher &amp; geschützte Apps"
      },
      "li2": {
        "en": "✓ GUI, menu bar agent &amp; Dock starters",
        "de": "✓ GUI, Menüleisten-Agent &amp; Dock-Starter"
      },
      "li3": {
        "en": "✓ CLI with presets &amp; .scopeshelf project configs",
        "de": "✓ CLI mit Presets &amp; .scopeshelf-Projekt-Configs"
      },
      "li4": {
        "en": "✓ Live audit log &amp; verified protection status",
        "de": "✓ Live-Protokoll &amp; geprüfter Schutz-Status"
      },
      "li5": {
        "en": "✓ 1 user, install on all your own Macs",
        "de": "✓ 1 Nutzer, Installation auf all deinen Macs"
      },
      "li6": {
        "en": "✓ Every 1.x update included — a future v2 would be an optional upgrade",
        "de": "✓ Jedes 1.x-Update inklusive — eine künftige v2 wäre ein optionales Upgrade"
      },
      "li7": {
        "en": "✓ 7-day free trial, no credit card, no account",
        "de": "✓ 7 Tage kostenlos testen, ohne Kreditkarte, ohne Account"
      },
      "li8": {
        "en": "✓ 14-day money-back guarantee",
        "de": "✓ 14 Tage Geld-zurück"
      },
      "cta": {
        "en": "Buy now for €19",
        "de": "Jetzt kaufen für 19 €"
      },
      "trial": {
        "en": "Download free 7-day trial",
        "de": "7 Tage kostenlos testen"
      }
    },
    "warn": {
      "en": "Before you buy: ScopeShelf is currently ad-hoc signed — no Apple Developer ID, no notarization yet. Gatekeeper will warn on first launch; you open the app via right-click → Open (or System Settings → Privacy &amp; Security). The app runs perfectly fine on macOS 14+ — we just want you to know before checkout, not after. Also good to know: apps that already ship Apple's own App Sandbox can't be wrapped; ScopeShelf detects them and tells you.",
      "de": "Vor dem Kauf: ScopeShelf ist derzeit ad-hoc signiert — noch keine Apple-Developer-ID, keine Notarisierung. Gatekeeper warnt beim ersten Start; du öffnest die App per Rechtsklick → Öffnen (oder Systemeinstellungen → Datenschutz &amp; Sicherheit). Sie läuft unter macOS 14+ einwandfrei — wir wollen nur, dass du es vor dem Kauf weißt, nicht danach. Gut zu wissen außerdem: Apps, die Apples eigene App-Sandbox mitbringen, lassen sich nicht einbetten; ScopeShelf erkennt sie und sagt es dir."
    }
  },
  "reqs": {
    "eyebrow": {
      "en": "Honest expectations",
      "de": "Ehrliche Erwartungen"
    },
    "title": {
      "en": "What ScopeShelf is and isn't.",
      "de": "Was ScopeShelf ist — und was nicht."
    },
    "sub": {
      "en": "Please read this before you buy. It saves both of us a refund.",
      "de": "Bitte lies das vor dem Kauf. Es erspart uns beiden eine Rückerstattung."
    },
    "is": {
      "title": {
        "en": "✓ What it is",
        "de": "✓ Was es ist"
      },
      "li1": {
        "en": "A launcher that runs your Mac apps under the macOS Seatbelt sandbox.",
        "de": "Ein Launcher, der deine Mac-Apps in der macOS-Seatbelt-Sandbox startet."
      },
      "li2": {
        "en": "Per-app control over which folders are writable, read-only or invisible.",
        "de": "Pro-App-Kontrolle darüber, welche Ordner schreibbar, nur lesbar oder unsichtbar sind."
      },
      "li3": {
        "en": "A way to cut an app's outbound network access entirely.",
        "de": "Ein Weg, den ausgehenden Netzwerkverkehr einer App komplett zu kappen."
      },
      "li4": {
        "en": "A live log of the accesses macOS blocked.",
        "de": "Ein Live-Protokoll der Zugriffe, die macOS blockiert hat."
      },
      "li5": {
        "en": "A GUI plus a scriptable CLI with per-project config files.",
        "de": "Eine GUI plus skriptbare CLI mit Konfigurationsdateien pro Projekt."
      },
      "li6": {
        "en": "Built entirely on macOS built-ins: sandbox-exec and Seatbelt profiles.",
        "de": "Komplett auf macOS-Bordmitteln gebaut: sandbox-exec und Seatbelt-Profile."
      }
    },
    "isnot": {
      "title": {
        "en": "✗ What it isn't",
        "de": "✗ Was es nicht ist"
      },
      "li1": {
        "en": "Not an antivirus: it doesn't scan, detect or remove malware.",
        "de": "Kein Antivirus: Es scannt nicht, erkennt keine Schadsoftware und entfernt nichts."
      },
      "li2": {
        "en": "Not a connection filter like Little Snitch: the network switch is all-or-nothing per app, not per-host rules.",
        "de": "Kein Verbindungsfilter wie Little Snitch: Der Netzwerk-Schalter kennt nur alles oder nichts pro App, keine Regeln pro Zielhost."
      },
      "li3": {
        "en": "Not for apps that ship Apple's own App Sandbox — macOS won't nest sandboxes, and ScopeShelf says so when it detects one.",
        "de": "Nicht für Apps mit Apples eigener App-Sandbox — macOS schachtelt keine Sandboxen, und ScopeShelf sagt dir, wenn es eine erkennt."
      },
      "li4": {
        "en": "Not a container or VM: sandboxed apps share your kernel and filesystem semantics — and the performance of your real Mac.",
        "de": "Kein Container und keine VM: Geschützte Apps teilen sich deinen Kernel und deine Dateisystem-Semantik — und die Leistung deines echten Macs."
      },
      "li5": {
        "en": "Not a guarantee against malicious software: Seatbelt shrinks what an app can reach; it can't make hostile code safe.",
        "de": "Keine Garantie gegen Schadsoftware: Seatbelt verkleinert, was eine App erreichen kann; bösartigen Code macht es nicht harmlos."
      },
      "li6": {
        "en": "Not cloud-managed: no account, no dashboard, no sync, nothing to log into.",
        "de": "Nicht cloud-verwaltet: kein Account, kein Dashboard, kein Sync, nichts zum Einloggen."
      }
    }
  },
  "faq": {
    "eyebrow": {
      "en": "Frequently asked",
      "de": "Häufige Fragen"
    },
    "title": {
      "en": "Questions, answered.",
      "de": "Fragen, beantwortet."
    },
    "q": {
      "trial": {
        "en": "Is there a free trial?",
        "de": "Gibt es eine Testversion?"
      },
      "refund": {
        "en": "Refund policy?",
        "de": "Rückerstattung?"
      },
      "updates": {
        "en": "How do updates work?",
        "de": "Wie funktionieren Updates?"
      },
      "gatekeeper": {
        "en": "Gatekeeper warns me on first launch. Is the app safe?",
        "de": "Gatekeeper warnt beim ersten Start. Ist die App sicher?"
      },
      "sandboxed": {
        "en": "Why can't ScopeShelf sandbox some of my apps?",
        "de": "Warum kann ScopeShelf manche Apps nicht schützen?"
      },
      "electron": {
        "en": "Do Electron apps work?",
        "de": "Funktionieren Electron-Apps?"
      },
      "cli": {
        "en": "Is there a command-line interface?",
        "de": "Gibt es eine Kommandozeile?"
      },
      "os": {
        "en": "Which macOS versions are supported?",
        "de": "Welche macOS-Versionen werden unterstützt?"
      },
      "network": {
        "en": "What exactly does the network block cover?",
        "de": "Was genau deckt die Netzwerk-Sperre ab?"
      },
      "missing": {
        "en": "What if an app needs a folder I didn't grant?",
        "de": "Was, wenn eine App einen Ordner braucht, den ich nicht freigegeben habe?"
      }
    },
    "a": {
      "trial": {
        "en": "Yes: 7 days, full features, no credit card, no account. Download, sandbox your first app, decide.",
        "de": "Ja: 7 Tage, voller Funktionsumfang, ohne Kreditkarte, ohne Account. Laden, erste App schützen, entscheiden."
      },
      "refund": {
        "en": "14 days, money-back, no questions asked. Email <a href=\"mailto:hello@scopeshelf.app\">hello@scopeshelf.app</a> from the address you bought with.",
        "de": "14 Tage, Geld zurück, ohne Fragen. Schreib an <a href=\"mailto:hello@scopeshelf.app\">hello@scopeshelf.app</a> von der Adresse, mit der du gekauft hast."
      },
      "updates": {
        "en": "Every 1.x update is free, for as long as the OS allows. A future v2 would be an optional paid upgrade — your v1 keeps working either way.",
        "de": "Jedes 1.x-Update ist kostenlos, solange das System es erlaubt. Eine künftige v2 wäre ein optionales, bezahltes Upgrade — deine v1 läuft so oder so weiter."
      },
      "gatekeeper": {
        "en": "The warning is about us, not about the app: ScopeShelf is ad-hoc signed, without an Apple Developer ID so far. Open it via right-click → Open. It's a warning about a missing certificate fee, not about hidden behavior — the app makes no network connections of its own, sandboxed or not.",
        "de": "Die Warnung gilt uns, nicht der App: ScopeShelf ist ad-hoc signiert, bislang ohne Apple-Developer-ID. Öffne sie per Rechtsklick → Öffnen. Es geht um eine fehlende Zertifikatsgebühr, nicht um verstecktes Verhalten — die App baut selbst keine Netzwerkverbindungen auf."
      },
      "sandboxed": {
        "en": "Apps signed with Apple's own App Sandbox can't be nested inside another sandbox — macOS simply refuses. ScopeShelf detects this when you pick the app and tells you before you buy a launcher for nothing.",
        "de": "Apps mit Apples eigener App-Sandbox-Signatur lassen sich nicht in eine weitere Sandbox schachteln — macOS verweigert das schlicht. ScopeShelf erkennt das bei der App-Auswahl und sagt es dir, bevor du umsonst einen Launcher anlegst."
      },
      "electron": {
        "en": "Yes. ScopeShelf handles their helper processes and the inner Chromium sandbox (--no-sandbox), so the outer Seatbelt rules apply cleanly to the whole app.",
        "de": "Ja. ScopeShelf behandelt deren Hilfsprozesse und die innere Chromium-Sandbox (--no-sandbox), sodass die äußeren Seatbelt-Regeln sauber für die ganze App greifen."
      },
      "cli": {
        "en": "Yes — scopeshelf with list, run, dry, add, remove, init and presets. Extras: --env for environment variables, a :ro suffix for read-only folders, and .scopeshelf config files per project.",
        "de": "Ja — scopeshelf mit list, run, dry, add, remove, init und presets. Dazu: --env für Umgebungsvariablen, ein :ro-Suffix für Nur-lesen-Ordner und .scopeshelf-Configs pro Projekt."
      },
      "os": {
        "en": "macOS 14 Sonoma or later, on Apple Silicon and Intel.",
        "de": "macOS 14 Sonoma oder neuer, auf Apple Silicon und Intel."
      },
      "network": {
        "en": "deny network-outbound blocks all outbound connections for the app and its child processes — TCP, UDP, the lot. It's deliberately all-or-nothing per launcher, not per-host filtering; for that, a connection-level firewall remains the right tool.",
        "de": "deny network-outbound blockiert alle ausgehenden Verbindungen der App und ihrer Kindprozesse — TCP, UDP, alles. Sie ist bewusst alles-oder-nichts pro Launcher, keine Filterung pro Zielhost; dafür bleibt eine verbindungsbasierte Firewall das richtige Werkzeug."
      },
      "missing": {
        "en": "It simply doesn't see it — as if the folder didn't exist. Most apps cope fine. If one misbehaves, the audit log shows exactly which access was blocked, and granting that folder takes one click.",
        "de": "Sie sieht ihn schlicht nicht — als existierte er nicht. Die meisten Apps kommen damit klar. Wenn eine spinnt, zeigt das Protokoll exakt, welcher Zugriff blockiert wurde, und die Freigabe ist ein Klick."
      }
    }
  },
  "contact": {
    "eyebrow": {
      "en": "Talk to us",
      "de": "Schreib uns"
    },
    "title": {
      "en": "Bug, feature wish, or question before buying?",
      "de": "Bug, Funktionswunsch oder Frage vor dem Kauf?"
    },
    "sub": {
      "en": "We read every message and usually reply within a working day.",
      "de": "Wir lesen jede Nachricht und antworten meist innerhalb eines Arbeitstags."
    },
    "fieldName": {
      "en": "Your name",
      "de": "Dein Name"
    },
    "fieldEmail": {
      "en": "Email",
      "de": "E-Mail"
    },
    "fieldTopic": {
      "en": "Topic",
      "de": "Thema"
    },
    "topicBug": {
      "en": "Bug report",
      "de": "Fehlermeldung"
    },
    "topicFeature": {
      "en": "Feature request",
      "de": "Funktionswunsch"
    },
    "topicSales": {
      "en": "Sales / licensing",
      "de": "Kauf / Lizenz"
    },
    "topicQuestion": {
      "en": "General question",
      "de": "Allgemeine Frage"
    },
    "topicOther": {
      "en": "Other",
      "de": "Sonstiges"
    },
    "fieldMessage": {
      "en": "Message",
      "de": "Nachricht"
    },
    "placeholder": {
      "en": "What's on your mind?",
      "de": "Was beschäftigt dich?"
    },
    "submit": {
      "en": "Send message",
      "de": "Nachricht senden"
    },
    "orEmail": {
      "en": "Or email <a href=\"mailto:hello@scopeshelf.app\">hello@scopeshelf.app</a> directly.",
      "de": "Oder schreib direkt an <a href=\"mailto:hello@scopeshelf.app\">hello@scopeshelf.app</a>."
    }
  },
  "sibling": {
    "eyebrow": {
      "en": "From the same workshop",
      "de": "Aus derselben Werkstatt"
    },
    "title": {
      "en": "Two more tools from the shelf.",
      "de": "Zwei weitere Werkzeuge aus dem Regal."
    },
    "device": {
      "title": {
        "en": "Map your network, with DeviceShelf",
        "de": "Kartiere dein Netzwerk, mit DeviceShelf"
      },
      "body": {
        "en": "Our local-first network scanner: every device on your LAN, open ports, a security report and presence alerts. Same principles: one-time purchase, no account, no telemetry.",
        "de": "Unser Local-first-Netzwerkscanner: jedes Gerät im LAN, offene Ports, Sicherheitsbericht und Anwesenheits-Alerts. Gleiche Prinzipien: Einmalkauf, kein Account, keine Telemetrie."
      },
      "cta": {
        "en": "Discover DeviceShelf ↗",
        "de": "DeviceShelf entdecken ↗"
      }
    },
    "server": {
      "title": {
        "en": "Know your servers, with ServerShelf",
        "de": "Kenne deine Server, mit ServerShelf"
      },
      "body": {
        "en": "Our local-first server cockpit: SSH inventory, Docker, TLS and uptime monitoring, AI log triage — with your own key. Same principles: one-time purchase, no account, no telemetry.",
        "de": "Unser Local-first-Server-Cockpit: SSH-Inventar, Docker, TLS- und Uptime-Monitoring, AI-Log-Triage — mit deinem eigenen Key. Gleiche Prinzipien: Einmalkauf, kein Account, keine Telemetrie."
      },
      "cta": {
        "en": "Discover ServerShelf ↗",
        "de": "ServerShelf entdecken ↗"
      }
    }
  },
  "footer": {
    "tagline": {
      "en": "Made with care, not with your data.",
      "de": "Mit Sorgfalt gemacht, nicht mit deinen Daten."
    },
    "product": {
      "en": "Product",
      "de": "Produkt"
    },
    "changelog": {
      "en": "Release notes",
      "de": "Versionshinweise"
    },
    "resources": {
      "en": "Resources",
      "de": "Ressourcen"
    },
    "support": {
      "en": "Support",
      "de": "Support"
    },
    "deviceshelf": {
      "en": "DeviceShelf · network scanner ↗",
      "de": "DeviceShelf · Netzwerkscanner ↗"
    },
    "servershelf": {
      "en": "ServerShelf · server cockpit ↗",
      "de": "ServerShelf · Server-Cockpit ↗"
    },
    "legal": {
      "en": "Legal",
      "de": "Rechtliches"
    },
    "privacy": {
      "en": "Privacy",
      "de": "Datenschutz"
    },
    "terms": {
      "en": "Terms",
      "de": "AGB"
    },
    "imprint": {
      "en": "Imprint",
      "de": "Impressum"
    },
    "copyright": {
      "en": "© 2026 Christof Müller, Switzerland · ScopeShelf · All local. No account. No telemetry.",
      "de": "© 2026 Christof Müller, Schweiz · ScopeShelf · Alles lokal. Kein Account. Keine Telemetrie."
    }
  },
  "imprint": {
    "metaTitle": {
      "en": "Imprint · ScopeShelf",
      "de": "Impressum · ScopeShelf"
    },
    "back": {
      "en": "← Back to ScopeShelf",
      "de": "← Zurück zu ScopeShelf"
    },
    "heading": {
      "en": "Imprint",
      "de": "Impressum"
    },
    "responsibleHeading": {
      "en": "Responsible for content",
      "de": "Verantwortlich für den Inhalt"
    },
    "providerLabel": {
      "en": "Provider:",
      "de": "Anbieter:"
    },
    "country": {
      "en": "Switzerland",
      "de": "Schweiz"
    },
    "contactHeading": {
      "en": "Contact",
      "de": "Kontakt"
    },
    "emailLabel": {
      "en": "Email:",
      "de": "E-Mail:"
    },
    "webLabel": {
      "en": "Website:",
      "de": "Webseite:"
    },
    "lawHeading": {
      "en": "Applicable law & jurisdiction",
      "de": "Anwendbares Recht & Gerichtsstand"
    },
    "lawBody": {
      "en": "ScopeShelf is operated from Switzerland. Swiss law applies. Place of jurisdiction is Kreuzlingen, Thurgau, unless mandatory consumer-protection rules of your country of residence provide otherwise.",
      "de": "ScopeShelf wird aus der Schweiz betrieben. Es gilt Schweizer Recht. Gerichtsstand ist Kreuzlingen, Thurgau, soweit nicht zwingende Verbraucherschutzregeln deines Wohnsitzlandes etwas anderes vorsehen."
    },
    "paymentHeading": {
      "en": "Payment processing",
      "de": "Zahlungsabwicklung"
    },
    "paymentBody": {
      "en": "Purchases are processed by Polar.sh, acting as Merchant of Record. Polar's terms apply to the transaction itself, including VAT collection and refunds. Your payment details are never seen by ScopeShelf.",
      "de": "Käufe laufen über Polar.sh als Merchant of Record. Für die Transaktion selbst gelten Polars Bedingungen, inklusive MwSt.-Abführung und Rückerstattungen. Deine Zahlungsdaten sieht ScopeShelf nie."
    },
    "noticesHeading": {
      "en": "Open-source notices",
      "de": "Open-Source-Hinweise"
    },
    "noticesBody": {
      "en": "ScopeShelf is built entirely on Apple's system frameworks (SwiftUI, Foundation, CoreGraphics) — it ships no third-party packages. The short note at <a href=\"/notices.txt\">scopeshelf.app/notices.txt</a> says the same in writing.",
      "de": "ScopeShelf ist komplett auf Apples System-Frameworks gebaut (SwiftUI, Foundation, CoreGraphics) — es enthält keine Drittanbieter-Pakete. Der kurze Hinweis unter <a href=\"/notices.txt\">scopeshelf.app/notices.txt</a> sagt dasselbe schriftlich."
    },
    "liabilityHeading": {
      "en": "Liability for content and links",
      "de": "Haftung für Inhalte und Links"
    },
    "liabilityBody": {
      "en": "Content on this site is provided in good faith and to the best of our knowledge. We assume no liability for the timeliness, completeness or accuracy of external links. The respective operators are solely responsible for the content of linked pages.",
      "de": "Die Inhalte dieser Seite sind nach bestem Wissen erstellt. Für Aktualität, Vollständigkeit oder Richtigkeit externer Links übernehmen wir keine Haftung. Für verlinkte Seiten sind allein deren Betreiber verantwortlich."
    }
  }
}
