Nightfall Agent: How to Collect macOS Agent Logs
Last updated: January 7, 2026
Context
The purpose is to identify where the macOS agent logs are stored to either examine them or provide them to Nightfall Technical Support.
Answer
Navigate to the two directories below and copy the files to share with Technical Support:
Root Account:
sudo -s
cd /var/root/Library/"Application Support"/NightfallAIAgent/LogsUser Account:
cd ~/Library/"Application Support"/NightfallAIAgent/LogsNote: The log files in both locations will follow the naming convention of:
"ai.nightfall.endpoint year-month-day--time.log"