Spec 078 US4 / FR-011 — pre-emptive macOS TCC forewarning

2 / 2 scenarios PASS — Playwright sweep (tcc-note.spec.ts) against a live mcpproxy v0.52.1+ build on 127.0.0.1:18081, real client registry (this Mac). Unit coverage: frontend/tests/unit/onboarding-wizard-tcc-note.spec.ts (5 tests). Protected-path clients that are not yet connected carry the forewarning; connected and dot-directory clients never do. No protected 'Review & connect' was clicked (that would fire a real TCC prompt on the host).
Wizard clients tab — pre-emptive TCC notePASS

Expected: VS Code (config under ~/Library/Application Support, not connected) shows the macOS forewarning under its row, right where 'Review & connect' is offered. Connected clients (Claude Desktop, Cursor, Codex — all protected-or-not) show no note.

Observed: Note visible on the VS Code row only; names the 'access data from other apps' prompt and says to choose Allow. PASS

VS Code row close-upPASS

Expected: The note text: 'macOS may ask for permission when you review or connect — the “mcpproxy” wants to access data from other apps prompt refers to this config file. Choose Allow so mcpproxy can read and update it.'

Observed: Copy present verbatim, plain language, before any action fires. PASS