# Deploy custom macOS scripts for app-specific browser access controls

Hexnode supports deploying and executing custom scripts on managed macOS devices, but Hexnode does not provide pre-configured, application-specific scripts such as a ready-made script to block WhatsApp Web or the WhatsApp browser version. If a custom script is used for this requirement, the script logic must be created, reviewed, and tested outside Hexnode. In the Hexnode portal, the **[Execute Custom Script](https://www.hexnode.com/mobile-device-management/help/how-to-run-scripts-on-mac-using-hexnode-mdm/)** option for macOS script deployment is available under the **Actions > Deployment** in the **Manage** tab, not under general settings.

Executive Summary
-----------------

**macOS script deployment** in Hexnode is intended to help deploy administrator-provided scripts across managed Mac devices. This can be used for organization-specific workflows, including custom access-control logic, provided the script is written and validated by the organization. Hexnode provides the deployment and execution mechanism; it does not supply or maintain scripts for blocking specific third-party services such as WhatsApp Web.

What Hexnode supports for macOS script deployment
-------------------------------------------------

- Deployment of custom scripts to managed macOS devices.
- Execution of scripts through the **Execute Custom Script** option.
- Use of the **Actions > Deployment** under the **Manage** tab for script execution workflows.

[![Screenshot of the Hexnode UEM console displaying the 'Execute Custom Script' action under Manage tab located between Incidents and Automate tab.](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2026/09/macOS-custom-script-deployment-on-Hexnode.png)](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2026/09/macOS-custom-script-deployment-on-Hexnode.png "macOS custom script deployment on Hexnode")

What Hexnode does not provide
-----------------------------

- Ready-made scripts for blocking specific websites or services.
- WhatsApp-specific scripts for blocking WhatsApp Web or the WhatsApp browser version.
- Validation of third-party or organization-authored script logic unless separately reviewed through support or professional services channels.

Recommended approach
--------------------

1. Create or obtain a custom macOS script that implements the required access-control behavior.
2. Test the script on a non-production Mac before deploying it through Hexnode.
3. Use the **Execute Custom Script** option under the **Actions > Deployment** in the **Manage** tab to deploy the tested script to the intended macOS devices.
4. Verify the result on a test device before expanding deployment to a larger Mac fleet.

 Note: 
Hexnode provides the infrastructure to deploy and execute custom scripts. The script content, including any logic for blocking WhatsApp Web, must be supplied and maintained by the organization.

 

When to use Web Content Filtering instead
-----------------------------------------

If the requirement is to block or allow specific URLs, **[Web Content Filtering](https://www.hexnode.com/mobile-device-management/help/how-to-set-up-web-content-filtering-for-mac-using-hexnode-mdm/)** may be a more appropriate policy-based option than a custom script, depending on the target platform and management requirements. Use custom scripts only when the required behavior cannot be achieved through available policy controls.