Thank you for taking the time to consider my suggestions and for the courteous way in which you are addressing them and me. Ultimately, this is your software and your decision. Since nothing changes, my security concerns with OCLP remain and as you indicated, each user needs to use OCLP understanding the risks weighed against their own requirements. The users here in this forum are now aware of the risks and can make a somewhat informed decision about their continued use of OCLP.
Once this very easy to use software becomes mainstream and is used by the average Intel Mac user who has no reason to assume their OCLP-Patched Mac is not perfectly safe and secure, the changes I requested would be a little late by then and the temptation to exploit the vulnerabilities (vulnerabilities created accidentally or intentionally) will be even greater. And as the temptations to exploit are converted into real exploits, the average user who probably has never heard of this forum and this discussion will never know.
Thank you again for your time and your consideration.
No problem. Like I mentioned, I think at the end your idea isn't inherently bad, just the initial presentation wasn't good and it produced knee-jerk reactions from many of us, including me more or less. Glad the discussion turned more civil, at least between me and you.
It's not a bad thing to be conscious about security but honestly OCLP was originally meant to be a small project to use for people who know a thing or two. We never anticipated the influx of people coming in and in turn making the Discord server too quite chaotic at times, which is why the lead developer stepped away from the main channels for mental health reasons.
Also to comment on a bit on what someone said about "it's a small project so it doesn't matter as much".
I think that has some truth to it. Let's take Windows and macOS for example, macOS definitely is in some ways more secure by design but another very big reason it has stayed mostly free of malware is that its market share is significantly lower than that of Windows, which means Windows gets targeted more. OCLP users are a fraction of that marketshare.
Windows is also majorly used in businesses where the real money is and attacks of modern days have mostly moved there, regular users aren't really the interest of the malware writer groups anymore as there isn't nearly as much money to be made. Ransomware is the biggest modern day malware after all and that is because of money.
People also root their Android phones using custom tools and do all sorts of tinkering on them.
Information security can be a bit of a sly thing, sometimes it makes you too conscious about security when the reality is you have to balance between security and convenience. People in information security always have very sophisticated methods to protect oneself but those don't really apply to the average user who mostly just doesn't care because it's too inconvenient.
People with OCLP choose the convenience of keeping their old Mac instead of paying for a new one, with slightly lowered security. It also helps the environment when old systems get extended life and aren't thrown to landfills.
EDIT: Oh and to add, WiFi patching definitely isn't new to Sonoma with OCLP, it just had to be extended to more modern systems. We've had to rely on it more or less since Monterey (if not earlier, I joined OCLP around Monterey and I'm forgetting whether dosdude1 patchers did WiFi patching) at least for the old Mac Pro models and pre-2012 systems. Apple keeps removing drivers in subsequent OS releases and we have to add them back.