Skip to content

Add QuickLook thumbnail artifacts for macOS - #339

Merged
abrignoni merged 1 commit into
mainfrom
feat/macos-quicklook-thumbnails
Sep 27, 2026
Merged

abrignoni merged 1 commit into
mainfrom
feat/macos-quicklook-thumbnails

Conversation

@abrignoni

Copy link
Copy Markdown
Owner

Adds two macOS artifacts from the QuickLook thumbnail cache (com.apple.QuickLook.thumbnailcache):

  • QuickLook Thumbnails: one row per thumbnail in index.sqlite, with the thumbnail rendered from thumbnails.data, the file ID, the file's size and modification date from its version record, the generator, and the last hit time and hit count
  • QuickLook Cloud Thumbnails: cloudthumbnails.db rows with the last seen path, document ID, volume UUID, size as stored and last hit time

Only 8-bit BGRA bitmaps with premultiplied alpha are rendered; anything else is counted in the run log. Codes and undocumented values are reported as stored.

🤖 Generated with Claude Code

QuickLook Thumbnails reads index.sqlite and thumbnails.data in each
com.apple.QuickLook.thumbnailcache folder: one row per thumbnail, joined to
its basic_files row (the thumbnail's file_id with the top bit cleared),
with the file ID, the size and modification date from the row's version
archive, the generator, the last hit time and hit count, and the bitmap
rendered as a PNG. Only 8-bit BGRA bitmaps with premultiplied alpha
(bitmapinfo 0x2002) are rendered; others are counted in the run log. A file
versioned without a thumbnail gets its own row. A cache with the older files
table is logged and not read.

QuickLook Cloud Thumbnails reads cloudthumbnails.db in the same folder:
last hit time, last seen path, document ID, volume UUID and size as stored.

PNGs are written with the standard library.

Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
@abrignoni
abrignoni merged commit 57f4198 into main Sep 27, 2026
11 checks passed
@abrignoni
abrignoni deleted the feat/macos-quicklook-thumbnails branch September 27, 2026 13:02
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant