The person behind the blog

Super Shitty
to the Mac.

A Mac admin blog born out of frustration — and a deep love for making enterprise Apple management actually work.

Speaking at a Mac admin event
On this page
Origin & name What this blog covers Tools & stack Community

The name.

SS stands for Super Shitty — as in, Super Shitty to the Mac. It's a nod to the reality that enterprise Mac management often feels exactly like that. MDM quirks, Intune limitations, Apple's occasionally baffling decisions... this blog exists to make that experience a little less painful.

What started as a place to dump notes and scripts for my own reference. Turns out a lot of Mac admins are dealing with the exact same headaches.

What this blog covers.

Everything here is focused on enterprise Apple device management — primarily macOS, with iOS/iPadOS mixed in. Sometimes there might be some Windows related posts. The emphasis is on practical automation: Azure Automation runbooks, PowerShell scripts, Intune configuration, Graph API wrangling, and compliance framework benchmarks.

The stack.

Most of my tooling lives in the Microsoft ecosystem — Intune, Azure Automation, Graph API, Entra ID — combined with Apple's MDM protocol and native macOS tools. PowerShell for automation logic, bash for on-device scripts - and an unhealthy amount of time in the Intune portal.

Community.

This blog is my contribution to the Mac admin community. Everything is shared freely — scripts, guides, configs. If something here has helped you, feel free to reach out. And if you find a bug or a better way to do something, I'd genuinely love to know.

Expertise areas

What I work with.

📱 Microsoft Intune Device compliance, config profiles, remediations, app deployment, etc.
☁️ Azure Automation Runbooks, PowerShell modules, scheduled automation at scale.
🍎 macOS Management MDM payloads, declarative device management, native security controls.
🔌 Graph API Device queries, group management, policy assignment and reporting via Microsoft Graph.
🛡️ Security Compliance Compliance frameworks, MDE deployment, FileVault, Gatekeeper and security posture automation.
📦 Apple Business Manager DEP enrollment, VPP licensing, automated device assignment workflows.
💻 PowerShell Modular scripting, automation code, etc.
🐚 Bash Scripting On-device macOS scripts, remediation, and security tooling.