Skip to main content

TCP Viewer Features

TCP Viewer brings the most common packet-analysis tasks into a focused native Mac app. Choose a workflow below.

Capture, filter, and inspect packets in the native Mac workspace.

1. Choose a TCP Viewer workflow​

FeatureUse it when you need to…
Live packet captureWatch new TCP and UDP traffic from a Mac network interface.
Open capture filesInspect PCAP, PCAPNG, or TCP Viewer session files.
Tab modeKeep separate packet views and switch between live traffic and imported captures.
Split ViewCompare two packet views side by side with independent filters and selections.
Capture overviewCheck traffic totals, protocols, top apps, domains, and IP addresses.
EndpointsCompare packet and byte totals by app, domain, address, or port.
Group trafficFind packets from one app, domain, IP address, or imported file.
Filter packetsNarrow a large packet list by protocol or exact field rules.
Wireshark display filtersUse Wireshark syntax to search protocol fields, addresses, ports, and packet content.
Follow TCP and UDP streamsReassemble a TCP conversation or inspect a UDP flow, separate its directions, and return to source packets.
Packet inspectionRead decoded protocols, field values, and raw bytes.
Organize and customizePin sources, save packets, add comments or colors, and change columns.
Save, copy, and exportShare selected packets, a full capture, or readable table data.
TCP Viewer MCPLet an AI assistant manage tabs and panes, analyze captures, follow streams, and export results.
Command lineControl captures, tabs, panes, and statistics from Terminal or scripts with tcpviewer-cli.

If this is your first time using the app, start with the Overview and Live packet capture.