-
Notifications
You must be signed in to change notification settings - Fork 92
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
--run unclear #348
Comments
Its certainly in a sandbox. The exact line that comment is talking about is here: flatpak-builder/src/builder-manifest.c Lines 4123 to 4141 in aec06b3
|
If so, how did the application managed to write to |
Sandbox is a broad term. It is in a sandbox, its permissions just aren't what you expect. I don't think its documented sadly. |
I don't understand how this piece of code relates to give full-access to my home dir (making the whole point of sandbox moot). You sure this is the line? Care to explain how permissions leak from my specification out of that? |
I think the missing sandbox is a bug. You can work around it by adding |
The documentation states (emphasis mine):
What exactly are the exceptions? Has every app that I've run through
--run
been executed outside of a sandbox? It's unclear to me what are the exceptions and I can't find this info anywhere.The text was updated successfully, but these errors were encountered: