Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I’m experimenting with Nix shells for this tool isolation and whitelisting


That's not enough for security. Morally it should be - there's no reason we shouldn't be able to run untrusted software easily - but it won't have a firewall for example

Maybe something like bubblewrap could help




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: