Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Believe such build tools and processes should be run inside a container environment. Maybe once all OS have native, cheap and lean containers and permit dead simple container execution of scripts, this will be possible.




Google's OS, Android, has sandboxes. It's some Linux problem that they do not want to backport it.

It just has Linux user IDs. They're in every Linux.

I think that was long time ago, because this doesn't allow to request permissions in runtime.

Permissions are not granted through Linux itself. Permissions are something checked by separate processes when you connect with those processes.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: