Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

So what? Does it mean I need to automatically trust you and your app?

You don't need full unlimited access to everything in order to send a file.





You should definitely not run any apps that you don't trust. It's a no-brainer.

But in the end the file access issue is an operating system deficiency. They could offer more fine-grained access control but the common operating systems don't. It's ultimately a matter of user convenience.


Yeah, but Docker provides pretty good isolation if done right, it's a good start. MacOS sandbox is limited in functionality and poorly documented, but still looks promising.

The only problem is that nobody cares, so there's no evolutionary pressure for OS developers to make their products safer in the sense the applications are safe for user.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: